Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-14 12:58:48.361 00:00:10.364 TCP 23.104.0.1:43030 -> 1.101.0.1:3000 11 1507 1 2025-08-14 12:59:11.116 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:53944 10 6452 1 2025-08-14 12:59:48.764 00:00:10.377 TCP 23.104.0.1:60110 -> 1.101.0.1:3000 11 1507 1 2025-08-14 12:56:11.209 00:04:00.789 TCP 179.1.22.1:179 -> 179.1.22.22:39396 10 615 1 2025-08-14 13:00:11.332 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:49862 10 6452 1 2025-08-14 13:00:49.180 00:00:10.329 TCP 23.104.0.1:41372 -> 1.101.0.1:3000 11 1507 1 2025-08-14 12:59:11.211 00:02:00.784 TCP 179.1.22.22:39396 -> 179.1.22.1:179 6 369 1 2025-08-14 13:01:11.505 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:34352 10 6452 1 2025-08-14 13:01:49.543 00:00:10.361 TCP 23.104.0.1:54060 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:01:11.209 00:01:00.789 TCP 179.1.22.1:179 -> 179.1.22.22:39396 4 246 1 2025-08-14 13:02:11.676 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56130 10 6452 1 2025-08-14 13:02:59.176 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 13:02:49.940 00:00:10.368 TCP 23.104.0.1:49788 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:02:59.277 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 13:02:11.212 00:01:00.784 TCP 179.1.22.22:39396 -> 179.1.22.1:179 4 246 1 2025-08-14 13:03:11.893 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:37018 10 6452 1 2025-08-14 13:03:50.347 00:00:10.325 TCP 23.104.0.1:39532 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:04:12.095 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:59844 10 6452 1 2025-08-14 13:04:50.709 00:00:10.366 TCP 23.104.0.1:55184 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:03:11.208 00:02:00.790 TCP 179.1.22.1:179 -> 179.1.22.22:39396 6 369 1 2025-08-14 13:05:12.316 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:37702 10 6452 1 2025-08-14 13:05:51.114 00:00:10.363 TCP 23.104.0.1:57274 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:06:12.537 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:51008 10 6452 1 2025-08-14 13:06:51.516 00:00:10.364 TCP 23.104.0.1:36918 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:07:12.752 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:45978 10 6452 1 2025-08-14 13:07:59.337 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 13:07:59.321 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 13:07:51.916 00:00:10.352 TCP 23.104.0.1:44216 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:04:11.212 00:04:00.785 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-14 13:08:12.968 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:56662 10 6452 1 2025-08-14 13:08:52.313 00:00:10.361 TCP 23.104.0.1:36626 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:09:13.198 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:56204 10 6452 1 2025-08-14 13:09:52.712 00:00:10.378 TCP 23.104.0.1:39596 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:06:11.210 00:05:00.791 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-14 13:10:13.371 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:34116 10 6452 1 2025-08-14 13:10:53.129 00:00:10.332 TCP 23.104.0.1:45474 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:11:13.586 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:42520 10 6452 1 2025-08-14 13:11:53.498 00:00:10.372 TCP 23.104.0.1:59910 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:12:13.758 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:40126 10 6452 1 2025-08-14 13:12:59.728 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 13:12:59.534 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 13:12:53.907 00:00:10.365 TCP 23.104.0.1:56818 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:09:11.213 00:04:00.784 TCP 179.1.22.22:39396 -> 179.1.22.1:179 10 615 1 2025-08-14 13:13:13.927 00:00:10.151 TCP 1.101.0.1:3000 -> 22.102.0.1:60218 10 6452 1 2025-08-14 13:13:54.310 00:00:10.365 TCP 23.104.0.1:50882 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:14:14.114 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:36428 10 6452 1 2025-08-14 13:14:54.717 00:00:10.373 TCP 23.104.0.1:40524 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:15:14.335 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:37664 10 6452 1 2025-08-14 13:15:55.131 00:00:10.361 TCP 23.104.0.1:42546 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:12:11.212 00:05:00.790 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-14 13:16:14.503 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:56872 10 6452 1 2025-08-14 13:16:55.555 00:00:10.367 TCP 23.104.0.1:41958 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:17:14.716 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:57316 10 6452 1 2025-08-14 13:17:59.969 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 13:17:59.789 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 13:17:55.971 00:00:10.375 TCP 23.104.0.1:41422 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:14:11.215 00:05:00.786 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-14 13:18:14.890 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:34372 10 6452 1 2025-08-14 13:18:56.378 00:00:10.369 TCP 23.104.0.1:39764 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:19:15.111 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:39256 10 6452 1 2025-08-14 13:19:56.783 00:00:10.366 TCP 23.104.0.1:45034 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:20:15.287 00:00:10.683 TCP 1.101.0.1:3000 -> 22.102.0.1:46462 10 6452 1 2025-08-14 13:20:57.192 00:00:10.334 TCP 23.104.0.1:47650 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:21:16.010 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:52820 10 6452 1 2025-08-14 13:21:57.565 00:00:10.329 TCP 23.104.0.1:50236 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:18:11.213 00:05:00.792 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-14 13:22:16.228 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:54050 10 6452 1 2025-08-14 13:23:00.147 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 13:22:59.886 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 13:22:57.969 00:00:10.363 TCP 23.104.0.1:51978 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:23:16.395 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34884 10 6452 1 2025-08-14 13:23:58.368 00:00:10.378 TCP 23.104.0.1:48764 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:20:11.215 00:05:00.802 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-14 13:24:16.613 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:42572 10 6452 1 2025-08-14 13:24:58.780 00:00:10.329 TCP 23.104.0.1:43830 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:25:16.804 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:44042 10 6452 1 2025-08-14 13:25:59.142 00:00:10.368 TCP 23.104.0.1:47108 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:26:17.021 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:37910 10 6452 1 2025-08-14 13:26:59.551 00:00:10.365 TCP 23.104.0.1:52514 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:27:17.233 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:55220 10 6452 1 2025-08-14 13:27:59.658 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 13:27:59.783 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 13:27:59.951 00:00:10.367 TCP 23.104.0.1:51582 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:24:11.214 00:05:00.822 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-14 13:28:17.403 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:33688 10 6452 1 2025-08-14 13:29:00.352 00:00:10.367 TCP 23.104.0.1:48250 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:29:17.577 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:33350 10 6452 1 2025-08-14 13:30:00.756 00:00:10.381 TCP 23.104.0.1:36650 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:26:11.218 00:05:00.816 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-14 13:30:17.792 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:43644 10 6452 1 2025-08-14 13:31:01.177 00:00:10.325 TCP 23.104.0.1:41908 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:31:18.005 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:38240 10 6452 1 2025-08-14 13:32:01.539 00:00:10.370 TCP 23.104.0.1:56102 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:32:18.224 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:37742 10 6452 1 2025-08-14 13:33:00.413 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 13:33:00.366 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 13:33:01.944 00:00:10.372 TCP 23.104.0.1:40688 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:33:18.403 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:42116 10 6452 1 2025-08-14 13:34:02.355 00:00:10.368 TCP 23.104.0.1:42410 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:30:11.223 00:05:00.816 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-14 13:34:18.635 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:35772 10 6452 1 2025-08-14 13:35:02.758 00:00:10.383 TCP 23.104.0.1:50556 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:35:18.853 00:00:10.208 TCP 1.101.0.1:3000 -> 22.102.0.1:44918 12 10367 1 2025-08-14 13:36:03.178 00:00:10.452 TCP 23.104.0.1:47898 -> 1.101.0.1:3000 15 1926 1 2025-08-14 13:32:11.221 00:05:00.817 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-14 13:36:19.099 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:41890 10 6452 1 2025-08-14 13:37:03.673 00:00:10.375 TCP 23.104.0.1:49342 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:37:19.313 00:00:10.245 TCP 1.101.0.1:3000 -> 22.102.0.1:35724 10 6452 1 2025-08-14 13:38:00.148 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 13:37:59.991 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 13:38:04.119 00:00:10.361 TCP 23.104.0.1:52516 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:38:19.594 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:54364 10 6452 1 2025-08-14 13:39:04.513 00:00:10.365 TCP 23.104.0.1:33136 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:39:19.807 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:38660 10 6452 1 2025-08-14 13:36:11.219 00:05:00.822 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-14 13:40:04.920 00:00:10.367 TCP 23.104.0.1:43670 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:40:20.021 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:43706 10 6452 1 2025-08-14 13:41:05.320 00:00:10.359 TCP 23.104.0.1:53316 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:41:20.234 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:33622 10 6452 1 2025-08-14 13:42:05.720 00:00:10.377 TCP 23.104.0.1:54530 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:38:11.222 00:05:00.817 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-14 13:42:20.406 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58994 10 6452 1 2025-08-14 13:42:59.929 00:00:00.026 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 13:43:00.130 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 13:43:06.131 00:00:10.358 TCP 23.104.0.1:48272 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:43:20.620 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56556 10 6452 1 2025-08-14 13:44:06.534 00:00:10.322 TCP 23.104.0.1:33296 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:44:20.835 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:33500 10 6452 1 2025-08-14 13:45:06.895 00:00:10.378 TCP 23.104.0.1:48502 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:45:21.075 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:39924 12 10367 1 2025-08-14 13:42:11.219 00:05:00.822 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-14 13:46:07.314 00:00:10.447 TCP 23.104.0.1:37898 -> 1.101.0.1:3000 15 1926 1 2025-08-14 13:46:21.315 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:38974 10 6452 1 2025-08-14 13:47:07.806 00:00:10.367 TCP 23.104.0.1:40916 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:47:21.483 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:48058 10 6452 1 2025-08-14 13:48:00.418 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 13:47:59.880 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 13:44:11.222 00:05:00.818 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-14 13:48:08.209 00:00:10.363 TCP 23.104.0.1:40116 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:48:21.654 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:46328 10 6452 1 2025-08-14 13:49:08.613 00:00:10.369 TCP 23.104.0.1:33222 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:49:21.867 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:54774 10 6452 1 2025-08-14 13:50:09.022 00:00:10.329 TCP 23.104.0.1:53156 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:50:22.085 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:43202 10 6452 1 2025-08-14 13:51:09.388 00:00:10.368 TCP 23.104.0.1:34918 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:51:22.310 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:36072 10 6452 1 2025-08-14 13:48:11.223 00:05:00.820 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-14 13:52:09.792 00:00:10.365 TCP 23.104.0.1:56360 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:52:22.529 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:34006 10 6452 1 2025-08-14 13:53:00.509 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 13:53:00.316 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 13:53:10.194 00:00:10.360 TCP 23.104.0.1:53492 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:53:22.744 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:41202 10 6452 1 2025-08-14 13:50:11.229 00:05:00.813 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-14 13:54:10.598 00:00:10.323 TCP 23.104.0.1:48142 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:54:22.922 00:00:10.147 TCP 1.101.0.1:3000 -> 22.102.0.1:48560 10 6452 1 2025-08-14 13:55:10.959 00:00:10.368 TCP 23.104.0.1:39836 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:55:23.106 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:36180 10 6452 1 2025-08-14 13:56:11.372 00:00:10.369 TCP 23.104.0.1:49210 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:56:23.322 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:60922 10 6452 1 2025-08-14 13:57:11.777 00:00:10.326 TCP 23.104.0.1:56730 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:57:23.553 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:54990 10 6452 1 2025-08-14 13:58:00.568 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-14 13:58:00.375 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-14 13:54:11.225 00:05:00.819 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-14 13:58:12.143 00:00:10.369 TCP 23.104.0.1:59864 -> 1.101.0.1:3000 11 1507 1 2025-08-14 13:58:23.774 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:55642 10 6452 1 Summary: total flows: 167, total bytes: 507139, total packets: 1586, avg bps: 1073, avg pps: 0, avg bpp: 319 Time window: 2025-08-14 12:56:11 - 2025-08-14 13:59:12 Total flows processed: 167, passed: 167, Blocks skipped: 0, Bytes read: 17432 Sys: 0.0034s User: 0.0017s Wall: 0.0028s flows/second: 60331.5 Runtime: 0.0028s