Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-10 18:55:09.267 00:05:00.796 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-10 18:59:30.772 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:50878 10 6452 1 2025-08-10 18:59:35.357 00:00:10.370 TCP 23.104.0.1:37722 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:00:30.988 00:00:10.147 TCP 1.101.0.1:3000 -> 22.102.0.1:53854 10 6452 1 2025-08-10 19:00:35.758 00:00:10.380 TCP 23.104.0.1:48308 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:01:11.285 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 19:01:11.070 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 18:57:09.270 00:05:00.790 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-10 19:01:31.172 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:44364 10 6452 1 2025-08-10 19:01:36.178 00:00:10.365 TCP 23.104.0.1:47760 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:02:31.384 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:40720 10 6452 1 2025-08-10 19:02:36.576 00:00:10.362 TCP 23.104.0.1:58646 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:03:31.598 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:53266 10 6452 1 2025-08-10 19:03:36.974 00:00:10.377 TCP 23.104.0.1:49866 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:04:31.804 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:55166 10 6452 1 2025-08-10 19:04:37.395 00:00:10.364 TCP 23.104.0.1:34492 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:01:09.270 00:05:00.794 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-10 19:05:32.028 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:56598 10 6452 1 2025-08-10 19:05:37.797 00:00:10.368 TCP 23.104.0.1:43738 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:06:11.585 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 19:06:11.311 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 19:06:32.251 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:36686 10 6452 1 2025-08-10 19:06:38.196 00:00:10.367 TCP 23.104.0.1:33812 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:03:09.274 00:05:00.790 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-10 19:07:32.430 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:56628 10 6452 1 2025-08-10 19:07:38.599 00:00:10.365 TCP 23.104.0.1:58034 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:08:32.645 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:59310 10 6452 1 2025-08-10 19:08:39.002 00:00:10.359 TCP 23.104.0.1:59998 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:09:32.883 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:56582 10 6452 1 2025-08-10 19:09:39.408 00:00:10.367 TCP 23.104.0.1:36666 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:10:33.110 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:59936 10 6452 1 2025-08-10 19:10:39.815 00:00:10.360 TCP 23.104.0.1:33822 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:11:11.228 00:00:00.036 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 19:11:11.169 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 19:07:09.274 00:05:00.794 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-10 19:11:33.327 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:43830 10 6452 1 2025-08-10 19:11:40.212 00:00:10.325 TCP 23.104.0.1:40808 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:12:33.536 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:59348 10 6452 1 2025-08-10 19:12:40.580 00:00:10.362 TCP 23.104.0.1:49940 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:09:09.276 00:05:00.789 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-10 19:13:33.748 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:56896 10 6452 1 2025-08-10 19:13:40.986 00:00:10.371 TCP 23.104.0.1:37966 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:14:33.925 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:38066 10 6452 1 2025-08-10 19:14:41.400 00:00:10.319 TCP 23.104.0.1:59074 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:15:34.162 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:35208 10 6452 1 2025-08-10 19:15:41.757 00:00:10.368 TCP 23.104.0.1:42500 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:16:11.318 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 19:16:11.289 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 19:16:34.373 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:39500 10 6452 1 2025-08-10 19:16:42.163 00:00:10.325 TCP 23.104.0.1:43092 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:13:09.277 00:05:00.792 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-10 19:17:34.591 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:41924 10 6452 1 2025-08-10 19:17:42.529 00:00:10.363 TCP 23.104.0.1:33734 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:18:34.802 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:43340 10 6452 1 2025-08-10 19:18:42.931 00:00:10.384 TCP 23.104.0.1:34980 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:15:09.279 00:05:00.787 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-10 19:19:35.077 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:44296 10 6452 1 2025-08-10 19:19:43.352 00:00:10.366 TCP 23.104.0.1:38114 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:20:35.297 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:56360 10 6452 1 2025-08-10 19:20:43.757 00:00:10.370 TCP 23.104.0.1:53534 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:21:12.187 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 19:21:11.985 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 19:21:35.511 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51434 10 6452 1 2025-08-10 19:21:44.163 00:00:10.367 TCP 23.104.0.1:56388 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:22:35.725 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:41496 10 6452 1 2025-08-10 19:22:44.571 00:00:10.366 TCP 23.104.0.1:46208 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:19:09.279 00:05:00.792 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-10 19:23:35.896 00:00:10.233 TCP 1.101.0.1:3000 -> 22.102.0.1:32980 12 6556 1 2025-08-10 19:23:44.988 00:00:10.327 TCP 23.104.0.1:58112 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:24:36.171 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:43096 10 6452 1 2025-08-10 19:24:45.356 00:00:10.367 TCP 23.104.0.1:52552 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:21:09.281 00:05:00.787 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-10 19:25:36.391 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:39188 10 6452 1 2025-08-10 19:25:45.763 00:00:10.574 TCP 23.104.0.1:53984 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:26:11.734 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 19:26:11.685 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 19:26:36.615 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:37500 10 6452 1 2025-08-10 19:26:46.374 00:00:10.361 TCP 23.104.0.1:33898 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:27:36.788 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:51972 10 6452 1 2025-08-10 19:27:46.790 00:00:10.376 TCP 23.104.0.1:47174 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:28:37.012 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:57826 10 6452 1 2025-08-10 19:28:47.213 00:00:10.360 TCP 23.104.0.1:60902 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:25:09.279 00:05:00.792 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-10 19:29:37.230 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:58702 10 6452 1 2025-08-10 19:29:47.611 00:00:10.363 TCP 23.104.0.1:44224 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:30:37.447 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:43504 10 6452 1 2025-08-10 19:30:48.013 00:00:10.362 TCP 23.104.0.1:60438 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:31:11.879 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 19:27:09.283 00:05:00.786 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-10 19:31:11.845 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 19:31:37.670 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:57198 10 6452 1 2025-08-10 19:31:48.412 00:00:10.320 TCP 23.104.0.1:45654 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:32:37.894 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:37030 10 6452 1 2025-08-10 19:32:48.773 00:00:10.372 TCP 23.104.0.1:47560 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:33:38.117 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:54200 10 6452 1 2025-08-10 19:33:49.181 00:00:10.361 TCP 23.104.0.1:48976 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:34:38.331 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:41238 10 6452 1 2025-08-10 19:34:49.584 00:00:10.327 TCP 23.104.0.1:34196 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:31:09.282 00:05:00.793 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-10 19:35:38.555 00:00:10.493 TCP 1.101.0.1:3000 -> 22.102.0.1:58598 10 6452 1 2025-08-10 19:35:49.951 00:00:10.365 TCP 23.104.0.1:33278 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:36:11.780 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 19:36:11.949 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 19:36:39.095 00:00:10.736 TCP 1.101.0.1:3000 -> 22.102.0.1:58222 10 6452 1 2025-08-10 19:36:50.352 00:00:10.361 TCP 23.104.0.1:33002 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:33:09.284 00:05:00.788 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-10 19:37:39.867 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:40648 10 6452 1 2025-08-10 19:37:50.749 00:00:10.363 TCP 23.104.0.1:36852 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:38:40.100 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:39688 10 6452 1 2025-08-10 19:38:51.150 00:00:10.327 TCP 23.104.0.1:44086 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:39:40.273 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:59294 10 6452 1 2025-08-10 19:39:51.516 00:00:10.363 TCP 23.104.0.1:53180 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:40:40.443 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:46182 10 6452 1 2025-08-10 19:40:51.919 00:00:10.382 TCP 23.104.0.1:33076 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:37:09.283 00:05:00.794 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-10 19:41:12.108 00:00:00.041 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 19:41:11.997 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 19:41:40.613 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:54010 10 6452 1 2025-08-10 19:41:52.341 00:00:10.365 TCP 23.104.0.1:39194 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:42:40.825 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:58396 10 6452 1 2025-08-10 19:42:52.748 00:00:10.364 TCP 23.104.0.1:51432 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:39:09.286 00:05:00.787 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-10 19:43:40.998 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:34474 10 6452 1 2025-08-10 19:43:53.151 00:00:10.363 TCP 23.104.0.1:40582 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:44:41.179 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45190 10 6452 1 2025-08-10 19:44:53.555 00:00:10.325 TCP 23.104.0.1:47660 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:45:41.395 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:50066 10 6452 1 2025-08-10 19:45:53.914 00:00:10.323 TCP 23.104.0.1:40824 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:46:12.072 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 19:46:12.549 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 19:46:41.610 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:36184 10 6452 1 2025-08-10 19:46:54.277 00:00:10.336 TCP 23.104.0.1:34740 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:43:09.287 00:05:00.789 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-10 19:47:41.824 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:35460 10 6452 1 2025-08-10 19:47:54.649 00:00:10.366 TCP 23.104.0.1:56726 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:48:42.043 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:38818 10 6452 1 2025-08-10 19:48:55.062 00:00:10.360 TCP 23.104.0.1:57180 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:45:09.292 00:05:00.784 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-10 19:49:42.259 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:50716 10 6452 1 2025-08-10 19:49:55.462 00:00:10.369 TCP 23.104.0.1:34722 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:50:42.468 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:41298 10 6452 1 2025-08-10 19:50:55.867 00:00:10.367 TCP 23.104.0.1:52260 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:51:11.930 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 19:51:12.223 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 19:51:42.640 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:60586 10 6452 1 2025-08-10 19:51:56.275 00:00:10.374 TCP 23.104.0.1:36634 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:52:42.813 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:52816 10 6452 1 2025-08-10 19:52:56.685 00:00:10.371 TCP 23.104.0.1:52474 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:49:09.290 00:05:00.788 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-10 19:53:43.044 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:57232 10 6452 1 2025-08-10 19:53:57.107 00:00:10.408 TCP 23.104.0.1:54150 -> 1.101.0.1:3000 15 1926 1 2025-08-10 19:54:43.266 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:52360 12 10365 1 2025-08-10 19:54:57.553 00:00:10.325 TCP 23.104.0.1:55402 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:51:09.294 00:05:00.782 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-10 19:55:43.507 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:48724 10 6452 1 2025-08-10 19:55:57.921 00:00:10.411 TCP 23.104.0.1:44040 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:56:12.030 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-10 19:56:12.277 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 19:56:43.723 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:53490 10 6452 1 2025-08-10 19:56:58.409 00:00:10.369 TCP 23.104.0.1:52214 -> 1.101.0.1:3000 11 1507 1 2025-08-10 19:57:43.939 00:00:10.228 TCP 1.101.0.1:3000 -> 22.102.0.1:57352 10 6452 1 2025-08-10 19:57:58.810 00:00:10.369 TCP 23.104.0.1:33458 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 162, total bytes: 494825, total packets: 1559, avg bps: 1047, avg pps: 0, avg bpp: 317 Time window: 2025-08-10 18:55:09 - 2025-08-10 19:58:09 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0033s User: 0.0011s Wall: 0.0027s flows/second: 59018.3 Runtime: 0.0028s