Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-02 16:59:14.929 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:55276 10 6452 1 2025-08-02 16:59:24.046 00:00:10.374 TCP 23.104.0.1:49408 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:00:15.166 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:38578 10 6452 1 2025-08-02 17:00:24.459 00:00:10.362 TCP 23.104.0.1:42372 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:01:15.385 00:00:10.342 TCP 1.101.0.1:3000 -> 22.102.0.1:49120 10 6452 1 2025-08-02 17:01:24.866 00:00:10.328 TCP 23.104.0.1:45078 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:02:17.570 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 17:02:17.722 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 17:02:15.767 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:58462 10 6452 1 2025-08-02 17:02:25.234 00:00:10.366 TCP 23.104.0.1:49200 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:03:15.986 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:44698 10 6452 1 2025-08-02 17:03:25.642 00:00:10.321 TCP 23.104.0.1:40896 -> 1.101.0.1:3000 11 1507 1 2025-08-02 16:59:05.265 00:06:00.152 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-02 16:59:05.268 00:06:00.147 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-02 17:04:16.164 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:40410 10 6452 1 2025-08-02 17:04:26.003 00:00:10.337 TCP 23.104.0.1:50200 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:05:16.380 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:59018 10 6452 1 2025-08-02 17:05:26.390 00:00:10.337 TCP 23.104.0.1:55254 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:06:16.598 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:34578 10 6452 1 2025-08-02 17:06:26.766 00:00:10.375 TCP 23.104.0.1:52922 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:07:17.958 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 17:07:17.913 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 17:07:16.817 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:50168 10 6452 1 2025-08-02 17:07:27.191 00:00:10.323 TCP 23.104.0.1:51080 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:08:17.041 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:45416 10 6452 1 2025-08-02 17:08:27.552 00:00:10.363 TCP 23.104.0.1:38662 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:09:17.252 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:49568 10 6452 1 2025-08-02 17:09:27.953 00:00:10.367 TCP 23.104.0.1:40130 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:10:17.471 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:34296 10 6452 1 2025-08-02 17:10:28.360 00:00:10.358 TCP 23.104.0.1:50006 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:06:05.270 00:06:00.146 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-02 17:06:05.267 00:06:00.151 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-02 17:11:17.649 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:40406 10 6452 1 2025-08-02 17:11:28.758 00:00:10.375 TCP 23.104.0.1:55838 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:12:17.994 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 17:12:17.774 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 17:12:17.861 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:54702 10 6452 1 2025-08-02 17:12:29.176 00:00:10.363 TCP 23.104.0.1:58532 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:13:18.095 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:42288 10 6452 1 2025-08-02 17:13:29.576 00:00:10.365 TCP 23.104.0.1:37042 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:14:18.317 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:33012 10 6452 1 2025-08-02 17:14:29.987 00:00:10.366 TCP 23.104.0.1:41520 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:15:18.530 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:43318 10 6452 1 2025-08-02 17:15:30.391 00:00:10.367 TCP 23.104.0.1:53146 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:16:18.734 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:46854 10 6452 1 2025-08-02 17:16:30.800 00:00:10.619 TCP 23.104.0.1:34310 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:17:18.025 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 17:17:18.170 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 17:17:18.951 00:00:10.233 TCP 1.101.0.1:3000 -> 22.102.0.1:54868 12 6556 1 2025-08-02 17:17:31.459 00:00:10.362 TCP 23.104.0.1:43400 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:13:05.303 00:06:00.113 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-02 17:13:05.300 00:06:00.118 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-02 17:18:19.222 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:40930 10 6452 1 2025-08-02 17:18:31.863 00:00:10.367 TCP 23.104.0.1:38294 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:19:19.393 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:44120 10 6452 1 2025-08-02 17:19:32.270 00:00:10.365 TCP 23.104.0.1:38366 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:20:19.569 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:34110 10 6452 1 2025-08-02 17:20:32.669 00:00:10.378 TCP 23.104.0.1:43812 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:21:19.741 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:58686 10 6452 1 2025-08-02 17:21:33.113 00:00:10.363 TCP 23.104.0.1:32996 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:22:18.078 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 17:22:17.976 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 17:22:19.963 00:00:10.153 TCP 1.101.0.1:3000 -> 22.102.0.1:40218 10 6452 1 2025-08-02 17:22:33.515 00:00:10.365 TCP 23.104.0.1:35026 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:23:20.164 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:53280 12 10365 1 2025-08-02 17:23:33.919 00:00:10.418 TCP 23.104.0.1:42686 -> 1.101.0.1:3000 15 1926 1 2025-08-02 17:24:20.404 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:48714 10 6452 1 2025-08-02 17:24:34.375 00:00:10.365 TCP 23.104.0.1:55728 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:20:05.307 00:06:00.111 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-02 17:20:05.304 00:06:00.116 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-02 17:25:20.613 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:55068 10 6452 1 2025-08-02 17:25:34.783 00:00:10.359 TCP 23.104.0.1:57246 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:26:20.829 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:48034 10 6452 1 2025-08-02 17:26:35.185 00:00:10.362 TCP 23.104.0.1:55116 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:27:18.402 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 17:27:18.147 00:00:00.030 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 17:27:21.047 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:48438 10 6452 1 2025-08-02 17:27:35.592 00:00:10.323 TCP 23.104.0.1:41762 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:28:21.262 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:44048 10 6452 1 2025-08-02 17:28:35.957 00:00:10.368 TCP 23.104.0.1:33890 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:29:21.437 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:43394 10 6452 1 2025-08-02 17:29:36.362 00:00:10.368 TCP 23.104.0.1:60308 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:30:21.651 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:49030 10 6452 1 2025-08-02 17:30:36.769 00:00:10.369 TCP 23.104.0.1:50896 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:31:21.871 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:44256 10 6452 1 2025-08-02 17:31:37.170 00:00:10.364 TCP 23.104.0.1:40546 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:27:05.306 00:06:00.118 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-02 17:27:05.309 00:06:00.114 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-02 17:32:18.507 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 17:32:18.098 00:00:00.042 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 17:32:22.099 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:42694 10 6452 1 2025-08-02 17:32:37.568 00:00:10.373 TCP 23.104.0.1:59648 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:33:22.306 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:39000 10 6452 1 2025-08-02 17:33:37.981 00:00:10.371 TCP 23.104.0.1:37158 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:34:22.480 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:48844 10 6452 1 2025-08-02 17:34:38.390 00:00:10.368 TCP 23.104.0.1:58834 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:35:22.699 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:37294 10 6452 1 2025-08-02 17:35:38.798 00:00:10.348 TCP 23.104.0.1:42788 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:36:22.915 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:52034 10 6452 1 2025-08-02 17:36:39.201 00:00:10.370 TCP 23.104.0.1:53596 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:37:18.614 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 17:37:18.503 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 17:37:23.126 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:49252 10 6452 1 2025-08-02 17:37:39.612 00:00:10.373 TCP 23.104.0.1:59808 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:38:23.345 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:56812 10 6452 1 2025-08-02 17:38:40.021 00:00:10.372 TCP 23.104.0.1:35864 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:34:05.312 00:06:00.117 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-02 17:34:05.311 00:06:00.122 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-02 17:39:23.566 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:39352 10 6452 1 2025-08-02 17:39:40.429 00:00:10.363 TCP 23.104.0.1:38826 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:40:23.782 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:45030 10 6452 1 2025-08-02 17:40:40.828 00:00:10.383 TCP 23.104.0.1:35468 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:41:23.952 00:00:10.151 TCP 1.101.0.1:3000 -> 22.102.0.1:58694 10 6452 1 2025-08-02 17:41:41.248 00:00:10.359 TCP 23.104.0.1:37290 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:42:18.935 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 17:42:18.857 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 17:42:24.143 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:57062 10 6452 1 2025-08-02 17:42:41.651 00:00:10.319 TCP 23.104.0.1:46398 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:43:24.368 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:41594 10 6452 1 2025-08-02 17:43:42.010 00:00:10.376 TCP 23.104.0.1:49066 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:44:24.542 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:41200 10 6452 1 2025-08-02 17:44:42.426 00:00:10.364 TCP 23.104.0.1:57636 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:45:24.763 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:39334 10 6452 1 2025-08-02 17:45:42.836 00:00:10.373 TCP 23.104.0.1:41570 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:41:05.312 00:06:00.125 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-02 17:41:05.315 00:06:00.120 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-02 17:46:24.929 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:44774 10 6452 1 2025-08-02 17:46:43.246 00:00:10.366 TCP 23.104.0.1:37542 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:47:18.670 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 17:47:18.546 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 17:47:25.163 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:38500 10 6452 1 2025-08-02 17:47:43.650 00:00:10.364 TCP 23.104.0.1:59010 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:48:25.346 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:46706 10 6452 1 2025-08-02 17:48:44.060 00:00:10.373 TCP 23.104.0.1:58092 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:49:25.525 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:56398 10 6452 1 2025-08-02 17:49:44.467 00:00:10.365 TCP 23.104.0.1:54064 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:50:25.735 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:41972 10 6452 1 2025-08-02 17:50:44.863 00:00:10.369 TCP 23.104.0.1:41490 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:51:25.948 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:59804 10 6452 1 2025-08-02 17:51:45.269 00:00:10.367 TCP 23.104.0.1:41192 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:52:19.989 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 17:52:19.842 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 17:52:26.173 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:51478 10 6452 1 2025-08-02 17:52:45.674 00:00:10.380 TCP 23.104.0.1:53520 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:48:05.317 00:06:00.127 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-02 17:48:05.314 00:06:00.132 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-02 17:53:26.387 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:40962 10 6452 1 2025-08-02 17:53:46.102 00:00:10.370 TCP 23.104.0.1:34248 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:54:26.560 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:40654 10 6452 1 2025-08-02 17:54:46.511 00:00:10.371 TCP 23.104.0.1:59604 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:55:26.772 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:51182 10 6452 1 2025-08-02 17:55:46.954 00:00:10.369 TCP 23.104.0.1:58360 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:56:26.984 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:48644 10 6452 1 2025-08-02 17:56:47.364 00:00:10.361 TCP 23.104.0.1:44612 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:57:18.924 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-02 17:57:18.636 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-02 17:57:27.206 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:46076 10 6452 1 2025-08-02 17:57:47.761 00:00:10.334 TCP 23.104.0.1:43312 -> 1.101.0.1:3000 11 1507 1 2025-08-02 17:58:27.412 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:36530 12 10367 1 Summary: total flows: 159, total bytes: 504208, total packets: 1555, avg bps: 1129, avg pps: 0, avg bpp: 324 Time window: 2025-08-02 16:59:05 - 2025-08-02 17:58:37 Total flows processed: 159, passed: 159, Blocks skipped: 0, Bytes read: 16600 Sys: 0.0027s User: 0.0009s Wall: 0.0014s flows/second: 111895.0 Runtime: 0.0014s