Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-05 17:55:06.793 00:05:00.609 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-05 17:59:12.871 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:35930 12 10365 1 2025-08-05 17:59:35.056 00:00:10.371 TCP 23.104.0.1:50562 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:00:13.113 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:46772 10 6452 1 2025-08-05 18:00:35.472 00:00:10.376 TCP 23.104.0.1:60436 -> 1.101.0.1:3000 11 1507 1 2025-08-05 17:57:06.796 00:05:00.605 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-05 18:01:13.328 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:43760 10 6452 1 2025-08-05 18:01:35.889 00:00:10.372 TCP 23.104.0.1:40898 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:02:13.544 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:53544 10 6452 1 2025-08-05 18:02:36.300 00:00:10.368 TCP 23.104.0.1:60068 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:03:13.758 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:45966 10 6452 1 2025-08-05 18:03:45.588 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-05 18:03:45.664 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-05 18:03:36.708 00:00:10.616 TCP 23.104.0.1:44184 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:04:13.976 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:47386 10 6452 1 2025-08-05 18:04:37.362 00:00:10.366 TCP 23.104.0.1:46638 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:01:06.795 00:05:00.609 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-05 18:05:14.207 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:38516 10 6452 1 2025-08-05 18:05:37.765 00:00:10.339 TCP 23.104.0.1:38394 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:06:14.426 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:48152 10 6452 1 2025-08-05 18:06:38.142 00:00:10.326 TCP 23.104.0.1:47478 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:03:06.798 00:05:00.603 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-05 18:07:14.645 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:33324 10 6452 1 2025-08-05 18:07:38.503 00:00:10.370 TCP 23.104.0.1:54588 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:08:14.813 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:36420 10 6452 1 2025-08-05 18:08:45.723 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-05 18:08:45.842 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-05 18:08:38.906 00:00:10.389 TCP 23.104.0.1:58658 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:09:15.037 00:00:10.153 TCP 1.101.0.1:3000 -> 22.102.0.1:46082 10 6452 1 2025-08-05 18:09:39.340 00:00:10.366 TCP 23.104.0.1:34668 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:10:15.230 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51738 10 6452 1 2025-08-05 18:10:39.741 00:00:10.368 TCP 23.104.0.1:35324 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:07:06.798 00:05:00.606 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-05 18:11:15.439 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:35940 10 6452 1 2025-08-05 18:11:40.145 00:00:10.373 TCP 23.104.0.1:40852 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:12:15.652 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:53496 10 6452 1 2025-08-05 18:12:40.556 00:00:10.364 TCP 23.104.0.1:52844 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:09:06.803 00:05:00.600 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-05 18:13:15.825 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:45118 10 6452 1 2025-08-05 18:13:45.733 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-05 18:13:45.983 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-05 18:13:40.956 00:00:10.368 TCP 23.104.0.1:49048 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:14:16.081 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:34204 10 6452 1 2025-08-05 18:14:41.363 00:00:10.366 TCP 23.104.0.1:48132 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:15:16.296 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:35988 10 6452 1 2025-08-05 18:15:41.770 00:00:10.372 TCP 23.104.0.1:36160 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:16:16.508 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:41972 10 6452 1 2025-08-05 18:16:42.178 00:00:10.326 TCP 23.104.0.1:49996 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:13:06.800 00:05:00.605 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-05 18:17:16.716 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58032 10 6452 1 2025-08-05 18:17:42.549 00:00:10.415 TCP 23.104.0.1:58786 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:18:16.924 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:48872 10 6452 1 2025-08-05 18:18:45.917 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-05 18:18:45.856 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-05 18:18:43.005 00:00:10.361 TCP 23.104.0.1:46068 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:15:06.802 00:05:00.601 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-05 18:19:17.139 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:39926 10 6452 1 2025-08-05 18:19:43.403 00:00:10.328 TCP 23.104.0.1:34122 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:20:17.352 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:44434 10 6452 1 2025-08-05 18:20:43.764 00:00:10.374 TCP 23.104.0.1:40258 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:21:17.566 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:37542 10 6452 1 2025-08-05 18:21:44.174 00:00:10.364 TCP 23.104.0.1:38676 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:22:17.773 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:52094 10 6452 1 2025-08-05 18:22:44.581 00:00:10.363 TCP 23.104.0.1:53040 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:19:06.804 00:05:00.602 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-05 18:23:17.987 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:54222 10 6452 1 2025-08-05 18:23:45.790 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-05 18:23:45.939 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-05 18:23:44.985 00:00:10.323 TCP 23.104.0.1:58962 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:24:18.212 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:33260 10 6452 1 2025-08-05 18:24:45.344 00:00:10.366 TCP 23.104.0.1:56650 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:21:06.807 00:05:00.604 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-05 18:25:18.389 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:48842 10 6452 1 2025-08-05 18:25:45.747 00:00:10.366 TCP 23.104.0.1:33796 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:26:18.606 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:57718 10 6452 1 2025-08-05 18:26:46.148 00:00:10.365 TCP 23.104.0.1:58588 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:27:18.819 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:37978 10 6452 1 2025-08-05 18:27:46.552 00:00:10.361 TCP 23.104.0.1:55166 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:28:19.047 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:56550 10 6452 1 2025-08-05 18:28:45.916 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-05 18:28:46.023 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-05 18:28:46.953 00:00:10.367 TCP 23.104.0.1:35840 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:25:06.805 00:05:00.602 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-05 18:29:19.260 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:56932 10 6452 1 2025-08-05 18:29:47.360 00:00:10.367 TCP 23.104.0.1:36836 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:30:19.470 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:48800 10 6452 1 2025-08-05 18:30:47.765 00:00:10.366 TCP 23.104.0.1:38234 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:27:06.808 00:05:00.597 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-05 18:31:19.679 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:57018 10 6452 1 2025-08-05 18:31:48.175 00:00:10.332 TCP 23.104.0.1:34242 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:32:19.847 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:42488 10 6452 1 2025-08-05 18:32:48.546 00:00:10.368 TCP 23.104.0.1:35186 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:33:20.080 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43372 10 6452 1 2025-08-05 18:33:46.353 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-05 18:33:46.238 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-05 18:33:48.972 00:00:10.379 TCP 23.104.0.1:54848 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:34:20.290 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:42866 10 6452 1 2025-08-05 18:34:49.395 00:00:10.369 TCP 23.104.0.1:54208 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:31:06.805 00:05:00.603 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-05 18:35:20.513 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58558 10 6452 1 2025-08-05 18:35:49.808 00:00:10.339 TCP 23.104.0.1:37320 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:36:20.729 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:40238 10 6452 1 2025-08-05 18:36:50.189 00:00:10.367 TCP 23.104.0.1:52110 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:33:06.812 00:05:00.596 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-05 18:37:20.948 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:53352 10 6452 1 2025-08-05 18:37:50.596 00:00:10.326 TCP 23.104.0.1:33850 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:38:21.168 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:34770 10 6452 1 2025-08-05 18:38:46.174 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-05 18:38:46.092 00:00:00.049 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-05 18:38:50.960 00:00:10.377 TCP 23.104.0.1:33448 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:39:21.380 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:60058 10 6452 1 2025-08-05 18:39:51.373 00:00:10.365 TCP 23.104.0.1:58946 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:40:21.596 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:54302 10 6452 1 2025-08-05 18:40:51.777 00:00:10.450 TCP 23.104.0.1:38246 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:37:06.809 00:05:00.602 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-05 18:41:21.821 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:42074 10 6452 1 2025-08-05 18:41:52.267 00:00:10.367 TCP 23.104.0.1:44046 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:42:22.039 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:41154 10 6452 1 2025-08-05 18:42:52.672 00:00:10.374 TCP 23.104.0.1:43230 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:39:06.813 00:05:00.597 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-05 18:43:22.256 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:57968 10 6452 1 2025-08-05 18:43:46.471 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-05 18:43:46.347 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-05 18:43:53.100 00:00:10.362 TCP 23.104.0.1:56852 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:44:22.474 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:33938 10 6452 1 2025-08-05 18:44:53.501 00:00:10.322 TCP 23.104.0.1:46080 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:45:22.683 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:57980 10 6452 1 2025-08-05 18:45:53.872 00:00:10.363 TCP 23.104.0.1:51748 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:46:22.903 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53404 10 6452 1 2025-08-05 18:46:54.276 00:00:10.370 TCP 23.104.0.1:50928 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:43:06.809 00:05:00.605 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-05 18:47:23.115 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:37210 10 6452 1 2025-08-05 18:47:54.680 00:00:10.370 TCP 23.104.0.1:41320 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:48:23.284 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:50908 10 6452 1 2025-08-05 18:48:46.232 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-05 18:48:46.566 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-05 18:48:55.111 00:00:10.325 TCP 23.104.0.1:32896 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:45:06.812 00:05:00.600 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-05 18:49:23.455 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:55028 10 6452 1 2025-08-05 18:49:55.471 00:00:10.639 TCP 23.104.0.1:38762 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:50:23.663 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:40244 10 6452 1 2025-08-05 18:50:56.151 00:00:10.366 TCP 23.104.0.1:37864 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:51:23.876 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:43060 10 6452 1 2025-08-05 18:51:56.557 00:00:10.369 TCP 23.104.0.1:38414 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:52:24.109 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:43818 10 6452 1 2025-08-05 18:52:56.953 00:00:10.364 TCP 23.104.0.1:51068 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:49:06.812 00:05:00.603 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-05 18:53:24.281 00:00:10.205 TCP 1.101.0.1:3000 -> 22.102.0.1:36056 12 10367 1 2025-08-05 18:53:46.968 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-05 18:53:47.069 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-05 18:53:57.355 00:00:10.444 TCP 23.104.0.1:34968 -> 1.101.0.1:3000 15 1926 1 2025-08-05 18:54:24.524 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:50916 10 6452 1 2025-08-05 18:54:57.833 00:00:10.388 TCP 23.104.0.1:53200 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:51:06.816 00:05:00.597 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-05 18:55:24.696 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:33150 10 6452 1 2025-08-05 18:55:58.262 00:00:10.368 TCP 23.104.0.1:60736 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:56:24.910 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:45624 10 6452 1 2025-08-05 18:56:58.669 00:00:10.375 TCP 23.104.0.1:33790 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:57:25.125 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:41276 10 6452 1 2025-08-05 18:57:59.107 00:00:10.363 TCP 23.104.0.1:43272 -> 1.101.0.1:3000 11 1507 1 2025-08-05 18:58:25.340 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:58676 10 6452 1 2025-08-05 18:58:46.459 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-05 18:58:46.443 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 Summary: total flows: 163, total bytes: 505088, total packets: 1569, avg bps: 1057, avg pps: 0, avg bpp: 321 Time window: 2025-08-05 17:55:06 - 2025-08-05 18:58:46 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0023s User: 0.0023s Wall: 0.0026s flows/second: 63273.6 Runtime: 0.0026s