Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-14 09:59:26.453 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:44506 10 6452 1 2025-08-14 09:59:34.882 00:00:10.337 TCP 23.104.0.1:40260 -> 1.101.0.1:3000 11 1507 1 2025-08-14 09:56:11.143 00:04:00.787 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-14 10:00:26.673 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:35460 10 6452 1 2025-08-14 10:00:35.261 00:00:10.336 TCP 23.104.0.1:50518 -> 1.101.0.1:3000 11 1507 1 2025-08-14 09:57:11.147 00:04:00.782 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-14 10:01:26.841 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:34920 10 6452 1 2025-08-14 10:01:35.628 00:00:10.364 TCP 23.104.0.1:41904 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:02:27.079 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:52084 10 6452 1 2025-08-14 10:02:36.031 00:00:10.368 TCP 23.104.0.1:40608 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:02:55.821 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 10:02:55.527 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 10:03:27.303 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:38698 10 6452 1 2025-08-14 10:03:36.441 00:00:10.325 TCP 23.104.0.1:55362 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:04:27.516 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:45014 10 6452 1 2025-08-14 10:04:36.806 00:00:10.372 TCP 23.104.0.1:56736 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:01:11.143 00:04:00.788 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-14 10:05:27.730 00:00:10.161 TCP 1.101.0.1:3000 -> 22.102.0.1:55152 10 6452 1 2025-08-14 10:05:37.216 00:00:10.365 TCP 23.104.0.1:35586 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:02:11.146 00:04:00.782 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-14 10:06:27.925 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:40580 10 6452 1 2025-08-14 10:06:37.619 00:00:10.365 TCP 23.104.0.1:39418 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:07:28.150 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:54440 10 6452 1 2025-08-14 10:07:38.024 00:00:10.367 TCP 23.104.0.1:41556 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:07:56.149 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 10:07:56.299 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 10:08:28.370 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:44162 10 6452 1 2025-08-14 10:08:38.429 00:00:10.362 TCP 23.104.0.1:33412 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:09:28.591 00:00:10.239 TCP 1.101.0.1:3000 -> 22.102.0.1:54872 11 6504 1 2025-08-14 10:09:38.829 00:00:10.390 TCP 23.104.0.1:33368 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:06:11.144 00:04:00.789 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-14 10:10:28.871 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:46156 10 6452 1 2025-08-14 10:10:39.260 00:00:10.367 TCP 23.104.0.1:47424 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:07:11.146 00:04:00.785 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-14 10:11:29.102 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:53378 10 6452 1 2025-08-14 10:11:39.667 00:00:10.361 TCP 23.104.0.1:55660 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:12:29.319 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:35232 10 6452 1 2025-08-14 10:12:40.092 00:00:10.364 TCP 23.104.0.1:47736 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:12:56.581 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 10:12:56.480 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 10:13:29.533 00:00:10.266 TCP 1.101.0.1:3000 -> 22.102.0.1:34730 10 6452 1 2025-08-14 10:13:40.496 00:00:10.368 TCP 23.104.0.1:37058 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:14:29.848 00:00:10.744 TCP 1.101.0.1:3000 -> 22.102.0.1:33520 10 6452 1 2025-08-14 10:14:40.902 00:00:10.368 TCP 23.104.0.1:55838 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:11:11.144 00:04:00.789 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-14 10:15:30.633 00:00:10.226 TCP 1.101.0.1:3000 -> 22.102.0.1:55810 14 14280 1 2025-08-14 10:15:41.311 00:00:10.522 TCP 23.104.0.1:50690 -> 1.101.0.1:3000 17 2241 1 2025-08-14 10:16:30.905 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:36256 10 6452 1 2025-08-14 10:16:41.873 00:00:10.368 TCP 23.104.0.1:41520 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:12:11.148 00:06:00.001 TCP 179.1.22.22:39396 -> 179.1.22.1:179 13 790 1 2025-08-14 10:17:31.136 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:39202 10 6452 1 2025-08-14 10:17:55.869 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 10:17:42.278 00:00:10.367 TCP 23.104.0.1:57514 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:17:55.772 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 10:18:11.931 00:00:00.000 TCP 179.1.22.22:39396 -> 179.1.22.1:179 1 71 1 2025-08-14 10:18:31.348 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:52194 10 6452 1 2025-08-14 10:18:42.687 00:00:10.319 TCP 23.104.0.1:60388 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:19:31.558 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:52742 10 6452 1 2025-08-14 10:19:43.052 00:00:10.364 TCP 23.104.0.1:45926 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:20:31.768 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:47622 10 6452 1 2025-08-14 10:20:43.453 00:00:10.321 TCP 23.104.0.1:45772 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:16:11.146 00:06:00.001 TCP 179.1.22.1:179 -> 179.1.22.22:39396 13 809 1 2025-08-14 10:21:31.977 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:55222 13 6608 1 2025-08-14 10:21:43.813 00:00:10.333 TCP 23.104.0.1:39230 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:22:11.938 00:00:00.000 TCP 179.1.22.1:179 -> 179.1.22.22:39396 1 52 1 2025-08-14 10:22:32.185 00:00:10.148 TCP 1.101.0.1:3000 -> 22.102.0.1:56302 10 6452 1 2025-08-14 10:22:56.203 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 10:22:44.189 00:00:10.364 TCP 23.104.0.1:44278 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:22:56.275 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 10:19:11.150 00:04:00.784 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-14 10:23:32.369 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:38376 10 6452 1 2025-08-14 10:23:44.593 00:00:10.361 TCP 23.104.0.1:55650 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:24:32.579 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:53802 10 6452 1 2025-08-14 10:24:45.002 00:00:10.373 TCP 23.104.0.1:60880 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:25:32.797 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:36364 10 6452 1 2025-08-14 10:25:45.423 00:00:10.368 TCP 23.104.0.1:42912 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:26:32.965 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:43420 12 6556 1 2025-08-14 10:26:45.832 00:00:10.393 TCP 23.104.0.1:58736 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:23:11.149 00:04:00.791 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-14 10:27:33.196 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:39140 10 6452 1 2025-08-14 10:27:56.216 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 10:27:55.995 00:00:00.031 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 10:27:46.260 00:00:10.754 TCP 23.104.0.1:38190 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:24:11.151 00:04:00.785 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-14 10:28:33.406 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:42676 10 6452 1 2025-08-14 10:28:47.062 00:00:10.363 TCP 23.104.0.1:40494 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:29:33.621 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:54544 10 6452 1 2025-08-14 10:29:47.464 00:00:10.322 TCP 23.104.0.1:58194 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:30:33.833 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:56988 10 6452 1 2025-08-14 10:30:47.826 00:00:10.355 TCP 23.104.0.1:49340 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:31:34.074 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:43506 10 6452 1 2025-08-14 10:31:48.221 00:00:10.322 TCP 23.104.0.1:50150 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:28:11.148 00:04:00.791 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-14 10:32:34.284 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:56524 10 6452 1 2025-08-14 10:32:56.568 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 10:32:56.494 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 10:32:48.582 00:00:10.371 TCP 23.104.0.1:51792 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:29:11.152 00:04:00.785 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-14 10:33:34.463 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:34834 10 6452 1 2025-08-14 10:33:48.994 00:00:10.345 TCP 23.104.0.1:47300 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:34:34.674 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:34700 10 6452 1 2025-08-14 10:34:49.379 00:00:10.319 TCP 23.104.0.1:36884 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:35:34.888 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:42150 10 6452 1 2025-08-14 10:35:49.736 00:00:10.366 TCP 23.104.0.1:52382 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:36:35.086 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:60806 10 6452 1 2025-08-14 10:36:50.144 00:00:10.363 TCP 23.104.0.1:47698 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:33:11.149 00:04:00.790 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-14 10:37:35.302 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:38068 10 6452 1 2025-08-14 10:37:56.374 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 10:37:56.320 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 10:37:50.547 00:00:10.364 TCP 23.104.0.1:56062 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:34:11.152 00:04:00.785 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-14 10:38:35.539 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:33194 10 6452 1 2025-08-14 10:38:50.948 00:00:10.330 TCP 23.104.0.1:55634 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:39:35.720 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:53218 10 6452 1 2025-08-14 10:39:51.314 00:00:10.366 TCP 23.104.0.1:55850 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:40:35.954 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:53192 10 6452 1 2025-08-14 10:40:51.721 00:00:10.375 TCP 23.104.0.1:52608 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:41:36.183 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:56092 10 6452 1 2025-08-14 10:41:52.134 00:00:10.367 TCP 23.104.0.1:56080 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:38:11.150 00:04:00.790 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-14 10:42:36.410 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:37604 10 6452 1 2025-08-14 10:42:56.644 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 10:42:56.675 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 10:42:52.544 00:00:10.366 TCP 23.104.0.1:40886 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:39:11.152 00:04:00.785 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-14 10:43:36.585 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:38620 10 6452 1 2025-08-14 10:43:52.948 00:00:10.327 TCP 23.104.0.1:52198 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:44:36.794 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:37364 10 6452 1 2025-08-14 10:44:53.316 00:00:10.364 TCP 23.104.0.1:51448 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:45:37.007 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:46304 10 6452 1 2025-08-14 10:45:53.720 00:00:10.379 TCP 23.104.0.1:41588 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:46:37.182 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:53044 10 6452 1 2025-08-14 10:46:54.135 00:00:10.363 TCP 23.104.0.1:47662 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:43:11.153 00:04:00.789 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-14 10:47:37.391 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:42526 10 6452 1 2025-08-14 10:47:56.674 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 10:47:56.794 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 10:47:54.545 00:00:10.366 TCP 23.104.0.1:52578 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:48:37.607 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:44110 10 6452 1 2025-08-14 10:48:54.963 00:00:10.349 TCP 23.104.0.1:52046 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:44:11.156 00:06:00.001 TCP 179.1.22.22:39396 -> 179.1.22.1:179 13 790 1 2025-08-14 10:49:37.824 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:54620 10 6452 1 2025-08-14 10:49:55.377 00:00:10.371 TCP 23.104.0.1:53680 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:50:38.043 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:38064 12 10365 1 2025-08-14 10:50:55.785 00:00:10.439 TCP 23.104.0.1:52736 -> 1.101.0.1:3000 15 1926 1 2025-08-14 10:51:38.286 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:56916 10 6452 1 2025-08-14 10:51:56.270 00:00:10.363 TCP 23.104.0.1:57670 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:52:38.509 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:34452 10 6452 1 2025-08-14 10:52:56.756 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 10:52:56.740 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 10:52:56.667 00:00:10.359 TCP 23.104.0.1:51798 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:48:11.153 00:06:00.001 TCP 179.1.22.1:179 -> 179.1.22.22:39396 13 809 1 2025-08-14 10:53:38.727 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:48310 10 6452 1 2025-08-14 10:53:57.097 00:00:10.361 TCP 23.104.0.1:59176 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:54:38.943 00:00:10.205 TCP 1.101.0.1:3000 -> 22.102.0.1:54750 10 6452 1 2025-08-14 10:50:11.942 00:05:00.001 TCP 179.1.22.22:39396 -> 179.1.22.1:179 11 686 1 2025-08-14 10:54:57.496 00:00:10.367 TCP 23.104.0.1:49122 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:55:39.186 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:43118 10 6452 1 2025-08-14 10:55:57.902 00:00:10.329 TCP 23.104.0.1:56876 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:56:39.399 00:00:10.162 TCP 1.101.0.1:3000 -> 22.102.0.1:38944 10 6452 1 2025-08-14 10:56:58.268 00:00:10.368 TCP 23.104.0.1:35866 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:57:39.598 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:60654 10 6452 1 2025-08-14 10:57:56.959 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 10:57:56.751 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 10:57:58.670 00:00:10.383 TCP 23.104.0.1:42710 -> 1.101.0.1:3000 11 1507 1 2025-08-14 10:58:39.827 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:57430 10 6452 1 Summary: total flows: 167, total bytes: 509749, total packets: 1578, avg bps: 1084, avg pps: 0, avg bpp: 323 Time window: 2025-08-14 09:56:11 - 2025-08-14 10:58:50 Total flows processed: 167, passed: 167, Blocks skipped: 0, Bytes read: 17432 Sys: 0.0039s User: 0.0010s Wall: 0.0025s flows/second: 66773.0 Runtime: 0.0025s