Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-28 10:59:19.174 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:41098 10 6452 1 2025-08-28 10:59:41.641 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 10:59:25.269 00:00:10.361 TCP 23.104.0.1:34154 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:59:41.603 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 10:55:19.575 00:06:00.163 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-28 11:00:19.390 00:00:11.005 TCP 1.101.0.1:3000 -> 22.102.0.1:36140 10 6452 1 2025-08-28 11:00:25.668 00:00:10.376 TCP 23.104.0.1:47654 -> 1.101.0.1:3000 11 1507 1 2025-08-28 10:56:19.577 00:06:00.159 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-28 11:01:20.433 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:43858 10 6452 1 2025-08-28 11:01:26.102 00:00:10.361 TCP 23.104.0.1:35456 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:02:20.646 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:58730 10 6452 1 2025-08-28 11:02:26.498 00:00:10.367 TCP 23.104.0.1:48156 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:03:20.861 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:37302 11 6492 1 2025-08-28 11:03:26.903 00:00:10.374 TCP 23.104.0.1:58730 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:04:21.092 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:50002 10 6452 1 2025-08-28 11:04:41.694 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 11:04:27.317 00:00:10.323 TCP 23.104.0.1:39490 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:04:41.617 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 11:05:21.306 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:57834 10 6452 1 2025-08-28 11:05:27.679 00:00:10.345 TCP 23.104.0.1:41490 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:06:21.516 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:39062 10 6452 1 2025-08-28 11:06:28.056 00:00:10.366 TCP 23.104.0.1:39942 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:02:19.587 00:06:00.152 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-28 11:07:21.731 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:40972 10 6452 1 2025-08-28 11:07:28.460 00:00:10.366 TCP 23.104.0.1:57856 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:03:19.589 00:06:00.147 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-28 11:08:21.900 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:39812 10 6452 1 2025-08-28 11:08:28.866 00:00:10.366 TCP 23.104.0.1:41488 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:09:22.114 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:48710 10 6452 1 2025-08-28 11:09:41.811 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 11:09:41.720 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 11:09:29.272 00:00:10.330 TCP 23.104.0.1:51284 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:10:22.327 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:47058 10 6452 1 2025-08-28 11:10:29.641 00:00:10.324 TCP 23.104.0.1:56010 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:11:22.534 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:48562 10 6452 1 2025-08-28 11:11:30.004 00:00:10.364 TCP 23.104.0.1:39504 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:12:22.751 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:40656 10 6452 1 2025-08-28 11:12:30.404 00:00:10.326 TCP 23.104.0.1:60148 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:13:22.961 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:37658 12 6556 1 2025-08-28 11:13:30.777 00:00:10.376 TCP 23.104.0.1:49480 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:09:19.590 00:06:00.151 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-28 11:14:41.812 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 11:14:31.195 00:00:10.327 TCP 23.104.0.1:56684 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:14:23.186 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:57264 10 6452 1 2025-08-28 11:14:41.863 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 11:10:19.590 00:06:00.148 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-28 11:15:23.401 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:42588 10 6452 1 2025-08-28 11:15:31.563 00:00:10.364 TCP 23.104.0.1:36844 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:16:23.631 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:38600 10 6452 1 2025-08-28 11:16:31.963 00:00:10.333 TCP 23.104.0.1:57622 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:17:23.810 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:36042 10 6452 1 2025-08-28 11:17:32.337 00:00:10.905 TCP 23.104.0.1:44518 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:18:24.037 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:38164 10 6452 1 2025-08-28 11:18:33.286 00:00:10.373 TCP 23.104.0.1:53350 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:19:24.255 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:52740 10 6452 1 2025-08-28 11:19:41.992 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 11:19:33.696 00:00:10.370 TCP 23.104.0.1:59612 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:19:41.997 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 11:20:24.427 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:41474 10 6452 1 2025-08-28 11:20:34.102 00:00:10.359 TCP 23.104.0.1:37448 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:16:19.589 00:06:00.153 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-28 11:21:24.600 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:58892 10 6452 1 2025-08-28 11:21:34.501 00:00:10.363 TCP 23.104.0.1:59548 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:17:19.592 00:06:00.148 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-28 11:22:24.772 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:42110 10 6452 1 2025-08-28 11:22:34.905 00:00:10.362 TCP 23.104.0.1:46138 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:23:25.000 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:55584 10 6452 1 2025-08-28 11:23:35.307 00:00:10.363 TCP 23.104.0.1:34522 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:24:25.181 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:60540 10 6452 1 2025-08-28 11:24:41.980 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 11:24:42.026 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 11:24:35.712 00:00:10.376 TCP 23.104.0.1:40366 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:25:25.394 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:42300 10 6452 1 2025-08-28 11:25:36.126 00:00:10.332 TCP 23.104.0.1:57014 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:26:25.610 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:42374 10 6452 1 2025-08-28 11:26:36.507 00:00:10.364 TCP 23.104.0.1:46164 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:27:25.821 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:43916 10 6452 1 2025-08-28 11:27:36.914 00:00:10.330 TCP 23.104.0.1:40890 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:23:19.590 00:06:00.154 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-28 11:28:25.988 00:00:10.150 TCP 1.101.0.1:3000 -> 22.102.0.1:60906 10 6452 1 2025-08-28 11:28:37.282 00:00:10.366 TCP 23.104.0.1:56526 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:24:19.594 00:06:00.149 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-28 11:29:26.170 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:60566 10 6452 1 2025-08-28 11:29:42.315 00:00:00.020 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 11:29:42.175 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 11:29:37.687 00:00:10.364 TCP 23.104.0.1:42054 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:30:26.348 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:36200 10 6452 1 2025-08-28 11:30:38.099 00:00:10.325 TCP 23.104.0.1:35340 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:31:26.529 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:37538 10 6452 1 2025-08-28 11:31:38.464 00:00:10.394 TCP 23.104.0.1:43584 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:32:26.750 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:46984 10 6452 1 2025-08-28 11:32:38.904 00:00:10.369 TCP 23.104.0.1:60116 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:33:26.962 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:36560 10 6452 1 2025-08-28 11:33:39.312 00:00:10.366 TCP 23.104.0.1:41796 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:34:27.188 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:59030 10 6452 1 2025-08-28 11:34:42.430 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 11:34:42.498 00:00:00.029 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 11:34:39.715 00:00:10.321 TCP 23.104.0.1:46588 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:30:19.593 00:06:00.157 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-28 11:35:27.403 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:40300 10 6452 1 2025-08-28 11:35:40.102 00:00:10.368 TCP 23.104.0.1:58492 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:31:19.596 00:06:00.151 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-28 11:36:27.617 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:55678 10 6452 1 2025-08-28 11:36:40.513 00:00:10.366 TCP 23.104.0.1:38586 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:37:27.832 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:52446 10 6452 1 2025-08-28 11:37:40.915 00:00:10.362 TCP 23.104.0.1:49414 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:38:28.009 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58510 10 6452 1 2025-08-28 11:38:41.316 00:00:10.368 TCP 23.104.0.1:49574 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:39:28.224 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:56464 10 6452 1 2025-08-28 11:39:42.148 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 11:39:42.505 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 11:39:41.724 00:00:10.379 TCP 23.104.0.1:44896 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:40:28.400 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:44518 10 6452 1 2025-08-28 11:40:42.140 00:00:10.325 TCP 23.104.0.1:45814 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:41:28.611 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:55786 11 6492 1 2025-08-28 11:41:42.499 00:00:10.322 TCP 23.104.0.1:43878 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:37:19.593 00:06:00.158 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-28 11:42:28.820 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:49906 10 6452 1 2025-08-28 11:42:42.856 00:00:10.380 TCP 23.104.0.1:35518 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:38:19.595 00:06:00.153 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-28 11:43:29.047 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:36994 10 6452 1 2025-08-28 11:43:43.282 00:00:10.365 TCP 23.104.0.1:42030 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:44:29.262 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:38806 10 6452 1 2025-08-28 11:44:42.615 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 11:44:42.437 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 11:44:43.686 00:00:10.365 TCP 23.104.0.1:59714 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:45:29.472 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:37984 10 6452 1 2025-08-28 11:45:44.106 00:00:10.362 TCP 23.104.0.1:33324 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:46:29.682 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:52628 10 6452 1 2025-08-28 11:46:44.513 00:00:10.365 TCP 23.104.0.1:46608 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:47:29.898 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:44798 10 6452 1 2025-08-28 11:47:44.916 00:00:10.381 TCP 23.104.0.1:33012 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:48:30.119 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:43240 10 6452 1 2025-08-28 11:48:45.334 00:00:10.374 TCP 23.104.0.1:59084 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:44:19.596 00:06:00.157 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-28 11:49:30.301 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:46870 10 6452 1 2025-08-28 11:49:42.405 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 11:49:42.486 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 11:49:45.750 00:00:10.374 TCP 23.104.0.1:58814 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:45:19.598 00:06:00.152 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-28 11:50:30.518 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:51870 10 6452 1 2025-08-28 11:50:46.160 00:00:10.327 TCP 23.104.0.1:41832 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:51:30.692 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:52900 10 6452 1 2025-08-28 11:51:46.525 00:00:10.435 TCP 23.104.0.1:48682 -> 1.101.0.1:3000 15 1926 1 2025-08-28 11:52:30.903 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:54254 12 10365 1 2025-08-28 11:52:47.003 00:00:10.360 TCP 23.104.0.1:44888 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:53:31.139 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49198 10 6452 1 2025-08-28 11:53:47.398 00:00:10.379 TCP 23.104.0.1:48412 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:54:31.351 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:34852 10 6452 1 2025-08-28 11:54:42.637 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 11:54:42.692 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 11:54:47.817 00:00:10.364 TCP 23.104.0.1:44038 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:55:31.562 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:50654 10 6452 1 2025-08-28 11:55:48.219 00:00:10.365 TCP 23.104.0.1:41376 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:51:19.609 00:06:00.144 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-28 11:56:31.769 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:51390 10 6452 1 2025-08-28 11:56:48.629 00:00:10.320 TCP 23.104.0.1:37108 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:52:19.612 00:06:00.139 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-28 11:57:31.982 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:58558 10 6452 1 2025-08-28 11:57:48.985 00:00:10.337 TCP 23.104.0.1:46994 -> 1.101.0.1:3000 11 1507 1 2025-08-28 11:58:32.206 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:45274 10 6452 1 Summary: total flows: 161, total bytes: 502095, total packets: 1583, avg bps: 1056, avg pps: 0, avg bpp: 317 Time window: 2025-08-28 10:55:19 - 2025-08-28 11:58:42 Total flows processed: 161, passed: 161, Blocks skipped: 0, Bytes read: 16808 Sys: 0.0039s User: 0.0010s Wall: 0.0026s flows/second: 62474.1 Runtime: 0.0026s