Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-02 08:59:09.734 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:60344 10 6452 1 2025-09-02 08:59:40.456 00:00:10.361 TCP 23.104.0.1:51226 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:00:09.949 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:55296 10 6452 1 2025-09-02 09:00:40.858 00:00:10.704 TCP 23.104.0.1:57698 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:01:10.177 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:50546 10 6452 1 2025-09-02 09:01:41.603 00:00:10.321 TCP 23.104.0.1:39444 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:02:03.696 00:00:00.020 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 09:02:03.603 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 09:02:10.398 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:40320 10 6452 1 2025-09-02 09:02:41.965 00:00:10.371 TCP 23.104.0.1:50746 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:03:10.624 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54240 10 6452 1 2025-09-02 08:59:22.354 00:05:00.648 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-02 09:03:42.370 00:00:10.365 TCP 23.104.0.1:36680 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:04:10.841 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:49592 10 6452 1 2025-09-02 09:00:22.350 00:05:00.654 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-02 09:04:42.772 00:00:10.729 TCP 23.104.0.1:34872 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:05:11.089 00:00:10.210 TCP 1.101.0.1:3000 -> 22.102.0.1:37880 10 6452 1 2025-09-02 09:05:43.540 00:00:10.320 TCP 23.104.0.1:60404 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:06:11.349 00:00:10.153 TCP 1.101.0.1:3000 -> 22.102.0.1:45496 10 6452 1 2025-09-02 09:06:43.896 00:00:10.372 TCP 23.104.0.1:50086 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:07:03.637 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 09:07:03.753 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 09:07:11.541 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:59040 10 6452 1 2025-09-02 09:07:44.318 00:00:10.329 TCP 23.104.0.1:42360 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:08:11.748 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:46438 10 6452 1 2025-09-02 09:08:44.690 00:00:10.334 TCP 23.104.0.1:59570 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:05:22.355 00:05:00.673 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-02 09:09:11.963 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:53802 12 6556 1 2025-09-02 09:09:45.106 00:00:10.324 TCP 23.104.0.1:54560 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:10:12.194 00:00:12.711 TCP 1.101.0.1:3000 -> 22.102.0.1:57426 10 6452 1 2025-09-02 09:06:22.352 00:05:00.685 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-02 09:10:45.468 00:00:10.330 TCP 23.104.0.1:58750 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:11:14.955 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:50960 12 6556 1 2025-09-02 09:11:45.862 00:00:10.370 TCP 23.104.0.1:36248 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:12:03.615 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 09:12:03.874 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 09:12:15.182 00:00:10.657 TCP 1.101.0.1:3000 -> 22.102.0.1:53536 10 6452 1 2025-09-02 09:12:46.266 00:00:10.368 TCP 23.104.0.1:42696 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:13:15.872 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:46764 10 6452 1 2025-09-02 09:13:46.669 00:00:10.366 TCP 23.104.0.1:37820 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:14:16.111 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:56540 10 6452 1 2025-09-02 09:14:47.103 00:00:10.370 TCP 23.104.0.1:33808 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:11:22.357 00:05:00.679 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-02 09:15:16.284 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:38734 10 6452 1 2025-09-02 09:15:47.507 00:00:10.329 TCP 23.104.0.1:52250 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:16:16.508 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:36420 10 6452 1 2025-09-02 09:12:22.355 00:05:00.684 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-02 09:16:47.878 00:00:10.395 TCP 23.104.0.1:33384 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:17:03.890 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 09:17:03.798 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 09:17:16.730 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:54442 10 6452 1 2025-09-02 09:17:48.306 00:00:10.327 TCP 23.104.0.1:35090 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:18:16.908 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:38602 12 6556 1 2025-09-02 09:18:48.669 00:00:10.386 TCP 23.104.0.1:38822 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:19:17.122 00:00:10.236 TCP 1.101.0.1:3000 -> 22.102.0.1:57522 11 6504 1 2025-09-02 09:19:49.101 00:00:10.363 TCP 23.104.0.1:34670 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:20:17.398 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:34156 10 6452 1 2025-09-02 09:20:49.506 00:00:10.368 TCP 23.104.0.1:43930 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:17:22.358 00:05:00.680 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-02 09:21:17.572 00:00:10.127 TCP 1.101.0.1:3000 -> 22.102.0.1:58466 10 6452 1 2025-09-02 09:21:49.913 00:00:10.366 TCP 23.104.0.1:58614 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:22:04.262 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 09:22:04.451 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 09:18:22.356 00:05:00.685 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-02 09:22:17.741 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:50424 10 6452 1 2025-09-02 09:22:50.314 00:00:10.445 TCP 23.104.0.1:51850 -> 1.101.0.1:3000 15 1926 1 2025-09-02 09:23:17.951 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:47344 12 10367 1 2025-09-02 09:23:50.800 00:00:10.366 TCP 23.104.0.1:52308 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:24:18.164 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:50368 10 6452 1 2025-09-02 09:24:51.205 00:00:10.373 TCP 23.104.0.1:49950 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:25:18.337 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:54170 10 6452 1 2025-09-02 09:25:51.611 00:00:10.366 TCP 23.104.0.1:34618 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:26:18.546 00:00:10.345 TCP 1.101.0.1:3000 -> 22.102.0.1:32932 10 6452 1 2025-09-02 09:27:03.924 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 09:26:52.021 00:00:10.366 TCP 23.104.0.1:41104 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:27:04.088 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 09:23:22.359 00:05:00.683 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-02 09:27:18.931 00:00:10.211 TCP 1.101.0.1:3000 -> 22.102.0.1:42328 10 6452 1 2025-09-02 09:27:52.426 00:00:10.369 TCP 23.104.0.1:47608 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:24:22.357 00:05:00.688 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-02 09:28:19.180 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:48094 10 6452 1 2025-09-02 09:28:52.828 00:00:10.320 TCP 23.104.0.1:60824 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:29:19.401 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:46654 10 6452 1 2025-09-02 09:29:53.186 00:00:10.360 TCP 23.104.0.1:54996 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:30:19.612 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:51656 10 6452 1 2025-09-02 09:30:53.585 00:00:10.366 TCP 23.104.0.1:36124 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:31:19.792 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:54888 10 6452 1 2025-09-02 09:32:04.261 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 09:32:04.298 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 09:31:53.985 00:00:10.381 TCP 23.104.0.1:50744 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:32:20.029 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:33516 10 6452 1 2025-09-02 09:32:54.396 00:00:10.327 TCP 23.104.0.1:54752 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:29:22.360 00:05:00.688 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-02 09:33:20.263 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:35028 10 6452 1 2025-09-02 09:33:54.760 00:00:10.386 TCP 23.104.0.1:45670 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:30:22.358 00:05:00.692 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-02 09:34:20.479 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:51522 10 6452 1 2025-09-02 09:34:55.187 00:00:10.339 TCP 23.104.0.1:50028 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:35:20.701 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:54478 10 6452 1 2025-09-02 09:35:55.571 00:00:10.371 TCP 23.104.0.1:43500 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:36:20.916 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:42586 10 6452 1 2025-09-02 09:37:04.421 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 09:36:55.988 00:00:10.374 TCP 23.104.0.1:59686 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:37:04.413 00:00:00.027 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 09:37:21.142 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52500 10 6452 1 2025-09-02 09:37:56.403 00:00:10.327 TCP 23.104.0.1:60754 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:38:21.355 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:34558 10 6452 1 2025-09-02 09:38:56.772 00:00:10.336 TCP 23.104.0.1:49170 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:35:22.361 00:05:00.689 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-02 09:39:21.527 00:00:10.379 TCP 1.101.0.1:3000 -> 22.102.0.1:36640 10 6452 1 2025-09-02 09:39:57.158 00:00:10.367 TCP 23.104.0.1:50326 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:36:22.359 00:05:00.693 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-02 09:40:21.946 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:41670 10 6452 1 2025-09-02 09:40:57.562 00:00:10.335 TCP 23.104.0.1:53826 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:41:22.186 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:55250 10 6452 1 2025-09-02 09:42:04.725 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 09:42:04.780 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 09:41:57.958 00:00:10.371 TCP 23.104.0.1:53522 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:42:22.408 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:52594 10 6452 1 2025-09-02 09:42:58.367 00:00:10.440 TCP 23.104.0.1:45082 -> 1.101.0.1:3000 15 1926 1 2025-09-02 09:43:22.628 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:43276 12 10367 1 2025-09-02 09:43:58.844 00:00:10.402 TCP 23.104.0.1:47022 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:44:22.869 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:43968 10 6452 1 2025-09-02 09:44:59.286 00:00:10.376 TCP 23.104.0.1:34882 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:41:22.362 00:05:00.689 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-02 09:45:23.106 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:38306 10 6452 1 2025-09-02 09:45:59.693 00:00:10.368 TCP 23.104.0.1:42316 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:42:22.360 00:05:00.694 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-02 09:46:23.320 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:59646 10 6452 1 2025-09-02 09:47:04.566 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 09:47:04.778 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 09:47:00.114 00:00:10.366 TCP 23.104.0.1:36012 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:47:23.532 00:00:10.593 TCP 1.101.0.1:3000 -> 22.102.0.1:45954 10 6452 1 2025-09-02 09:48:00.518 00:00:10.360 TCP 23.104.0.1:34184 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:48:24.168 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:55828 10 6452 1 2025-09-02 09:49:00.914 00:00:10.364 TCP 23.104.0.1:32930 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:49:24.380 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:45106 10 6452 1 2025-09-02 09:50:01.313 00:00:10.363 TCP 23.104.0.1:38060 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:50:24.599 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:52314 10 6452 1 2025-09-02 09:51:01.716 00:00:10.337 TCP 23.104.0.1:60474 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:47:22.363 00:05:00.689 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-02 09:51:24.813 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:51132 10 6452 1 2025-09-02 09:52:04.737 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 09:52:04.671 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 09:52:02.107 00:00:10.367 TCP 23.104.0.1:33296 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:48:22.361 00:05:00.694 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-02 09:52:25.034 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36690 10 6452 1 2025-09-02 09:53:02.515 00:00:10.324 TCP 23.104.0.1:44588 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:53:25.245 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:48214 10 6452 1 2025-09-02 09:54:02.878 00:00:10.981 TCP 23.104.0.1:40472 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:54:25.463 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:37394 10 6452 1 2025-09-02 09:55:03.915 00:00:10.409 TCP 23.104.0.1:43318 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:55:25.675 00:00:10.938 TCP 1.101.0.1:3000 -> 22.102.0.1:36648 10 6452 1 2025-09-02 09:56:04.365 00:00:10.368 TCP 23.104.0.1:56120 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:56:26.685 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:47922 10 6452 1 2025-09-02 09:57:04.821 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 09:57:04.714 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 09:57:04.768 00:00:10.378 TCP 23.104.0.1:46746 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:53:22.364 00:05:00.689 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-02 09:57:26.902 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:39772 10 6452 1 2025-09-02 09:58:05.184 00:00:10.322 TCP 23.104.0.1:57040 -> 1.101.0.1:3000 11 1507 1 2025-09-02 09:54:22.362 00:05:00.694 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-02 09:58:27.077 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:58710 10 6452 1 Summary: total flows: 163, total bytes: 505873, total packets: 1580, avg bps: 1120, avg pps: 0, avg bpp: 320 Time window: 2025-09-02 08:59:09 - 2025-09-02 09:59:23 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0033s User: 0.0022s Wall: 0.0027s flows/second: 60663.0 Runtime: 0.0027s