Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-25 12:58:47.463 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:42874 10 6452 1 2025-08-25 12:59:02.689 00:00:10.369 TCP 23.104.0.1:45270 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:59:47.684 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:46656 10 6452 1 2025-08-25 13:00:03.105 00:00:10.541 TCP 23.104.0.1:56524 -> 1.101.0.1:3000 13 1611 1 2025-08-25 13:00:47.914 00:00:10.149 TCP 1.101.0.1:3000 -> 22.102.0.1:49262 10 6452 1 2025-08-25 13:01:04.092 00:00:10.364 TCP 23.104.0.1:32954 -> 1.101.0.1:3000 11 1507 1 2025-08-25 12:56:17.517 00:06:00.067 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-25 13:01:48.108 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:45234 12 10367 1 2025-08-25 13:02:04.494 00:00:10.444 TCP 23.104.0.1:55722 -> 1.101.0.1:3000 15 1926 1 2025-08-25 12:57:17.519 00:06:00.063 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-25 13:02:48.343 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:40480 10 6452 1 2025-08-25 13:03:04.978 00:00:10.325 TCP 23.104.0.1:40730 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:03:17.187 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 13:03:17.065 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 13:03:48.552 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:58040 10 6452 1 2025-08-25 13:04:05.345 00:00:10.358 TCP 23.104.0.1:41872 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:04:48.763 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:44046 10 6452 1 2025-08-25 13:05:05.742 00:00:10.365 TCP 23.104.0.1:57760 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:05:48.976 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:52872 10 6452 1 2025-08-25 13:06:06.144 00:00:10.434 TCP 23.104.0.1:48396 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:06:49.204 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:52834 10 6452 1 2025-08-25 13:07:06.615 00:00:10.326 TCP 23.104.0.1:42086 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:07:49.382 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:49716 10 6452 1 2025-08-25 13:08:17.427 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 13:03:17.517 00:06:00.070 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-25 13:08:17.501 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 13:08:06.984 00:00:10.365 TCP 23.104.0.1:53596 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:08:49.596 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:46270 10 6452 1 2025-08-25 13:04:17.521 00:06:00.065 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-25 13:09:07.390 00:00:10.365 TCP 23.104.0.1:38108 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:09:49.810 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:47242 10 6452 1 2025-08-25 13:10:07.790 00:00:10.369 TCP 23.104.0.1:37998 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:10:50.078 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:33940 10 6452 1 2025-08-25 13:11:08.198 00:00:10.364 TCP 23.104.0.1:39474 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:11:50.303 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:60062 12 10365 1 2025-08-25 13:12:08.600 00:00:10.442 TCP 23.104.0.1:33382 -> 1.101.0.1:3000 15 1926 1 2025-08-25 13:12:50.543 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55322 10 6452 1 2025-08-25 13:13:17.336 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 13:13:17.318 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 13:13:09.100 00:00:10.363 TCP 23.104.0.1:34610 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:13:50.766 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:51336 10 6452 1 2025-08-25 13:14:09.502 00:00:10.326 TCP 23.104.0.1:38160 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:14:50.977 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:49510 10 6452 1 2025-08-25 13:15:09.869 00:00:10.367 TCP 23.104.0.1:34038 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:10:17.521 00:06:00.075 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-25 13:15:51.213 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:46744 10 6452 1 2025-08-25 13:11:17.522 00:06:00.085 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-25 13:16:10.277 00:00:10.325 TCP 23.104.0.1:49990 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:16:51.388 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:33122 10 6452 1 2025-08-25 13:17:10.640 00:00:10.375 TCP 23.104.0.1:55000 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:17:51.603 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:38896 10 6452 1 2025-08-25 13:18:17.710 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 13:18:17.573 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 13:18:11.067 00:00:10.367 TCP 23.104.0.1:42452 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:18:51.815 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:45182 10 6452 1 2025-08-25 13:19:11.471 00:00:10.676 TCP 23.104.0.1:47154 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:19:52.045 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:51876 10 6452 1 2025-08-25 13:20:12.184 00:00:10.371 TCP 23.104.0.1:39412 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:20:52.255 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:52656 10 6452 1 2025-08-25 13:21:12.593 00:00:10.364 TCP 23.104.0.1:53288 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:21:52.468 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:40560 12 10365 1 2025-08-25 13:17:17.520 00:06:00.091 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-25 13:22:12.998 00:00:10.437 TCP 23.104.0.1:47042 -> 1.101.0.1:3000 15 1926 1 2025-08-25 13:22:52.709 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:53436 10 6452 1 2025-08-25 13:23:17.680 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 13:23:17.510 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 13:18:17.533 00:06:00.075 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-25 13:23:13.473 00:00:10.365 TCP 23.104.0.1:36020 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:23:52.923 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:44032 10 6452 1 2025-08-25 13:24:13.884 00:00:10.386 TCP 23.104.0.1:56874 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:24:53.155 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:37446 10 6452 1 2025-08-25 13:25:14.310 00:00:10.364 TCP 23.104.0.1:49344 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:25:53.376 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:60086 10 6452 1 2025-08-25 13:26:14.714 00:00:10.382 TCP 23.104.0.1:41778 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:26:53.590 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:51376 10 6452 1 2025-08-25 13:27:15.134 00:00:10.366 TCP 23.104.0.1:36984 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:27:53.768 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:55054 10 6452 1 2025-08-25 13:28:17.902 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 13:28:17.780 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 13:28:15.544 00:00:10.366 TCP 23.104.0.1:45492 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:28:53.943 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:38550 10 6452 1 2025-08-25 13:24:17.532 00:06:00.080 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-25 13:29:15.950 00:00:10.375 TCP 23.104.0.1:52058 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:29:54.171 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:39890 10 6452 1 2025-08-25 13:25:17.535 00:06:00.077 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-25 13:30:16.366 00:00:10.368 TCP 23.104.0.1:46852 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:30:54.381 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:40900 10 6452 1 2025-08-25 13:31:16.793 00:00:10.889 TCP 23.104.0.1:42332 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:31:54.594 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:55540 10 6452 1 2025-08-25 13:32:17.736 00:00:10.369 TCP 23.104.0.1:59904 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:32:54.805 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:47240 10 6452 1 2025-08-25 13:33:17.672 00:00:00.039 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 13:33:17.894 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 13:33:18.142 00:00:10.371 TCP 23.104.0.1:55424 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:33:54.980 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:52130 10 6452 1 2025-08-25 13:34:18.548 00:00:10.369 TCP 23.104.0.1:56082 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:34:55.209 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:33776 10 6452 1 2025-08-25 13:35:18.952 00:00:10.367 TCP 23.104.0.1:47504 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:35:55.383 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:34600 10 6452 1 2025-08-25 13:31:17.533 00:06:00.100 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-25 13:36:19.364 00:00:10.363 TCP 23.104.0.1:42398 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:36:55.574 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:35442 10 6452 1 2025-08-25 13:32:17.537 00:06:00.095 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-25 13:37:19.765 00:00:10.375 TCP 23.104.0.1:45528 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:37:55.747 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:52872 10 6452 1 2025-08-25 13:38:17.700 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 13:38:17.703 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 13:38:20.177 00:00:10.362 TCP 23.104.0.1:53730 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:38:55.963 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:54996 12 6556 1 2025-08-25 13:39:20.576 00:00:10.363 TCP 23.104.0.1:58290 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:39:56.185 00:00:10.229 TCP 1.101.0.1:3000 -> 22.102.0.1:50054 10 6452 1 2025-08-25 13:40:20.978 00:00:10.369 TCP 23.104.0.1:39390 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:40:56.453 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:47514 10 6452 1 2025-08-25 13:41:21.386 00:00:10.432 TCP 23.104.0.1:52280 -> 1.101.0.1:3000 15 1926 1 2025-08-25 13:41:56.669 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:45144 12 10365 1 2025-08-25 13:42:21.855 00:00:10.376 TCP 23.104.0.1:43722 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:42:56.909 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:39854 10 6452 1 2025-08-25 13:43:17.720 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 13:43:18.037 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 13:38:17.534 00:06:00.101 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-25 13:43:22.267 00:00:10.324 TCP 23.104.0.1:59606 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:43:57.143 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:56018 10 6452 1 2025-08-25 13:39:17.539 00:06:00.093 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-25 13:44:22.627 00:00:10.366 TCP 23.104.0.1:59278 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:44:57.355 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:41006 10 6452 1 2025-08-25 13:45:23.033 00:00:10.363 TCP 23.104.0.1:43220 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:45:57.564 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:43886 10 6452 1 2025-08-25 13:46:23.439 00:00:10.441 TCP 23.104.0.1:50046 -> 1.101.0.1:3000 15 1926 1 2025-08-25 13:46:57.777 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:46678 12 10574 1 2025-08-25 13:47:23.916 00:00:10.324 TCP 23.104.0.1:50526 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:47:58.014 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:57788 10 6661 1 2025-08-25 13:48:18.483 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 13:48:18.103 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 13:48:24.279 00:00:10.371 TCP 23.104.0.1:37040 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:48:58.220 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:33364 10 6661 1 2025-08-25 13:49:24.681 00:00:10.365 TCP 23.104.0.1:54290 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:49:58.430 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:48574 10 6661 1 2025-08-25 13:45:17.538 00:06:00.099 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-25 13:50:25.106 00:00:10.362 TCP 23.104.0.1:44726 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:50:58.645 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:48984 10 6661 1 2025-08-25 13:46:17.540 00:06:00.095 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-25 13:51:25.504 00:00:10.371 TCP 23.104.0.1:54502 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:51:58.857 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:42222 10 6661 1 2025-08-25 13:52:25.918 00:00:10.397 TCP 23.104.0.1:39364 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:52:59.038 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:40484 10 6661 1 2025-08-25 13:53:18.023 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 13:53:18.185 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 13:53:26.364 00:00:10.364 TCP 23.104.0.1:53484 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:53:59.258 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:44806 10 6661 1 2025-08-25 13:54:26.769 00:00:10.369 TCP 23.104.0.1:50894 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:54:59.478 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:34406 10 6661 1 2025-08-25 13:55:27.176 00:00:10.366 TCP 23.104.0.1:55234 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:55:59.693 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:58908 10 6661 1 2025-08-25 13:56:27.584 00:00:10.373 TCP 23.104.0.1:55596 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:56:59.915 00:00:10.155 TCP 1.101.0.1:3000 -> 22.102.0.1:48922 10 6661 1 2025-08-25 13:52:17.540 00:06:00.099 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-25 13:57:27.999 00:00:10.327 TCP 23.104.0.1:59830 -> 1.101.0.1:3000 11 1507 1 2025-08-25 13:58:00.106 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:43030 10 6661 1 2025-08-25 13:58:18.872 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-25 13:58:18.995 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-25 13:53:17.542 00:06:00.094 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-25 13:58:28.364 00:00:10.362 TCP 23.104.0.1:50206 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 162, total bytes: 523464, total packets: 1618, avg bps: 1107, avg pps: 0, avg bpp: 323 Time window: 2025-08-25 12:56:17 - 2025-08-25 13:59:17 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0033s User: 0.0017s Wall: 0.0023s flows/second: 70985.9 Runtime: 0.0023s