Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-13 15:59:22.324 00:00:10.358 TCP 23.104.0.1:40240 -> 1.101.0.1:3000 11 1507 1 2025-08-13 15:59:28.744 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:38762 10 6452 1 2025-08-13 15:56:10.755 00:05:00.793 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-13 16:00:22.722 00:00:10.379 TCP 23.104.0.1:41244 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:00:28.958 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:47258 10 6452 1 2025-08-13 15:57:10.759 00:05:00.786 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-13 16:01:23.142 00:00:10.368 TCP 23.104.0.1:47200 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:01:29.133 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:46762 10 6452 1 2025-08-13 16:02:23.552 00:00:10.362 TCP 23.104.0.1:48176 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:02:34.159 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 16:02:34.168 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 16:02:29.347 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:36376 10 6452 1 2025-08-13 16:03:23.957 00:00:10.326 TCP 23.104.0.1:49526 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:03:29.557 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:42522 10 6452 1 2025-08-13 16:04:24.319 00:00:11.788 TCP 23.104.0.1:60172 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:04:29.768 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:57984 10 6452 1 2025-08-13 16:05:26.168 00:00:10.366 TCP 23.104.0.1:48982 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:05:29.981 00:00:10.210 TCP 1.101.0.1:3000 -> 22.102.0.1:36246 10 6452 1 2025-08-13 16:02:10.757 00:05:00.793 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-13 16:06:26.576 00:00:10.361 TCP 23.104.0.1:51640 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:06:30.231 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:42902 10 6452 1 2025-08-13 16:03:10.760 00:05:00.788 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-13 16:07:34.279 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 16:07:33.982 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 16:07:26.977 00:00:10.366 TCP 23.104.0.1:46260 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:07:30.463 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:44856 10 6452 1 2025-08-13 16:08:30.683 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:35442 10 6452 1 2025-08-13 16:08:27.392 00:00:10.360 TCP 23.104.0.1:40668 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:09:30.903 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:59608 10 6452 1 2025-08-13 16:09:27.790 00:00:10.360 TCP 23.104.0.1:48936 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:10:28.190 00:00:10.368 TCP 23.104.0.1:55684 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:10:31.118 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:49018 10 6452 1 2025-08-13 16:11:31.339 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:49782 10 6452 1 2025-08-13 16:11:28.599 00:00:10.364 TCP 23.104.0.1:50732 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:08:10.760 00:05:00.792 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-13 16:12:34.268 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 16:12:34.301 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 16:12:31.559 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:33288 10 6452 1 2025-08-13 16:12:29.007 00:00:10.363 TCP 23.104.0.1:36980 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:09:10.763 00:05:00.787 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-13 16:13:31.782 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:47276 10 6452 1 2025-08-13 16:13:29.415 00:00:10.878 TCP 23.104.0.1:50736 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:14:30.332 00:00:10.369 TCP 23.104.0.1:35882 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:14:32.005 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:56720 10 6452 1 2025-08-13 16:15:30.744 00:00:10.362 TCP 23.104.0.1:49940 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:15:32.226 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51576 10 6452 1 2025-08-13 16:16:31.145 00:00:10.362 TCP 23.104.0.1:42988 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:16:32.441 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:38946 10 6452 1 2025-08-13 16:17:34.246 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 16:17:34.350 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 16:17:31.551 00:00:10.363 TCP 23.104.0.1:32980 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:17:32.663 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:46678 10 6452 1 2025-08-13 16:14:10.762 00:05:00.792 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-13 16:18:31.952 00:00:10.323 TCP 23.104.0.1:48510 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:18:32.889 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:52302 10 6452 1 2025-08-13 16:15:10.764 00:05:00.787 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-13 16:19:32.317 00:00:10.362 TCP 23.104.0.1:56594 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:19:33.112 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:38488 10 6452 1 2025-08-13 16:20:32.712 00:00:10.361 TCP 23.104.0.1:56728 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:20:33.326 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:35280 10 6452 1 2025-08-13 16:21:33.111 00:00:10.367 TCP 23.104.0.1:36228 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:21:33.545 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:56650 10 6452 1 2025-08-13 16:22:34.544 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 16:22:34.456 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 16:22:33.520 00:00:10.373 TCP 23.104.0.1:44746 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:22:33.759 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:36108 10 6452 1 2025-08-13 16:23:33.926 00:00:10.389 TCP 23.104.0.1:48476 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:23:33.926 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:46898 10 6452 1 2025-08-13 16:20:10.762 00:05:00.793 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-13 16:24:34.355 00:00:10.359 TCP 23.104.0.1:46260 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:24:34.168 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:54296 12 6556 1 2025-08-13 16:21:10.766 00:05:00.790 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-13 16:25:34.757 00:00:10.387 TCP 23.104.0.1:49832 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:25:34.380 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:55742 10 6452 1 2025-08-13 16:26:34.598 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:49124 10 6452 1 2025-08-13 16:26:35.182 00:00:10.370 TCP 23.104.0.1:54084 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:27:34.715 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 16:27:34.683 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 16:27:34.810 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:38860 10 6452 1 2025-08-13 16:27:35.585 00:00:10.366 TCP 23.104.0.1:58918 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:28:35.036 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:52920 10 6452 1 2025-08-13 16:28:35.992 00:00:10.363 TCP 23.104.0.1:34332 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:29:35.248 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:38784 10 6452 1 2025-08-13 16:29:36.399 00:00:10.370 TCP 23.104.0.1:44708 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:26:10.764 00:05:00.796 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-13 16:30:35.466 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:47446 10 6452 1 2025-08-13 16:30:36.803 00:00:10.370 TCP 23.104.0.1:56464 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:27:10.767 00:05:00.791 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-13 16:31:35.681 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:46816 10 6452 1 2025-08-13 16:31:37.210 00:00:10.364 TCP 23.104.0.1:33210 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:32:34.848 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 16:32:34.653 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 16:32:35.854 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:59254 10 6452 1 2025-08-13 16:32:37.612 00:00:10.365 TCP 23.104.0.1:54824 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:33:36.081 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:54190 10 6452 1 2025-08-13 16:33:38.017 00:00:10.358 TCP 23.104.0.1:46920 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:34:36.305 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:51274 10 6452 1 2025-08-13 16:34:38.417 00:00:10.364 TCP 23.104.0.1:35938 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:35:36.478 00:00:10.295 TCP 1.101.0.1:3000 -> 22.102.0.1:48540 12 10365 1 2025-08-13 16:35:38.817 00:00:10.401 TCP 23.104.0.1:40276 -> 1.101.0.1:3000 15 1926 1 2025-08-13 16:32:10.768 00:05:00.793 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-13 16:36:36.816 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:45318 10 6452 1 2025-08-13 16:36:39.257 00:00:10.366 TCP 23.104.0.1:34670 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:33:10.772 00:05:00.788 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-13 16:37:35.014 00:00:00.035 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 16:37:34.577 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 16:37:37.044 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:40944 10 6452 1 2025-08-13 16:37:39.661 00:00:10.364 TCP 23.104.0.1:42466 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:38:37.274 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:48656 10 6452 1 2025-08-13 16:38:40.084 00:00:10.322 TCP 23.104.0.1:44030 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:39:37.496 00:00:10.149 TCP 1.101.0.1:3000 -> 22.102.0.1:34004 10 6452 1 2025-08-13 16:39:40.441 00:00:10.328 TCP 23.104.0.1:60424 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:40:37.688 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:39912 10 6452 1 2025-08-13 16:40:40.807 00:00:10.367 TCP 23.104.0.1:40314 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:41:37.861 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:36330 10 6452 1 2025-08-13 16:41:41.211 00:00:10.326 TCP 23.104.0.1:47938 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:38:10.770 00:05:00.794 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-13 16:42:34.986 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 16:42:34.887 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 16:42:38.088 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:50240 10 6452 1 2025-08-13 16:42:41.580 00:00:10.363 TCP 23.104.0.1:51856 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:39:10.773 00:05:00.789 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-13 16:43:38.300 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:47416 10 6452 1 2025-08-13 16:43:41.985 00:00:10.367 TCP 23.104.0.1:54050 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:44:38.516 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:42060 10 6452 1 2025-08-13 16:44:42.395 00:00:10.395 TCP 23.104.0.1:33694 -> 1.101.0.1:3000 15 1926 1 2025-08-13 16:45:38.745 00:00:10.213 TCP 1.101.0.1:3000 -> 22.102.0.1:51200 12 10367 1 2025-08-13 16:45:42.828 00:00:10.362 TCP 23.104.0.1:44416 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:46:39.003 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:46866 10 6452 1 2025-08-13 16:46:43.230 00:00:10.365 TCP 23.104.0.1:59062 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:47:35.168 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 16:47:35.208 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 16:47:39.240 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:50808 10 6452 1 2025-08-13 16:47:43.644 00:00:10.369 TCP 23.104.0.1:43444 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:44:10.772 00:05:00.800 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-13 16:48:39.412 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:55986 10 6452 1 2025-08-13 16:48:44.059 00:00:10.326 TCP 23.104.0.1:60936 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:45:10.775 00:05:00.795 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-13 16:49:39.592 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:43098 10 6452 1 2025-08-13 16:49:44.418 00:00:10.369 TCP 23.104.0.1:50806 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:50:39.807 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:55314 10 6452 1 2025-08-13 16:50:44.832 00:00:10.341 TCP 23.104.0.1:38388 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:51:39.984 00:00:10.147 TCP 1.101.0.1:3000 -> 22.102.0.1:33068 10 6452 1 2025-08-13 16:51:45.212 00:00:10.358 TCP 23.104.0.1:49996 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:52:35.001 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 16:52:34.969 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 16:52:40.170 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:45478 10 6452 1 2025-08-13 16:52:45.610 00:00:10.370 TCP 23.104.0.1:36842 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:53:40.390 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:57408 10 6452 1 2025-08-13 16:53:46.021 00:00:10.326 TCP 23.104.0.1:51546 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:50:10.772 00:05:00.801 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-13 16:54:40.600 00:00:32.006 TCP 1.101.0.1:3000 -> 22.102.0.1:38680 11 6504 1 2025-08-13 16:54:46.382 00:00:26.468 TCP 23.104.0.1:58502 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:51:10.774 00:05:00.797 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-13 16:56:02.929 00:00:10.391 TCP 23.104.0.1:36154 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:56:02.642 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:37704 10 6452 1 2025-08-13 16:57:03.360 00:00:10.382 TCP 23.104.0.1:37082 -> 1.101.0.1:3000 11 1507 1 2025-08-13 16:57:02.811 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:38498 10 6452 1 2025-08-13 16:57:35.362 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-13 16:57:35.224 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-13 16:58:03.024 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:36136 10 6452 1 2025-08-13 16:58:03.780 00:00:10.365 TCP 23.104.0.1:44656 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 162, total bytes: 499211, total packets: 1566, avg bps: 1072, avg pps: 0, avg bpp: 318 Time window: 2025-08-13 15:56:10 - 2025-08-13 16:58:14 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0022s User: 0.0022s Wall: 0.0024s flows/second: 68241.2 Runtime: 0.0024s