Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-28 09:59:00.949 00:00:10.373 TCP 23.104.0.1:36858 -> 1.101.0.1:3000 11 1507 1 2025-08-28 09:59:06.733 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:59896 10 6452 1 2025-08-28 09:59:40.554 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 09:59:40.415 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 10:00:01.360 00:00:10.321 TCP 23.104.0.1:36890 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:00:06.908 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:56964 10 6452 1 2025-08-28 10:01:01.720 00:00:10.327 TCP 23.104.0.1:53320 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:01:07.113 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:58026 10 6452 1 2025-08-28 10:02:02.111 00:00:10.362 TCP 23.104.0.1:56810 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:02:07.338 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:49842 10 6452 1 2025-08-28 10:03:02.512 00:00:10.364 TCP 23.104.0.1:34660 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:03:07.512 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:38488 10 6452 1 2025-08-28 10:04:02.919 00:00:10.340 TCP 23.104.0.1:51352 -> 1.101.0.1:3000 11 1507 1 2025-08-28 09:59:19.544 00:06:00.170 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-28 10:04:07.685 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:60554 10 6452 1 2025-08-28 10:04:40.443 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 10:04:40.519 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 10:05:03.295 00:00:10.363 TCP 23.104.0.1:45988 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:00:19.546 00:06:00.165 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-28 10:05:07.906 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:37172 10 6452 1 2025-08-28 10:06:03.698 00:00:10.364 TCP 23.104.0.1:50938 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:06:08.088 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:58092 10 6452 1 2025-08-28 10:07:04.107 00:00:10.367 TCP 23.104.0.1:57420 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:07:08.298 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43190 10 6452 1 2025-08-28 10:08:04.517 00:00:10.367 TCP 23.104.0.1:40100 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:08:08.510 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:44930 10 6452 1 2025-08-28 10:09:04.925 00:00:10.386 TCP 23.104.0.1:42544 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:09:08.721 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:37348 10 6452 1 2025-08-28 10:09:40.325 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 10:09:40.543 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 10:10:05.353 00:00:10.361 TCP 23.104.0.1:34520 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:10:08.934 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:40548 10 6452 1 2025-08-28 10:11:05.755 00:00:10.387 TCP 23.104.0.1:47576 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:11:09.141 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:48698 10 6452 1 2025-08-28 10:06:19.548 00:06:00.178 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-28 10:12:06.181 00:00:10.371 TCP 23.104.0.1:43162 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:07:19.550 00:06:00.175 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-28 10:12:09.354 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:41080 10 6452 1 2025-08-28 10:13:06.591 00:00:10.328 TCP 23.104.0.1:35720 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:13:09.529 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:38842 10 6452 1 2025-08-28 10:14:06.954 00:00:10.326 TCP 23.104.0.1:59298 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:14:09.741 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:52954 10 6452 1 2025-08-28 10:14:40.817 00:00:00.018 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 10:14:40.689 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 10:15:09.917 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:43560 10 6452 1 2025-08-28 10:15:07.316 00:00:10.368 TCP 23.104.0.1:35476 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:16:10.128 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48804 10 6452 1 2025-08-28 10:16:07.724 00:00:10.375 TCP 23.104.0.1:53780 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:17:08.139 00:00:10.375 TCP 23.104.0.1:36194 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:17:10.342 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:46876 10 6452 1 2025-08-28 10:18:10.555 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:45746 10 6452 1 2025-08-28 10:13:19.549 00:06:00.182 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-28 10:18:08.557 00:00:10.364 TCP 23.104.0.1:46224 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:19:08.959 00:00:10.363 TCP 23.104.0.1:35090 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:14:19.552 00:06:00.177 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-28 10:19:10.765 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:34788 10 6452 1 2025-08-28 10:19:40.903 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 10:19:40.755 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 10:20:09.357 00:00:10.366 TCP 23.104.0.1:39284 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:20:10.990 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:44250 10 6452 1 2025-08-28 10:21:09.763 00:00:10.328 TCP 23.104.0.1:57364 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:21:11.215 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:60680 10 6452 1 2025-08-28 10:22:11.432 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:40372 10 6452 1 2025-08-28 10:22:10.131 00:00:10.369 TCP 23.104.0.1:33120 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:23:11.645 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:34336 12 6556 1 2025-08-28 10:23:10.536 00:00:10.338 TCP 23.104.0.1:48236 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:24:10.913 00:00:10.364 TCP 23.104.0.1:44672 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:24:11.865 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:54124 10 6452 1 2025-08-28 10:24:41.376 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 10:24:40.888 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 10:25:11.316 00:00:10.575 TCP 23.104.0.1:41334 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:20:19.551 00:06:00.181 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-28 10:25:12.100 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:50798 10 6452 1 2025-08-28 10:26:12.333 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:55206 10 6452 1 2025-08-28 10:21:19.555 00:06:00.175 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-28 10:26:11.933 00:00:10.384 TCP 23.104.0.1:60316 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:27:12.557 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:43960 10 6452 1 2025-08-28 10:27:12.349 00:00:10.372 TCP 23.104.0.1:44252 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:28:12.763 00:00:10.378 TCP 23.104.0.1:47070 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:28:12.787 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:51664 10 6452 1 2025-08-28 10:29:13.177 00:00:10.363 TCP 23.104.0.1:39698 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:29:13.006 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:58274 10 6452 1 2025-08-28 10:29:40.899 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 10:29:40.854 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 10:30:13.219 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:41588 10 6452 1 2025-08-28 10:30:13.578 00:00:10.413 TCP 23.104.0.1:38774 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:31:13.436 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:45140 10 6452 1 2025-08-28 10:31:14.031 00:00:10.363 TCP 23.104.0.1:50114 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:27:19.564 00:06:00.170 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-28 10:32:13.647 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:53602 10 6452 1 2025-08-28 10:32:14.434 00:00:10.344 TCP 23.104.0.1:59440 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:33:13.861 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:42804 10 6452 1 2025-08-28 10:28:19.565 00:06:00.166 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-28 10:33:14.796 00:00:10.336 TCP 23.104.0.1:57854 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:34:14.096 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:52006 10 6452 1 2025-08-28 10:34:15.172 00:00:10.368 TCP 23.104.0.1:40228 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:34:41.000 00:00:00.020 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 10:34:40.757 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 10:35:14.271 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43552 10 6452 1 2025-08-28 10:35:15.581 00:00:10.361 TCP 23.104.0.1:46976 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:36:15.981 00:00:10.368 TCP 23.104.0.1:50522 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:36:14.482 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:59346 10 6452 1 2025-08-28 10:37:16.396 00:00:10.367 TCP 23.104.0.1:51702 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:37:14.701 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:59400 10 6452 1 2025-08-28 10:38:14.912 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:49180 10 6452 1 2025-08-28 10:38:16.800 00:00:10.361 TCP 23.104.0.1:41800 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:34:19.564 00:06:00.170 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-28 10:39:15.123 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:33360 10 6452 1 2025-08-28 10:39:17.200 00:00:10.365 TCP 23.104.0.1:48576 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:39:41.344 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 10:39:41.276 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 10:35:19.566 00:06:00.166 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-28 10:40:15.298 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:56110 10 6452 1 2025-08-28 10:40:17.598 00:00:10.366 TCP 23.104.0.1:58758 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:41:15.515 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:39446 10 6452 1 2025-08-28 10:41:18.000 00:00:10.363 TCP 23.104.0.1:57516 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:42:15.689 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:32902 10 6452 1 2025-08-28 10:42:18.401 00:00:10.331 TCP 23.104.0.1:43724 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:43:15.903 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:51200 10 6452 1 2025-08-28 10:43:18.770 00:00:10.329 TCP 23.104.0.1:51092 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:44:16.115 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:47972 10 6452 1 2025-08-28 10:44:19.139 00:00:10.364 TCP 23.104.0.1:45850 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:44:41.456 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 10:44:41.333 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 10:45:16.287 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:51672 10 6452 1 2025-08-28 10:45:19.545 00:00:10.360 TCP 23.104.0.1:52078 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:41:19.568 00:06:00.169 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-28 10:46:16.515 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:57244 10 6452 1 2025-08-28 10:46:19.944 00:00:10.368 TCP 23.104.0.1:48712 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:42:19.571 00:06:00.163 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-28 10:47:16.727 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:53742 10 6452 1 2025-08-28 10:47:20.355 00:00:10.364 TCP 23.104.0.1:39090 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:48:20.762 00:00:10.371 TCP 23.104.0.1:50790 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:48:16.941 00:00:10.153 TCP 1.101.0.1:3000 -> 22.102.0.1:40328 10 6452 1 2025-08-28 10:49:17.133 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:52562 10 6452 1 2025-08-28 10:49:21.169 00:00:10.366 TCP 23.104.0.1:44928 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:49:41.477 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 10:49:41.569 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 10:50:21.576 00:00:10.375 TCP 23.104.0.1:46446 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:50:17.347 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:40804 10 6452 1 2025-08-28 10:51:17.561 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:44048 10 6452 1 2025-08-28 10:51:21.991 00:00:10.367 TCP 23.104.0.1:36070 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:52:17.774 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:42360 10 6452 1 2025-08-28 10:52:22.395 00:00:10.367 TCP 23.104.0.1:47318 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:48:19.569 00:06:00.168 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-28 10:53:17.995 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:36554 10 6452 1 2025-08-28 10:53:22.809 00:00:10.368 TCP 23.104.0.1:46932 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:49:19.572 00:06:00.162 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-28 10:54:18.176 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:39852 10 6452 1 2025-08-28 10:54:23.216 00:00:10.359 TCP 23.104.0.1:42028 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:54:41.456 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 10:54:41.488 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 10:55:18.351 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:47362 10 6452 1 2025-08-28 10:55:23.614 00:00:10.364 TCP 23.104.0.1:47844 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:56:18.565 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53238 10 6452 1 2025-08-28 10:56:24.021 00:00:10.375 TCP 23.104.0.1:42198 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:57:18.787 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:53368 10 6452 1 2025-08-28 10:57:24.455 00:00:10.364 TCP 23.104.0.1:59252 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:58:18.996 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:51198 10 6452 1 2025-08-28 10:58:24.857 00:00:10.372 TCP 23.104.0.1:45794 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 160, total bytes: 497468, total packets: 1558, avg bps: 1113, avg pps: 0, avg bpp: 319 Time window: 2025-08-28 09:59:00 - 2025-08-28 10:58:35 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0028s User: 0.0019s Wall: 0.0021s flows/second: 75505.0 Runtime: 0.0021s