Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-17 10:59:23.562 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-17 10:59:23.676 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-17 10:59:18.175 00:00:10.359 TCP 23.104.0.1:34634 -> 1.101.0.1:3000 11 1507 1 2025-08-17 10:59:29.176 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33948 10 6452 1 2025-08-17 10:56:12.536 00:05:00.917 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-17 11:00:18.571 00:00:10.321 TCP 23.104.0.1:37182 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:00:29.391 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:57562 10 6452 1 2025-08-17 11:01:18.932 00:00:10.386 TCP 23.104.0.1:33448 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:01:29.608 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:56424 10 6452 1 2025-08-17 11:02:19.361 00:00:10.324 TCP 23.104.0.1:58580 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:02:29.822 00:00:10.828 TCP 1.101.0.1:3000 -> 22.102.0.1:52352 10 6452 1 2025-08-17 10:59:12.539 00:05:00.912 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-17 11:03:19.725 00:00:10.367 TCP 23.104.0.1:33948 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:03:30.685 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:55326 10 6452 1 2025-08-17 11:04:23.530 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-17 11:04:23.710 00:00:00.016 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-17 11:04:20.134 00:00:10.367 TCP 23.104.0.1:37266 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:04:30.900 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:35834 10 6452 1 2025-08-17 11:05:20.536 00:00:10.317 TCP 23.104.0.1:42398 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:05:31.119 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:48528 10 6452 1 2025-08-17 11:02:12.536 00:05:00.919 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-17 11:06:20.905 00:00:10.369 TCP 23.104.0.1:37748 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:06:31.290 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:43270 10 6452 1 2025-08-17 11:07:21.314 00:00:10.365 TCP 23.104.0.1:38198 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:07:31.465 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:37602 10 6452 1 2025-08-17 11:08:21.712 00:00:10.375 TCP 23.104.0.1:55082 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:08:31.674 00:00:10.590 TCP 1.101.0.1:3000 -> 22.102.0.1:51664 10 6452 1 2025-08-17 11:05:12.539 00:05:00.913 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-17 11:09:23.748 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-17 11:09:23.958 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-17 11:09:22.125 00:00:10.326 TCP 23.104.0.1:50374 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:09:32.295 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:56108 10 6452 1 2025-08-17 11:10:22.493 00:00:10.332 TCP 23.104.0.1:36652 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:10:32.500 00:00:10.439 TCP 1.101.0.1:3000 -> 22.102.0.1:38132 10 6452 1 2025-08-17 11:11:22.869 00:00:10.372 TCP 23.104.0.1:34008 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:11:32.980 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:34454 10 6452 1 2025-08-17 11:08:12.539 00:05:00.918 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-17 11:12:23.281 00:00:10.364 TCP 23.104.0.1:40186 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:12:33.213 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:37132 10 6452 1 2025-08-17 11:13:23.684 00:00:10.363 TCP 23.104.0.1:36984 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:13:33.388 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:35864 10 6452 1 2025-08-17 11:14:23.969 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-17 11:14:23.911 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-17 11:14:24.106 00:00:10.369 TCP 23.104.0.1:56172 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:14:33.603 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:41162 10 6452 1 2025-08-17 11:11:12.540 00:05:00.913 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-17 11:15:24.515 00:00:10.368 TCP 23.104.0.1:60488 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:15:33.817 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:42140 10 6452 1 2025-08-17 11:16:24.923 00:00:10.383 TCP 23.104.0.1:54152 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:16:34.048 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:49088 10 6452 1 2025-08-17 11:17:25.341 00:00:10.365 TCP 23.104.0.1:36534 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:17:34.261 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:47132 10 6452 1 2025-08-17 11:14:12.539 00:05:00.918 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-17 11:18:25.744 00:00:10.371 TCP 23.104.0.1:56496 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:18:34.482 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:58376 10 6452 1 2025-08-17 11:19:23.960 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-17 11:19:24.106 00:00:00.035 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-17 11:19:26.158 00:00:10.367 TCP 23.104.0.1:51088 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:19:34.691 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:46380 10 6452 1 2025-08-17 11:20:26.566 00:00:10.370 TCP 23.104.0.1:44616 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:20:34.916 00:00:10.149 TCP 1.101.0.1:3000 -> 22.102.0.1:39606 10 6452 1 2025-08-17 11:17:12.542 00:05:00.914 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-17 11:21:26.975 00:00:10.327 TCP 23.104.0.1:45216 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:21:35.101 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:43048 10 6452 1 2025-08-17 11:22:27.339 00:00:10.362 TCP 23.104.0.1:35506 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:22:35.318 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:39008 10 6452 1 2025-08-17 11:23:27.741 00:00:10.365 TCP 23.104.0.1:43052 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:23:35.488 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:48354 10 6452 1 2025-08-17 11:20:12.542 00:05:00.917 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-17 11:24:24.210 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-17 11:24:24.058 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-17 11:24:28.141 00:00:10.373 TCP 23.104.0.1:43980 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:24:35.662 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:43418 10 6452 1 2025-08-17 11:25:28.543 00:00:10.365 TCP 23.104.0.1:39670 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:25:35.874 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:49752 10 6452 1 2025-08-17 11:26:28.949 00:00:10.371 TCP 23.104.0.1:51042 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:26:36.117 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:50328 10 6452 1 2025-08-17 11:23:12.546 00:05:00.910 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-17 11:27:29.356 00:00:10.368 TCP 23.104.0.1:37838 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:27:36.290 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:42678 10 6452 1 2025-08-17 11:28:29.763 00:00:10.374 TCP 23.104.0.1:41098 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:28:36.468 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:51854 10 6452 1 2025-08-17 11:29:24.146 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-17 11:29:24.016 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-17 11:29:30.172 00:00:10.366 TCP 23.104.0.1:50880 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:29:36.640 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:48852 10 6452 1 2025-08-17 11:26:12.545 00:05:00.917 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-17 11:30:30.576 00:00:10.364 TCP 23.104.0.1:39776 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:30:36.860 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:35650 11 6492 1 2025-08-17 11:31:30.980 00:00:10.366 TCP 23.104.0.1:36062 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:31:37.083 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:45222 10 6452 1 2025-08-17 11:32:31.388 00:00:10.362 TCP 23.104.0.1:47920 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:32:37.295 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:39586 10 6452 1 2025-08-17 11:29:12.546 00:05:00.912 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-17 11:33:31.789 00:00:10.369 TCP 23.104.0.1:35952 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:33:37.506 00:00:10.480 TCP 1.101.0.1:3000 -> 22.102.0.1:32966 10 6452 1 2025-08-17 11:34:24.486 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-17 11:34:24.429 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-17 11:34:32.194 00:00:10.331 TCP 23.104.0.1:37960 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:34:38.041 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:54170 10 6452 1 2025-08-17 11:35:32.562 00:00:10.324 TCP 23.104.0.1:53952 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:35:38.273 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:59846 10 6452 1 2025-08-17 11:32:12.545 00:05:00.917 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-17 11:36:32.925 00:00:10.381 TCP 23.104.0.1:51278 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:36:38.445 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34096 10 6452 1 2025-08-17 11:37:33.346 00:00:10.321 TCP 23.104.0.1:48540 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:37:38.654 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:59408 12 6556 1 2025-08-17 11:38:33.703 00:00:10.324 TCP 23.104.0.1:37146 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:38:38.871 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:54584 10 6452 1 2025-08-17 11:35:12.548 00:05:00.914 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-17 11:39:24.423 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-17 11:39:24.443 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-17 11:39:34.085 00:00:10.370 TCP 23.104.0.1:51800 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:39:39.105 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:33730 10 6452 1 2025-08-17 11:40:34.491 00:00:10.372 TCP 23.104.0.1:37408 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:40:39.276 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:57504 10 6452 1 2025-08-17 11:41:34.915 00:00:10.364 TCP 23.104.0.1:36290 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:41:39.494 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:44094 10 6452 1 2025-08-17 11:38:12.546 00:05:00.921 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-17 11:42:35.318 00:00:10.332 TCP 23.104.0.1:39496 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:42:39.706 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:35016 10 6452 1 2025-08-17 11:43:35.702 00:00:10.369 TCP 23.104.0.1:49948 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:43:39.881 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:42752 10 6452 1 2025-08-17 11:44:24.575 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-17 11:44:24.458 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-17 11:44:36.113 00:00:10.367 TCP 23.104.0.1:53762 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:44:40.111 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:55796 10 6452 1 2025-08-17 11:41:12.550 00:05:00.916 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-17 11:45:36.526 00:00:10.366 TCP 23.104.0.1:56292 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:45:40.335 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:33482 10 6452 1 2025-08-17 11:46:36.924 00:00:10.378 TCP 23.104.0.1:57800 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:46:40.509 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:54546 10 6452 1 2025-08-17 11:47:40.734 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:59446 10 6452 1 2025-08-17 11:47:37.342 00:00:10.326 TCP 23.104.0.1:40904 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:44:12.548 00:05:00.919 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-17 11:48:40.953 00:00:10.161 TCP 1.101.0.1:3000 -> 22.102.0.1:42012 10 6452 1 2025-08-17 11:48:37.706 00:00:10.323 TCP 23.104.0.1:58676 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:49:24.526 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-17 11:49:24.654 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-17 11:49:38.093 00:00:10.323 TCP 23.104.0.1:59652 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:49:41.147 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:55292 10 6452 1 2025-08-17 11:50:41.366 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:32850 10 6452 1 2025-08-17 11:50:38.459 00:00:10.332 TCP 23.104.0.1:55660 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:47:12.552 00:05:00.915 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-17 11:51:41.581 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:41788 10 6452 1 2025-08-17 11:51:38.821 00:00:10.364 TCP 23.104.0.1:53514 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:52:41.796 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:46484 10 6452 1 2025-08-17 11:52:39.222 00:00:10.362 TCP 23.104.0.1:57990 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:53:39.625 00:00:10.365 TCP 23.104.0.1:51802 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:53:42.016 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:47824 10 6452 1 2025-08-17 11:50:12.550 00:05:00.920 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-17 11:54:24.985 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-17 11:54:24.530 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-17 11:54:40.031 00:00:10.364 TCP 23.104.0.1:38712 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:54:42.227 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:49236 10 6452 1 2025-08-17 11:55:40.437 00:00:10.435 TCP 23.104.0.1:47252 -> 1.101.0.1:3000 15 1926 1 2025-08-17 11:55:42.439 00:00:10.161 TCP 1.101.0.1:3000 -> 22.102.0.1:45786 12 10365 1 2025-08-17 11:56:40.917 00:00:10.361 TCP 23.104.0.1:48484 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:56:42.639 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:40504 10 6452 1 2025-08-17 11:53:12.552 00:05:00.915 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-17 11:57:41.315 00:00:10.320 TCP 23.104.0.1:54256 -> 1.101.0.1:3000 11 1507 1 2025-08-17 11:57:42.866 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:44366 10 6452 1 Summary: total flows: 162, total bytes: 494865, total packets: 1560, avg bps: 1063, avg pps: 0, avg bpp: 317 Time window: 2025-08-17 10:56:12 - 2025-08-17 11:58:13 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0023s User: 0.0023s Wall: 0.0023s flows/second: 71082.5 Runtime: 0.0023s