Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-01 09:58:47.433 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:37432 10 6452 1 2025-09-01 09:59:36.045 00:00:10.335 TCP 23.104.0.1:53658 -> 1.101.0.1:3000 11 1507 1 2025-09-01 09:59:47.639 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:47690 10 6452 1 2025-09-01 10:00:36.421 00:00:10.389 TCP 23.104.0.1:35896 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:00:47.848 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:60140 10 6452 1 2025-09-01 09:57:21.920 00:05:00.591 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-01 10:01:36.361 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 10:01:36.339 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 10:01:36.853 00:00:10.380 TCP 23.104.0.1:51162 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:01:48.075 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:41590 10 6452 1 2025-09-01 10:02:37.270 00:00:10.370 TCP 23.104.0.1:49530 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:02:48.298 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:60790 10 6452 1 2025-09-01 10:03:37.676 00:00:10.376 TCP 23.104.0.1:34792 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:03:48.522 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:33414 10 6452 1 2025-09-01 10:00:21.917 00:05:00.596 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-01 10:04:38.101 00:00:10.724 TCP 23.104.0.1:43422 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:04:48.744 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:35628 10 6452 1 2025-09-01 10:05:38.858 00:00:10.333 TCP 23.104.0.1:50888 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:05:48.910 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:33308 10 6452 1 2025-09-01 10:06:36.207 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 10:06:36.077 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 10:06:39.229 00:00:10.365 TCP 23.104.0.1:46196 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:06:49.092 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:40852 10 6452 1 2025-09-01 10:03:21.920 00:05:00.591 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-01 10:07:39.632 00:00:10.364 TCP 23.104.0.1:48418 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:07:49.313 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:50004 10 6452 1 2025-09-01 10:08:40.046 00:00:10.364 TCP 23.104.0.1:41414 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:08:49.539 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:44592 10 6452 1 2025-09-01 10:09:40.449 00:00:10.378 TCP 23.104.0.1:45660 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:09:49.761 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:51974 10 6452 1 2025-09-01 10:06:21.918 00:05:00.596 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-01 10:10:40.871 00:00:10.365 TCP 23.104.0.1:59974 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:10:49.978 00:00:10.214 TCP 1.101.0.1:3000 -> 22.102.0.1:49008 10 6452 1 2025-09-01 10:11:36.204 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 10:11:36.064 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 10:11:41.277 00:00:10.327 TCP 23.104.0.1:34322 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:11:50.229 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:43742 10 6452 1 2025-09-01 10:12:41.639 00:00:10.325 TCP 23.104.0.1:39422 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:12:50.455 00:00:10.521 TCP 1.101.0.1:3000 -> 22.102.0.1:46886 10 6452 1 2025-09-01 10:09:21.921 00:05:00.592 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-01 10:13:42.008 00:00:10.362 TCP 23.104.0.1:35816 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:13:51.011 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:54316 10 6452 1 2025-09-01 10:14:42.408 00:00:10.961 TCP 23.104.0.1:41096 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:14:51.189 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:52858 10 6452 1 2025-09-01 10:15:43.417 00:00:10.368 TCP 23.104.0.1:57708 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:15:51.402 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:47490 10 6452 1 2025-09-01 10:12:21.919 00:05:00.596 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-01 10:16:36.163 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 10:16:36.178 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 10:16:43.822 00:00:12.612 TCP 23.104.0.1:38326 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:16:51.626 00:00:12.505 TCP 1.101.0.1:3000 -> 22.102.0.1:39394 10 6452 1 2025-09-01 10:17:46.475 00:00:11.114 TCP 23.104.0.1:38424 -> 1.101.0.1:3000 15 1926 1 2025-09-01 10:17:54.168 00:00:10.211 TCP 1.101.0.1:3000 -> 22.102.0.1:60748 12 10367 1 2025-09-01 10:18:47.630 00:00:10.367 TCP 23.104.0.1:57068 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:18:54.418 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:47062 10 6452 1 2025-09-01 10:15:21.922 00:05:00.594 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-01 10:19:48.036 00:00:10.370 TCP 23.104.0.1:33234 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:19:54.636 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:60602 10 6452 1 2025-09-01 10:20:48.448 00:00:10.364 TCP 23.104.0.1:55394 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:20:54.859 00:00:10.203 TCP 1.101.0.1:3000 -> 22.102.0.1:56612 10 6452 1 2025-09-01 10:21:36.235 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 10:21:36.317 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 10:21:48.858 00:00:10.373 TCP 23.104.0.1:50394 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:21:55.100 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:53680 10 6452 1 2025-09-01 10:18:21.922 00:05:00.598 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-01 10:22:49.270 00:00:10.368 TCP 23.104.0.1:40006 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:22:55.318 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:46982 10 6452 1 2025-09-01 10:23:49.671 00:00:10.365 TCP 23.104.0.1:50384 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:23:55.542 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:56480 10 6452 1 2025-09-01 10:24:50.101 00:00:10.322 TCP 23.104.0.1:53708 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:24:55.763 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:44380 10 6452 1 2025-09-01 10:21:21.925 00:05:00.598 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-01 10:25:50.467 00:00:10.744 TCP 23.104.0.1:48510 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:25:55.985 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:58648 10 6452 1 2025-09-01 10:26:36.128 00:00:00.027 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 10:26:36.582 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 10:26:51.244 00:00:10.368 TCP 23.104.0.1:42632 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:26:56.228 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:56118 10 6452 1 2025-09-01 10:27:51.651 00:00:10.366 TCP 23.104.0.1:54440 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:27:56.450 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:44832 10 6452 1 2025-09-01 10:24:21.923 00:05:00.602 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-01 10:28:52.058 00:00:10.379 TCP 23.104.0.1:38366 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:28:56.660 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:49282 10 6452 1 2025-09-01 10:29:52.477 00:00:10.362 TCP 23.104.0.1:51090 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:29:56.869 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:40176 10 6452 1 2025-09-01 10:30:52.876 00:00:10.368 TCP 23.104.0.1:59966 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:30:57.042 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:55710 10 6452 1 2025-09-01 10:27:21.926 00:05:00.597 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-01 10:31:36.699 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 10:31:36.874 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 10:31:53.282 00:00:10.364 TCP 23.104.0.1:34548 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:31:57.255 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:43252 10 6452 1 2025-09-01 10:32:53.677 00:00:10.378 TCP 23.104.0.1:43014 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:32:57.462 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:47848 10 6452 1 2025-09-01 10:33:54.106 00:00:10.368 TCP 23.104.0.1:34608 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:33:57.677 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:36720 10 6452 1 2025-09-01 10:30:21.925 00:05:00.601 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-01 10:34:54.507 00:00:10.365 TCP 23.104.0.1:58972 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:34:57.897 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:48396 10 6452 1 2025-09-01 10:35:54.912 00:00:10.364 TCP 23.104.0.1:50840 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:35:58.123 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:51858 10 6452 1 2025-09-01 10:36:36.739 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 10:36:36.808 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 10:36:55.323 00:00:10.367 TCP 23.104.0.1:53932 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:36:58.342 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:48916 10 6452 1 2025-09-01 10:33:21.928 00:05:00.598 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-01 10:37:55.732 00:00:10.378 TCP 23.104.0.1:38186 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:37:58.562 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:37764 10 6452 1 2025-09-01 10:38:56.144 00:00:10.369 TCP 23.104.0.1:53454 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:38:58.732 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33962 10 6452 1 2025-09-01 10:39:56.552 00:00:10.360 TCP 23.104.0.1:56490 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:39:58.953 00:00:10.208 TCP 1.101.0.1:3000 -> 22.102.0.1:51140 10 6452 1 2025-09-01 10:36:21.925 00:05:00.605 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-01 10:40:59.198 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:50300 10 6452 1 2025-09-01 10:40:56.948 00:00:10.370 TCP 23.104.0.1:44458 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:41:36.725 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 10:41:36.765 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 10:41:57.358 00:00:10.362 TCP 23.104.0.1:38218 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:41:59.432 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:53164 10 6452 1 2025-09-01 10:42:57.761 00:00:10.412 TCP 23.104.0.1:47072 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:42:59.600 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:39288 10 6452 1 2025-09-01 10:39:21.928 00:05:00.599 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-01 10:43:58.206 00:00:10.321 TCP 23.104.0.1:34642 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:43:59.817 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:46866 10 6452 1 2025-09-01 10:44:58.566 00:00:10.326 TCP 23.104.0.1:39678 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:45:00.045 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:45672 10 6452 1 2025-09-01 10:45:58.926 00:00:10.356 TCP 23.104.0.1:39862 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:46:00.222 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:56538 10 6452 1 2025-09-01 10:42:21.926 00:05:00.605 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-01 10:46:36.886 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 10:46:36.941 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 10:47:00.410 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:53278 10 6452 1 2025-09-01 10:46:59.320 00:00:10.362 TCP 23.104.0.1:54628 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:48:00.643 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:53292 10 6452 1 2025-09-01 10:47:59.722 00:00:10.376 TCP 23.104.0.1:33702 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:49:00.817 00:00:10.151 TCP 1.101.0.1:3000 -> 22.102.0.1:32838 10 6452 1 2025-09-01 10:49:00.140 00:00:10.361 TCP 23.104.0.1:44534 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:45:21.929 00:05:00.599 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-01 10:50:01.028 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:44172 10 6452 1 2025-09-01 10:50:00.540 00:00:10.377 TCP 23.104.0.1:43490 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:51:00.956 00:00:10.368 TCP 23.104.0.1:33708 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:51:01.242 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:49736 10 6452 1 2025-09-01 10:51:37.187 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 10:51:37.320 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 10:52:01.369 00:00:10.422 TCP 23.104.0.1:42340 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:52:01.461 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:51340 10 6452 1 2025-09-01 10:48:21.927 00:05:00.603 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-01 10:53:01.686 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:37924 10 6452 1 2025-09-01 10:53:01.832 00:00:10.383 TCP 23.104.0.1:38830 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:54:02.248 00:00:10.370 TCP 23.104.0.1:55268 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:54:01.895 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:53970 10 6452 1 2025-09-01 10:55:02.651 00:00:10.368 TCP 23.104.0.1:37414 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:55:02.088 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:47444 10 6452 1 2025-09-01 10:51:21.931 00:05:00.598 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-01 10:56:03.064 00:00:10.365 TCP 23.104.0.1:56608 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:56:02.299 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:55114 10 6452 1 2025-09-01 10:56:36.670 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 10:56:36.606 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 10:57:03.464 00:00:10.365 TCP 23.104.0.1:34302 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:57:02.472 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:44634 10 6452 1 2025-09-01 10:58:03.869 00:00:10.372 TCP 23.104.0.1:59884 -> 1.101.0.1:3000 11 1507 1 2025-09-01 10:58:02.685 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:48290 10 6452 1 2025-09-01 10:54:21.928 00:05:00.604 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 Summary: total flows: 163, total bytes: 501175, total packets: 1567, avg bps: 1077, avg pps: 0, avg bpp: 319 Time window: 2025-09-01 09:57:21 - 2025-09-01 10:59:22 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0032s User: 0.0016s Wall: 0.0033s flows/second: 50030.8 Runtime: 0.0033s