Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-01 17:59:07.616 00:00:10.366 TCP 23.104.0.1:60518 -> 1.101.0.1:3000 11 1507 1 2025-09-01 17:59:38.183 00:00:10.806 TCP 1.101.0.1:3000 -> 22.102.0.1:34012 10 6452 1 2025-09-01 18:00:08.029 00:00:10.367 TCP 23.104.0.1:59464 -> 1.101.0.1:3000 12 1559 1 2025-09-01 18:00:39.033 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:54162 10 6452 1 2025-09-01 18:01:08.431 00:00:13.502 TCP 23.104.0.1:46092 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:01:45.482 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 18:01:45.514 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 18:01:39.248 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:54916 10 6452 1 2025-09-01 18:02:11.981 00:00:10.369 TCP 23.104.0.1:57522 -> 1.101.0.1:3000 11 1507 1 2025-09-01 17:57:22.098 00:06:00.569 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-01 18:02:39.462 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:38114 10 6452 1 2025-09-01 18:03:12.392 00:00:10.326 TCP 23.104.0.1:48294 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:03:39.674 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:57580 10 6452 1 2025-09-01 18:04:12.760 00:00:10.374 TCP 23.104.0.1:50934 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:04:39.893 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:42514 10 6452 1 2025-09-01 18:05:13.173 00:00:10.365 TCP 23.104.0.1:44826 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:00:22.095 00:06:00.573 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-01 18:05:40.109 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:50300 10 6452 1 2025-09-01 18:06:13.581 00:00:10.367 TCP 23.104.0.1:46400 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:06:45.719 00:00:00.029 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 18:06:45.612 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 18:06:40.324 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:54502 10 6452 1 2025-09-01 18:07:13.987 00:00:10.325 TCP 23.104.0.1:60542 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:07:40.533 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:46552 10 6452 1 2025-09-01 18:08:14.353 00:00:10.366 TCP 23.104.0.1:34012 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:08:40.750 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:39692 10 6452 1 2025-09-01 18:09:14.760 00:00:10.512 TCP 23.104.0.1:59804 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:04:22.099 00:06:00.568 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-01 18:09:40.963 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:49402 10 6452 1 2025-09-01 18:10:15.309 00:00:10.323 TCP 23.104.0.1:50008 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:10:41.182 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:55830 10 6452 1 2025-09-01 18:11:15.670 00:00:10.382 TCP 23.104.0.1:49414 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:11:45.930 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 18:11:45.566 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 18:11:41.396 00:00:10.217 TCP 1.101.0.1:3000 -> 22.102.0.1:39150 10 6452 1 2025-09-01 18:12:16.093 00:00:10.367 TCP 23.104.0.1:34590 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:07:22.100 00:06:00.570 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-01 18:12:41.671 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:52736 10 6452 1 2025-09-01 18:13:16.499 00:00:10.369 TCP 23.104.0.1:54130 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:13:41.881 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:33972 10 6452 1 2025-09-01 18:14:16.906 00:00:10.367 TCP 23.104.0.1:51170 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:14:42.099 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:37764 10 6452 1 2025-09-01 18:15:17.315 00:00:10.362 TCP 23.104.0.1:40972 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:15:42.314 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:40436 10 6452 1 2025-09-01 18:11:22.102 00:06:00.566 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-01 18:16:17.716 00:00:10.380 TCP 23.104.0.1:33974 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:16:46.310 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 18:16:46.420 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 18:16:42.527 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:42550 10 6452 1 2025-09-01 18:17:18.143 00:00:10.360 TCP 23.104.0.1:38102 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:17:42.706 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:46910 10 6452 1 2025-09-01 18:18:18.541 00:00:10.323 TCP 23.104.0.1:34324 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:18:42.922 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:60530 10 6452 1 2025-09-01 18:14:22.100 00:06:00.577 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-01 18:19:18.900 00:00:10.362 TCP 23.104.0.1:35838 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:19:43.111 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:35120 12 6556 1 2025-09-01 18:20:19.304 00:00:10.374 TCP 23.104.0.1:57580 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:20:43.329 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:34292 10 6452 1 2025-09-01 18:21:19.723 00:00:10.326 TCP 23.104.0.1:34572 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:21:46.415 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 18:21:46.193 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 18:21:43.545 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:50868 10 6452 1 2025-09-01 18:22:20.102 00:00:10.367 TCP 23.104.0.1:44210 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:22:43.754 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:43824 10 6452 1 2025-09-01 18:18:22.104 00:06:00.572 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-01 18:23:20.500 00:00:10.371 TCP 23.104.0.1:43344 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:23:43.971 00:00:10.152 TCP 1.101.0.1:3000 -> 22.102.0.1:48978 10 6452 1 2025-09-01 18:24:20.905 00:00:10.369 TCP 23.104.0.1:45512 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:24:44.159 00:00:10.505 TCP 1.101.0.1:3000 -> 22.102.0.1:48294 10 6452 1 2025-09-01 18:25:21.312 00:00:10.366 TCP 23.104.0.1:57060 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:25:44.703 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:35182 10 6452 1 2025-09-01 18:21:22.101 00:06:00.578 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-01 18:26:21.722 00:00:10.337 TCP 23.104.0.1:51514 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:26:46.301 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 18:26:46.221 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 18:26:44.928 00:00:10.206 TCP 1.101.0.1:3000 -> 22.102.0.1:46920 10 6452 1 2025-09-01 18:27:22.113 00:00:10.360 TCP 23.104.0.1:51644 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:27:45.175 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:36884 10 6452 1 2025-09-01 18:28:22.511 00:00:10.369 TCP 23.104.0.1:54424 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:28:45.391 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:36198 10 6452 1 2025-09-01 18:29:22.922 00:00:10.394 TCP 23.104.0.1:58314 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:29:45.558 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:59672 10 6452 1 2025-09-01 18:25:22.104 00:06:00.573 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-01 18:30:23.357 00:00:10.362 TCP 23.104.0.1:40820 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:30:45.777 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:33226 10 6452 1 2025-09-01 18:31:23.759 00:00:10.374 TCP 23.104.0.1:35468 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:31:46.229 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 18:31:46.357 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 18:31:45.989 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:42250 10 6452 1 2025-09-01 18:32:24.170 00:00:10.367 TCP 23.104.0.1:54406 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:32:46.201 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:40248 12 10365 1 2025-09-01 18:28:22.102 00:06:00.578 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-01 18:33:24.579 00:00:10.439 TCP 23.104.0.1:47458 -> 1.101.0.1:3000 15 1926 1 2025-09-01 18:33:46.441 00:00:10.664 TCP 1.101.0.1:3000 -> 22.102.0.1:47956 10 6452 1 2025-09-01 18:34:25.057 00:00:10.321 TCP 23.104.0.1:38306 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:34:47.142 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:42964 12 6556 1 2025-09-01 18:35:25.421 00:00:10.326 TCP 23.104.0.1:45844 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:35:47.355 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:33724 10 6452 1 2025-09-01 18:36:25.783 00:00:10.366 TCP 23.104.0.1:36864 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:36:46.253 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 18:36:46.496 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 18:36:47.540 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:37300 10 6452 1 2025-09-01 18:32:22.108 00:06:00.571 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-01 18:37:26.189 00:00:17.946 TCP 23.104.0.1:36506 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:37:47.771 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:47038 10 6452 1 2025-09-01 18:38:34.176 00:00:10.365 TCP 23.104.0.1:55094 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:38:47.988 00:00:10.149 TCP 1.101.0.1:3000 -> 22.102.0.1:57278 10 6452 1 2025-09-01 18:39:34.585 00:00:10.365 TCP 23.104.0.1:56484 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:39:48.173 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:45706 10 6452 1 2025-09-01 18:35:22.104 00:06:00.577 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-01 18:40:34.989 00:00:10.882 TCP 23.104.0.1:60770 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:40:48.392 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:56788 10 6452 1 2025-09-01 18:41:46.578 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 18:41:35.907 00:00:10.361 TCP 23.104.0.1:44052 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:41:46.634 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 18:41:48.624 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:52004 10 6452 1 2025-09-01 18:42:36.303 00:00:10.363 TCP 23.104.0.1:44090 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:42:48.830 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:36142 10 6452 1 2025-09-01 18:43:36.705 00:00:10.359 TCP 23.104.0.1:49596 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:43:49.072 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:50482 10 6452 1 2025-09-01 18:39:22.108 00:06:00.572 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-01 18:44:37.108 00:00:10.367 TCP 23.104.0.1:47758 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:44:49.294 00:00:10.164 TCP 1.101.0.1:3000 -> 22.102.0.1:53712 10 6452 1 2025-09-01 18:45:37.517 00:00:10.326 TCP 23.104.0.1:34288 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:45:49.498 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:60906 10 6452 1 2025-09-01 18:46:46.620 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 18:46:46.556 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 18:46:37.880 00:00:10.373 TCP 23.104.0.1:60460 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:46:49.715 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:49084 10 6452 1 2025-09-01 18:42:22.106 00:06:00.578 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-01 18:47:38.290 00:00:10.363 TCP 23.104.0.1:55858 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:47:49.931 00:00:10.208 TCP 1.101.0.1:3000 -> 22.102.0.1:41172 10 6452 1 2025-09-01 18:48:38.689 00:00:10.367 TCP 23.104.0.1:45754 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:48:50.169 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:54126 10 6452 1 2025-09-01 18:49:39.105 00:00:10.329 TCP 23.104.0.1:51106 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:49:50.340 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:51512 10 6452 1 2025-09-01 18:50:39.468 00:00:10.362 TCP 23.104.0.1:56708 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:50:50.565 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:47776 10 6452 1 2025-09-01 18:46:22.111 00:06:00.572 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-01 18:51:46.721 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 18:51:46.557 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 18:51:39.872 00:00:10.378 TCP 23.104.0.1:59190 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:51:50.787 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:46912 10 6452 1 2025-09-01 18:52:40.290 00:00:10.357 TCP 23.104.0.1:46928 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:52:51.005 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:33958 10 6452 1 2025-09-01 18:53:40.688 00:00:10.465 TCP 23.104.0.1:40564 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:53:51.215 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:32978 10 6452 1 2025-09-01 18:49:22.107 00:06:00.577 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-01 18:54:41.189 00:00:10.363 TCP 23.104.0.1:43186 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:54:51.432 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:44628 10 6452 1 2025-09-01 18:55:41.591 00:00:10.328 TCP 23.104.0.1:36872 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:55:51.644 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:48672 10 6452 1 2025-09-01 18:56:46.865 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-01 18:56:46.654 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-01 18:56:41.960 00:00:10.478 TCP 23.104.0.1:34130 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:56:51.861 00:00:10.234 TCP 1.101.0.1:3000 -> 22.102.0.1:47510 10 6452 1 2025-09-01 18:57:42.480 00:00:10.366 TCP 23.104.0.1:54026 -> 1.101.0.1:3000 11 1507 1 2025-09-01 18:57:52.153 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:48806 10 6452 1 2025-09-01 18:53:22.111 00:06:00.572 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 Summary: total flows: 159, total bytes: 494858, total packets: 1560, avg bps: 1064, avg pps: 0, avg bpp: 317 Time window: 2025-09-01 17:57:22 - 2025-09-01 18:59:22 Total flows processed: 159, passed: 159, Blocks skipped: 0, Bytes read: 16600 Sys: 0.0019s User: 0.0029s Wall: 0.0025s flows/second: 62974.0 Runtime: 0.0025s