Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-01 11:59:16.569 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:47380 10 6452 1 2025-09-01 11:59:29.859 00:00:10.374 TCP 23.104.0.1:36272 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:00:16.743 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:40022 10 6452 1 2025-09-01 12:00:30.267 00:00:10.362 TCP 23.104.0.1:49460 -> 1.101.0.1:3000 11 1507 1 2025-09-01 11:57:21.950 00:05:00.602 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-01 12:01:16.960 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:41358 12 6556 1 2025-09-01 12:01:38.379 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 12:01:30.668 00:00:10.366 TCP 23.104.0.1:45538 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:01:38.322 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 12:02:17.195 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:52526 10 6452 1 2025-09-01 12:02:31.095 00:00:10.361 TCP 23.104.0.1:48522 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:03:17.415 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:53556 10 6452 1 2025-09-01 12:03:31.498 00:00:10.365 TCP 23.104.0.1:50048 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:00:21.947 00:05:00.608 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-01 12:04:17.627 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:33218 10 6452 1 2025-09-01 12:04:31.906 00:00:10.368 TCP 23.104.0.1:50478 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:05:17.837 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:57210 10 6452 1 2025-09-01 12:05:32.308 00:00:10.369 TCP 23.104.0.1:58228 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:06:18.072 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:38032 10 6452 1 2025-09-01 12:06:38.344 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 12:06:38.396 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 12:06:32.715 00:00:10.375 TCP 23.104.0.1:42136 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:03:21.950 00:05:00.603 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-01 12:07:18.299 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:40336 10 6452 1 2025-09-01 12:07:33.126 00:00:10.328 TCP 23.104.0.1:46892 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:08:18.520 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:55928 10 6452 1 2025-09-01 12:08:33.490 00:00:10.362 TCP 23.104.0.1:44962 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:09:18.731 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:39132 10 6452 1 2025-09-01 12:09:33.893 00:00:10.513 TCP 23.104.0.1:40066 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:06:21.949 00:05:00.607 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-01 12:10:18.901 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:46328 10 6452 1 2025-09-01 12:10:34.451 00:00:10.370 TCP 23.104.0.1:46106 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:11:19.122 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:48110 10 6452 1 2025-09-01 12:11:38.679 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 12:11:38.738 00:00:00.030 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 12:11:34.873 00:00:10.362 TCP 23.104.0.1:60374 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:12:19.334 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:43696 10 6452 1 2025-09-01 12:12:35.275 00:00:10.372 TCP 23.104.0.1:40566 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:09:21.951 00:05:00.604 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-01 12:13:19.554 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:42264 10 6452 1 2025-09-01 12:13:35.691 00:00:10.366 TCP 23.104.0.1:47308 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:14:19.766 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:54312 10 6452 1 2025-09-01 12:14:36.099 00:00:10.363 TCP 23.104.0.1:60844 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:15:19.981 00:00:10.160 TCP 1.101.0.1:3000 -> 22.102.0.1:45392 10 6452 1 2025-09-01 12:15:36.502 00:00:10.369 TCP 23.104.0.1:51906 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:12:21.949 00:05:00.609 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-01 12:16:20.180 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:49472 10 6452 1 2025-09-01 12:16:38.736 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 12:16:38.630 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 12:16:36.911 00:00:10.362 TCP 23.104.0.1:60720 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:17:20.397 00:00:10.243 TCP 1.101.0.1:3000 -> 22.102.0.1:51830 11 6504 1 2025-09-01 12:17:37.311 00:00:10.364 TCP 23.104.0.1:37142 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:18:20.682 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:51234 10 6452 1 2025-09-01 12:18:37.712 00:00:10.382 TCP 23.104.0.1:33010 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:15:21.953 00:05:00.611 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-01 12:19:20.904 00:00:10.150 TCP 1.101.0.1:3000 -> 22.102.0.1:37318 10 6452 1 2025-09-01 12:19:38.134 00:00:10.321 TCP 23.104.0.1:46788 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:20:21.088 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:44972 10 6452 1 2025-09-01 12:20:38.497 00:00:10.374 TCP 23.104.0.1:56984 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:21:21.311 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:37746 10 6452 1 2025-09-01 12:21:38.815 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 12:21:38.867 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 12:21:38.907 00:00:10.368 TCP 23.104.0.1:43712 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:18:21.950 00:05:00.613 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-01 12:22:21.527 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:37794 10 6452 1 2025-09-01 12:22:39.310 00:00:10.328 TCP 23.104.0.1:60450 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:23:21.752 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:36644 10 6452 1 2025-09-01 12:23:39.675 00:00:10.362 TCP 23.104.0.1:32876 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:24:21.967 00:00:10.147 TCP 1.101.0.1:3000 -> 22.102.0.1:37098 10 6452 1 2025-09-01 12:24:40.099 00:00:10.361 TCP 23.104.0.1:47854 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:21:21.954 00:05:00.608 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-01 12:25:22.153 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:36352 10 6452 1 2025-09-01 12:25:40.500 00:00:10.322 TCP 23.104.0.1:34092 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:26:22.327 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:51724 10 6452 1 2025-09-01 12:26:38.649 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 12:26:38.955 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 12:26:40.861 00:00:10.367 TCP 23.104.0.1:54442 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:27:22.499 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:51636 10 6452 1 2025-09-01 12:27:41.268 00:00:10.365 TCP 23.104.0.1:32836 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:24:21.950 00:05:00.615 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-01 12:28:22.710 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:52128 10 6452 1 2025-09-01 12:28:41.666 00:00:10.364 TCP 23.104.0.1:46690 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:29:22.922 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:41004 10 6452 1 2025-09-01 12:29:42.093 00:00:10.360 TCP 23.104.0.1:59234 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:30:23.101 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:46884 10 6452 1 2025-09-01 12:30:42.494 00:00:10.375 TCP 23.104.0.1:47224 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:27:21.957 00:05:00.608 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-01 12:31:23.284 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:46828 10 6452 1 2025-09-01 12:31:39.205 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 12:31:39.306 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 12:31:42.911 00:00:10.363 TCP 23.104.0.1:35244 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:32:23.500 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:44828 10 6452 1 2025-09-01 12:32:43.312 00:00:10.326 TCP 23.104.0.1:58140 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:33:23.708 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:50624 10 6452 1 2025-09-01 12:33:43.678 00:00:10.365 TCP 23.104.0.1:44334 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:30:21.953 00:05:00.614 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-01 12:34:23.917 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:35416 10 6452 1 2025-09-01 12:34:44.107 00:00:10.367 TCP 23.104.0.1:53084 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:35:24.129 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:36004 10 6452 1 2025-09-01 12:35:44.515 00:00:10.363 TCP 23.104.0.1:38172 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:36:24.340 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:37018 10 6452 1 2025-09-01 12:36:39.064 00:00:00.039 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 12:36:38.917 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 12:36:44.924 00:00:10.350 TCP 23.104.0.1:51662 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:33:21.956 00:05:00.611 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-01 12:37:24.559 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:60602 10 6452 1 2025-09-01 12:37:45.334 00:00:10.370 TCP 23.104.0.1:45516 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:38:24.744 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:60834 10 6452 1 2025-09-01 12:38:45.745 00:00:10.330 TCP 23.104.0.1:49252 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:39:24.925 00:00:10.160 TCP 1.101.0.1:3000 -> 22.102.0.1:41514 10 6452 1 2025-09-01 12:39:46.116 00:00:10.327 TCP 23.104.0.1:38610 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:36:21.954 00:05:00.615 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-01 12:40:25.118 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45184 10 6452 1 2025-09-01 12:40:46.487 00:00:10.366 TCP 23.104.0.1:55560 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:41:25.335 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:42700 10 6452 1 2025-09-01 12:41:39.286 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 12:41:39.042 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 12:41:46.891 00:00:10.373 TCP 23.104.0.1:51122 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:42:25.547 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:55154 10 6452 1 2025-09-01 12:42:47.300 00:00:10.364 TCP 23.104.0.1:45282 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:39:21.958 00:05:00.609 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-01 12:43:25.757 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:52230 10 6452 1 2025-09-01 12:43:47.696 00:00:10.363 TCP 23.104.0.1:50078 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:44:25.931 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:38652 10 6452 1 2025-09-01 12:44:48.101 00:00:10.324 TCP 23.104.0.1:52122 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:45:26.176 00:00:10.148 TCP 1.101.0.1:3000 -> 22.102.0.1:42972 10 6452 1 2025-09-01 12:45:48.464 00:00:10.363 TCP 23.104.0.1:57584 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:42:21.958 00:05:00.613 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-01 12:46:26.380 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:53976 10 6452 1 2025-09-01 12:46:39.288 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 12:46:39.409 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 12:46:48.869 00:00:10.367 TCP 23.104.0.1:55956 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:47:26.567 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:43640 10 6452 1 2025-09-01 12:47:49.274 00:00:10.368 TCP 23.104.0.1:40612 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:48:26.786 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:38516 12 6556 1 2025-09-01 12:48:49.675 00:00:10.360 TCP 23.104.0.1:54466 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:45:21.963 00:05:00.606 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-01 12:49:27.003 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:35242 10 6452 1 2025-09-01 12:49:50.091 00:00:10.364 TCP 23.104.0.1:50426 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:50:27.222 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:56610 10 6452 1 2025-09-01 12:50:50.490 00:00:10.379 TCP 23.104.0.1:48294 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:51:27.437 00:00:10.773 TCP 1.101.0.1:3000 -> 22.102.0.1:51652 10 6452 1 2025-09-01 12:51:39.053 00:00:00.037 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 12:51:39.241 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 12:51:50.895 00:00:10.326 TCP 23.104.0.1:60742 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:48:21.959 00:05:00.612 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-01 12:52:28.249 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:49614 10 6452 1 2025-09-01 12:52:51.264 00:00:10.327 TCP 23.104.0.1:58082 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:53:28.472 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:36338 10 6452 1 2025-09-01 12:53:51.633 00:00:10.365 TCP 23.104.0.1:42402 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:54:28.683 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:39478 10 6452 1 2025-09-01 12:54:52.037 00:00:10.369 TCP 23.104.0.1:41486 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:51:21.965 00:05:00.606 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-01 12:55:28.905 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:54278 10 6452 1 2025-09-01 12:55:52.448 00:00:10.388 TCP 23.104.0.1:56538 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:56:39.339 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 12:56:29.128 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:36892 10 6452 1 2025-09-01 12:56:39.274 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 12:56:52.873 00:00:10.399 TCP 23.104.0.1:51248 -> 1.101.0.1:3000 11 1507 1 2025-09-01 12:57:29.328 00:00:10.161 TCP 1.101.0.1:3000 -> 22.102.0.1:40796 12 10367 1 2025-09-01 12:57:53.313 00:00:10.400 TCP 23.104.0.1:41078 -> 1.101.0.1:3000 15 1926 1 2025-09-01 12:54:21.963 00:05:00.614 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-01 12:58:29.528 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:57456 10 6452 1 Summary: total flows: 163, total bytes: 501435, total packets: 1572, avg bps: 1078, avg pps: 0, avg bpp: 318 Time window: 2025-09-01 11:57:21 - 2025-09-01 12:59:22 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0022s User: 0.0022s Wall: 0.0025s flows/second: 65460.7 Runtime: 0.0025s