Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-28 13:58:58.085 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:58618 10 6452 1 2025-08-28 13:59:45.480 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 13:59:45.360 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 13:59:40.733 00:00:10.365 TCP 23.104.0.1:49902 -> 1.101.0.1:3000 11 1507 1 2025-08-28 13:59:58.299 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58372 10 6452 1 2025-08-28 14:00:41.137 00:00:10.371 TCP 23.104.0.1:33810 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:00:58.508 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:58218 10 6452 1 2025-08-28 14:01:41.547 00:00:10.372 TCP 23.104.0.1:47508 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:01:58.732 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:47086 10 6452 1 2025-08-28 13:57:19.688 00:06:00.117 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-28 14:02:41.953 00:00:10.367 TCP 23.104.0.1:49142 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:02:58.947 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:51998 10 6452 1 2025-08-28 13:58:19.692 00:06:00.113 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-28 14:03:42.359 00:00:10.365 TCP 23.104.0.1:37896 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:03:59.176 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:35284 10 6452 1 2025-08-28 14:04:45.249 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 14:04:45.255 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 14:04:42.762 00:00:10.371 TCP 23.104.0.1:37006 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:04:59.386 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:43956 10 6452 1 2025-08-28 14:05:43.173 00:00:10.607 TCP 23.104.0.1:33490 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:05:59.610 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:39964 10 6452 1 2025-08-28 14:06:43.826 00:00:10.349 TCP 23.104.0.1:56620 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:06:59.778 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:46846 10 6452 1 2025-08-28 14:07:44.222 00:00:10.321 TCP 23.104.0.1:60244 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:07:59.989 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:42982 10 6452 1 2025-08-28 14:08:44.583 00:00:10.369 TCP 23.104.0.1:33540 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:09:00.208 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:58658 10 6452 1 2025-08-28 14:04:19.690 00:06:00.118 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-28 14:09:45.316 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 14:09:45.520 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 14:09:44.988 00:00:10.371 TCP 23.104.0.1:53288 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:10:00.426 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:38152 10 6452 1 2025-08-28 14:05:19.691 00:06:00.114 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-28 14:10:45.392 00:00:10.363 TCP 23.104.0.1:39896 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:11:00.642 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:38352 10 6452 1 2025-08-28 14:11:45.792 00:00:10.351 TCP 23.104.0.1:45378 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:12:00.856 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:51656 10 6452 1 2025-08-28 14:12:46.175 00:00:10.327 TCP 23.104.0.1:50014 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:13:01.091 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:50106 10 6452 1 2025-08-28 14:13:46.541 00:00:10.371 TCP 23.104.0.1:58258 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:14:01.267 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:54472 10 6452 1 2025-08-28 14:14:45.386 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 14:14:45.537 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 14:14:46.951 00:00:10.368 TCP 23.104.0.1:39404 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:15:01.439 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:48912 10 6452 1 2025-08-28 14:15:47.357 00:00:10.359 TCP 23.104.0.1:54518 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:16:01.610 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:49400 10 6452 1 2025-08-28 14:11:19.690 00:06:00.129 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-28 14:16:47.759 00:00:11.972 TCP 23.104.0.1:38644 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:17:01.831 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:46690 10 6452 1 2025-08-28 14:12:19.693 00:06:00.124 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-28 14:17:49.784 00:00:10.363 TCP 23.104.0.1:47926 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:18:02.066 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:59902 10 6452 1 2025-08-28 14:18:50.188 00:00:10.365 TCP 23.104.0.1:51844 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:19:02.235 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:50734 10 6452 1 2025-08-28 14:19:45.561 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 14:19:45.750 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 14:19:50.596 00:00:10.324 TCP 23.104.0.1:45726 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:20:02.449 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:53798 10 6452 1 2025-08-28 14:20:50.956 00:00:10.366 TCP 23.104.0.1:34902 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:21:02.663 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:46480 10 6452 1 2025-08-28 14:21:51.358 00:00:10.364 TCP 23.104.0.1:51058 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:22:02.878 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:58816 10 6452 1 2025-08-28 14:22:51.759 00:00:10.367 TCP 23.104.0.1:41248 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:23:03.100 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:37256 10 6452 1 2025-08-28 14:18:19.692 00:06:00.128 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-28 14:23:52.169 00:00:10.366 TCP 23.104.0.1:50002 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:24:03.280 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:49948 10 6452 1 2025-08-28 14:19:19.694 00:06:00.124 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-28 14:24:45.940 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 14:24:45.676 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 14:24:52.573 00:00:10.327 TCP 23.104.0.1:39282 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:25:03.499 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:58086 10 6452 1 2025-08-28 14:25:52.936 00:00:10.336 TCP 23.104.0.1:49404 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:26:03.720 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:59292 10 6452 1 2025-08-28 14:26:53.315 00:00:10.401 TCP 23.104.0.1:43066 -> 1.101.0.1:3000 15 1926 1 2025-08-28 14:27:03.938 00:00:10.236 TCP 1.101.0.1:3000 -> 22.102.0.1:35058 12 10365 1 2025-08-28 14:27:53.755 00:00:10.387 TCP 23.104.0.1:54422 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:28:04.212 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:48322 10 6452 1 2025-08-28 14:28:54.175 00:00:10.367 TCP 23.104.0.1:53594 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:29:04.383 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:36044 10 6452 1 2025-08-28 14:29:46.023 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 14:29:46.149 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 14:29:54.582 00:00:10.366 TCP 23.104.0.1:56768 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:30:04.554 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:50618 10 6452 1 2025-08-28 14:25:19.693 00:06:00.130 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-28 14:30:54.981 00:00:10.360 TCP 23.104.0.1:35668 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:31:04.722 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:36364 10 6452 1 2025-08-28 14:26:19.695 00:06:00.125 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-28 14:31:55.380 00:00:10.363 TCP 23.104.0.1:50398 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:32:04.898 00:00:10.436 TCP 1.101.0.1:3000 -> 22.102.0.1:50400 10 6452 1 2025-08-28 14:32:55.781 00:00:10.365 TCP 23.104.0.1:37926 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:33:05.372 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55952 10 6452 1 2025-08-28 14:33:56.187 00:00:10.363 TCP 23.104.0.1:58560 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:34:05.588 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:50774 10 6452 1 2025-08-28 14:34:46.196 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 14:34:46.092 00:00:00.050 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 14:34:56.587 00:00:10.368 TCP 23.104.0.1:47722 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:35:05.799 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:40512 10 6452 1 2025-08-28 14:35:57.007 00:00:10.365 TCP 23.104.0.1:33006 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:36:06.015 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:36994 10 6452 1 2025-08-28 14:36:57.415 00:00:10.374 TCP 23.104.0.1:40372 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:37:06.234 00:00:10.166 TCP 1.101.0.1:3000 -> 22.102.0.1:47434 10 6452 1 2025-08-28 14:32:19.695 00:06:00.134 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-28 14:37:57.833 00:00:10.387 TCP 23.104.0.1:59544 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:38:06.439 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51888 10 6452 1 2025-08-28 14:33:19.697 00:06:00.130 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-28 14:38:58.258 00:00:10.330 TCP 23.104.0.1:58864 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:39:06.656 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:41784 10 6452 1 2025-08-28 14:39:46.089 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 14:39:45.971 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 14:39:58.629 00:00:10.380 TCP 23.104.0.1:52684 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:40:06.829 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:34980 10 6452 1 2025-08-28 14:40:59.052 00:00:10.369 TCP 23.104.0.1:51188 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:41:07.068 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:49874 10 6452 1 2025-08-28 14:41:59.458 00:00:10.370 TCP 23.104.0.1:43004 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:42:07.289 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:49898 10 6452 1 2025-08-28 14:42:59.867 00:00:10.371 TCP 23.104.0.1:35326 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:43:07.498 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:60176 10 6452 1 2025-08-28 14:44:00.274 00:00:10.326 TCP 23.104.0.1:40832 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:44:07.707 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:52988 10 6452 1 2025-08-28 14:39:19.698 00:06:00.133 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-28 14:44:45.997 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 14:44:46.094 00:00:00.048 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 14:45:00.635 00:00:10.371 TCP 23.104.0.1:39672 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:45:07.917 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:49048 10 6452 1 2025-08-28 14:40:19.699 00:06:00.130 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-28 14:46:01.049 00:00:10.362 TCP 23.104.0.1:48146 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:46:08.127 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:46010 10 6452 1 2025-08-28 14:47:01.454 00:00:10.400 TCP 23.104.0.1:52964 -> 1.101.0.1:3000 15 1926 1 2025-08-28 14:47:08.355 00:00:10.159 TCP 1.101.0.1:3000 -> 22.102.0.1:51006 12 10367 1 2025-08-28 14:48:01.898 00:00:10.387 TCP 23.104.0.1:43198 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:48:08.553 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:33304 10 6452 1 2025-08-28 14:49:02.321 00:00:10.326 TCP 23.104.0.1:46112 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:49:08.741 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:55060 10 6452 1 2025-08-28 14:49:46.111 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 14:49:46.386 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 14:50:02.687 00:00:10.369 TCP 23.104.0.1:32870 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:50:08.955 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:50762 10 6452 1 2025-08-28 14:51:03.100 00:00:10.325 TCP 23.104.0.1:39472 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:51:09.187 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:38724 10 6452 1 2025-08-28 14:46:19.700 00:06:00.154 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-28 14:52:03.460 00:00:10.364 TCP 23.104.0.1:51898 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:47:19.703 00:06:00.149 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-28 14:52:09.398 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:47276 10 6452 1 2025-08-28 14:53:03.864 00:00:10.367 TCP 23.104.0.1:47806 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:53:09.605 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:34408 10 6452 1 2025-08-28 14:54:04.273 00:00:10.357 TCP 23.104.0.1:57042 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:54:09.776 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:57958 10 6452 1 2025-08-28 14:54:46.557 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 14:54:46.263 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 14:55:04.674 00:00:10.323 TCP 23.104.0.1:48770 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:55:09.982 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:51756 10 6452 1 2025-08-28 14:56:05.046 00:00:10.481 TCP 23.104.0.1:50528 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:56:10.210 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:56818 10 6452 1 2025-08-28 14:57:05.563 00:00:10.328 TCP 23.104.0.1:59694 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:57:10.432 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:42230 10 6452 1 2025-08-28 14:58:05.927 00:00:10.392 TCP 23.104.0.1:60262 -> 1.101.0.1:3000 11 1507 1 2025-08-28 14:53:19.703 00:06:00.154 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-28 14:58:10.620 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:40928 10 6452 1 Summary: total flows: 160, total bytes: 505384, total packets: 1571, avg bps: 1086, avg pps: 0, avg bpp: 321 Time window: 2025-08-28 13:57:19 - 2025-08-28 14:59:19 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0030s User: 0.0020s Wall: 0.0023s flows/second: 70857.2 Runtime: 0.0023s