Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-13 12:58:57.344 00:00:10.366 TCP 23.104.0.1:51618 -> 1.101.0.1:3000 11 1507 1 2025-08-13 12:59:27.639 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:35198 10 6452 1 2025-08-13 12:59:57.748 00:00:10.363 TCP 23.104.0.1:48474 -> 1.101.0.1:3000 11 1507 1 2025-08-13 12:56:10.695 00:05:00.801 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-13 13:00:27.815 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:32830 10 6452 1 2025-08-13 13:00:58.158 00:00:10.367 TCP 23.104.0.1:52190 -> 1.101.0.1:3000 11 1507 1 2025-08-13 12:57:10.697 00:05:00.796 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-13 13:01:27.989 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:36792 10 6452 1 2025-08-13 13:01:58.562 00:00:10.366 TCP 23.104.0.1:48054 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:02:30.450 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 13:02:30.579 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 13:02:28.221 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:41480 10 6452 1 2025-08-13 13:02:58.964 00:00:10.372 TCP 23.104.0.1:52652 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:03:28.436 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:50006 10 6452 1 2025-08-13 13:03:59.377 00:00:10.368 TCP 23.104.0.1:47364 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:04:28.651 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:51400 10 6452 1 2025-08-13 13:04:59.781 00:00:10.367 TCP 23.104.0.1:60528 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:05:28.822 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:54842 10 6452 1 2025-08-13 13:06:00.184 00:00:10.364 TCP 23.104.0.1:51320 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:02:10.696 00:05:00.802 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-13 13:06:29.000 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:46802 10 6452 1 2025-08-13 13:07:00.586 00:00:10.362 TCP 23.104.0.1:39272 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:03:10.698 00:05:00.796 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-13 13:07:30.541 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 13:07:30.663 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 13:07:29.171 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:56756 10 6452 1 2025-08-13 13:08:00.985 00:00:10.323 TCP 23.104.0.1:42130 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:08:29.385 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:46104 10 6452 1 2025-08-13 13:09:01.350 00:00:10.364 TCP 23.104.0.1:52930 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:09:29.594 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:45526 10 6452 1 2025-08-13 13:10:01.752 00:00:10.384 TCP 23.104.0.1:32916 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:10:29.814 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51764 10 6452 1 2025-08-13 13:11:02.170 00:00:10.366 TCP 23.104.0.1:57130 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:11:30.040 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:56844 10 6452 1 2025-08-13 13:08:10.698 00:05:00.801 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-13 13:12:02.574 00:00:10.368 TCP 23.104.0.1:57230 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:12:31.074 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 13:12:30.874 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 13:12:30.257 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:33040 10 6452 1 2025-08-13 13:09:10.700 00:05:00.795 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-13 13:13:02.976 00:00:10.390 TCP 23.104.0.1:42660 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:13:30.439 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:57942 10 6452 1 2025-08-13 13:14:03.403 00:00:10.365 TCP 23.104.0.1:42940 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:14:30.652 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:52860 10 6452 1 2025-08-13 13:15:03.808 00:00:10.347 TCP 23.104.0.1:56188 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:15:30.869 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:52842 10 6452 1 2025-08-13 13:16:04.200 00:00:10.373 TCP 23.104.0.1:44278 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:16:31.099 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:53032 10 6452 1 2025-08-13 13:17:04.612 00:00:10.322 TCP 23.104.0.1:40270 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:17:30.880 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 13:17:30.793 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 13:17:31.306 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:53794 10 6452 1 2025-08-13 13:14:10.700 00:05:00.811 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-13 13:18:04.973 00:00:10.365 TCP 23.104.0.1:32974 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:18:31.514 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:50922 10 6452 1 2025-08-13 13:19:05.376 00:00:10.323 TCP 23.104.0.1:59952 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:15:10.703 00:05:00.797 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-13 13:19:31.733 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:56478 10 6452 1 2025-08-13 13:20:05.738 00:00:10.372 TCP 23.104.0.1:49546 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:20:31.902 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:48432 10 6452 1 2025-08-13 13:21:06.142 00:00:10.371 TCP 23.104.0.1:55084 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:21:32.114 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:34148 10 6452 1 2025-08-13 13:22:06.545 00:00:10.363 TCP 23.104.0.1:42068 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:22:30.943 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 13:22:31.033 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 13:22:32.329 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:60780 10 6452 1 2025-08-13 13:23:06.954 00:00:10.364 TCP 23.104.0.1:37450 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:23:32.543 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:47596 10 6452 1 2025-08-13 13:20:10.703 00:05:00.802 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-13 13:24:07.357 00:00:10.362 TCP 23.104.0.1:34910 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:24:32.715 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:40376 10 6452 1 2025-08-13 13:21:10.704 00:05:00.797 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-13 13:25:07.759 00:00:10.432 TCP 23.104.0.1:53016 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:25:32.926 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:53498 10 6452 1 2025-08-13 13:26:08.231 00:00:10.368 TCP 23.104.0.1:45572 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:26:33.143 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:40002 10 6452 1 2025-08-13 13:27:08.632 00:00:10.362 TCP 23.104.0.1:33594 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:27:31.563 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 13:27:31.698 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 13:27:33.357 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:59006 10 6452 1 2025-08-13 13:28:09.034 00:00:10.323 TCP 23.104.0.1:46770 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:28:33.568 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:51798 10 6452 1 2025-08-13 13:29:09.392 00:00:10.326 TCP 23.104.0.1:56764 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:29:33.780 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:58142 12 6556 1 2025-08-13 13:26:10.707 00:05:00.798 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-13 13:30:09.756 00:00:10.329 TCP 23.104.0.1:34922 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:30:34.010 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:45472 10 6452 1 2025-08-13 13:27:10.709 00:05:00.793 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-13 13:31:10.124 00:00:10.324 TCP 23.104.0.1:60890 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:31:34.226 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:53832 10 6452 1 2025-08-13 13:32:10.484 00:00:10.364 TCP 23.104.0.1:51156 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:32:31.196 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 13:32:31.046 00:00:00.029 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 13:32:34.441 00:00:14.581 TCP 1.101.0.1:3000 -> 22.102.0.1:38012 10 6452 1 2025-08-13 13:33:10.883 00:00:10.390 TCP 23.104.0.1:47454 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:33:39.085 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:51050 10 6452 1 2025-08-13 13:34:11.308 00:00:10.382 TCP 23.104.0.1:35810 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:34:39.303 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:48038 10 6452 1 2025-08-13 13:35:11.732 00:00:10.324 TCP 23.104.0.1:56392 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:35:39.530 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:50152 10 6452 1 2025-08-13 13:32:10.713 00:05:00.793 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-13 13:36:12.103 00:00:10.368 TCP 23.104.0.1:54756 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:36:39.752 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:60058 10 6452 1 2025-08-13 13:33:10.717 00:05:00.790 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-13 13:37:12.507 00:00:10.327 TCP 23.104.0.1:38226 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:37:31.183 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 13:37:31.311 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 13:37:39.962 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:36974 10 6452 1 2025-08-13 13:38:12.869 00:00:10.361 TCP 23.104.0.1:57310 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:38:40.147 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:47524 10 6452 1 2025-08-13 13:39:13.271 00:00:10.384 TCP 23.104.0.1:55046 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:39:40.357 00:00:10.126 TCP 1.101.0.1:3000 -> 22.102.0.1:58266 10 6452 1 2025-08-13 13:40:13.691 00:00:10.371 TCP 23.104.0.1:34432 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:40:40.526 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:53870 10 6452 1 2025-08-13 13:41:14.109 00:00:10.321 TCP 23.104.0.1:53634 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:41:40.740 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:53706 10 6452 1 2025-08-13 13:38:10.714 00:05:00.795 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-13 13:42:14.470 00:00:10.367 TCP 23.104.0.1:36700 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:42:31.456 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 13:42:31.473 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 13:42:40.961 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:37936 10 6452 1 2025-08-13 13:39:10.718 00:05:00.789 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-13 13:43:14.875 00:00:10.367 TCP 23.104.0.1:39906 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:43:41.195 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:46684 10 6452 1 2025-08-13 13:44:15.280 00:00:10.375 TCP 23.104.0.1:37304 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:44:41.422 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:54830 10 6452 1 2025-08-13 13:45:15.692 00:00:10.360 TCP 23.104.0.1:44524 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:45:41.647 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:49476 10 6452 1 2025-08-13 13:46:16.109 00:00:10.365 TCP 23.104.0.1:44154 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:46:41.867 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:35656 10 6452 1 2025-08-13 13:47:16.513 00:00:10.324 TCP 23.104.0.1:37626 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:47:31.545 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 13:47:31.580 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 13:47:42.074 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:52448 10 6452 1 2025-08-13 13:44:10.717 00:05:00.793 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-13 13:48:16.872 00:00:10.361 TCP 23.104.0.1:36168 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:48:42.297 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:52000 10 6452 1 2025-08-13 13:45:10.720 00:05:00.788 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-13 13:49:17.270 00:00:10.362 TCP 23.104.0.1:49202 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:49:42.514 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:34802 10 6452 1 2025-08-13 13:50:17.672 00:00:10.380 TCP 23.104.0.1:46896 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:50:42.730 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:42406 10 6452 1 2025-08-13 13:51:18.108 00:00:10.364 TCP 23.104.0.1:60686 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:51:42.951 00:00:10.207 TCP 1.101.0.1:3000 -> 22.102.0.1:58172 10 6452 1 2025-08-13 13:52:31.611 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 13:52:31.393 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 13:52:18.513 00:00:10.367 TCP 23.104.0.1:49426 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:52:43.190 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:53864 10 6452 1 2025-08-13 13:53:18.915 00:00:10.322 TCP 23.104.0.1:51102 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:53:43.413 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:35946 10 6452 1 2025-08-13 13:50:10.718 00:05:00.793 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-13 13:54:19.273 00:00:10.372 TCP 23.104.0.1:34064 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:54:43.638 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:49732 10 6452 1 2025-08-13 13:51:10.722 00:05:00.789 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-13 13:55:19.679 00:00:10.385 TCP 23.104.0.1:36890 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:55:43.854 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:59552 10 6452 1 2025-08-13 13:56:20.098 00:00:10.323 TCP 23.104.0.1:34420 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:56:44.077 00:00:10.166 TCP 1.101.0.1:3000 -> 22.102.0.1:37430 10 6452 1 2025-08-13 13:57:31.326 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 13:57:20.461 00:00:10.361 TCP 23.104.0.1:42794 -> 1.101.0.1:3000 11 1507 1 2025-08-13 13:57:31.678 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 13:57:44.286 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:35052 10 6452 1 2025-08-13 13:58:20.859 00:00:10.369 TCP 23.104.0.1:44850 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 492000, total packets: 1564, avg bps: 1052, avg pps: 0, avg bpp: 314 Time window: 2025-08-13 12:56:10 - 2025-08-13 13:58:31 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0030s User: 0.0015s Wall: 0.0023s flows/second: 69599.1 Runtime: 0.0024s