Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-10 01:58:46.250 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:35156 10 6452 1 2025-08-10 01:59:32.551 00:00:10.324 TCP 23.104.0.1:39820 -> 1.101.0.1:3000 11 1507 1 2025-08-10 01:59:46.465 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:45578 10 6452 1 2025-08-10 01:56:08.909 00:05:00.792 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-10 02:00:32.912 00:00:10.368 TCP 23.104.0.1:51640 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:00:50.812 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 02:00:50.513 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 02:00:46.678 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:56364 10 6452 1 2025-08-10 01:57:08.911 00:05:00.786 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-10 02:01:33.326 00:00:10.515 TCP 23.104.0.1:39222 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:01:46.848 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:54814 10 6452 1 2025-08-10 02:02:33.882 00:00:12.594 TCP 23.104.0.1:49344 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:02:47.030 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:37462 10 6452 1 2025-08-10 02:03:36.565 00:00:10.362 TCP 23.104.0.1:36960 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:03:47.245 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:56312 10 6452 1 2025-08-10 02:04:36.971 00:00:10.385 TCP 23.104.0.1:43074 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:04:47.412 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:58746 10 6452 1 2025-08-10 02:05:50.829 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 02:05:50.876 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 02:05:37.395 00:00:10.325 TCP 23.104.0.1:36998 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:05:47.623 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:46990 10 6452 1 2025-08-10 02:02:08.910 00:05:00.792 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-10 02:06:37.757 00:00:10.387 TCP 23.104.0.1:44742 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:06:47.791 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:59152 10 6452 1 2025-08-10 02:03:08.914 00:05:00.785 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-10 02:07:38.176 00:00:10.389 TCP 23.104.0.1:37740 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:07:48.004 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:39416 10 6452 1 2025-08-10 02:08:38.596 00:00:10.370 TCP 23.104.0.1:32910 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:08:48.247 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:34882 10 6452 1 2025-08-10 02:09:39.006 00:00:10.361 TCP 23.104.0.1:44280 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:09:48.459 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:43758 10 6452 1 2025-08-10 02:10:51.042 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 02:10:51.310 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 02:10:39.402 00:00:10.363 TCP 23.104.0.1:56984 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:10:48.670 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:36272 10 6452 1 2025-08-10 02:11:39.805 00:00:10.373 TCP 23.104.0.1:56968 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:11:48.903 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:38578 10 6452 1 2025-08-10 02:08:08.912 00:05:00.791 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-10 02:12:40.210 00:00:10.327 TCP 23.104.0.1:35876 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:12:49.127 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:38676 10 6452 1 2025-08-10 02:09:08.915 00:05:00.786 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-10 02:13:40.578 00:00:10.365 TCP 23.104.0.1:48206 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:13:49.343 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:34044 10 6452 1 2025-08-10 02:14:40.980 00:00:10.366 TCP 23.104.0.1:33442 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:14:49.551 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:42024 10 6452 1 2025-08-10 02:15:50.944 00:00:00.031 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 02:15:50.941 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 02:15:41.388 00:00:10.364 TCP 23.104.0.1:39254 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:15:49.722 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49032 10 6452 1 2025-08-10 02:16:41.787 00:00:10.320 TCP 23.104.0.1:33860 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:16:49.936 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:56490 10 6452 1 2025-08-10 02:17:42.144 00:00:10.367 TCP 23.104.0.1:39572 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:17:50.172 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:53132 10 6452 1 2025-08-10 02:14:08.924 00:05:00.782 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-10 02:18:42.546 00:00:10.367 TCP 23.104.0.1:34326 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:18:50.343 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:40480 10 6452 1 2025-08-10 02:15:08.926 00:05:00.777 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-10 02:19:42.951 00:00:10.326 TCP 23.104.0.1:41122 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:19:50.564 00:00:10.125 TCP 1.101.0.1:3000 -> 22.102.0.1:45388 10 6452 1 2025-08-10 02:20:51.092 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 02:20:51.210 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 02:20:43.335 00:00:10.329 TCP 23.104.0.1:53124 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:20:50.730 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:34858 10 6452 1 2025-08-10 02:21:43.697 00:00:10.363 TCP 23.104.0.1:45514 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:21:50.938 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:51820 10 6452 1 2025-08-10 02:22:44.104 00:00:10.366 TCP 23.104.0.1:57614 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:22:51.181 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:40614 10 6452 1 2025-08-10 02:23:44.507 00:00:10.327 TCP 23.104.0.1:33744 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:23:51.395 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:35810 10 6452 1 2025-08-10 02:20:08.927 00:05:00.780 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-10 02:24:44.867 00:00:10.369 TCP 23.104.0.1:47602 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:24:51.563 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:43290 10 6452 1 2025-08-10 02:21:08.929 00:05:00.775 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-10 02:25:51.194 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 02:25:51.285 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 02:25:45.275 00:00:10.366 TCP 23.104.0.1:52532 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:25:51.769 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:33668 10 6452 1 2025-08-10 02:26:45.679 00:00:10.371 TCP 23.104.0.1:37734 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:26:51.983 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:57586 10 6452 1 2025-08-10 02:27:46.104 00:00:10.361 TCP 23.104.0.1:59490 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:27:52.215 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:40274 10 6452 1 2025-08-10 02:28:46.498 00:00:10.440 TCP 23.104.0.1:50444 -> 1.101.0.1:3000 15 1926 1 2025-08-10 02:28:52.385 00:00:10.158 TCP 1.101.0.1:3000 -> 22.102.0.1:54136 12 10367 1 2025-08-10 02:29:46.977 00:00:10.365 TCP 23.104.0.1:58340 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:29:52.587 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:58752 10 6452 1 2025-08-10 02:26:08.928 00:05:00.779 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-10 02:30:51.625 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 02:30:51.289 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 02:30:47.382 00:00:10.362 TCP 23.104.0.1:60456 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:30:52.755 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:55466 10 6452 1 2025-08-10 02:27:08.931 00:05:00.775 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-10 02:31:47.786 00:00:10.364 TCP 23.104.0.1:58842 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:31:52.928 00:00:10.162 TCP 1.101.0.1:3000 -> 22.102.0.1:51960 10 6452 1 2025-08-10 02:32:48.191 00:00:10.378 TCP 23.104.0.1:47230 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:32:53.137 00:00:10.157 TCP 1.101.0.1:3000 -> 22.102.0.1:48554 10 6452 1 2025-08-10 02:33:48.620 00:00:10.328 TCP 23.104.0.1:59854 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:33:53.337 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:44442 10 6452 1 2025-08-10 02:34:48.991 00:00:10.370 TCP 23.104.0.1:33904 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:34:53.547 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:58402 10 6452 1 2025-08-10 02:35:51.500 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 02:35:51.262 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 02:35:49.399 00:00:10.363 TCP 23.104.0.1:53656 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:35:53.757 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58218 10 6452 1 2025-08-10 02:32:08.928 00:05:00.781 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-10 02:36:49.802 00:00:10.366 TCP 23.104.0.1:48382 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:36:53.967 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:57790 10 6452 1 2025-08-10 02:33:08.931 00:05:00.776 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-10 02:37:50.204 00:00:10.361 TCP 23.104.0.1:36022 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:37:54.193 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:48052 10 6452 1 2025-08-10 02:38:50.608 00:00:10.366 TCP 23.104.0.1:59418 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:38:54.371 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:56816 10 6452 1 2025-08-10 02:39:51.016 00:00:10.322 TCP 23.104.0.1:46948 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:39:54.545 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:46044 10 6452 1 2025-08-10 02:40:51.544 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 02:40:51.500 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 02:40:51.378 00:00:10.322 TCP 23.104.0.1:43800 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:40:54.763 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:56570 10 6452 1 2025-08-10 02:41:51.739 00:00:10.323 TCP 23.104.0.1:41696 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:41:54.971 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:48428 10 6452 1 2025-08-10 02:38:08.929 00:05:00.780 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-10 02:42:52.118 00:00:10.364 TCP 23.104.0.1:50980 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:42:55.208 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:41514 10 6452 1 2025-08-10 02:39:08.933 00:05:00.776 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-10 02:43:55.422 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:36494 12 10365 1 2025-08-10 02:43:52.519 00:00:10.444 TCP 23.104.0.1:49580 -> 1.101.0.1:3000 15 1926 1 2025-08-10 02:44:53.005 00:00:10.368 TCP 23.104.0.1:51230 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:44:55.660 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:51846 10 6452 1 2025-08-10 02:45:51.780 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 02:45:51.628 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 02:45:55.830 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:36446 10 6452 1 2025-08-10 02:45:53.414 00:00:10.362 TCP 23.104.0.1:58668 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:46:53.811 00:00:10.365 TCP 23.104.0.1:52678 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:46:56.070 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:37872 10 6452 1 2025-08-10 02:47:56.288 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:42420 10 6452 1 2025-08-10 02:47:54.221 00:00:10.365 TCP 23.104.0.1:45658 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:44:08.930 00:05:00.781 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-10 02:48:54.623 00:00:10.366 TCP 23.104.0.1:49800 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:48:56.510 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:58250 10 6452 1 2025-08-10 02:45:08.932 00:05:00.777 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-10 02:49:56.721 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:60016 10 6452 1 2025-08-10 02:49:55.025 00:00:10.368 TCP 23.104.0.1:44566 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:50:51.767 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 02:50:51.872 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 02:50:55.427 00:00:10.363 TCP 23.104.0.1:60082 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:50:56.938 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:47630 10 6452 1 2025-08-10 02:51:55.824 00:00:10.367 TCP 23.104.0.1:47872 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:51:57.175 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:35702 10 6452 1 2025-08-10 02:52:56.229 00:00:10.323 TCP 23.104.0.1:43746 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:52:57.384 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:44202 10 6452 1 2025-08-10 02:53:56.590 00:00:10.364 TCP 23.104.0.1:44912 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:53:57.593 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53046 10 6452 1 2025-08-10 02:50:08.933 00:05:00.795 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-10 02:51:08.936 00:05:00.780 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-10 02:54:56.992 00:00:10.363 TCP 23.104.0.1:54302 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:54:57.806 00:00:10.124 TCP 1.101.0.1:3000 -> 22.102.0.1:52384 10 6452 1 2025-08-10 02:55:51.865 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 02:55:51.968 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 02:55:57.394 00:00:10.361 TCP 23.104.0.1:48346 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:55:57.968 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:59036 10 6452 1 2025-08-10 02:56:58.206 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:51538 10 6452 1 2025-08-10 02:56:57.796 00:00:10.364 TCP 23.104.0.1:57390 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:57:58.201 00:00:10.362 TCP 23.104.0.1:60412 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:57:58.379 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:53520 10 6452 1 Summary: total flows: 163, total bytes: 505507, total packets: 1573, avg bps: 1087, avg pps: 0, avg bpp: 321 Time window: 2025-08-10 01:56:08 - 2025-08-10 02:58:08 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0040s User: 0.0008s Wall: 0.0031s flows/second: 53109.0 Runtime: 0.0031s