Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-04 09:59:10.908 00:00:10.486 TCP 23.104.0.1:33254 -> 1.101.0.1:3000 15 1926 1 2025-08-04 09:59:10.375 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:39940 12 10574 1 2025-08-04 10:00:11.435 00:00:10.368 TCP 23.104.0.1:44920 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:00:10.617 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:40344 10 6661 1 2025-08-04 10:01:10.834 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:59056 10 6661 1 2025-08-04 10:01:11.841 00:00:10.385 TCP 23.104.0.1:37956 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:02:11.071 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:35648 10 6661 1 2025-08-04 10:02:12.258 00:00:10.323 TCP 23.104.0.1:34232 -> 1.101.0.1:3000 11 1507 1 2025-08-04 09:58:06.179 00:06:00.309 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-04 10:03:07.313 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-04 09:58:06.180 00:06:00.305 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-04 10:03:07.163 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-04 10:03:11.287 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:56920 10 6661 1 2025-08-04 10:03:12.621 00:00:10.374 TCP 23.104.0.1:38896 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:04:11.494 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:43044 10 6661 1 2025-08-04 10:04:13.027 00:00:10.332 TCP 23.104.0.1:36794 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:05:11.705 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:37096 10 6661 1 2025-08-04 10:05:13.395 00:00:10.365 TCP 23.104.0.1:43016 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:06:13.801 00:00:10.416 TCP 23.104.0.1:41494 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:06:11.919 00:00:10.147 TCP 1.101.0.1:3000 -> 22.102.0.1:43316 10 6661 1 2025-08-04 10:07:12.103 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:47298 10 6661 1 2025-08-04 10:07:14.257 00:00:10.359 TCP 23.104.0.1:33506 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:08:06.940 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-04 10:08:07.295 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-04 10:08:14.658 00:00:10.364 TCP 23.104.0.1:33102 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:08:12.316 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:41560 10 6661 1 2025-08-04 10:05:06.182 00:04:00.307 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-04 10:05:06.185 00:04:00.301 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-04 10:09:12.534 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:43902 10 6661 1 2025-08-04 10:09:15.075 00:00:10.369 TCP 23.104.0.1:42160 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:10:15.480 00:00:10.338 TCP 23.104.0.1:37416 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:10:12.751 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:35982 10 6661 1 2025-08-04 10:11:12.976 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:49996 10 6661 1 2025-08-04 10:11:15.858 00:00:10.328 TCP 23.104.0.1:54638 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:12:16.226 00:00:10.366 TCP 23.104.0.1:59106 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:12:13.211 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:34202 10 6661 1 2025-08-04 10:13:07.297 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-04 10:13:07.245 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-04 10:13:13.422 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:45198 10 6661 1 2025-08-04 10:13:16.630 00:00:10.374 TCP 23.104.0.1:59980 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:10:06.184 00:04:00.306 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-04 10:10:06.186 00:04:00.301 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-04 10:14:13.594 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:55228 10 6661 1 2025-08-04 10:14:17.048 00:00:10.363 TCP 23.104.0.1:60156 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:15:13.800 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:60552 10 6661 1 2025-08-04 10:15:17.448 00:00:10.368 TCP 23.104.0.1:42648 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:16:14.016 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45546 10 6661 1 2025-08-04 10:16:17.857 00:00:10.374 TCP 23.104.0.1:52076 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:17:14.230 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:36728 10 6661 1 2025-08-04 10:17:18.268 00:00:10.369 TCP 23.104.0.1:46446 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:18:07.589 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-04 10:18:07.645 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-04 10:18:14.399 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:39764 10 6661 1 2025-08-04 10:18:18.669 00:00:10.474 TCP 23.104.0.1:41394 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:15:06.184 00:04:00.308 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-04 10:15:06.186 00:04:00.303 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-04 10:19:14.616 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:44104 10 6661 1 2025-08-04 10:19:19.182 00:00:10.373 TCP 23.104.0.1:37042 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:20:14.783 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:40104 10 6661 1 2025-08-04 10:20:19.587 00:00:10.369 TCP 23.104.0.1:49800 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:21:14.989 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:44504 10 6661 1 2025-08-04 10:21:19.988 00:00:10.371 TCP 23.104.0.1:53288 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:22:15.217 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:36866 10 6661 1 2025-08-04 10:22:20.403 00:00:10.366 TCP 23.104.0.1:57632 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:23:07.440 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-04 10:23:07.500 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-04 10:23:15.431 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:57448 10 6661 1 2025-08-04 10:23:20.809 00:00:10.579 TCP 23.104.0.1:57452 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:20:06.189 00:04:00.303 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-04 10:20:06.187 00:04:00.307 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-04 10:24:15.644 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:52292 10 6661 1 2025-08-04 10:24:21.438 00:00:10.388 TCP 23.104.0.1:44800 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:25:15.857 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:52482 10 6661 1 2025-08-04 10:25:21.862 00:00:10.366 TCP 23.104.0.1:42174 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:26:16.032 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:53580 10 6661 1 2025-08-04 10:26:22.265 00:00:10.365 TCP 23.104.0.1:42154 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:27:16.199 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:42280 10 6661 1 2025-08-04 10:27:22.675 00:00:10.376 TCP 23.104.0.1:53582 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:28:07.669 00:00:00.026 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-04 10:28:07.615 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-04 10:28:16.418 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43908 10 6661 1 2025-08-04 10:28:23.109 00:00:10.365 TCP 23.104.0.1:54426 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:25:06.187 00:04:00.311 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-04 10:25:06.190 00:04:00.305 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-04 10:29:16.626 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:47104 10 6661 1 2025-08-04 10:29:23.523 00:00:10.367 TCP 23.104.0.1:59754 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:30:16.838 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49922 10 6661 1 2025-08-04 10:30:23.930 00:00:10.385 TCP 23.104.0.1:42816 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:31:17.077 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:46330 10 6661 1 2025-08-04 10:31:24.353 00:00:10.368 TCP 23.104.0.1:36944 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:32:17.257 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:46042 10 6661 1 2025-08-04 10:32:24.755 00:00:10.516 TCP 23.104.0.1:33788 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:33:07.537 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-04 10:33:07.603 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-04 10:33:17.489 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:54122 10 6661 1 2025-08-04 10:33:25.305 00:00:10.320 TCP 23.104.0.1:36208 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:30:06.191 00:04:00.306 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-04 10:30:06.188 00:04:00.310 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-04 10:34:17.659 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53670 10 6661 1 2025-08-04 10:34:25.662 00:00:10.365 TCP 23.104.0.1:49710 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:35:17.882 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:35082 10 6661 1 2025-08-04 10:35:26.091 00:00:10.372 TCP 23.104.0.1:35220 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:35:06.198 00:01:00.298 TCP 179.1.22.22:39396 -> 179.1.22.1:179 4 246 1 2025-08-04 10:35:06.195 00:01:00.304 TCP 179.1.22.1:179 -> 179.1.22.22:39396 4 246 1 2025-08-04 10:36:18.081 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:47960 10 6661 1 2025-08-04 10:36:26.503 00:00:10.373 TCP 23.104.0.1:40628 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:37:18.300 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:47496 10 6661 1 2025-08-04 10:37:26.915 00:00:10.334 TCP 23.104.0.1:39948 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:38:07.880 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-04 10:38:07.860 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-04 10:38:18.508 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:52686 10 6661 1 2025-08-04 10:38:27.287 00:00:10.362 TCP 23.104.0.1:60514 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:39:18.726 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:53400 10 6661 1 2025-08-04 10:39:27.696 00:00:10.371 TCP 23.104.0.1:36226 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:40:18.945 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:53658 10 6661 1 2025-08-04 10:40:28.109 00:00:10.373 TCP 23.104.0.1:49464 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:37:06.196 00:04:00.305 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-04 10:37:06.198 00:04:00.300 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-04 10:41:19.178 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:60828 10 6661 1 2025-08-04 10:41:28.523 00:00:10.327 TCP 23.104.0.1:52294 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:42:19.384 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:56552 10 6661 1 2025-08-04 10:42:28.887 00:00:10.382 TCP 23.104.0.1:59542 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:43:07.758 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-04 10:43:07.808 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-04 10:43:19.595 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56494 10 6661 1 2025-08-04 10:43:29.302 00:00:10.450 TCP 23.104.0.1:42348 -> 1.101.0.1:3000 15 1926 1 2025-08-04 10:44:19.812 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:57070 12 10367 1 2025-08-04 10:44:29.796 00:00:10.364 TCP 23.104.0.1:35376 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:45:20.084 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:41292 10 6452 1 2025-08-04 10:45:30.199 00:00:10.375 TCP 23.104.0.1:58598 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:42:06.200 00:04:00.300 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-04 10:42:06.196 00:04:00.305 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-04 10:46:20.296 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:48212 10 6452 1 2025-08-04 10:46:30.606 00:00:10.321 TCP 23.104.0.1:33846 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:47:20.502 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:46926 10 6452 1 2025-08-04 10:47:30.965 00:00:10.378 TCP 23.104.0.1:38732 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:48:07.959 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-04 10:48:07.959 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-04 10:48:20.671 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:54874 10 6452 1 2025-08-04 10:48:31.395 00:00:10.365 TCP 23.104.0.1:56118 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:49:20.847 00:00:10.354 TCP 1.101.0.1:3000 -> 22.102.0.1:59494 10 6452 1 2025-08-04 10:49:31.804 00:00:10.369 TCP 23.104.0.1:50600 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:50:21.244 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:50726 10 6452 1 2025-08-04 10:50:32.213 00:00:10.366 TCP 23.104.0.1:40136 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:47:06.197 00:04:00.306 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-04 10:47:06.201 00:04:00.300 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-04 10:51:21.453 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:56598 10 6452 1 2025-08-04 10:51:32.617 00:00:10.361 TCP 23.104.0.1:59570 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:52:21.661 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:39056 10 6452 1 2025-08-04 10:52:33.018 00:00:10.361 TCP 23.104.0.1:57404 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:53:08.183 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-04 10:53:07.839 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-04 10:53:21.875 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:39966 10 6452 1 2025-08-04 10:53:33.419 00:00:10.369 TCP 23.104.0.1:59326 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:54:22.109 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:34372 10 6452 1 2025-08-04 10:54:33.823 00:00:10.360 TCP 23.104.0.1:51926 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:55:22.320 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:46740 10 6452 1 2025-08-04 10:55:34.223 00:00:10.362 TCP 23.104.0.1:35150 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:52:06.198 00:04:00.306 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-04 10:52:06.201 00:04:00.301 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-04 10:56:22.534 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:50786 10 6452 1 2025-08-04 10:56:34.628 00:00:10.368 TCP 23.104.0.1:49948 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:57:22.750 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:36234 10 6452 1 2025-08-04 10:57:35.037 00:00:10.366 TCP 23.104.0.1:33594 -> 1.101.0.1:3000 11 1507 1 2025-08-04 10:58:08.262 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-04 10:58:08.151 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-04 10:58:22.927 00:00:10.221 TCP 1.101.0.1:3000 -> 22.102.0.1:52016 10 6452 1 2025-08-04 10:58:35.438 00:00:10.365 TCP 23.104.0.1:36866 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 168, total bytes: 516173, total packets: 1580, avg bps: 1134, avg pps: 0, avg bpp: 326 Time window: 2025-08-04 09:58:06 - 2025-08-04 10:58:45 Total flows processed: 168, passed: 168, Blocks skipped: 0, Bytes read: 17536 Sys: 0.0044s User: 0.0000s Wall: 0.0020s flows/second: 83577.6 Runtime: 0.0020s