Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-10 08:54:09.073 00:06:00.772 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 08:59:15.565 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:53632 10 6452 1 2025-08-10 08:59:29.185 00:00:10.378 TCP 23.104.0.1:35282 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:00:15.776 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:53932 10 6452 1 2025-08-10 09:00:29.615 00:00:10.367 TCP 23.104.0.1:37198 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:00:59.016 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 09:00:59.016 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 09:01:15.947 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:41328 10 6452 1 2025-08-10 09:01:30.020 00:00:10.367 TCP 23.104.0.1:43046 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:02:16.182 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:40772 10 6452 1 2025-08-10 09:02:30.427 00:00:10.366 TCP 23.104.0.1:43384 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:03:16.360 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:47388 10 6452 1 2025-08-10 09:03:30.832 00:00:10.388 TCP 23.104.0.1:54618 -> 1.101.0.1:3000 11 1507 1 2025-08-10 08:59:09.077 00:06:00.771 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 09:04:16.537 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:59474 10 6452 1 2025-08-10 09:04:31.258 00:00:10.366 TCP 23.104.0.1:44082 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:05:16.747 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:53590 10 6452 1 2025-08-10 09:05:31.665 00:00:10.361 TCP 23.104.0.1:58360 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:05:59.314 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 09:05:59.302 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 09:01:09.081 00:06:00.767 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 09:06:16.963 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:50722 10 6452 1 2025-08-10 09:06:32.092 00:00:10.365 TCP 23.104.0.1:57716 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:07:17.185 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:33400 10 6452 1 2025-08-10 09:07:32.491 00:00:10.370 TCP 23.104.0.1:51902 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:08:17.355 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:58618 10 6452 1 2025-08-10 09:08:32.902 00:00:10.363 TCP 23.104.0.1:39904 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:09:17.566 00:00:10.233 TCP 1.101.0.1:3000 -> 22.102.0.1:33160 14 14280 1 2025-08-10 09:09:33.306 00:00:10.513 TCP 23.104.0.1:60544 -> 1.101.0.1:3000 17 2241 1 2025-08-10 09:10:17.844 00:00:10.155 TCP 1.101.0.1:3000 -> 22.102.0.1:34916 10 6452 1 2025-08-10 09:10:33.856 00:00:10.371 TCP 23.104.0.1:58004 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:10:59.338 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 09:10:59.318 00:00:00.027 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 09:06:09.079 00:06:00.771 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 09:11:18.032 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:59306 10 6452 1 2025-08-10 09:11:34.264 00:00:10.327 TCP 23.104.0.1:60898 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:12:18.245 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:41350 10 6452 1 2025-08-10 09:12:34.629 00:00:10.362 TCP 23.104.0.1:49282 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:08:09.082 00:06:00.766 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 09:13:18.460 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:38970 10 6452 1 2025-08-10 09:13:35.032 00:00:10.319 TCP 23.104.0.1:37878 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:14:18.672 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:42944 10 6452 1 2025-08-10 09:14:35.392 00:00:10.370 TCP 23.104.0.1:44864 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:15:18.850 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:54114 10 6452 1 2025-08-10 09:15:35.803 00:00:10.365 TCP 23.104.0.1:38748 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:15:59.242 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 09:15:59.276 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 09:16:19.031 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:47452 10 6452 1 2025-08-10 09:16:36.209 00:00:10.362 TCP 23.104.0.1:35550 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:17:19.270 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:38138 10 6452 1 2025-08-10 09:17:36.612 00:00:10.370 TCP 23.104.0.1:42350 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:13:09.081 00:06:00.771 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 09:18:19.484 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:50544 10 6452 1 2025-08-10 09:18:37.022 00:00:10.371 TCP 23.104.0.1:58256 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:19:19.693 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:33020 10 6452 1 2025-08-10 09:19:37.433 00:00:10.323 TCP 23.104.0.1:42426 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:15:09.086 00:06:00.764 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 09:20:19.909 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:52456 10 6452 1 2025-08-10 09:20:37.796 00:00:10.380 TCP 23.104.0.1:46540 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:20:59.296 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 09:20:59.401 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 09:21:20.130 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:51342 10 6452 1 2025-08-10 09:21:38.218 00:00:10.361 TCP 23.104.0.1:60666 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:22:20.347 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:38904 10 6452 1 2025-08-10 09:22:38.615 00:00:10.362 TCP 23.104.0.1:40602 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:23:20.565 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53260 10 6452 1 2025-08-10 09:23:39.015 00:00:10.369 TCP 23.104.0.1:50726 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:24:20.779 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:36978 10 6452 1 2025-08-10 09:24:39.423 00:00:10.370 TCP 23.104.0.1:43404 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:20:09.083 00:06:00.769 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 09:25:20.987 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:38158 10 6452 1 2025-08-10 09:25:39.839 00:00:10.386 TCP 23.104.0.1:60424 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:25:59.486 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 09:25:59.500 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 09:26:21.224 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:44592 10 6452 1 2025-08-10 09:26:40.263 00:00:10.325 TCP 23.104.0.1:60850 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:22:09.086 00:06:00.765 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 09:27:21.436 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:55030 10 6452 1 2025-08-10 09:27:40.630 00:00:10.365 TCP 23.104.0.1:38404 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:28:21.608 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:57122 10 6452 1 2025-08-10 09:28:41.035 00:00:10.368 TCP 23.104.0.1:49772 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:29:21.779 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:36338 10 6452 1 2025-08-10 09:29:41.440 00:00:10.364 TCP 23.104.0.1:51582 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:30:21.994 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:51560 10 6452 1 2025-08-10 09:30:41.842 00:00:10.383 TCP 23.104.0.1:42848 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:30:59.886 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 09:30:59.785 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 09:31:22.211 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:57120 10 6452 1 2025-08-10 09:31:42.262 00:00:10.370 TCP 23.104.0.1:60286 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:27:09.084 00:06:00.771 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 09:32:22.440 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:53678 10 6452 1 2025-08-10 09:32:42.665 00:00:10.388 TCP 23.104.0.1:39310 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:33:22.611 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:35956 10 6452 1 2025-08-10 09:33:43.108 00:00:10.367 TCP 23.104.0.1:41340 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:29:09.087 00:06:00.765 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 09:34:22.823 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:55966 10 6452 1 2025-08-10 09:34:43.515 00:00:10.364 TCP 23.104.0.1:53408 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:35:23.044 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:58070 10 6452 1 2025-08-10 09:35:43.923 00:00:10.387 TCP 23.104.0.1:36774 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:36:00.526 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 09:36:00.398 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 09:36:23.252 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:53678 10 6452 1 2025-08-10 09:36:44.350 00:00:10.320 TCP 23.104.0.1:51554 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:37:23.424 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:40650 10 6452 1 2025-08-10 09:37:44.710 00:00:10.325 TCP 23.104.0.1:54266 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:38:23.640 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:58772 10 6452 1 2025-08-10 09:38:45.093 00:00:10.365 TCP 23.104.0.1:52868 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:34:09.085 00:06:00.771 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 09:39:23.820 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:34370 10 6452 1 2025-08-10 09:39:45.495 00:00:10.365 TCP 23.104.0.1:57588 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:40:24.034 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:44484 10 6452 1 2025-08-10 09:40:45.898 00:00:10.329 TCP 23.104.0.1:51706 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:41:00.092 00:00:00.039 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 09:40:59.852 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 09:36:09.088 00:06:00.766 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 09:41:24.205 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:49776 10 6452 1 2025-08-10 09:41:46.264 00:00:10.363 TCP 23.104.0.1:44320 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:42:24.417 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:55080 10 6452 1 2025-08-10 09:42:46.668 00:00:10.367 TCP 23.104.0.1:53688 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:43:24.634 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:46664 10 6452 1 2025-08-10 09:43:47.097 00:00:10.359 TCP 23.104.0.1:41558 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:44:24.848 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:36028 10 6452 1 2025-08-10 09:44:47.499 00:00:10.366 TCP 23.104.0.1:52484 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:45:25.084 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:49134 10 6452 1 2025-08-10 09:45:59.748 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 09:45:47.903 00:00:10.368 TCP 23.104.0.1:55766 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:46:00.050 00:00:00.030 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 09:41:09.086 00:06:00.772 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 09:46:25.298 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:54178 10 6452 1 2025-08-10 09:46:48.310 00:00:10.403 TCP 23.104.0.1:42214 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:47:25.472 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:33114 10 6452 1 2025-08-10 09:47:48.749 00:00:10.329 TCP 23.104.0.1:49368 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:43:09.089 00:06:00.767 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 09:48:25.643 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:50040 10 6452 1 2025-08-10 09:48:49.113 00:00:10.324 TCP 23.104.0.1:48914 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:49:25.815 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:51624 10 6452 1 2025-08-10 09:49:49.475 00:00:10.367 TCP 23.104.0.1:40294 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:50:26.034 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:56060 10 6452 1 2025-08-10 09:51:00.190 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 09:50:49.882 00:00:10.384 TCP 23.104.0.1:51090 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:50:59.884 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 09:51:26.243 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:37258 10 6452 1 2025-08-10 09:51:50.316 00:00:10.364 TCP 23.104.0.1:53434 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:52:26.455 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:46154 10 6452 1 2025-08-10 09:52:50.720 00:00:10.374 TCP 23.104.0.1:59462 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:48:09.087 00:06:00.772 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 09:53:26.679 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:58982 10 6452 1 2025-08-10 09:53:51.137 00:00:10.370 TCP 23.104.0.1:40052 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:54:26.886 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:57912 10 6452 1 2025-08-10 09:54:51.539 00:00:10.361 TCP 23.104.0.1:34720 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:50:09.089 00:06:00.768 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 09:55:27.114 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:34908 10 6452 1 2025-08-10 09:56:00.129 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 09:56:00.285 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 09:55:51.940 00:00:10.377 TCP 23.104.0.1:56648 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:56:27.350 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:37332 10 6452 1 2025-08-10 09:56:52.354 00:00:10.365 TCP 23.104.0.1:51218 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:57:27.581 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:54688 10 6452 1 2025-08-10 09:57:52.760 00:00:10.378 TCP 23.104.0.1:56656 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:58:27.795 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:53198 10 6452 1 Summary: total flows: 160, total bytes: 505280, total packets: 1569, avg bps: 1044, avg pps: 0, avg bpp: 322 Time window: 2025-08-10 08:54:09 - 2025-08-10 09:58:37 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0048s User: 0.0000s Wall: 0.0021s flows/second: 76774.8 Runtime: 0.0021s