Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-15 19:59:02.939 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:47738 10 6452 1 2025-08-15 19:59:26.126 00:00:10.339 TCP 23.104.0.1:46876 -> 1.101.0.1:3000 11 1507 1 2025-08-15 19:56:11.802 00:05:00.841 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-15 20:00:03.172 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:48472 10 6452 1 2025-08-15 20:00:26.505 00:00:10.365 TCP 23.104.0.1:34918 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:01:03.388 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:50736 10 6452 1 2025-08-15 20:01:26.906 00:00:10.322 TCP 23.104.0.1:53050 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:02:03.603 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:38442 10 6452 1 2025-08-15 20:02:27.271 00:00:10.363 TCP 23.104.0.1:48018 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:03:03.819 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:45780 10 6452 1 2025-08-15 20:03:36.760 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 20:03:36.769 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-15 20:03:27.676 00:00:10.374 TCP 23.104.0.1:48336 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:04:03.994 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:45844 10 6452 1 2025-08-15 20:00:11.799 00:05:00.846 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-15 20:04:28.109 00:00:10.321 TCP 23.104.0.1:34770 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:05:04.176 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:39646 10 6452 1 2025-08-15 20:05:28.472 00:00:10.324 TCP 23.104.0.1:38608 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:06:04.344 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:43522 10 6452 1 2025-08-15 20:02:11.802 00:05:00.840 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-15 20:06:28.836 00:00:10.382 TCP 23.104.0.1:44948 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:07:04.564 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:37586 10 6452 1 2025-08-15 20:07:29.256 00:00:10.365 TCP 23.104.0.1:40942 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:08:04.774 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:33884 10 6452 1 2025-08-15 20:08:36.865 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-15 20:08:36.881 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 20:08:29.668 00:00:10.371 TCP 23.104.0.1:51016 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:09:04.990 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:40866 10 6452 1 2025-08-15 20:09:30.111 00:00:10.362 TCP 23.104.0.1:41128 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:10:05.214 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:37778 10 6452 1 2025-08-15 20:06:11.800 00:05:00.847 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-15 20:10:30.508 00:00:10.365 TCP 23.104.0.1:37820 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:11:05.432 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:46876 10 6452 1 2025-08-15 20:11:30.909 00:00:10.327 TCP 23.104.0.1:59256 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:12:05.594 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:48744 10 6452 1 2025-08-15 20:08:11.803 00:05:00.841 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-15 20:12:31.272 00:00:10.363 TCP 23.104.0.1:54728 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:13:05.773 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:44104 10 6452 1 2025-08-15 20:13:37.078 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 20:13:37.482 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-15 20:13:31.673 00:00:10.370 TCP 23.104.0.1:58202 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:14:06.005 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:44632 10 6452 1 2025-08-15 20:14:32.104 00:00:10.323 TCP 23.104.0.1:42458 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:15:06.236 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:43758 10 6452 1 2025-08-15 20:15:32.465 00:00:10.364 TCP 23.104.0.1:42340 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:16:06.453 00:00:10.123 TCP 1.101.0.1:3000 -> 22.102.0.1:53856 10 6452 1 2025-08-15 20:12:11.801 00:05:00.847 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-15 20:16:32.870 00:00:10.324 TCP 23.104.0.1:33362 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:17:06.618 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:59974 10 6452 1 2025-08-15 20:17:33.231 00:00:10.362 TCP 23.104.0.1:49748 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:14:11.805 00:05:00.842 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-15 20:18:06.793 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:41326 10 6452 1 2025-08-15 20:18:37.199 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-15 20:18:37.063 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 20:18:33.635 00:00:10.366 TCP 23.104.0.1:42610 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:19:07.012 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:54256 10 6452 1 2025-08-15 20:19:34.048 00:00:10.361 TCP 23.104.0.1:37792 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:20:07.188 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:54036 10 6452 1 2025-08-15 20:20:34.452 00:00:10.358 TCP 23.104.0.1:54256 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:21:07.358 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:60740 10 6452 1 2025-08-15 20:21:34.850 00:00:10.387 TCP 23.104.0.1:35182 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:18:11.802 00:05:00.847 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-15 20:22:07.526 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:55970 10 6452 1 2025-08-15 20:22:35.273 00:00:10.325 TCP 23.104.0.1:45850 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:23:07.741 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:44818 10 6452 1 2025-08-15 20:23:37.244 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-15 20:23:37.252 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 20:23:35.635 00:00:10.368 TCP 23.104.0.1:36860 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:20:11.804 00:05:00.842 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-15 20:24:07.952 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:33436 10 6452 1 2025-08-15 20:24:36.059 00:00:10.365 TCP 23.104.0.1:49662 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:25:08.183 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:51924 10 6452 1 2025-08-15 20:25:36.462 00:00:10.368 TCP 23.104.0.1:42646 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:26:08.394 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:55114 10 6452 1 2025-08-15 20:26:36.862 00:00:10.371 TCP 23.104.0.1:43064 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:27:08.610 00:00:10.218 TCP 1.101.0.1:3000 -> 22.102.0.1:41484 10 6452 1 2025-08-15 20:27:37.273 00:00:10.364 TCP 23.104.0.1:40082 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:24:11.803 00:05:00.847 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-15 20:28:08.866 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:45858 10 6452 1 2025-08-15 20:28:37.180 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 20:28:37.310 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-15 20:28:37.678 00:00:10.363 TCP 23.104.0.1:58668 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:29:09.103 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:51314 10 6452 1 2025-08-15 20:29:38.102 00:00:10.327 TCP 23.104.0.1:44000 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:26:11.809 00:05:00.838 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-15 20:30:09.314 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:50136 10 6452 1 2025-08-15 20:30:38.464 00:00:10.366 TCP 23.104.0.1:53960 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:31:09.523 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:42454 10 6452 1 2025-08-15 20:31:38.863 00:00:10.374 TCP 23.104.0.1:53794 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:32:09.735 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:38624 10 6452 1 2025-08-15 20:32:39.279 00:00:10.374 TCP 23.104.0.1:48562 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:33:09.950 00:00:10.206 TCP 1.101.0.1:3000 -> 22.102.0.1:53714 10 6452 1 2025-08-15 20:33:37.498 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 20:33:37.398 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-15 20:33:39.689 00:00:10.377 TCP 23.104.0.1:44846 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:30:11.807 00:05:00.845 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-15 20:34:10.194 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52174 10 6452 1 2025-08-15 20:34:40.115 00:00:10.327 TCP 23.104.0.1:48898 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:35:10.405 00:00:10.159 TCP 1.101.0.1:3000 -> 22.102.0.1:41720 12 10367 1 2025-08-15 20:35:40.480 00:00:10.396 TCP 23.104.0.1:34366 -> 1.101.0.1:3000 15 1926 1 2025-08-15 20:32:11.810 00:05:00.841 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-15 20:36:10.598 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:49384 10 6452 1 2025-08-15 20:36:40.910 00:00:10.372 TCP 23.104.0.1:40106 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:37:10.811 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:58164 10 6452 1 2025-08-15 20:37:41.322 00:00:10.364 TCP 23.104.0.1:57956 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:38:11.038 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:54598 10 6452 1 2025-08-15 20:38:37.295 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 20:38:37.452 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-15 20:38:41.727 00:00:10.369 TCP 23.104.0.1:49360 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:39:11.260 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:35872 10 6452 1 2025-08-15 20:39:42.134 00:00:10.367 TCP 23.104.0.1:33156 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:36:11.808 00:05:00.846 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-15 20:40:11.472 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:33224 10 6452 1 2025-08-15 20:40:42.539 00:00:10.391 TCP 23.104.0.1:55488 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:41:11.690 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:42424 10 6452 1 2025-08-15 20:41:42.953 00:00:10.360 TCP 23.104.0.1:59848 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:38:11.811 00:05:00.851 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-15 20:42:11.903 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:48988 10 6452 1 2025-08-15 20:42:43.357 00:00:10.367 TCP 23.104.0.1:37582 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:43:12.118 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:57252 10 6452 1 2025-08-15 20:43:37.407 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-15 20:43:37.481 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 20:43:43.761 00:00:10.335 TCP 23.104.0.1:44296 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:44:12.330 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:44994 10 6452 1 2025-08-15 20:44:44.138 00:00:10.318 TCP 23.104.0.1:57124 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:45:12.554 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:34748 10 6452 1 2025-08-15 20:45:44.497 00:00:10.367 TCP 23.104.0.1:55872 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:42:11.811 00:05:00.844 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-15 20:46:12.763 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:51222 10 6452 1 2025-08-15 20:46:44.907 00:00:10.366 TCP 23.104.0.1:58196 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:47:12.972 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:35178 10 6452 1 2025-08-15 20:47:45.310 00:00:10.367 TCP 23.104.0.1:53138 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:44:11.814 00:05:00.838 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-15 20:48:13.210 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:35588 10 6452 1 2025-08-15 20:48:37.644 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 20:48:37.648 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-15 20:48:45.721 00:00:10.374 TCP 23.104.0.1:49352 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:49:13.420 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:52246 10 6452 1 2025-08-15 20:49:46.136 00:00:10.320 TCP 23.104.0.1:50968 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:50:13.591 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:59262 10 6452 1 2025-08-15 20:50:46.492 00:00:10.369 TCP 23.104.0.1:51706 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:51:13.808 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:58708 10 6452 1 2025-08-15 20:51:46.896 00:00:10.367 TCP 23.104.0.1:58228 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:48:11.812 00:05:00.846 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-15 20:52:14.040 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:51948 10 6452 1 2025-08-15 20:52:47.302 00:00:10.324 TCP 23.104.0.1:37856 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:53:14.255 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:45808 10 6452 1 2025-08-15 20:53:37.828 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 20:53:37.666 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-15 20:53:47.665 00:00:10.365 TCP 23.104.0.1:43202 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:50:11.815 00:05:00.840 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-15 20:54:14.471 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:39174 10 6452 1 2025-08-15 20:54:48.093 00:00:10.922 TCP 23.104.0.1:57982 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:55:14.680 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:59684 10 6452 1 2025-08-15 20:55:49.060 00:00:10.365 TCP 23.104.0.1:60012 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:56:14.849 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:53144 10 6452 1 2025-08-15 20:56:49.464 00:00:10.363 TCP 23.104.0.1:58314 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:57:15.040 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:37630 10 6452 1 2025-08-15 20:57:49.866 00:00:10.373 TCP 23.104.0.1:55880 -> 1.101.0.1:3000 11 1507 1 2025-08-15 20:54:11.813 00:05:00.846 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-15 20:58:15.252 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:46532 10 6452 1 2025-08-15 20:58:37.994 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 20:58:37.741 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 Summary: total flows: 163, total bytes: 501175, total packets: 1567, avg bps: 1060, avg pps: 0, avg bpp: 319 Time window: 2025-08-15 19:56:11 - 2025-08-15 20:59:12 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0015s User: 0.0031s Wall: 0.0024s flows/second: 67297.1 Runtime: 0.0025s