Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-10 11:58:52.820 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:37328 10 6452 1 2025-08-10 11:54:09.128 00:06:00.770 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 11:59:41.912 00:00:10.323 TCP 23.104.0.1:50044 -> 1.101.0.1:3000 11 1507 1 2025-08-10 11:59:53.089 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:41006 10 6452 1 2025-08-10 12:00:42.271 00:00:10.365 TCP 23.104.0.1:45342 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:00:53.260 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:51534 10 6452 1 2025-08-10 12:01:02.729 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 12:01:02.720 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 11:56:09.131 00:06:00.765 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 12:01:42.679 00:00:10.332 TCP 23.104.0.1:54816 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:01:53.451 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:54046 10 6452 1 2025-08-10 12:02:43.057 00:00:10.368 TCP 23.104.0.1:60078 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:02:53.665 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:44672 10 6452 1 2025-08-10 12:03:43.465 00:00:10.365 TCP 23.104.0.1:54140 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:03:53.878 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:55806 10 6452 1 2025-08-10 12:04:43.873 00:00:10.373 TCP 23.104.0.1:56904 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:04:54.098 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:44462 10 6452 1 2025-08-10 12:05:44.288 00:00:10.364 TCP 23.104.0.1:33438 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:06:02.905 00:00:00.011 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 12:06:02.698 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 12:05:54.270 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:38460 10 6452 1 2025-08-10 12:01:09.134 00:06:00.768 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 12:06:44.689 00:00:10.372 TCP 23.104.0.1:37408 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:06:54.483 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:54592 10 6452 1 2025-08-10 12:07:45.101 00:00:10.368 TCP 23.104.0.1:33572 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:07:54.695 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:40868 10 6452 1 2025-08-10 12:03:09.135 00:06:00.765 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 12:08:45.510 00:00:10.319 TCP 23.104.0.1:49958 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:08:54.905 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:55584 10 6452 1 2025-08-10 12:09:45.868 00:00:10.372 TCP 23.104.0.1:48836 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:09:55.125 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:35802 10 6452 1 2025-08-10 12:10:46.293 00:00:10.367 TCP 23.104.0.1:51244 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:11:02.792 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 12:10:55.338 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:36476 10 6452 1 2025-08-10 12:11:02.827 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 12:11:46.699 00:00:10.368 TCP 23.104.0.1:40206 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:11:55.551 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:57956 10 6452 1 2025-08-10 12:12:47.107 00:00:10.368 TCP 23.104.0.1:49190 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:12:55.770 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:47902 10 6452 1 2025-08-10 12:08:09.134 00:06:00.770 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 12:13:47.517 00:00:10.366 TCP 23.104.0.1:37216 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:13:55.987 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:36190 10 6452 1 2025-08-10 12:14:47.924 00:00:10.436 TCP 23.104.0.1:49062 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:14:56.208 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:36036 10 6452 1 2025-08-10 12:10:09.137 00:06:00.766 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 12:15:48.405 00:00:10.379 TCP 23.104.0.1:35910 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:16:03.023 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 12:16:02.909 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 12:15:56.384 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:53884 10 6452 1 2025-08-10 12:16:48.815 00:00:10.378 TCP 23.104.0.1:47730 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:16:56.554 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:58556 10 6452 1 2025-08-10 12:17:49.225 00:00:10.361 TCP 23.104.0.1:57998 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:17:56.770 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:56940 10 6452 1 2025-08-10 12:18:49.627 00:00:10.443 TCP 23.104.0.1:50390 -> 1.101.0.1:3000 15 1926 1 2025-08-10 12:18:56.984 00:00:10.214 TCP 1.101.0.1:3000 -> 22.102.0.1:44410 12 10367 1 2025-08-10 12:19:50.133 00:00:10.329 TCP 23.104.0.1:55440 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:15:09.138 00:06:00.769 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 12:19:57.239 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:58092 10 6452 1 2025-08-10 12:20:50.501 00:00:10.330 TCP 23.104.0.1:60424 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:21:03.049 00:00:00.033 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 12:21:03.182 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 12:20:57.407 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:36670 10 6452 1 2025-08-10 12:21:50.863 00:00:10.370 TCP 23.104.0.1:55388 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:17:09.140 00:06:00.765 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 12:21:57.591 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:51040 10 6452 1 2025-08-10 12:22:51.271 00:00:10.363 TCP 23.104.0.1:49186 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:22:57.762 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:57398 10 6452 1 2025-08-10 12:23:51.682 00:00:10.366 TCP 23.104.0.1:39016 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:23:57.981 00:00:10.153 TCP 1.101.0.1:3000 -> 22.102.0.1:40306 10 6452 1 2025-08-10 12:24:52.103 00:00:10.365 TCP 23.104.0.1:34780 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:24:58.178 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:34298 10 6452 1 2025-08-10 12:26:03.741 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 12:26:03.975 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 12:25:52.510 00:00:10.329 TCP 23.104.0.1:33864 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:25:58.391 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:50604 10 6452 1 2025-08-10 12:26:52.876 00:00:10.365 TCP 23.104.0.1:55436 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:26:58.563 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:33612 10 6452 1 2025-08-10 12:22:09.138 00:06:00.770 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 12:27:53.295 00:00:10.365 TCP 23.104.0.1:51512 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:27:58.771 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:51264 10 6452 1 2025-08-10 12:28:53.691 00:00:10.403 TCP 23.104.0.1:43256 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:24:09.140 00:06:00.765 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 12:28:58.984 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:39586 10 6452 1 2025-08-10 12:29:54.132 00:00:10.329 TCP 23.104.0.1:35524 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:29:59.213 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:37006 10 6452 1 2025-08-10 12:31:03.333 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 12:30:54.499 00:00:10.317 TCP 23.104.0.1:51238 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:31:03.049 00:00:00.045 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 12:30:59.429 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:57372 10 6452 1 2025-08-10 12:31:54.857 00:00:10.375 TCP 23.104.0.1:55472 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:31:59.644 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:59144 10 6452 1 2025-08-10 12:32:55.269 00:00:11.506 TCP 23.104.0.1:51650 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:32:59.814 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:46792 10 6452 1 2025-08-10 12:34:00.040 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:54526 10 6452 1 2025-08-10 12:29:09.138 00:06:00.772 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 12:33:56.812 00:00:10.332 TCP 23.104.0.1:51862 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:35:00.211 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:37748 10 6452 1 2025-08-10 12:34:57.182 00:00:10.363 TCP 23.104.0.1:49050 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:36:03.408 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 12:36:00.422 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:42894 10 6452 1 2025-08-10 12:36:03.525 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 12:31:09.141 00:06:00.767 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 12:35:57.584 00:00:10.365 TCP 23.104.0.1:60138 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:36:57.991 00:00:10.366 TCP 23.104.0.1:57426 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:37:00.632 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:50518 10 6452 1 2025-08-10 12:37:58.394 00:00:10.363 TCP 23.104.0.1:50292 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:38:00.842 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:35874 10 6452 1 2025-08-10 12:38:58.797 00:00:10.413 TCP 23.104.0.1:57986 -> 1.101.0.1:3000 15 1926 1 2025-08-10 12:39:01.081 00:00:10.206 TCP 1.101.0.1:3000 -> 22.102.0.1:55874 12 10367 1 2025-08-10 12:40:01.326 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:60228 12 6556 1 2025-08-10 12:39:59.250 00:00:10.368 TCP 23.104.0.1:60918 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:41:03.603 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 12:41:01.542 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:51370 10 6452 1 2025-08-10 12:36:09.141 00:06:00.773 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 12:41:03.508 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 12:40:59.656 00:00:10.371 TCP 23.104.0.1:33914 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:42:00.094 00:00:10.370 TCP 23.104.0.1:54432 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:42:01.769 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:47928 10 6452 1 2025-08-10 12:43:00.500 00:00:10.370 TCP 23.104.0.1:34418 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:38:09.143 00:06:00.768 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 12:43:01.940 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:35384 10 6452 1 2025-08-10 12:44:00.916 00:00:10.391 TCP 23.104.0.1:54206 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:44:02.172 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:41662 10 6452 1 2025-08-10 12:45:01.348 00:00:10.328 TCP 23.104.0.1:57026 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:45:02.361 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:36628 10 6452 1 2025-08-10 12:46:03.611 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 12:46:03.603 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 12:46:02.536 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:60188 10 6452 1 2025-08-10 12:46:01.723 00:00:10.327 TCP 23.104.0.1:38336 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:47:02.106 00:00:10.364 TCP 23.104.0.1:35970 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:47:02.761 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:42008 10 6452 1 2025-08-10 12:48:02.513 00:00:10.329 TCP 23.104.0.1:35368 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:43:09.139 00:06:00.775 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 12:48:02.984 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:57588 10 6452 1 2025-08-10 12:49:02.876 00:00:10.347 TCP 23.104.0.1:56336 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:49:03.217 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:49660 10 6452 1 2025-08-10 12:45:09.143 00:06:00.769 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 12:50:03.261 00:00:10.359 TCP 23.104.0.1:57512 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:50:03.426 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:40806 10 6452 1 2025-08-10 12:51:03.863 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 12:51:03.748 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 12:51:03.658 00:00:10.319 TCP 23.104.0.1:59788 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:51:03.633 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:42506 10 6452 1 2025-08-10 12:52:03.841 00:00:10.406 TCP 1.101.0.1:3000 -> 22.102.0.1:45246 10 6452 1 2025-08-10 12:52:04.018 00:00:10.371 TCP 23.104.0.1:54728 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:53:04.285 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:54590 10 6452 1 2025-08-10 12:53:04.427 00:00:10.365 TCP 23.104.0.1:44286 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:54:04.496 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:52738 10 6452 1 2025-08-10 12:54:04.830 00:00:10.393 TCP 23.104.0.1:35282 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:50:09.143 00:06:00.776 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 12:55:04.735 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:57420 10 6452 1 2025-08-10 12:55:05.258 00:00:10.367 TCP 23.104.0.1:55728 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:56:03.875 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 12:56:03.866 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 12:56:04.946 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:56984 10 6452 1 2025-08-10 12:56:05.671 00:00:10.364 TCP 23.104.0.1:39068 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:52:09.144 00:06:00.772 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 12:57:05.174 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:54478 10 6452 1 2025-08-10 12:57:06.099 00:00:10.364 TCP 23.104.0.1:46382 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:58:06.505 00:00:10.332 TCP 23.104.0.1:52566 -> 1.101.0.1:3000 11 1507 1 2025-08-10 12:58:05.348 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43320 10 6452 1 Summary: total flows: 161, total bytes: 506351, total packets: 1587, avg bps: 1052, avg pps: 0, avg bpp: 319 Time window: 2025-08-10 11:54:09 - 2025-08-10 12:58:16 Total flows processed: 161, passed: 161, Blocks skipped: 0, Bytes read: 16808 Sys: 0.0049s User: 0.0000s Wall: 0.0020s flows/second: 79193.5 Runtime: 0.0021s