Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-10 15:58:51.680 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:51244 10 6452 1 2025-08-10 15:54:09.192 00:06:00.787 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 15:59:22.865 00:00:10.329 TCP 23.104.0.1:49720 -> 1.101.0.1:3000 11 1507 1 2025-08-10 15:59:51.905 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:47924 10 6452 1 2025-08-10 16:00:23.234 00:00:10.325 TCP 23.104.0.1:55712 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:01:07.326 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 16:00:52.116 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:42652 10 6452 1 2025-08-10 16:01:07.560 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 16:01:23.600 00:00:10.367 TCP 23.104.0.1:59564 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:01:52.291 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:50386 10 6452 1 2025-08-10 16:02:24.003 00:00:10.320 TCP 23.104.0.1:36892 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:02:52.497 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:45930 10 6452 1 2025-08-10 16:03:24.358 00:00:10.323 TCP 23.104.0.1:42088 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:03:52.709 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:40180 10 6452 1 2025-08-10 15:59:09.191 00:06:00.794 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 16:04:24.723 00:00:10.364 TCP 23.104.0.1:51984 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:04:52.935 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:59764 10 6452 1 2025-08-10 16:05:25.126 00:00:10.361 TCP 23.104.0.1:52348 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:05:53.172 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:58694 10 6452 1 2025-08-10 16:06:08.230 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 16:01:09.193 00:06:00.790 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 16:06:08.594 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 16:06:25.527 00:00:10.323 TCP 23.104.0.1:51418 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:06:53.388 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:56142 10 6452 1 2025-08-10 16:07:25.898 00:00:10.324 TCP 23.104.0.1:51568 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:07:53.562 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:35478 10 6452 1 2025-08-10 16:08:26.257 00:00:10.364 TCP 23.104.0.1:45578 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:08:53.783 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:48756 10 6452 1 2025-08-10 16:09:26.664 00:00:10.367 TCP 23.104.0.1:33900 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:09:54.006 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:50210 10 6452 1 2025-08-10 16:10:27.103 00:00:10.359 TCP 23.104.0.1:45466 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:11:07.735 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 16:10:54.219 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:59768 10 6452 1 2025-08-10 16:11:07.737 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 16:06:09.192 00:06:00.796 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 16:11:27.499 00:00:10.315 TCP 23.104.0.1:35740 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:11:54.388 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:33654 10 6452 1 2025-08-10 16:12:27.855 00:00:10.326 TCP 23.104.0.1:52434 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:12:54.599 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:46510 10 6452 1 2025-08-10 16:08:09.194 00:06:00.795 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 16:13:28.219 00:00:10.364 TCP 23.104.0.1:46424 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:13:54.767 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:49360 12 10367 1 2025-08-10 16:14:28.621 00:00:10.401 TCP 23.104.0.1:37264 -> 1.101.0.1:3000 15 1926 1 2025-08-10 16:14:54.982 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:51312 10 6452 1 2025-08-10 16:15:29.091 00:00:10.361 TCP 23.104.0.1:41734 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:15:55.219 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:49894 10 6452 1 2025-08-10 16:16:07.844 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 16:16:07.916 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 16:16:29.499 00:00:10.391 TCP 23.104.0.1:51826 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:16:55.434 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:52824 10 6452 1 2025-08-10 16:17:29.938 00:00:10.347 TCP 23.104.0.1:34448 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:17:55.683 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56026 10 6452 1 2025-08-10 16:13:09.197 00:06:00.792 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 16:18:30.346 00:00:10.362 TCP 23.104.0.1:34866 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:18:55.896 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:58982 10 6452 1 2025-08-10 16:19:30.752 00:00:10.387 TCP 23.104.0.1:51566 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:19:56.107 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:52702 10 6452 1 2025-08-10 16:15:09.204 00:06:00.784 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 16:20:31.174 00:00:10.369 TCP 23.104.0.1:36216 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:20:56.322 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:37392 10 6452 1 2025-08-10 16:21:07.807 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 16:21:07.768 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 16:21:31.584 00:00:10.325 TCP 23.104.0.1:35810 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:21:56.539 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:46954 10 6452 1 2025-08-10 16:22:31.953 00:00:10.371 TCP 23.104.0.1:55056 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:22:56.710 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:57208 10 6452 1 2025-08-10 16:23:32.365 00:00:10.369 TCP 23.104.0.1:32910 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:23:56.919 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:58694 10 6452 1 2025-08-10 16:24:32.776 00:00:10.325 TCP 23.104.0.1:54474 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:24:57.130 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:38224 10 6452 1 2025-08-10 16:20:09.203 00:06:00.789 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 16:25:33.137 00:00:10.325 TCP 23.104.0.1:42958 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:25:57.300 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:40982 10 6452 1 2025-08-10 16:26:08.200 00:00:00.020 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 16:26:08.023 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 16:26:33.503 00:00:10.363 TCP 23.104.0.1:55716 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:22:09.204 00:06:00.785 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 16:26:57.512 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:49846 10 6452 1 2025-08-10 16:27:33.904 00:00:10.368 TCP 23.104.0.1:47784 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:27:57.725 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:55864 10 6452 1 2025-08-10 16:28:34.309 00:00:10.367 TCP 23.104.0.1:40394 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:28:57.940 00:00:10.148 TCP 1.101.0.1:3000 -> 22.102.0.1:59838 10 6452 1 2025-08-10 16:29:34.714 00:00:10.372 TCP 23.104.0.1:55582 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:29:58.132 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:42864 10 6452 1 2025-08-10 16:30:35.126 00:00:10.365 TCP 23.104.0.1:51876 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:30:58.310 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:46408 10 6452 1 2025-08-10 16:31:07.977 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 16:31:08.251 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 16:31:35.531 00:00:10.368 TCP 23.104.0.1:33262 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:31:58.522 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:36314 10 6452 1 2025-08-10 16:27:09.203 00:06:00.791 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 16:32:35.935 00:00:10.378 TCP 23.104.0.1:58822 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:32:58.739 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:35506 10 6452 1 2025-08-10 16:33:36.349 00:00:10.370 TCP 23.104.0.1:59272 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:33:58.914 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:43122 10 6452 1 2025-08-10 16:29:09.206 00:06:00.785 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 16:34:36.756 00:00:10.370 TCP 23.104.0.1:59238 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:34:59.131 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:59850 10 6452 1 2025-08-10 16:35:37.164 00:00:10.360 TCP 23.104.0.1:47010 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:36:08.614 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 16:36:08.617 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 16:35:59.347 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33098 10 6452 1 2025-08-10 16:36:37.560 00:00:10.377 TCP 23.104.0.1:45998 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:36:59.558 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:56884 10 6452 1 2025-08-10 16:37:37.987 00:00:10.319 TCP 23.104.0.1:51228 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:37:59.723 00:00:10.148 TCP 1.101.0.1:3000 -> 22.102.0.1:33074 10 6452 1 2025-08-10 16:38:38.342 00:00:10.365 TCP 23.104.0.1:38372 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:38:59.907 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:36678 10 6452 1 2025-08-10 16:34:09.204 00:06:00.790 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 16:39:38.748 00:00:10.362 TCP 23.104.0.1:45552 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:40:00.084 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:50780 10 6452 1 2025-08-10 16:40:39.150 00:00:10.365 TCP 23.104.0.1:39168 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:41:00.301 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:43246 10 6452 1 2025-08-10 16:41:08.550 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 16:41:08.589 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 16:36:09.208 00:06:00.785 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 16:41:39.555 00:00:10.357 TCP 23.104.0.1:56764 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:42:00.480 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:50500 10 6452 1 2025-08-10 16:42:39.925 00:00:10.391 TCP 23.104.0.1:49134 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:43:00.696 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:42034 10 6452 1 2025-08-10 16:43:40.360 00:00:10.332 TCP 23.104.0.1:44830 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:44:00.906 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:37168 10 6452 1 2025-08-10 16:44:40.729 00:00:10.375 TCP 23.104.0.1:45318 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:45:01.120 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:42560 10 6452 1 2025-08-10 16:45:41.140 00:00:10.330 TCP 23.104.0.1:59108 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:46:08.514 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 16:41:09.208 00:06:00.788 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 16:46:01.299 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:50780 10 6452 1 2025-08-10 16:46:08.374 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 16:46:41.506 00:00:10.377 TCP 23.104.0.1:49736 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:47:01.476 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:43804 10 6452 1 2025-08-10 16:47:41.917 00:00:10.386 TCP 23.104.0.1:44866 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:43:09.209 00:06:00.786 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 16:48:01.702 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:33762 10 6452 1 2025-08-10 16:48:42.343 00:00:10.325 TCP 23.104.0.1:38608 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:49:01.917 00:00:10.150 TCP 1.101.0.1:3000 -> 22.102.0.1:48066 10 6452 1 2025-08-10 16:49:42.705 00:00:10.364 TCP 23.104.0.1:53470 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:50:02.104 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:53172 10 6452 1 2025-08-10 16:50:43.108 00:00:10.318 TCP 23.104.0.1:40738 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:51:08.590 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 16:51:08.469 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 16:51:02.314 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:46050 10 6452 1 2025-08-10 16:51:43.466 00:00:10.369 TCP 23.104.0.1:57660 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:52:02.524 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:41188 10 6452 1 2025-08-10 16:52:43.879 00:00:10.383 TCP 23.104.0.1:55472 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:48:09.207 00:06:00.791 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-10 16:53:02.733 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:52874 10 6452 1 2025-08-10 16:53:44.307 00:00:10.366 TCP 23.104.0.1:49676 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:54:02.943 00:00:10.219 TCP 1.101.0.1:3000 -> 22.102.0.1:52776 10 6452 1 2025-08-10 16:54:44.713 00:00:10.327 TCP 23.104.0.1:33782 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:50:09.210 00:06:00.786 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-10 16:55:03.177 00:00:10.485 TCP 1.101.0.1:3000 -> 22.102.0.1:51480 10 6452 1 2025-08-10 16:55:45.095 00:00:10.359 TCP 23.104.0.1:41216 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:56:08.573 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 16:56:08.645 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 16:56:03.712 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34620 10 6452 1 2025-08-10 16:56:45.491 00:00:10.368 TCP 23.104.0.1:44818 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:57:03.926 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:44026 10 6452 1 2025-08-10 16:57:45.897 00:00:10.377 TCP 23.104.0.1:49790 -> 1.101.0.1:3000 11 1507 1 2025-08-10 16:58:04.145 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:47242 10 6452 1 Summary: total flows: 160, total bytes: 501052, total packets: 1565, avg bps: 1042, avg pps: 0, avg bpp: 320 Time window: 2025-08-10 15:54:09 - 2025-08-10 16:58:14 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0040s User: 0.0008s Wall: 0.0023s flows/second: 69234.4 Runtime: 0.0023s