Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-27 09:58:53.510 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:58654 10 6452 1 2025-08-27 09:59:11.278 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-27 09:59:11.296 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-27 09:59:24.456 00:00:10.323 TCP 23.104.0.1:38272 -> 1.101.0.1:3000 11 1507 1 2025-08-27 09:59:53.725 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:42782 10 6452 1 2025-08-27 10:00:24.816 00:00:10.362 TCP 23.104.0.1:38680 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:00:53.922 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:58016 10 6452 1 2025-08-27 10:01:25.218 00:00:10.362 TCP 23.104.0.1:42192 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:01:54.103 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:33062 10 6452 1 2025-08-27 10:02:25.626 00:00:10.392 TCP 23.104.0.1:51326 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:02:54.315 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:35128 10 6452 1 2025-08-27 09:59:18.817 00:05:00.233 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-27 10:03:26.108 00:00:10.368 TCP 23.104.0.1:52690 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:03:54.531 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:53206 10 6452 1 2025-08-27 10:04:11.275 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-27 10:04:11.254 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-27 10:00:18.821 00:05:00.228 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-27 10:04:26.514 00:00:10.368 TCP 23.104.0.1:54574 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:04:54.739 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:52414 10 6452 1 2025-08-27 10:05:26.923 00:00:10.338 TCP 23.104.0.1:42140 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:05:54.946 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:35974 10 6452 1 2025-08-27 10:06:27.302 00:00:10.369 TCP 23.104.0.1:35308 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:06:55.184 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:56722 10 6452 1 2025-08-27 10:07:27.709 00:00:10.365 TCP 23.104.0.1:52286 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:07:55.398 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:38986 10 6452 1 2025-08-27 10:08:28.113 00:00:10.360 TCP 23.104.0.1:51762 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:08:55.612 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:53628 10 6452 1 2025-08-27 10:09:11.256 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-27 10:09:11.422 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-27 10:05:18.821 00:05:00.235 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-27 10:09:28.523 00:00:10.365 TCP 23.104.0.1:48552 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:09:55.831 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:48378 10 6452 1 2025-08-27 10:06:18.825 00:05:00.238 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-27 10:10:28.925 00:00:10.389 TCP 23.104.0.1:42396 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:10:56.072 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:58912 10 6452 1 2025-08-27 10:11:29.356 00:00:10.325 TCP 23.104.0.1:50326 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:11:56.289 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:38886 10 6452 1 2025-08-27 10:12:29.724 00:00:10.368 TCP 23.104.0.1:58720 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:12:56.512 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:52630 10 6452 1 2025-08-27 10:13:30.129 00:00:10.374 TCP 23.104.0.1:51332 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:13:56.722 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:46572 10 6452 1 2025-08-27 10:14:11.844 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-27 10:14:11.984 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-27 10:14:30.540 00:00:10.373 TCP 23.104.0.1:36044 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:14:56.945 00:00:15.631 TCP 1.101.0.1:3000 -> 22.102.0.1:45048 10 6452 1 2025-08-27 10:11:18.823 00:05:00.234 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-27 10:15:30.950 00:00:10.335 TCP 23.104.0.1:55328 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:16:02.655 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:41946 10 6452 1 2025-08-27 10:12:18.827 00:05:00.230 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-27 10:16:31.317 00:00:10.324 TCP 23.104.0.1:60478 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:17:02.871 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:51110 10 6452 1 2025-08-27 10:17:31.679 00:00:10.365 TCP 23.104.0.1:34982 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:18:03.108 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:49264 10 6452 1 2025-08-27 10:18:32.105 00:00:10.322 TCP 23.104.0.1:43158 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:19:11.744 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-27 10:19:11.622 00:00:00.044 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-27 10:19:03.333 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:39730 10 6452 1 2025-08-27 10:19:32.472 00:00:10.325 TCP 23.104.0.1:45476 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:20:03.509 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:35748 10 6452 1 2025-08-27 10:20:32.836 00:00:10.391 TCP 23.104.0.1:53990 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:21:03.717 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:34084 10 6452 1 2025-08-27 10:17:18.825 00:05:00.244 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-27 10:21:33.264 00:00:10.372 TCP 23.104.0.1:50220 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:22:03.931 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:53400 10 6452 1 2025-08-27 10:18:18.827 00:05:00.239 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-27 10:22:33.671 00:00:10.375 TCP 23.104.0.1:35700 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:23:04.166 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:60448 10 6452 1 2025-08-27 10:23:34.103 00:00:10.327 TCP 23.104.0.1:59868 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:24:11.724 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-27 10:24:11.595 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-27 10:24:04.379 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:40362 10 6452 1 2025-08-27 10:24:34.463 00:00:21.041 TCP 23.104.0.1:43584 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:25:04.599 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:53030 10 6452 1 2025-08-27 10:25:45.554 00:00:10.360 TCP 23.104.0.1:42432 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:26:04.808 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:50446 10 6452 1 2025-08-27 10:26:45.949 00:00:10.367 TCP 23.104.0.1:34964 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:27:05.037 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:39134 10 6452 1 2025-08-27 10:23:18.829 00:05:00.246 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-27 10:27:46.361 00:00:10.363 TCP 23.104.0.1:57204 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:28:05.209 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:41570 10 6452 1 2025-08-27 10:24:18.836 00:05:00.237 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-27 10:28:46.770 00:00:10.364 TCP 23.104.0.1:56152 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:29:11.827 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-27 10:29:11.757 00:00:00.026 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-27 10:29:05.418 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:58516 10 6452 1 2025-08-27 10:29:47.170 00:00:10.363 TCP 23.104.0.1:49296 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:30:05.630 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:55804 10 6452 1 2025-08-27 10:30:47.577 00:00:10.363 TCP 23.104.0.1:34892 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:31:05.850 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:43094 10 6452 1 2025-08-27 10:31:47.980 00:00:10.378 TCP 23.104.0.1:57126 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:32:06.077 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:35664 10 6452 1 2025-08-27 10:32:48.399 00:00:10.363 TCP 23.104.0.1:46114 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:33:06.291 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:52322 10 6452 1 2025-08-27 10:29:18.835 00:05:00.242 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-27 10:33:48.804 00:00:10.363 TCP 23.104.0.1:59370 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:34:12.373 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-27 10:34:06.468 00:00:10.249 TCP 1.101.0.1:3000 -> 22.102.0.1:41162 10 6452 1 2025-08-27 10:34:12.207 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-27 10:30:18.837 00:05:00.236 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-27 10:34:49.205 00:00:10.324 TCP 23.104.0.1:52056 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:35:06.753 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:60672 10 6452 1 2025-08-27 10:35:49.572 00:00:10.321 TCP 23.104.0.1:55294 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:36:06.971 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:56102 10 6452 1 2025-08-27 10:36:49.935 00:00:10.373 TCP 23.104.0.1:44946 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:37:07.199 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:36118 10 6452 1 2025-08-27 10:37:50.345 00:00:10.325 TCP 23.104.0.1:39766 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:38:07.412 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:46346 10 6452 1 2025-08-27 10:38:50.709 00:00:10.344 TCP 23.104.0.1:49608 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:39:12.274 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-27 10:39:12.222 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-27 10:39:07.632 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:41902 10 6452 1 2025-08-27 10:35:18.835 00:05:00.243 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-27 10:39:51.103 00:00:10.361 TCP 23.104.0.1:46362 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:40:07.845 00:00:10.216 TCP 1.101.0.1:3000 -> 22.102.0.1:48288 10 6452 1 2025-08-27 10:36:18.837 00:05:00.238 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-27 10:40:51.506 00:00:10.372 TCP 23.104.0.1:52880 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:41:08.096 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:49496 10 6452 1 2025-08-27 10:41:51.939 00:00:10.334 TCP 23.104.0.1:45220 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:42:08.315 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:34830 10 6452 1 2025-08-27 10:42:52.313 00:00:10.380 TCP 23.104.0.1:57024 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:43:08.536 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:37982 10 6452 1 2025-08-27 10:43:52.747 00:00:10.318 TCP 23.104.0.1:37804 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:44:12.292 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-27 10:44:12.214 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-27 10:44:08.711 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:40550 10 6452 1 2025-08-27 10:44:53.106 00:00:10.395 TCP 23.104.0.1:37700 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:45:08.925 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:54234 10 6452 1 2025-08-27 10:41:18.837 00:05:00.249 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-27 10:45:53.538 00:00:10.379 TCP 23.104.0.1:46076 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:46:09.137 00:00:10.764 TCP 1.101.0.1:3000 -> 22.102.0.1:50792 10 6452 1 2025-08-27 10:42:18.839 00:05:00.245 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-27 10:46:53.969 00:00:10.338 TCP 23.104.0.1:35290 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:47:09.941 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:39584 10 6452 1 2025-08-27 10:47:54.350 00:00:10.366 TCP 23.104.0.1:35288 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:48:10.145 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:37108 10 6452 1 2025-08-27 10:48:54.757 00:00:10.377 TCP 23.104.0.1:41066 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:49:12.596 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-27 10:49:12.506 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-27 10:49:10.365 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:52298 10 6452 1 2025-08-27 10:49:55.174 00:00:10.367 TCP 23.104.0.1:41012 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:50:10.578 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55434 10 6452 1 2025-08-27 10:50:55.582 00:00:10.564 TCP 23.104.0.1:54322 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:51:10.797 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:46656 10 6452 1 2025-08-27 10:47:18.839 00:05:00.248 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-27 10:51:56.182 00:00:10.367 TCP 23.104.0.1:51668 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:52:11.022 00:00:10.819 TCP 1.101.0.1:3000 -> 22.102.0.1:50210 10 6452 1 2025-08-27 10:48:18.840 00:05:00.244 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-27 10:52:56.586 00:00:10.370 TCP 23.104.0.1:49196 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:53:11.885 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:41550 10 6452 1 2025-08-27 10:53:56.995 00:00:10.365 TCP 23.104.0.1:46514 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:54:12.485 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-27 10:54:12.490 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-27 10:54:12.115 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:52352 10 6452 1 2025-08-27 10:54:57.399 00:00:10.365 TCP 23.104.0.1:60426 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:55:12.330 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:60022 10 6452 1 2025-08-27 10:55:57.802 00:00:10.371 TCP 23.104.0.1:60260 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:56:12.543 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:39186 10 6452 1 2025-08-27 10:56:58.213 00:00:10.363 TCP 23.104.0.1:40412 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:53:18.841 00:05:00.248 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-27 10:57:12.754 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:35380 10 6452 1 2025-08-27 10:57:58.615 00:00:10.369 TCP 23.104.0.1:60678 -> 1.101.0.1:3000 11 1507 1 2025-08-27 10:54:18.845 00:05:00.242 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-27 10:58:12.967 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:52792 10 6452 1 Summary: total flows: 163, total bytes: 496841, total packets: 1561, avg bps: 1096, avg pps: 0, avg bpp: 318 Time window: 2025-08-27 09:58:53 - 2025-08-27 10:59:19 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0022s User: 0.0022s Wall: 0.0021s flows/second: 76705.0 Runtime: 0.0021s