Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-02 05:59:16.460 00:00:10.363 TCP 23.104.0.1:43286 -> 1.101.0.1:3000 11 1507 1 2025-09-02 05:54:22.305 00:06:00.630 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-02 05:59:26.277 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34660 10 6452 1 2025-09-02 06:00:16.863 00:00:10.378 TCP 23.104.0.1:44052 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:00:26.491 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:34488 10 6452 1 2025-09-02 06:01:17.291 00:00:10.901 TCP 23.104.0.1:39940 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:01:26.705 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:46090 10 6452 1 2025-09-02 06:01:59.876 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 06:02:00.012 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 06:02:18.233 00:00:10.480 TCP 23.104.0.1:46808 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:02:26.917 00:00:10.147 TCP 1.101.0.1:3000 -> 22.102.0.1:42416 10 6452 1 2025-09-02 05:58:22.308 00:06:00.624 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-02 06:03:18.750 00:00:10.400 TCP 23.104.0.1:43890 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:03:27.106 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:41604 10 6452 1 2025-09-02 06:04:19.186 00:00:10.372 TCP 23.104.0.1:41926 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:04:27.324 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:34192 10 6452 1 2025-09-02 06:05:19.612 00:00:10.366 TCP 23.104.0.1:38746 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:05:27.542 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:51986 10 6452 1 2025-09-02 06:01:22.309 00:06:00.627 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-02 06:06:20.016 00:00:10.360 TCP 23.104.0.1:46898 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:06:27.752 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36010 10 6452 1 2025-09-02 06:07:00.365 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 06:07:00.151 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 06:07:20.415 00:00:10.370 TCP 23.104.0.1:46676 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:07:27.962 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:49698 10 6452 1 2025-09-02 06:08:20.823 00:00:10.367 TCP 23.104.0.1:43146 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:08:28.139 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:43746 10 6452 1 2025-09-02 06:09:21.226 00:00:10.366 TCP 23.104.0.1:37478 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:09:28.350 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:60652 10 6452 1 2025-09-02 06:05:22.313 00:06:00.624 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-02 06:10:21.627 00:00:10.357 TCP 23.104.0.1:60438 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:10:28.566 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:54054 10 6452 1 2025-09-02 06:11:22.018 00:00:10.364 TCP 23.104.0.1:35622 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:11:28.782 00:00:10.627 TCP 1.101.0.1:3000 -> 22.102.0.1:38990 10 6452 1 2025-09-02 06:12:00.104 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 06:12:00.160 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 06:12:22.419 00:00:10.367 TCP 23.104.0.1:33404 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:12:29.445 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:54864 10 6452 1 2025-09-02 06:08:22.310 00:06:00.629 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-02 06:13:22.826 00:00:10.364 TCP 23.104.0.1:55096 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:13:29.656 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:41984 10 6452 1 2025-09-02 06:14:23.228 00:00:10.331 TCP 23.104.0.1:39708 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:14:29.828 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:39758 10 6452 1 2025-09-02 06:15:23.597 00:00:10.367 TCP 23.104.0.1:44410 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:15:30.008 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:51216 10 6452 1 2025-09-02 06:16:24.006 00:00:10.364 TCP 23.104.0.1:36668 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:16:30.224 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:41308 10 6452 1 2025-09-02 06:17:00.043 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 06:17:00.235 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 06:12:22.313 00:06:00.625 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-02 06:17:24.410 00:00:10.372 TCP 23.104.0.1:38096 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:17:30.443 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:34096 10 6452 1 2025-09-02 06:18:24.821 00:00:10.323 TCP 23.104.0.1:46596 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:18:30.657 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:34820 10 6452 1 2025-09-02 06:19:25.185 00:00:10.362 TCP 23.104.0.1:50168 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:19:30.884 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:43414 10 6452 1 2025-09-02 06:15:22.310 00:06:00.632 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-02 06:20:25.589 00:00:10.374 TCP 23.104.0.1:40444 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:20:31.080 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:36716 10 6452 1 2025-09-02 06:21:25.999 00:00:10.366 TCP 23.104.0.1:44586 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:21:31.294 00:00:10.317 TCP 1.101.0.1:3000 -> 22.102.0.1:58918 10 6452 1 2025-09-02 06:22:00.421 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 06:22:00.231 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 06:22:26.403 00:00:10.362 TCP 23.104.0.1:33208 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:22:31.648 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:60636 10 6452 1 2025-09-02 06:23:31.820 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:40524 10 6452 1 2025-09-02 06:23:26.804 00:00:10.343 TCP 23.104.0.1:36802 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:19:22.314 00:06:00.629 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-02 06:24:27.186 00:00:10.366 TCP 23.104.0.1:43796 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:24:32.036 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:50750 10 6452 1 2025-09-02 06:25:27.592 00:00:10.360 TCP 23.104.0.1:37446 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:25:32.250 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:47004 10 6452 1 2025-09-02 06:26:27.998 00:00:10.361 TCP 23.104.0.1:34356 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:26:32.461 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:36362 10 6452 1 2025-09-02 06:27:00.599 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 06:27:00.563 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 06:22:22.314 00:06:00.636 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-02 06:27:28.401 00:00:10.370 TCP 23.104.0.1:43072 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:27:32.673 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:33516 10 6452 1 2025-09-02 06:28:28.834 00:00:10.347 TCP 23.104.0.1:41372 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:28:32.887 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:57056 10 6452 1 2025-09-02 06:29:29.219 00:00:10.792 TCP 23.104.0.1:60858 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:29:33.111 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:33562 10 6452 1 2025-09-02 06:30:30.060 00:00:10.362 TCP 23.104.0.1:50156 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:30:33.368 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:59128 10 6452 1 2025-09-02 06:26:22.316 00:06:00.630 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-02 06:31:30.463 00:00:10.365 TCP 23.104.0.1:54612 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:31:33.593 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:36788 10 6452 1 2025-09-02 06:32:00.694 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 06:32:00.741 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 06:32:30.866 00:00:10.329 TCP 23.104.0.1:35134 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:32:33.809 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:43896 10 6452 1 2025-09-02 06:33:31.229 00:00:10.379 TCP 23.104.0.1:58988 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:33:34.037 00:00:10.259 TCP 1.101.0.1:3000 -> 22.102.0.1:35036 10 6452 1 2025-09-02 06:29:22.314 00:06:00.634 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-02 06:34:31.638 00:00:10.362 TCP 23.104.0.1:41426 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:34:34.336 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:46300 10 6452 1 2025-09-02 06:35:34.549 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:35708 10 6452 1 2025-09-02 06:35:32.056 00:00:10.371 TCP 23.104.0.1:45844 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:36:32.464 00:00:10.361 TCP 23.104.0.1:35308 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:36:34.730 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:33376 10 6452 1 2025-09-02 06:37:00.508 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 06:37:00.941 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 06:37:34.952 00:00:10.206 TCP 1.101.0.1:3000 -> 22.102.0.1:54730 12 6556 1 2025-09-02 06:37:32.863 00:00:10.373 TCP 23.104.0.1:39276 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:33:22.317 00:06:00.629 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-02 06:38:35.190 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:47274 10 6452 1 2025-09-02 06:38:33.277 00:00:10.361 TCP 23.104.0.1:40916 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:39:33.678 00:00:10.371 TCP 23.104.0.1:34504 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:39:35.402 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:56180 10 6452 1 2025-09-02 06:40:34.116 00:00:10.360 TCP 23.104.0.1:48344 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:40:35.581 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:56944 10 6452 1 2025-09-02 06:36:22.315 00:06:00.635 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-02 06:41:35.789 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:33226 10 6452 1 2025-09-02 06:41:34.519 00:00:10.364 TCP 23.104.0.1:58894 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:42:00.831 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 06:42:00.963 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 06:42:36.005 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:55978 10 6452 1 2025-09-02 06:42:34.920 00:00:10.386 TCP 23.104.0.1:43678 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:43:35.353 00:00:10.365 TCP 23.104.0.1:50738 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:43:36.223 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:59032 10 6452 1 2025-09-02 06:44:36.436 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:54296 10 6452 1 2025-09-02 06:44:35.755 00:00:10.384 TCP 23.104.0.1:47220 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:40:22.320 00:06:00.628 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-02 06:45:36.652 00:00:10.558 TCP 1.101.0.1:3000 -> 22.102.0.1:32818 10 6452 1 2025-09-02 06:45:36.179 00:00:11.061 TCP 23.104.0.1:55382 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:46:37.249 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:53022 10 6452 1 2025-09-02 06:46:37.275 00:00:10.368 TCP 23.104.0.1:50944 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:47:01.294 00:00:00.027 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 06:47:01.663 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 06:47:37.682 00:00:10.332 TCP 23.104.0.1:34760 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:47:37.461 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:42586 10 6452 1 2025-09-02 06:43:22.317 00:06:00.633 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-02 06:48:38.048 00:00:10.326 TCP 23.104.0.1:52188 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:48:37.683 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:48178 10 6452 1 2025-09-02 06:49:38.417 00:00:10.368 TCP 23.104.0.1:46084 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:49:37.864 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:56638 10 6452 1 2025-09-02 06:50:38.086 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36324 10 6452 1 2025-09-02 06:50:38.821 00:00:10.324 TCP 23.104.0.1:40356 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:51:39.186 00:00:10.324 TCP 23.104.0.1:38400 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:51:38.305 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:33528 10 6452 1 2025-09-02 06:52:00.932 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 06:52:00.985 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 06:47:22.321 00:06:00.628 TCP 179.1.22.22:39396 -> 179.1.22.1:179 14 861 1 2025-09-02 06:52:39.552 00:00:10.373 TCP 23.104.0.1:46790 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:52:38.490 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:56454 10 6452 1 2025-09-02 06:53:38.677 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:54382 10 6452 1 2025-09-02 06:53:40.000 00:00:10.369 TCP 23.104.0.1:56912 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:54:38.891 00:00:10.363 TCP 1.101.0.1:3000 -> 22.102.0.1:40700 10 6452 1 2025-09-02 06:54:40.438 00:00:10.372 TCP 23.104.0.1:53072 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:50:22.319 00:06:00.633 TCP 179.1.22.1:179 -> 179.1.22.22:39396 14 861 1 2025-09-02 06:55:39.300 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:32852 10 6452 1 2025-09-02 06:55:40.853 00:00:10.377 TCP 23.104.0.1:39398 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:56:41.271 00:00:10.365 TCP 23.104.0.1:47064 -> 1.101.0.1:3000 11 1507 1 2025-09-02 06:56:39.513 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:47608 10 6452 1 2025-09-02 06:57:01.023 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 06:57:01.240 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 06:57:39.734 00:00:10.216 TCP 1.101.0.1:3000 -> 22.102.0.1:56772 12 10365 1 2025-09-02 06:57:41.679 00:00:10.459 TCP 23.104.0.1:46348 -> 1.101.0.1:3000 15 1926 1 2025-09-02 06:58:39.986 00:00:10.214 TCP 1.101.0.1:3000 -> 22.102.0.1:46298 10 6452 1 Summary: total flows: 160, total bytes: 501154, total packets: 1567, avg bps: 1036, avg pps: 0, avg bpp: 319 Time window: 2025-09-02 05:54:22 - 2025-09-02 06:58:50 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0036s User: 0.0012s Wall: 0.0022s flows/second: 73973.6 Runtime: 0.0022s