Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-15 07:59:25.851 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:49044 10 6452 1 2025-08-15 07:59:33.183 00:00:10.363 TCP 23.104.0.1:53154 -> 1.101.0.1:3000 11 1507 1 2025-08-15 07:56:11.550 00:05:00.859 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-15 08:00:26.089 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:57596 10 6452 1 2025-08-15 08:00:33.581 00:00:10.363 TCP 23.104.0.1:36658 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:01:26.305 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:54662 10 6452 1 2025-08-15 08:01:33.977 00:00:10.325 TCP 23.104.0.1:35880 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:02:26.484 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:37806 10 6452 1 2025-08-15 08:02:34.337 00:00:10.365 TCP 23.104.0.1:37308 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:03:22.239 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-15 08:03:22.425 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 08:03:26.706 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:35172 10 6452 1 2025-08-15 08:03:34.741 00:00:10.386 TCP 23.104.0.1:58024 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:00:11.548 00:05:00.864 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-15 08:04:26.919 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:39480 10 6452 1 2025-08-15 08:04:35.167 00:00:10.327 TCP 23.104.0.1:37402 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:05:27.130 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:44986 10 6452 1 2025-08-15 08:05:35.536 00:00:10.319 TCP 23.104.0.1:47968 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:02:11.551 00:05:00.859 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-15 08:06:27.340 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:54076 10 6452 1 2025-08-15 08:06:35.893 00:00:10.366 TCP 23.104.0.1:45322 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:07:27.546 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:46764 10 6452 1 2025-08-15 08:07:36.302 00:00:10.363 TCP 23.104.0.1:53650 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:08:22.066 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 08:08:22.318 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-15 08:08:27.722 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:34126 10 6452 1 2025-08-15 08:08:36.703 00:00:10.368 TCP 23.104.0.1:50112 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:09:27.891 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:55700 10 6452 1 2025-08-15 08:09:37.119 00:00:10.322 TCP 23.104.0.1:55378 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:06:11.549 00:05:00.865 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-15 08:10:28.082 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:48188 10 6452 1 2025-08-15 08:10:37.476 00:00:10.366 TCP 23.104.0.1:51646 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:11:28.293 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:34816 10 6452 1 2025-08-15 08:11:37.882 00:00:10.370 TCP 23.104.0.1:55938 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:08:11.552 00:05:00.860 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-15 08:12:28.502 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:40654 10 6452 1 2025-08-15 08:12:38.290 00:00:10.364 TCP 23.104.0.1:59360 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:13:22.389 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 08:13:22.421 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-15 08:13:28.668 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:59126 10 6452 1 2025-08-15 08:13:38.693 00:00:10.367 TCP 23.104.0.1:54712 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:14:28.889 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:40134 10 6452 1 2025-08-15 08:14:39.107 00:00:10.325 TCP 23.104.0.1:45562 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:15:29.118 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:40238 10 6452 1 2025-08-15 08:15:39.464 00:00:10.358 TCP 23.104.0.1:56684 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:12:11.550 00:05:00.865 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-15 08:16:29.337 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:50304 10 6452 1 2025-08-15 08:16:39.864 00:00:10.367 TCP 23.104.0.1:58572 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:17:29.575 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:49208 10 6452 1 2025-08-15 08:17:40.270 00:00:10.369 TCP 23.104.0.1:59568 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:14:11.553 00:05:00.859 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-15 08:18:22.572 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-15 08:18:22.574 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 08:18:29.793 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:56862 10 6452 1 2025-08-15 08:18:40.676 00:00:10.329 TCP 23.104.0.1:51072 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:19:30.011 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:43800 10 6452 1 2025-08-15 08:19:41.048 00:00:10.375 TCP 23.104.0.1:45642 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:20:30.229 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:45580 13 13937 1 2025-08-15 08:20:41.450 00:00:10.441 TCP 23.104.0.1:50488 -> 1.101.0.1:3000 15 1926 1 2025-08-15 08:21:30.472 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:42562 10 6452 1 2025-08-15 08:21:41.932 00:00:10.382 TCP 23.104.0.1:38838 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:18:11.553 00:05:00.865 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-15 08:22:30.674 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:60952 10 6452 1 2025-08-15 08:22:42.353 00:00:10.362 TCP 23.104.0.1:46026 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:23:22.584 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-15 08:23:22.653 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 08:23:30.890 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:59550 10 6452 1 2025-08-15 08:23:42.755 00:00:10.379 TCP 23.104.0.1:60784 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:20:11.556 00:05:00.858 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-15 08:24:31.103 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:45988 10 6452 1 2025-08-15 08:24:43.174 00:00:10.367 TCP 23.104.0.1:37322 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:25:31.314 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:36056 10 6452 1 2025-08-15 08:25:43.581 00:00:10.367 TCP 23.104.0.1:60902 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:26:31.529 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:55242 10 6452 1 2025-08-15 08:26:43.983 00:00:10.364 TCP 23.104.0.1:58724 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:27:31.760 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:43002 12 6556 1 2025-08-15 08:27:44.384 00:00:10.371 TCP 23.104.0.1:44180 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:24:11.555 00:05:00.863 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-15 08:28:22.873 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 08:28:22.891 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-15 08:28:31.976 00:00:10.210 TCP 1.101.0.1:3000 -> 22.102.0.1:35884 13 6608 1 2025-08-15 08:28:44.798 00:00:10.343 TCP 23.104.0.1:46776 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:29:32.229 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:48854 10 6452 1 2025-08-15 08:29:45.176 00:00:10.366 TCP 23.104.0.1:59872 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:26:11.559 00:05:00.858 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-15 08:30:32.399 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:55164 10 6452 1 2025-08-15 08:30:45.580 00:00:10.368 TCP 23.104.0.1:48260 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:31:32.610 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:50158 10 6452 1 2025-08-15 08:31:45.985 00:00:10.389 TCP 23.104.0.1:36790 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:32:32.819 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:51390 10 6452 1 2025-08-15 08:32:46.409 00:00:10.366 TCP 23.104.0.1:41534 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:33:22.915 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 08:33:22.945 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-15 08:33:32.997 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:50192 10 6452 1 2025-08-15 08:33:46.810 00:00:10.366 TCP 23.104.0.1:45270 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:30:11.557 00:05:00.862 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-15 08:34:33.215 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:43612 10 6452 1 2025-08-15 08:34:47.214 00:00:10.328 TCP 23.104.0.1:46192 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:35:33.423 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:41662 10 6452 1 2025-08-15 08:35:47.580 00:00:10.365 TCP 23.104.0.1:51150 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:32:11.561 00:05:00.856 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-15 08:36:33.632 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:40396 10 6452 1 2025-08-15 08:36:47.984 00:00:10.366 TCP 23.104.0.1:57896 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:37:33.846 00:00:10.297 TCP 1.101.0.1:3000 -> 22.102.0.1:59004 10 6452 1 2025-08-15 08:37:48.388 00:00:10.322 TCP 23.104.0.1:35374 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:38:23.052 00:00:00.036 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-15 08:38:22.846 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 08:38:34.184 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:37822 10 6452 1 2025-08-15 08:38:48.748 00:00:10.363 TCP 23.104.0.1:33504 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:39:34.401 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:39268 10 6452 1 2025-08-15 08:39:49.149 00:00:10.472 TCP 23.104.0.1:34162 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:36:11.562 00:05:00.859 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-15 08:40:34.613 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:35648 10 6452 1 2025-08-15 08:40:49.671 00:00:10.371 TCP 23.104.0.1:55592 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:41:34.790 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:51608 10 6452 1 2025-08-15 08:41:50.098 00:00:10.332 TCP 23.104.0.1:59430 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:38:11.565 00:05:00.854 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-15 08:42:35.004 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:57040 10 6452 1 2025-08-15 08:42:50.470 00:00:10.366 TCP 23.104.0.1:41438 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:43:23.262 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 08:43:23.161 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-15 08:43:35.223 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:37952 10 6452 1 2025-08-15 08:43:50.868 00:00:10.368 TCP 23.104.0.1:58150 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:44:35.396 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:47676 10 6452 1 2025-08-15 08:44:51.275 00:00:10.362 TCP 23.104.0.1:52430 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:45:35.613 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:43984 10 6452 1 2025-08-15 08:45:51.677 00:00:10.334 TCP 23.104.0.1:49364 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:42:11.563 00:05:00.859 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-15 08:46:35.787 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:54930 10 6452 1 2025-08-15 08:46:52.059 00:00:10.368 TCP 23.104.0.1:38080 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:47:35.996 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:51640 10 6452 1 2025-08-15 08:47:52.465 00:00:10.363 TCP 23.104.0.1:49254 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:44:11.566 00:05:00.853 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-15 08:48:23.092 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-15 08:48:23.042 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 08:48:36.221 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:41890 10 6452 1 2025-08-15 08:48:52.866 00:00:10.369 TCP 23.104.0.1:34664 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:49:36.390 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:41884 10 6452 1 2025-08-15 08:49:53.271 00:00:10.362 TCP 23.104.0.1:38768 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:50:36.561 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:49180 10 6452 1 2025-08-15 08:50:53.669 00:00:10.323 TCP 23.104.0.1:35542 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:51:36.777 00:00:10.166 TCP 1.101.0.1:3000 -> 22.102.0.1:52630 10 6452 1 2025-08-15 08:51:54.031 00:00:10.364 TCP 23.104.0.1:36732 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:48:11.565 00:05:00.858 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-15 08:52:36.985 00:00:10.485 TCP 1.101.0.1:3000 -> 22.102.0.1:35884 10 6452 1 2025-08-15 08:52:54.432 00:00:10.371 TCP 23.104.0.1:46004 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:53:23.054 00:00:00.045 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-15 08:53:23.363 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 08:53:37.514 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:42896 10 6452 1 2025-08-15 08:53:54.853 00:00:10.336 TCP 23.104.0.1:47294 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:50:11.568 00:05:00.852 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-15 08:54:37.735 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:36188 10 6452 1 2025-08-15 08:54:55.228 00:00:10.363 TCP 23.104.0.1:34594 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:55:37.949 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:45336 12 6556 1 2025-08-15 08:55:55.633 00:00:10.365 TCP 23.104.0.1:56728 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:56:38.177 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:49388 10 6452 1 2025-08-15 08:56:56.035 00:00:10.322 TCP 23.104.0.1:52222 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:57:38.395 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:47104 10 6452 1 2025-08-15 08:57:56.397 00:00:10.367 TCP 23.104.0.1:47680 -> 1.101.0.1:3000 11 1507 1 2025-08-15 08:54:11.566 00:05:00.865 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-15 08:58:23.586 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-15 08:58:23.476 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 08:58:38.569 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:46736 10 6452 1 Summary: total flows: 163, total bytes: 505109, total packets: 1575, avg bps: 1068, avg pps: 0, avg bpp: 320 Time window: 2025-08-15 07:56:11 - 2025-08-15 08:59:12 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0044s User: 0.0000s Wall: 0.0022s flows/second: 72507.3 Runtime: 0.0023s