Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-02 11:59:06.392 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:48396 10 6452 1 2025-08-02 11:59:23.205 00:00:10.371 TCP 23.104.0.1:37368 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:00:06.561 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:39508 10 6452 1 2025-08-02 12:00:23.606 00:00:10.368 TCP 23.104.0.1:55332 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:01:06.779 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:55002 10 6452 1 2025-08-02 12:01:24.013 00:00:10.328 TCP 23.104.0.1:47058 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:02:11.799 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 12:02:11.662 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 12:02:07.002 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:57922 10 6452 1 2025-08-02 12:02:24.377 00:00:10.363 TCP 23.104.0.1:48394 -> 1.101.0.1:3000 11 1507 1 2025-08-02 11:58:05.162 00:06:00.109 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-02 11:58:05.166 00:06:00.103 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-02 12:03:07.219 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:40778 10 6452 1 2025-08-02 12:03:24.776 00:00:10.443 TCP 23.104.0.1:35356 -> 1.101.0.1:3000 15 1926 1 2025-08-02 12:04:07.440 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:51718 12 10367 1 2025-08-02 12:04:25.269 00:00:10.370 TCP 23.104.0.1:46132 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:05:07.682 00:00:10.384 TCP 1.101.0.1:3000 -> 22.102.0.1:43504 10 6452 1 2025-08-02 12:05:25.696 00:00:10.367 TCP 23.104.0.1:56710 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:06:08.105 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:58084 10 6452 1 2025-08-02 12:06:26.114 00:00:10.370 TCP 23.104.0.1:51166 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:07:11.785 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 12:07:11.566 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 12:07:08.324 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:49718 10 6452 1 2025-08-02 12:07:26.526 00:00:10.370 TCP 23.104.0.1:50180 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:08:08.505 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:38672 10 6452 1 2025-08-02 12:08:26.936 00:00:10.455 TCP 23.104.0.1:33814 -> 1.101.0.1:3000 15 1926 1 2025-08-02 12:09:08.714 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:52286 12 10365 1 2025-08-02 12:09:27.432 00:00:10.366 TCP 23.104.0.1:45462 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:05:05.165 00:06:00.131 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-02 12:05:05.168 00:06:00.125 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-02 12:10:08.960 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:50318 12 6556 1 2025-08-02 12:10:27.836 00:00:10.393 TCP 23.104.0.1:42438 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:11:09.183 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:36196 10 6452 1 2025-08-02 12:11:28.279 00:00:10.364 TCP 23.104.0.1:39642 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:12:11.955 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 12:12:11.809 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 12:12:09.400 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:51764 10 6452 1 2025-08-02 12:12:28.678 00:00:10.366 TCP 23.104.0.1:41886 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:13:09.622 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:51566 10 6452 1 2025-08-02 12:13:29.106 00:00:10.369 TCP 23.104.0.1:33942 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:14:09.804 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:47846 10 6452 1 2025-08-02 12:14:29.509 00:00:10.365 TCP 23.104.0.1:55610 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:15:10.036 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:39704 10 6452 1 2025-08-02 12:15:29.915 00:00:10.360 TCP 23.104.0.1:44344 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:16:10.249 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:35096 10 6452 1 2025-08-02 12:16:30.315 00:00:10.362 TCP 23.104.0.1:40804 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:12:05.177 00:06:00.117 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-02 12:12:05.175 00:06:00.122 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-02 12:17:12.103 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 12:17:12.071 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 12:17:10.457 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:59912 10 6452 1 2025-08-02 12:17:30.718 00:00:10.376 TCP 23.104.0.1:57048 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:18:10.667 00:00:10.151 TCP 1.101.0.1:3000 -> 22.102.0.1:57794 10 6452 1 2025-08-02 12:18:31.132 00:00:10.447 TCP 23.104.0.1:44176 -> 1.101.0.1:3000 15 1926 1 2025-08-02 12:19:10.856 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:49882 12 10365 1 2025-08-02 12:19:31.614 00:00:10.368 TCP 23.104.0.1:59246 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:20:11.096 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:60096 10 6452 1 2025-08-02 12:20:32.026 00:00:10.376 TCP 23.104.0.1:57068 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:21:11.306 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:60510 10 6452 1 2025-08-02 12:21:32.441 00:00:10.362 TCP 23.104.0.1:33944 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:22:12.106 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 12:22:11.991 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 12:22:11.517 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:34796 10 6452 1 2025-08-02 12:22:32.842 00:00:10.393 TCP 23.104.0.1:36546 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:23:11.731 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:32914 10 6452 1 2025-08-02 12:23:33.286 00:00:10.335 TCP 23.104.0.1:39700 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:19:05.179 00:06:00.122 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-02 12:19:05.177 00:06:00.127 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-02 12:24:11.904 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55552 10 6452 1 2025-08-02 12:24:33.662 00:00:10.366 TCP 23.104.0.1:48006 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:25:12.117 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:35524 10 6452 1 2025-08-02 12:25:34.088 00:00:10.364 TCP 23.104.0.1:35024 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:26:12.327 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:57440 12 6556 1 2025-08-02 12:26:34.490 00:00:10.362 TCP 23.104.0.1:50184 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:27:12.221 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 12:27:12.000 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 12:27:12.542 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:34694 10 6452 1 2025-08-02 12:27:34.892 00:00:10.380 TCP 23.104.0.1:41376 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:28:12.713 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:40398 10 6452 1 2025-08-02 12:28:35.319 00:00:10.369 TCP 23.104.0.1:55738 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:29:12.931 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:40962 10 6452 1 2025-08-02 12:29:35.722 00:00:10.369 TCP 23.104.0.1:53702 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:30:13.164 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:42910 10 6452 1 2025-08-02 12:30:36.128 00:00:10.329 TCP 23.104.0.1:40076 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:26:05.177 00:06:00.126 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-02 12:26:05.181 00:06:00.121 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-02 12:31:13.374 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52344 10 6452 1 2025-08-02 12:31:36.495 00:00:10.368 TCP 23.104.0.1:40580 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:32:12.152 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 12:32:12.297 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 12:32:13.593 00:00:10.417 TCP 1.101.0.1:3000 -> 22.102.0.1:47964 10 6452 1 2025-08-02 12:32:36.907 00:00:10.362 TCP 23.104.0.1:54002 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:33:14.073 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:34730 10 6452 1 2025-08-02 12:33:37.307 00:00:10.366 TCP 23.104.0.1:51842 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:34:14.281 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:39064 10 6452 1 2025-08-02 12:34:37.709 00:00:10.367 TCP 23.104.0.1:50524 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:35:14.496 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:43370 10 6452 1 2025-08-02 12:35:38.113 00:00:10.364 TCP 23.104.0.1:49514 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:36:14.705 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:57746 10 6452 1 2025-08-02 12:36:38.513 00:00:10.324 TCP 23.104.0.1:55936 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:37:12.376 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 12:37:12.452 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 12:37:14.921 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:45058 10 6452 1 2025-08-02 12:37:38.876 00:00:10.369 TCP 23.104.0.1:42042 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:33:05.180 00:06:00.126 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-02 12:33:05.182 00:06:00.120 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-02 12:38:15.153 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:35360 10 6452 1 2025-08-02 12:38:39.282 00:00:10.361 TCP 23.104.0.1:37172 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:39:15.372 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:44150 10 6452 1 2025-08-02 12:39:39.684 00:00:10.368 TCP 23.104.0.1:46612 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:40:15.587 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:34424 10 6452 1 2025-08-02 12:40:40.099 00:00:10.368 TCP 23.104.0.1:49228 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:41:15.802 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:44792 10 6452 1 2025-08-02 12:41:40.521 00:00:10.323 TCP 23.104.0.1:45800 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:42:12.576 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 12:42:12.449 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 12:42:16.014 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:55268 10 6452 1 2025-08-02 12:42:40.882 00:00:10.380 TCP 23.104.0.1:50838 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:43:16.184 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:37178 10 6452 1 2025-08-02 12:43:41.303 00:00:10.365 TCP 23.104.0.1:48470 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:44:16.399 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:48132 10 6452 1 2025-08-02 12:44:41.709 00:00:10.322 TCP 23.104.0.1:37798 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:40:05.180 00:06:00.126 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-02 12:40:05.184 00:06:00.120 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-02 12:45:16.616 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:60678 10 6452 1 2025-08-02 12:45:42.098 00:00:10.362 TCP 23.104.0.1:59040 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:46:16.826 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:55548 10 6452 1 2025-08-02 12:46:42.499 00:00:10.364 TCP 23.104.0.1:38002 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:47:12.693 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 12:47:12.455 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 12:47:17.065 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:55108 10 6452 1 2025-08-02 12:47:42.899 00:00:10.370 TCP 23.104.0.1:56338 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:48:17.235 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:52140 10 6452 1 2025-08-02 12:48:43.307 00:00:10.364 TCP 23.104.0.1:51680 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:49:17.409 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:37788 10 6452 1 2025-08-02 12:49:43.708 00:00:10.329 TCP 23.104.0.1:60408 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:50:17.621 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:56822 10 6452 1 2025-08-02 12:50:44.104 00:00:10.375 TCP 23.104.0.1:60260 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:51:17.833 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33878 10 6452 1 2025-08-02 12:51:44.508 00:00:10.371 TCP 23.104.0.1:59704 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:47:05.184 00:06:00.126 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-02 12:47:05.186 00:06:00.122 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-02 12:52:13.615 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 12:52:13.554 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 12:52:18.076 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:56390 10 6452 1 2025-08-02 12:52:44.916 00:00:10.324 TCP 23.104.0.1:51526 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:53:18.288 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:38012 10 6452 1 2025-08-02 12:53:45.277 00:00:10.368 TCP 23.104.0.1:35946 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:54:18.499 00:00:10.166 TCP 1.101.0.1:3000 -> 22.102.0.1:51098 10 6452 1 2025-08-02 12:54:45.681 00:00:10.370 TCP 23.104.0.1:43284 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:55:18.703 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:46506 10 6452 1 2025-08-02 12:55:46.118 00:00:10.364 TCP 23.104.0.1:50606 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:56:18.918 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:60846 10 6452 1 2025-08-02 12:56:46.520 00:00:10.366 TCP 23.104.0.1:34412 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:57:12.585 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 12:57:12.569 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 12:57:19.127 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:42322 10 6452 1 2025-08-02 12:57:46.925 00:00:10.387 TCP 23.104.0.1:55064 -> 1.101.0.1:3000 11 1507 1 2025-08-02 12:58:19.365 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:33248 10 6452 1 Summary: total flows: 159, total bytes: 509063, total packets: 1567, avg bps: 1123, avg pps: 0, avg bpp: 324 Time window: 2025-08-02 11:58:05 - 2025-08-02 12:58:29 Total flows processed: 159, passed: 159, Blocks skipped: 0, Bytes read: 16600 Sys: 0.0032s User: 0.0016s Wall: 0.0024s flows/second: 67092.0 Runtime: 0.0024s