Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-28 20:59:33.180 00:00:10.364 TCP 23.104.0.1:39330 -> 1.101.0.1:3000 11 1507 1 2025-08-28 20:58:39.315 00:01:11.032 TCP 1.101.0.1:3000 -> 22.102.0.1:59408 20 12904 1 2025-08-28 20:59:53.798 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 20:59:53.698 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 21:00:33.584 00:00:10.387 TCP 23.104.0.1:45762 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:00:40.386 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:59972 10 6452 1 2025-08-28 21:01:33.997 00:00:10.399 TCP 23.104.0.1:46702 -> 1.101.0.1:3000 15 1926 1 2025-08-28 21:01:40.598 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:44496 12 10367 1 2025-08-28 20:57:19.886 00:06:00.110 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-28 21:02:34.435 00:00:10.361 TCP 23.104.0.1:44494 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:02:40.837 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:60302 10 6452 1 2025-08-28 20:58:19.889 00:06:00.105 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-28 21:03:34.835 00:00:10.384 TCP 23.104.0.1:35834 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:03:41.071 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:34654 10 6452 1 2025-08-28 21:04:35.260 00:00:10.364 TCP 23.104.0.1:57142 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:04:41.246 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34284 10 6452 1 2025-08-28 21:04:53.605 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 21:04:53.856 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 21:05:35.662 00:00:10.362 TCP 23.104.0.1:47038 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:05:41.455 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:50182 10 6452 1 2025-08-28 21:06:36.069 00:00:10.366 TCP 23.104.0.1:44064 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:06:41.686 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:49716 10 6452 1 2025-08-28 21:07:36.471 00:00:10.324 TCP 23.104.0.1:56280 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:07:41.859 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:48494 10 6452 1 2025-08-28 21:08:36.833 00:00:10.347 TCP 23.104.0.1:44580 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:08:42.078 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:44908 10 6452 1 2025-08-28 21:04:19.888 00:06:00.111 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-08-28 21:09:37.223 00:00:10.325 TCP 23.104.0.1:52700 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:09:53.703 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 21:09:42.297 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:56978 10 6452 1 2025-08-28 21:09:53.789 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 21:05:19.890 00:06:00.105 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-28 21:10:37.585 00:00:10.372 TCP 23.104.0.1:60398 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:10:42.524 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:45194 10 6452 1 2025-08-28 21:11:38.000 00:00:10.375 TCP 23.104.0.1:45364 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:11:42.739 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:44602 10 6452 1 2025-08-28 21:12:38.411 00:00:10.366 TCP 23.104.0.1:50100 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:12:42.910 00:00:10.212 TCP 1.101.0.1:3000 -> 22.102.0.1:34336 10 6452 1 2025-08-28 21:13:38.813 00:00:10.365 TCP 23.104.0.1:44486 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:13:43.164 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:56104 10 6452 1 2025-08-28 21:14:39.213 00:00:10.380 TCP 23.104.0.1:54816 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:14:53.693 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 21:14:54.287 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 21:14:43.384 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:59116 10 6452 1 2025-08-28 21:11:19.903 00:05:00.097 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-28 21:15:39.624 00:00:10.326 TCP 23.104.0.1:32906 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:15:43.609 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:36310 10 6452 1 2025-08-28 21:16:39.988 00:00:10.367 TCP 23.104.0.1:35934 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:16:43.835 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:58920 10 6452 1 2025-08-28 21:12:19.906 00:06:00.091 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-08-28 21:17:40.392 00:00:10.365 TCP 23.104.0.1:43794 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:17:44.075 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:37636 10 6452 1 2025-08-28 21:18:40.798 00:00:10.374 TCP 23.104.0.1:51028 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:18:44.292 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:42140 10 6452 1 2025-08-28 21:19:54.019 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 21:19:44.507 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55784 10 6452 1 2025-08-28 21:19:41.207 00:00:10.320 TCP 23.104.0.1:39450 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:19:54.065 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 21:20:41.562 00:00:10.366 TCP 23.104.0.1:47890 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:20:44.724 00:00:10.229 TCP 1.101.0.1:3000 -> 22.102.0.1:49528 11 6504 1 2025-08-28 21:17:19.905 00:05:00.130 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-28 21:21:41.963 00:00:10.325 TCP 23.104.0.1:36334 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:21:44.991 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:59346 10 6452 1 2025-08-28 21:22:42.327 00:00:10.363 TCP 23.104.0.1:50880 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:22:45.212 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:54204 10 6452 1 2025-08-28 21:19:19.908 00:05:00.126 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-28 21:23:42.728 00:00:10.373 TCP 23.104.0.1:57362 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:23:45.419 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:36078 10 6452 1 2025-08-28 21:24:53.975 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 21:24:43.140 00:00:10.372 TCP 23.104.0.1:51106 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:24:45.633 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:49050 10 6452 1 2025-08-28 21:24:54.249 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 21:25:43.549 00:00:10.370 TCP 23.104.0.1:57454 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:25:45.803 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:50656 10 6452 1 2025-08-28 21:26:43.949 00:00:10.369 TCP 23.104.0.1:33770 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:26:45.977 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:35302 10 6452 1 2025-08-28 21:23:19.909 00:05:00.128 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-28 21:27:44.353 00:00:10.413 TCP 23.104.0.1:47084 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:27:46.212 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:50964 10 6452 1 2025-08-28 21:28:46.421 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:57568 10 6452 1 2025-08-28 21:28:44.807 00:00:10.373 TCP 23.104.0.1:57468 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:25:19.915 00:05:00.121 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-28 21:29:46.632 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:47202 10 6452 1 2025-08-28 21:29:54.280 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 21:29:54.182 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 21:29:45.214 00:00:10.364 TCP 23.104.0.1:50768 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:30:45.613 00:00:10.343 TCP 23.104.0.1:37784 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:30:46.853 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:41848 10 6452 1 2025-08-28 21:31:45.998 00:00:10.362 TCP 23.104.0.1:45180 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:31:47.084 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:56792 10 6452 1 2025-08-28 21:32:46.397 00:00:10.362 TCP 23.104.0.1:38816 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:32:47.307 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:40048 10 6452 1 2025-08-28 21:29:19.911 00:05:00.127 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-28 21:33:47.483 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:33670 10 6452 1 2025-08-28 21:33:46.803 00:00:10.368 TCP 23.104.0.1:43546 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:34:54.270 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 21:34:54.315 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 21:34:47.655 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:43958 10 6452 1 2025-08-28 21:34:47.207 00:00:10.322 TCP 23.104.0.1:38216 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:31:19.914 00:05:00.121 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-28 21:35:47.874 00:00:10.692 TCP 1.101.0.1:3000 -> 22.102.0.1:54180 10 6452 1 2025-08-28 21:35:47.567 00:00:11.034 TCP 23.104.0.1:55954 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:36:48.607 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:37562 10 6452 1 2025-08-28 21:36:48.642 00:00:10.370 TCP 23.104.0.1:48666 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:37:49.056 00:00:10.367 TCP 23.104.0.1:54296 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:37:48.823 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:47288 10 6452 1 2025-08-28 21:38:49.463 00:00:10.363 TCP 23.104.0.1:40540 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:38:49.095 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:45974 10 6452 1 2025-08-28 21:35:19.914 00:05:00.126 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-28 21:39:54.773 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 21:39:54.804 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 21:39:49.862 00:00:13.067 TCP 23.104.0.1:37224 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:39:49.325 00:00:13.511 TCP 1.101.0.1:3000 -> 22.102.0.1:33486 10 6452 1 2025-08-28 21:40:52.971 00:00:10.381 TCP 23.104.0.1:44268 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:40:52.879 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:39850 10 6452 1 2025-08-28 21:37:19.916 00:05:00.121 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-28 21:41:53.101 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:41030 10 6452 1 2025-08-28 21:41:53.391 00:00:10.321 TCP 23.104.0.1:34528 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:42:53.751 00:00:10.382 TCP 23.104.0.1:60538 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:42:53.323 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:33116 10 6452 1 2025-08-28 21:43:53.544 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:37968 10 6452 1 2025-08-28 21:43:54.175 00:00:10.359 TCP 23.104.0.1:36546 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:44:54.273 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 21:44:54.501 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 21:44:54.570 00:00:10.363 TCP 23.104.0.1:50818 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:44:53.724 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:34352 10 6452 1 2025-08-28 21:41:19.915 00:05:00.153 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-28 21:45:53.932 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:60220 10 6452 1 2025-08-28 21:45:54.972 00:00:10.366 TCP 23.104.0.1:47302 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:46:55.378 00:00:10.364 TCP 23.104.0.1:48480 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:46:54.172 00:00:10.567 TCP 1.101.0.1:3000 -> 22.102.0.1:32854 10 6452 1 2025-08-28 21:43:19.918 00:05:00.148 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-28 21:47:55.780 00:00:10.363 TCP 23.104.0.1:40260 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:47:54.775 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:59090 10 6452 1 2025-08-28 21:48:56.187 00:00:10.369 TCP 23.104.0.1:44396 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:48:54.990 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:48620 10 6452 1 2025-08-28 21:49:54.621 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 21:49:54.552 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 21:49:56.585 00:00:10.363 TCP 23.104.0.1:52422 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:49:55.209 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:46898 10 6452 1 2025-08-28 21:50:55.417 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:48146 10 6452 1 2025-08-28 21:50:56.988 00:00:10.363 TCP 23.104.0.1:34578 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:47:19.915 00:05:00.154 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-28 21:51:55.591 00:00:10.466 TCP 1.101.0.1:3000 -> 22.102.0.1:36964 10 6452 1 2025-08-28 21:51:57.392 00:00:10.328 TCP 23.104.0.1:60210 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:52:56.090 00:00:10.126 TCP 1.101.0.1:3000 -> 22.102.0.1:47544 10 6452 1 2025-08-28 21:52:57.767 00:00:10.332 TCP 23.104.0.1:46436 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:49:19.919 00:05:00.148 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-08-28 21:53:56.253 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:59582 10 6452 1 2025-08-28 21:53:58.138 00:00:10.366 TCP 23.104.0.1:42146 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:54:54.741 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-08-28 21:54:54.652 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-28 21:54:56.466 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:40038 10 6452 1 2025-08-28 21:54:58.543 00:00:10.360 TCP 23.104.0.1:40184 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:55:56.707 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:34608 10 6452 1 2025-08-28 21:55:58.938 00:00:10.332 TCP 23.104.0.1:33276 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:56:59.306 00:00:10.356 TCP 23.104.0.1:57282 -> 1.101.0.1:3000 11 1507 1 2025-08-28 21:56:56.879 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:59592 10 6452 1 2025-08-28 21:53:19.918 00:05:00.152 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-08-28 21:57:57.100 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:60910 10 6452 1 2025-08-28 21:57:59.705 00:00:10.323 TCP 23.104.0.1:46148 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 161, total bytes: 501104, total packets: 1566, avg bps: 1095, avg pps: 0, avg bpp: 319 Time window: 2025-08-28 20:57:19 - 2025-08-28 21:58:20 Total flows processed: 161, passed: 161, Blocks skipped: 0, Bytes read: 16808 Sys: 0.0024s User: 0.0024s Wall: 0.0023s flows/second: 71526.6 Runtime: 0.0023s