Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-10 03:59:11.264 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:52918 10 6452 1 2025-08-10 03:59:23.133 00:00:10.367 TCP 23.104.0.1:44640 -> 1.101.0.1:3000 11 1507 1 2025-08-10 03:56:08.956 00:05:00.784 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-10 04:00:11.480 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:54496 10 6452 1 2025-08-10 04:00:23.535 00:00:10.321 TCP 23.104.0.1:41754 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:00:52.944 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 04:00:53.047 00:00:00.048 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 03:57:08.961 00:05:00.778 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-10 04:01:11.690 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:60298 10 6452 1 2025-08-10 04:01:23.895 00:00:10.387 TCP 23.104.0.1:42324 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:02:11.861 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:58208 10 6452 1 2025-08-10 04:02:24.333 00:00:10.489 TCP 23.104.0.1:41938 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:03:12.085 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:58080 10 6452 1 2025-08-10 04:03:24.858 00:00:10.373 TCP 23.104.0.1:54246 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:04:12.294 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:59848 10 6452 1 2025-08-10 04:04:25.270 00:00:10.324 TCP 23.104.0.1:37668 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:05:12.515 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:44006 10 6452 1 2025-08-10 04:05:25.634 00:00:10.364 TCP 23.104.0.1:36732 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:05:53.328 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 04:05:53.053 00:00:00.041 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 04:02:08.959 00:05:00.783 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-10 04:06:12.725 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:48694 10 6452 1 2025-08-10 04:06:26.032 00:00:10.327 TCP 23.104.0.1:50328 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:03:08.961 00:05:00.779 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-10 04:07:12.937 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:37022 10 6452 1 2025-08-10 04:07:26.394 00:00:10.369 TCP 23.104.0.1:50124 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:08:13.168 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:60746 10 6452 1 2025-08-10 04:08:26.803 00:00:10.368 TCP 23.104.0.1:37734 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:09:13.401 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:44430 10 6452 1 2025-08-10 04:09:27.210 00:00:10.367 TCP 23.104.0.1:36644 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:10:13.619 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:57500 10 6452 1 2025-08-10 04:10:27.621 00:00:10.327 TCP 23.104.0.1:43470 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:10:53.331 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 04:10:53.336 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 04:11:13.830 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:49858 10 6452 1 2025-08-10 04:11:27.984 00:00:10.366 TCP 23.104.0.1:52992 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:08:08.962 00:05:00.784 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-10 04:12:14.041 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:47298 10 6452 1 2025-08-10 04:12:28.391 00:00:10.365 TCP 23.104.0.1:37794 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:09:08.964 00:05:00.779 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-10 04:13:14.213 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:56068 10 6452 1 2025-08-10 04:13:28.802 00:00:10.338 TCP 23.104.0.1:39814 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:14:14.429 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58302 10 6452 1 2025-08-10 04:14:29.182 00:00:10.364 TCP 23.104.0.1:35128 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:15:14.645 00:00:10.147 TCP 1.101.0.1:3000 -> 22.102.0.1:44054 10 6452 1 2025-08-10 04:15:29.586 00:00:10.369 TCP 23.104.0.1:35684 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:15:53.641 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 04:15:53.527 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 04:16:14.840 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:38138 10 6452 1 2025-08-10 04:16:29.993 00:00:10.361 TCP 23.104.0.1:39896 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:17:15.081 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:38652 10 6452 1 2025-08-10 04:17:30.395 00:00:10.322 TCP 23.104.0.1:49304 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:14:08.965 00:05:00.783 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-10 04:18:15.295 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:46642 10 6452 1 2025-08-10 04:18:30.763 00:00:10.332 TCP 23.104.0.1:52364 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:15:08.967 00:05:00.781 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-10 04:19:15.467 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36720 10 6452 1 2025-08-10 04:19:31.131 00:00:10.371 TCP 23.104.0.1:51882 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:20:15.683 00:00:10.507 TCP 1.101.0.1:3000 -> 22.102.0.1:39642 10 6452 1 2025-08-10 04:20:31.543 00:00:10.368 TCP 23.104.0.1:38866 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:20:53.618 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 04:20:53.876 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 04:21:16.231 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:49654 10 6452 1 2025-08-10 04:21:31.950 00:00:10.373 TCP 23.104.0.1:34284 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:22:16.462 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:58366 10 6452 1 2025-08-10 04:22:32.363 00:00:10.360 TCP 23.104.0.1:48182 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:23:16.675 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:55556 10 6452 1 2025-08-10 04:23:32.763 00:00:10.338 TCP 23.104.0.1:33386 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:20:08.967 00:05:00.785 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-10 04:24:16.850 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:48970 10 6452 1 2025-08-10 04:24:33.146 00:00:10.386 TCP 23.104.0.1:36600 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:21:08.969 00:05:00.780 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-10 04:25:17.081 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54228 10 6452 1 2025-08-10 04:25:33.570 00:00:10.367 TCP 23.104.0.1:57778 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:25:53.710 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 04:25:53.717 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 04:26:17.305 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:56996 10 6452 1 2025-08-10 04:26:33.977 00:00:10.373 TCP 23.104.0.1:50490 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:27:17.479 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:45536 10 6452 1 2025-08-10 04:27:34.385 00:00:10.370 TCP 23.104.0.1:39590 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:28:17.654 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:35450 10 6452 1 2025-08-10 04:28:34.790 00:00:10.363 TCP 23.104.0.1:36588 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:29:17.872 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:34462 10 6452 1 2025-08-10 04:29:35.192 00:00:10.346 TCP 23.104.0.1:59998 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:26:08.970 00:05:00.785 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-10 04:30:18.064 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:42000 10 6452 1 2025-08-10 04:30:35.589 00:00:10.368 TCP 23.104.0.1:44302 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:30:54.049 00:00:00.049 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 04:30:53.911 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 04:27:08.971 00:05:00.781 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-10 04:31:18.232 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45470 10 6452 1 2025-08-10 04:31:35.997 00:00:10.366 TCP 23.104.0.1:53694 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:32:18.444 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:46334 10 6452 1 2025-08-10 04:32:36.401 00:00:10.366 TCP 23.104.0.1:42888 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:33:18.655 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:43018 10 6452 1 2025-08-10 04:33:36.802 00:00:10.374 TCP 23.104.0.1:45824 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:34:18.870 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:34104 10 6452 1 2025-08-10 04:34:37.209 00:00:10.365 TCP 23.104.0.1:41594 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:35:19.064 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:54806 10 6452 1 2025-08-10 04:35:37.610 00:00:10.369 TCP 23.104.0.1:50424 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:35:53.693 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 04:35:53.773 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 04:32:08.971 00:05:00.784 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-10 04:36:19.286 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:58732 10 6452 1 2025-08-10 04:36:38.014 00:00:10.366 TCP 23.104.0.1:48428 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:33:08.974 00:05:00.778 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-10 04:37:19.456 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:58970 10 6452 1 2025-08-10 04:37:38.416 00:00:10.363 TCP 23.104.0.1:58740 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:38:19.628 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:33472 10 6452 1 2025-08-10 04:38:38.817 00:00:10.363 TCP 23.104.0.1:41770 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:39:19.800 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:56256 10 6452 1 2025-08-10 04:39:39.218 00:00:10.322 TCP 23.104.0.1:36028 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:40:20.039 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:39862 10 6452 1 2025-08-10 04:40:39.580 00:00:10.364 TCP 23.104.0.1:59542 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:40:54.080 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 04:40:54.257 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 04:41:20.254 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:34688 10 6452 1 2025-08-10 04:41:39.989 00:00:10.331 TCP 23.104.0.1:36094 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:38:08.972 00:05:00.784 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-10 04:42:20.425 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:41692 10 6452 1 2025-08-10 04:42:40.359 00:00:10.364 TCP 23.104.0.1:40408 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:39:08.976 00:05:00.781 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-10 04:43:20.639 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:52412 10 6452 1 2025-08-10 04:43:40.767 00:00:10.386 TCP 23.104.0.1:51612 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:44:20.850 00:00:10.380 TCP 1.101.0.1:3000 -> 22.102.0.1:45878 10 6452 1 2025-08-10 04:44:41.198 00:00:10.362 TCP 23.104.0.1:38202 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:45:21.270 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:44900 10 6452 1 2025-08-10 04:45:41.593 00:00:10.369 TCP 23.104.0.1:57566 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:45:54.109 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 04:45:53.885 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 04:46:21.445 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:33840 10 6452 1 2025-08-10 04:46:42.006 00:00:10.367 TCP 23.104.0.1:35530 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:47:21.653 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:33952 10 6452 1 2025-08-10 04:47:42.413 00:00:10.327 TCP 23.104.0.1:35202 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:44:08.974 00:05:00.785 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-10 04:48:21.865 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:44042 10 6452 1 2025-08-10 04:48:42.772 00:00:10.368 TCP 23.104.0.1:39374 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:45:08.976 00:05:00.780 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-10 04:49:22.079 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:47380 10 6452 1 2025-08-10 04:49:43.179 00:00:10.366 TCP 23.104.0.1:46698 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:50:22.258 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:43078 10 6452 1 2025-08-10 04:50:53.925 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 04:50:53.907 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 04:50:43.585 00:00:10.324 TCP 23.104.0.1:60492 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:51:22.429 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:47520 10 6452 1 2025-08-10 04:51:43.941 00:00:10.376 TCP 23.104.0.1:60676 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:52:22.646 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:56734 10 6452 1 2025-08-10 04:52:44.353 00:00:10.366 TCP 23.104.0.1:56570 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:53:22.867 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:42930 10 6452 1 2025-08-10 04:53:44.754 00:00:10.389 TCP 23.104.0.1:40616 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:50:08.975 00:05:00.786 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-10 04:54:23.091 00:00:10.205 TCP 1.101.0.1:3000 -> 22.102.0.1:42696 12 10367 1 2025-08-10 04:54:45.182 00:00:10.438 TCP 23.104.0.1:38696 -> 1.101.0.1:3000 15 1926 1 2025-08-10 04:51:08.977 00:05:00.781 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-10 04:55:23.337 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:49546 10 6452 1 2025-08-10 04:55:45.661 00:00:10.370 TCP 23.104.0.1:59200 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:55:54.467 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 04:55:54.146 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 04:56:23.551 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:57718 10 6452 1 2025-08-10 04:56:46.094 00:00:10.369 TCP 23.104.0.1:36978 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:57:23.720 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:56690 10 6452 1 2025-08-10 04:57:46.502 00:00:10.373 TCP 23.104.0.1:37678 -> 1.101.0.1:3000 11 1507 1 2025-08-10 04:58:23.893 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:51436 10 6452 1 Summary: total flows: 163, total bytes: 501175, total packets: 1567, avg bps: 1070, avg pps: 0, avg bpp: 319 Time window: 2025-08-10 03:56:08 - 2025-08-10 04:58:34 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0018s User: 0.0018s Wall: 0.0023s flows/second: 69926.5 Runtime: 0.0023s