Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-10 07:59:04.802 00:00:10.363 TCP 23.104.0.1:41902 -> 1.101.0.1:3000 11 1507 1 2025-08-10 07:59:02.128 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:39370 10 6452 1 2025-08-10 08:00:05.206 00:00:10.360 TCP 23.104.0.1:53152 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:00:02.335 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:36790 10 6452 1 2025-08-10 08:00:57.751 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 08:00:57.878 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 07:56:09.052 00:06:00.776 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 08:01:02.548 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:32856 10 6452 1 2025-08-10 08:01:05.606 00:00:10.366 TCP 23.104.0.1:49394 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:02:06.013 00:00:10.365 TCP 23.104.0.1:33166 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:02:02.784 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:44368 10 6452 1 2025-08-10 08:03:03.022 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:59636 10 6452 1 2025-08-10 07:58:09.056 00:06:00.773 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 08:03:06.416 00:00:10.366 TCP 23.104.0.1:40176 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:04:03.242 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:33816 10 6452 1 2025-08-10 08:04:06.819 00:00:10.419 TCP 23.104.0.1:33534 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:05:03.460 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:37608 10 6452 1 2025-08-10 08:05:07.275 00:00:10.364 TCP 23.104.0.1:44744 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:05:57.809 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 08:05:57.944 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 08:06:03.681 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:47182 10 6452 1 2025-08-10 08:06:07.690 00:00:10.329 TCP 23.104.0.1:46746 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:07:03.893 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:37382 10 6452 1 2025-08-10 08:07:08.059 00:00:10.363 TCP 23.104.0.1:39868 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:03:09.054 00:06:00.779 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 08:08:04.111 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:42414 10 6452 1 2025-08-10 08:08:08.462 00:00:10.366 TCP 23.104.0.1:42782 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:09:04.284 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:52394 10 6452 1 2025-08-10 08:09:08.877 00:00:10.365 TCP 23.104.0.1:33870 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:05:09.057 00:06:00.774 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 08:10:04.500 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:33254 10 6452 1 2025-08-10 08:10:09.281 00:00:10.370 TCP 23.104.0.1:48018 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:10:57.804 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 08:10:57.940 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 08:11:04.708 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:47560 10 6452 1 2025-08-10 08:11:09.690 00:00:10.365 TCP 23.104.0.1:44572 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:12:04.927 00:00:10.211 TCP 1.101.0.1:3000 -> 22.102.0.1:43882 10 6452 1 2025-08-10 08:12:10.101 00:00:10.330 TCP 23.104.0.1:42556 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:13:05.166 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:52696 10 6452 1 2025-08-10 08:13:10.470 00:00:10.362 TCP 23.104.0.1:42494 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:14:05.377 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58234 10 6452 1 2025-08-10 08:14:10.878 00:00:10.374 TCP 23.104.0.1:48248 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:10:09.061 00:06:00.775 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 08:15:05.588 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:52180 10 6452 1 2025-08-10 08:15:11.293 00:00:10.362 TCP 23.104.0.1:37920 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:15:58.177 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 08:15:58.257 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 08:16:05.761 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:47222 10 6452 1 2025-08-10 08:16:11.692 00:00:10.369 TCP 23.104.0.1:56874 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:12:09.063 00:06:00.771 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 08:17:05.979 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:33698 10 6452 1 2025-08-10 08:17:12.104 00:00:10.375 TCP 23.104.0.1:57596 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:18:06.208 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:41696 10 6452 1 2025-08-10 08:18:12.519 00:00:10.358 TCP 23.104.0.1:45052 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:19:06.383 00:00:10.206 TCP 1.101.0.1:3000 -> 22.102.0.1:46868 12 10365 1 2025-08-10 08:19:12.920 00:00:10.468 TCP 23.104.0.1:39490 -> 1.101.0.1:3000 15 1926 1 2025-08-10 08:20:06.623 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:59088 10 6452 1 2025-08-10 08:20:13.428 00:00:10.367 TCP 23.104.0.1:47352 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:20:58.541 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 08:20:58.640 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 08:21:06.833 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:41890 10 6452 1 2025-08-10 08:21:13.832 00:00:10.382 TCP 23.104.0.1:51614 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:17:09.063 00:06:00.774 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 08:22:07.069 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:42714 10 6452 1 2025-08-10 08:22:14.252 00:00:10.360 TCP 23.104.0.1:37706 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:23:07.294 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48836 10 6452 1 2025-08-10 08:23:14.651 00:00:10.361 TCP 23.104.0.1:47782 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:19:09.066 00:06:00.769 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 08:24:07.512 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:40230 10 6452 1 2025-08-10 08:24:15.063 00:00:10.517 TCP 23.104.0.1:54434 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:25:07.681 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:51518 10 6452 1 2025-08-10 08:25:15.617 00:00:10.325 TCP 23.104.0.1:46902 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:25:58.465 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 08:25:58.495 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 08:26:07.853 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:49242 10 6452 1 2025-08-10 08:26:15.982 00:00:10.375 TCP 23.104.0.1:45746 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:27:08.087 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:48152 10 6452 1 2025-08-10 08:27:16.396 00:00:10.366 TCP 23.104.0.1:35790 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:28:08.298 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:42108 10 6452 1 2025-08-10 08:28:16.800 00:00:10.366 TCP 23.104.0.1:36290 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:24:09.064 00:06:00.774 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 08:29:08.518 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:58288 10 6452 1 2025-08-10 08:29:17.204 00:00:10.325 TCP 23.104.0.1:58678 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:30:08.741 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:41026 10 6452 1 2025-08-10 08:30:17.574 00:00:10.324 TCP 23.104.0.1:38832 -> 1.101.0.1:3000 12 1559 1 2025-08-10 08:30:58.584 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 08:30:58.412 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 08:26:09.067 00:06:00.769 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 08:31:08.972 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:41656 10 6452 1 2025-08-10 08:31:17.938 00:00:10.366 TCP 23.104.0.1:44652 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:32:09.206 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:45194 10 6452 1 2025-08-10 08:32:18.341 00:00:10.366 TCP 23.104.0.1:39742 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:33:09.431 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:52350 10 6452 1 2025-08-10 08:33:18.744 00:00:10.368 TCP 23.104.0.1:36488 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:34:09.604 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:50026 10 6452 1 2025-08-10 08:34:19.149 00:00:10.367 TCP 23.104.0.1:41370 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:35:09.775 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:48654 10 6452 1 2025-08-10 08:35:19.559 00:00:10.374 TCP 23.104.0.1:46518 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:35:58.549 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 08:35:58.368 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 08:31:09.065 00:06:00.774 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 08:36:09.995 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:46588 10 6452 1 2025-08-10 08:36:19.971 00:00:10.381 TCP 23.104.0.1:55054 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:37:10.229 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:48874 10 6452 1 2025-08-10 08:37:20.399 00:00:10.374 TCP 23.104.0.1:50442 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:33:09.068 00:06:00.769 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 08:38:10.400 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:48194 10 6452 1 2025-08-10 08:38:20.822 00:00:10.370 TCP 23.104.0.1:41018 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:39:10.576 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:53962 12 10367 1 2025-08-10 08:39:21.234 00:00:10.398 TCP 23.104.0.1:36888 -> 1.101.0.1:3000 15 1926 1 2025-08-10 08:40:10.820 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:36236 10 6452 1 2025-08-10 08:40:21.671 00:00:10.364 TCP 23.104.0.1:46550 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:40:59.060 00:00:00.053 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 08:40:59.245 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 08:41:10.998 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:54514 11 6492 1 2025-08-10 08:41:22.103 00:00:10.369 TCP 23.104.0.1:36124 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:42:11.219 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:45034 10 6452 1 2025-08-10 08:42:22.519 00:00:10.324 TCP 23.104.0.1:42582 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:38:09.068 00:06:00.775 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 08:43:11.437 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:54392 10 6452 1 2025-08-10 08:43:22.880 00:00:10.361 TCP 23.104.0.1:43448 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:44:11.648 00:00:10.665 TCP 1.101.0.1:3000 -> 22.102.0.1:46584 10 6452 1 2025-08-10 08:44:23.280 00:00:10.327 TCP 23.104.0.1:38726 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:40:09.070 00:06:00.773 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 08:45:12.350 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:35484 10 6452 1 2025-08-10 08:45:23.646 00:00:10.369 TCP 23.104.0.1:53548 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:45:58.686 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 08:45:58.716 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 08:46:12.564 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:37634 10 6452 1 2025-08-10 08:46:24.063 00:00:10.366 TCP 23.104.0.1:55880 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:47:12.779 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:35250 10 6452 1 2025-08-10 08:47:24.467 00:00:10.369 TCP 23.104.0.1:52052 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:48:13.010 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:57704 10 6452 1 2025-08-10 08:48:24.874 00:00:10.328 TCP 23.104.0.1:42530 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:49:13.220 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:46420 10 6452 1 2025-08-10 08:49:25.237 00:00:10.323 TCP 23.104.0.1:58782 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:45:09.068 00:06:00.778 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 08:50:13.456 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:44730 10 6452 1 2025-08-10 08:50:25.597 00:00:10.365 TCP 23.104.0.1:46436 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:50:58.952 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 08:50:58.994 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 08:51:13.669 00:00:10.430 TCP 1.101.0.1:3000 -> 22.102.0.1:40520 10 6452 1 2025-08-10 08:51:26.001 00:00:10.324 TCP 23.104.0.1:39520 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:47:09.071 00:06:00.772 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 08:52:14.135 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:60382 10 6452 1 2025-08-10 08:52:26.365 00:00:10.361 TCP 23.104.0.1:34236 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:53:14.305 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:43526 10 6452 1 2025-08-10 08:53:26.767 00:00:10.371 TCP 23.104.0.1:36188 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:54:14.480 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:42824 10 6452 1 2025-08-10 08:54:27.175 00:00:10.359 TCP 23.104.0.1:38034 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:55:14.688 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:54900 10 6452 1 2025-08-10 08:55:27.573 00:00:10.363 TCP 23.104.0.1:51814 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:55:59.018 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 08:55:58.739 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 08:56:14.900 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:49252 10 6452 1 2025-08-10 08:56:27.971 00:00:10.369 TCP 23.104.0.1:35186 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:52:09.069 00:06:00.778 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 08:57:15.113 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:36202 10 6452 1 2025-08-10 08:57:28.380 00:00:10.363 TCP 23.104.0.1:43544 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:58:15.334 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:44160 10 6452 1 2025-08-10 08:58:28.779 00:00:10.366 TCP 23.104.0.1:33260 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 161, total bytes: 506983, total packets: 1584, avg bps: 1081, avg pps: 0, avg bpp: 320 Time window: 2025-08-10 07:56:09 - 2025-08-10 08:58:39 Total flows processed: 161, passed: 161, Blocks skipped: 0, Bytes read: 16808 Sys: 0.0037s User: 0.0007s Wall: 0.0024s flows/second: 66256.2 Runtime: 0.0024s