Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-25 11:54:17.485 00:06:00.051 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-25 11:59:34.337 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:41580 10 6452 1 2025-08-25 11:59:38.185 00:00:10.368 TCP 23.104.0.1:47660 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:00:34.556 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:52878 10 6452 1 2025-08-25 12:00:38.591 00:00:10.362 TCP 23.104.0.1:45072 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:01:34.777 00:00:10.208 TCP 1.101.0.1:3000 -> 22.102.0.1:53650 12 10367 1 2025-08-25 12:01:38.984 00:00:10.950 TCP 23.104.0.1:43408 -> 1.101.0.1:3000 15 1926 1 2025-08-25 12:02:35.030 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:51736 10 6452 1 2025-08-25 12:02:39.971 00:00:10.377 TCP 23.104.0.1:60236 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:03:15.886 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 12:03:15.590 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 12:03:35.244 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:49580 10 6452 1 2025-08-25 12:03:40.385 00:00:10.369 TCP 23.104.0.1:48910 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:04:35.455 00:00:10.150 TCP 1.101.0.1:3000 -> 22.102.0.1:59306 10 6452 1 2025-08-25 12:04:40.786 00:00:10.375 TCP 23.104.0.1:54460 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:00:17.483 00:06:00.074 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-25 12:05:35.630 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:50142 10 6452 1 2025-08-25 12:05:41.197 00:00:10.365 TCP 23.104.0.1:44218 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:01:17.485 00:06:00.070 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-25 12:06:35.843 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:43790 10 6452 1 2025-08-25 12:06:41.599 00:00:10.368 TCP 23.104.0.1:38018 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:07:36.072 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:57946 10 6452 1 2025-08-25 12:07:42.005 00:00:10.565 TCP 23.104.0.1:58610 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:08:16.025 00:00:00.029 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 12:08:16.049 00:00:00.027 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 12:08:36.287 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:49626 10 6452 1 2025-08-25 12:08:42.606 00:00:10.367 TCP 23.104.0.1:60022 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:09:36.457 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:52676 10 6452 1 2025-08-25 12:09:43.013 00:00:10.362 TCP 23.104.0.1:53150 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:10:36.671 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45092 10 6452 1 2025-08-25 12:10:43.412 00:00:10.367 TCP 23.104.0.1:38810 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:11:36.887 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:35328 10 6452 1 2025-08-25 12:11:43.817 00:00:10.362 TCP 23.104.0.1:59160 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:07:17.483 00:06:00.086 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-25 12:12:37.124 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:39140 10 6452 1 2025-08-25 12:12:44.216 00:00:10.369 TCP 23.104.0.1:48770 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:13:15.843 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 12:13:16.225 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 12:08:17.486 00:06:00.080 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-25 12:13:37.328 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:32988 10 6452 1 2025-08-25 12:13:44.623 00:00:10.370 TCP 23.104.0.1:54004 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:14:37.543 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:36254 10 6452 1 2025-08-25 12:14:45.026 00:00:10.365 TCP 23.104.0.1:43820 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:15:37.756 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:58622 10 6452 1 2025-08-25 12:15:45.436 00:00:10.367 TCP 23.104.0.1:52790 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:16:37.978 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:54170 10 6452 1 2025-08-25 12:16:45.848 00:00:10.378 TCP 23.104.0.1:54876 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:17:38.215 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:43746 10 6452 1 2025-08-25 12:17:46.266 00:00:10.369 TCP 23.104.0.1:48184 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:18:16.189 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 12:18:16.166 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 12:18:38.388 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:50864 10 6452 1 2025-08-25 12:18:46.687 00:00:10.366 TCP 23.104.0.1:46666 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:14:17.484 00:06:00.088 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-25 12:19:38.606 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:41666 10 6452 1 2025-08-25 12:19:47.103 00:00:10.367 TCP 23.104.0.1:56500 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:15:17.487 00:06:00.083 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-25 12:20:38.818 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:57718 10 6452 1 2025-08-25 12:20:47.514 00:00:10.367 TCP 23.104.0.1:33210 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:21:38.989 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:56272 10 6452 1 2025-08-25 12:21:47.919 00:00:10.366 TCP 23.104.0.1:36292 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:22:39.207 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:51408 10 6452 1 2025-08-25 12:22:48.327 00:00:10.365 TCP 23.104.0.1:46090 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:23:16.271 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 12:23:16.299 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 12:23:39.387 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:33914 10 6452 1 2025-08-25 12:23:48.733 00:00:10.322 TCP 23.104.0.1:57720 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:24:39.601 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:52870 10 6452 1 2025-08-25 12:24:49.108 00:00:10.366 TCP 23.104.0.1:34250 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:25:39.773 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33042 10 6452 1 2025-08-25 12:25:49.509 00:00:10.370 TCP 23.104.0.1:60906 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:21:17.489 00:06:00.089 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-25 12:26:39.990 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:47528 10 6452 1 2025-08-25 12:26:49.916 00:00:10.331 TCP 23.104.0.1:49246 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:22:17.491 00:06:00.084 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-25 12:27:40.217 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:42724 10 6452 1 2025-08-25 12:27:50.281 00:00:10.367 TCP 23.104.0.1:34770 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:28:16.193 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 12:28:16.643 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 12:28:40.431 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:54944 10 6452 1 2025-08-25 12:28:50.682 00:00:10.325 TCP 23.104.0.1:59146 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:29:40.608 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:42338 10 6452 1 2025-08-25 12:29:51.047 00:00:10.329 TCP 23.104.0.1:43424 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:30:40.820 00:00:10.886 TCP 1.101.0.1:3000 -> 22.102.0.1:47450 10 6452 1 2025-08-25 12:30:51.414 00:00:10.327 TCP 23.104.0.1:52918 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:31:41.745 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:40402 10 6452 1 2025-08-25 12:31:51.779 00:00:10.365 TCP 23.104.0.1:34416 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:32:41.957 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:56038 10 6452 1 2025-08-25 12:32:52.183 00:00:10.364 TCP 23.104.0.1:53956 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:33:16.416 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 12:33:16.588 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 12:28:17.490 00:06:00.088 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-25 12:33:42.193 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:49970 10 6452 1 2025-08-25 12:33:52.582 00:00:10.336 TCP 23.104.0.1:41392 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:29:17.492 00:06:00.084 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-25 12:34:42.409 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:60488 10 6452 1 2025-08-25 12:34:52.957 00:00:10.365 TCP 23.104.0.1:38792 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:35:42.624 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:39516 10 6452 1 2025-08-25 12:35:53.366 00:00:10.370 TCP 23.104.0.1:46602 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:36:42.835 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:45592 10 6452 1 2025-08-25 12:36:53.786 00:00:10.364 TCP 23.104.0.1:57210 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:37:43.070 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:50070 10 6452 1 2025-08-25 12:37:54.187 00:00:10.363 TCP 23.104.0.1:50502 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:38:16.540 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 12:38:16.716 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 12:38:43.286 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:58774 10 6452 1 2025-08-25 12:38:54.590 00:00:10.378 TCP 23.104.0.1:56588 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:39:43.493 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52016 10 6452 1 2025-08-25 12:39:54.994 00:00:10.364 TCP 23.104.0.1:47348 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:35:17.510 00:06:00.070 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-25 12:40:43.703 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:39470 10 6452 1 2025-08-25 12:40:55.399 00:00:10.377 TCP 23.104.0.1:39808 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:36:17.512 00:06:00.066 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-25 12:41:43.910 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:54486 10 6452 1 2025-08-25 12:41:55.821 00:00:10.328 TCP 23.104.0.1:52836 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:42:44.121 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:44226 10 6452 1 2025-08-25 12:42:56.202 00:00:10.323 TCP 23.104.0.1:50550 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:43:16.789 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 12:43:16.712 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 12:43:44.335 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:41258 10 6452 1 2025-08-25 12:43:56.561 00:00:10.366 TCP 23.104.0.1:45232 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:44:44.545 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:52070 10 6452 1 2025-08-25 12:44:56.969 00:00:10.381 TCP 23.104.0.1:36394 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:45:44.765 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:39466 10 6452 1 2025-08-25 12:45:57.378 00:00:10.369 TCP 23.104.0.1:38124 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:46:44.935 00:00:10.221 TCP 1.101.0.1:3000 -> 22.102.0.1:55322 12 10367 1 2025-08-25 12:46:57.784 00:00:10.437 TCP 23.104.0.1:38848 -> 1.101.0.1:3000 15 1926 1 2025-08-25 12:42:17.511 00:06:00.071 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-25 12:47:45.201 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:36814 10 6452 1 2025-08-25 12:47:58.259 00:00:10.397 TCP 23.104.0.1:37838 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:48:16.663 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 12:48:16.989 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 12:43:17.514 00:06:00.066 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-25 12:48:45.368 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:54720 10 6452 1 2025-08-25 12:48:58.698 00:00:10.336 TCP 23.104.0.1:56026 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:49:45.581 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:41344 10 6452 1 2025-08-25 12:49:59.090 00:00:10.321 TCP 23.104.0.1:35072 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:50:45.754 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:55428 10 6452 1 2025-08-25 12:50:59.452 00:00:10.359 TCP 23.104.0.1:38230 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:51:45.970 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:48118 10 6452 1 2025-08-25 12:51:59.849 00:00:10.338 TCP 23.104.0.1:53768 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:52:46.185 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:59196 10 6452 1 2025-08-25 12:53:00.229 00:00:10.323 TCP 23.104.0.1:36918 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:53:16.863 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 12:53:16.837 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 12:53:46.359 00:00:10.208 TCP 1.101.0.1:3000 -> 22.102.0.1:34386 10 6452 1 2025-08-25 12:54:00.591 00:00:10.365 TCP 23.104.0.1:59786 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:49:17.516 00:06:00.067 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-25 12:54:46.606 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:38036 10 6452 1 2025-08-25 12:55:01.003 00:00:10.442 TCP 23.104.0.1:60828 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:50:17.519 00:06:00.062 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-25 12:55:46.826 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:39612 10 6452 1 2025-08-25 12:56:01.498 00:00:10.329 TCP 23.104.0.1:48290 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:56:47.068 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:49416 10 6452 1 2025-08-25 12:57:01.863 00:00:10.372 TCP 23.104.0.1:38354 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:57:47.282 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:45358 10 6452 1 2025-08-25 12:58:16.970 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 12:58:02.279 00:00:10.371 TCP 23.104.0.1:54380 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:58:17.045 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 Summary: total flows: 159, total bytes: 498934, total packets: 1561, avg bps: 1039, avg pps: 0, avg bpp: 319 Time window: 2025-08-25 11:54:17 - 2025-08-25 12:58:17 Total flows processed: 159, passed: 159, Blocks skipped: 0, Bytes read: 16600 Sys: 0.0031s User: 0.0010s Wall: 0.0023s flows/second: 68182.6 Runtime: 0.0023s