Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-02 15:58:52.087 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:38588 10 6452 1 2025-09-02 15:59:33.755 00:00:10.389 TCP 23.104.0.1:37212 -> 1.101.0.1:3000 11 1507 1 2025-09-02 15:59:52.303 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:52374 10 6452 1 2025-09-02 16:00:34.180 00:00:10.365 TCP 23.104.0.1:47988 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:00:52.517 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54384 10 6452 1 2025-09-02 16:01:34.585 00:00:10.370 TCP 23.104.0.1:58686 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:01:52.736 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:38186 10 6452 1 2025-09-02 16:02:12.043 00:00:00.055 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 16:02:12.272 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 16:02:34.989 00:00:10.359 TCP 23.104.0.1:45722 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:02:52.946 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:49958 10 6452 1 2025-09-02 15:59:22.469 00:05:00.735 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-02 16:03:35.393 00:00:10.367 TCP 23.104.0.1:33690 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:03:53.177 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:37688 10 6452 1 2025-09-02 16:00:22.465 00:05:00.741 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-02 16:04:35.802 00:00:10.367 TCP 23.104.0.1:40462 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:04:53.350 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58216 10 6452 1 2025-09-02 16:05:36.203 00:00:10.377 TCP 23.104.0.1:52402 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:05:53.562 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:56902 10 6452 1 2025-09-02 16:06:36.624 00:00:10.368 TCP 23.104.0.1:51078 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:06:53.737 00:00:10.534 TCP 1.101.0.1:3000 -> 22.102.0.1:46622 10 6452 1 2025-09-02 16:07:12.098 00:00:00.040 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 16:07:12.183 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 16:07:37.032 00:00:10.370 TCP 23.104.0.1:43410 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:07:54.314 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:46540 10 6452 1 2025-09-02 16:08:37.434 00:00:10.370 TCP 23.104.0.1:53558 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:08:54.522 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:46652 10 6452 1 2025-09-02 16:05:22.471 00:05:00.735 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-02 16:09:37.838 00:00:11.147 TCP 23.104.0.1:54420 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:09:54.738 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:44592 10 6452 1 2025-09-02 16:06:22.470 00:05:00.739 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-02 16:10:39.029 00:00:10.364 TCP 23.104.0.1:58138 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:10:54.952 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:45880 10 6452 1 2025-09-02 16:11:39.433 00:00:10.367 TCP 23.104.0.1:35090 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:11:55.186 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:58950 10 6452 1 2025-09-02 16:12:12.020 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 16:12:12.344 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 16:12:39.842 00:00:10.354 TCP 23.104.0.1:50612 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:12:55.397 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:49434 10 6452 1 2025-09-02 16:13:40.236 00:00:10.362 TCP 23.104.0.1:59736 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:13:55.609 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:46616 10 6452 1 2025-09-02 16:14:40.637 00:00:10.371 TCP 23.104.0.1:34522 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:14:55.783 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:36622 10 6452 1 2025-09-02 16:11:22.472 00:05:00.735 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-02 16:15:41.048 00:00:10.322 TCP 23.104.0.1:41458 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:15:55.997 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:56052 10 6452 1 2025-09-02 16:12:22.473 00:05:00.738 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-02 16:16:41.412 00:00:10.863 TCP 23.104.0.1:39148 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:16:56.217 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:48464 10 6452 1 2025-09-02 16:17:12.510 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 16:17:12.350 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 16:17:42.321 00:00:10.357 TCP 23.104.0.1:44994 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:17:56.383 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:43742 10 6452 1 2025-09-02 16:18:42.720 00:00:10.369 TCP 23.104.0.1:39916 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:18:56.597 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:48702 10 6452 1 2025-09-02 16:19:43.132 00:00:10.374 TCP 23.104.0.1:38236 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:19:56.776 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:34546 10 6452 1 2025-09-02 16:20:43.551 00:00:10.332 TCP 23.104.0.1:53596 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:20:56.987 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:55008 10 6452 1 2025-09-02 16:17:22.479 00:05:00.729 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-02 16:21:43.919 00:00:10.367 TCP 23.104.0.1:39322 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:21:57.215 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:39318 10 6452 1 2025-09-02 16:22:12.463 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 16:22:12.470 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 16:18:22.477 00:05:00.734 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-02 16:22:44.322 00:00:10.367 TCP 23.104.0.1:60174 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:22:57.428 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:60138 10 6452 1 2025-09-02 16:23:44.721 00:00:10.374 TCP 23.104.0.1:32966 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:23:57.640 00:00:10.940 TCP 1.101.0.1:3000 -> 22.102.0.1:35380 10 6452 1 2025-09-02 16:24:45.132 00:00:10.367 TCP 23.104.0.1:49510 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:24:58.618 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:39040 10 6452 1 2025-09-02 16:25:45.537 00:00:10.371 TCP 23.104.0.1:45856 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:25:58.831 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:42616 10 6452 1 2025-09-02 16:26:45.945 00:00:10.375 TCP 23.104.0.1:58990 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:26:59.070 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:42764 10 6452 1 2025-09-02 16:27:12.463 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 16:27:12.653 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 16:23:22.479 00:05:00.730 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-02 16:27:46.354 00:00:10.319 TCP 23.104.0.1:48872 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:27:59.284 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:58368 10 6452 1 2025-09-02 16:24:22.477 00:05:00.735 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-02 16:28:46.712 00:00:10.382 TCP 23.104.0.1:48094 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:28:59.502 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:36452 10 6452 1 2025-09-02 16:29:47.134 00:00:10.364 TCP 23.104.0.1:46190 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:29:59.714 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:52146 10 6452 1 2025-09-02 16:30:47.535 00:00:10.359 TCP 23.104.0.1:59872 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:30:59.930 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:60206 10 6452 1 2025-09-02 16:31:47.937 00:00:10.910 TCP 23.104.0.1:41218 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:32:00.159 00:00:10.149 TCP 1.101.0.1:3000 -> 22.102.0.1:56834 10 6452 1 2025-09-02 16:32:12.729 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 16:32:12.653 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 16:32:48.887 00:00:10.382 TCP 23.104.0.1:43602 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:33:00.353 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51600 10 6452 1 2025-09-02 16:29:22.481 00:05:00.730 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-02 16:33:49.302 00:00:10.373 TCP 23.104.0.1:48832 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:34:00.571 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:60674 10 6452 1 2025-09-02 16:30:22.478 00:05:00.735 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-02 16:34:49.711 00:00:10.366 TCP 23.104.0.1:54602 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:35:00.776 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:33772 10 6452 1 2025-09-02 16:35:50.114 00:00:10.327 TCP 23.104.0.1:43652 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:36:00.995 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:42056 10 6452 1 2025-09-02 16:36:50.480 00:00:10.367 TCP 23.104.0.1:46460 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:37:01.213 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:54894 10 6452 1 2025-09-02 16:37:12.810 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 16:37:12.636 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 16:37:50.896 00:00:10.369 TCP 23.104.0.1:38058 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:38:01.429 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:35032 10 6452 1 2025-09-02 16:38:51.307 00:00:10.369 TCP 23.104.0.1:42270 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:39:01.642 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:42010 10 6452 1 2025-09-02 16:35:22.482 00:05:00.731 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-02 16:39:51.720 00:00:10.373 TCP 23.104.0.1:58662 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:40:01.853 00:00:10.449 TCP 1.101.0.1:3000 -> 22.102.0.1:48736 10 6452 1 2025-09-02 16:36:22.479 00:05:00.736 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-02 16:40:52.134 00:00:10.323 TCP 23.104.0.1:49704 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:41:02.342 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:56718 10 6452 1 2025-09-02 16:41:52.495 00:00:10.369 TCP 23.104.0.1:39080 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:42:02.550 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:32984 10 6452 1 2025-09-02 16:42:12.978 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 16:42:12.662 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 16:42:52.903 00:00:10.364 TCP 23.104.0.1:43516 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:43:02.725 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:50488 10 6452 1 2025-09-02 16:43:53.308 00:00:10.365 TCP 23.104.0.1:44844 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:44:02.941 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:57426 10 6452 1 2025-09-02 16:44:53.711 00:00:10.379 TCP 23.104.0.1:46746 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:45:03.175 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:37938 10 6452 1 2025-09-02 16:41:22.483 00:05:00.765 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-02 16:45:54.128 00:00:10.367 TCP 23.104.0.1:42712 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:46:03.354 00:00:10.148 TCP 1.101.0.1:3000 -> 22.102.0.1:49076 10 6452 1 2025-09-02 16:42:22.480 00:05:00.771 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-02 16:46:54.537 00:00:10.365 TCP 23.104.0.1:41778 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:47:03.543 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:42942 10 6452 1 2025-09-02 16:47:12.921 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 16:47:13.059 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 16:47:54.942 00:00:10.405 TCP 23.104.0.1:51016 -> 1.101.0.1:3000 15 1926 1 2025-09-02 16:48:03.723 00:00:10.212 TCP 1.101.0.1:3000 -> 22.102.0.1:42320 12 10367 1 2025-09-02 16:48:55.391 00:00:10.375 TCP 23.104.0.1:47324 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:49:03.978 00:00:10.440 TCP 1.101.0.1:3000 -> 22.102.0.1:37636 10 6452 1 2025-09-02 16:49:55.809 00:00:10.335 TCP 23.104.0.1:58156 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:50:04.459 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58674 10 6452 1 2025-09-02 16:50:56.184 00:00:10.366 TCP 23.104.0.1:52608 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:51:04.673 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:38718 10 6452 1 2025-09-02 16:47:22.485 00:05:00.765 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-02 16:51:56.598 00:00:10.368 TCP 23.104.0.1:39238 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:52:13.434 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 16:52:04.885 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:46104 10 6452 1 2025-09-02 16:52:13.300 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 16:48:22.482 00:05:00.770 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-02 16:52:57.008 00:00:10.366 TCP 23.104.0.1:46020 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:53:05.085 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:46692 10 6452 1 2025-09-02 16:53:57.419 00:00:10.362 TCP 23.104.0.1:38888 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:54:05.256 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:42802 10 6452 1 2025-09-02 16:54:57.821 00:00:10.325 TCP 23.104.0.1:38360 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:55:05.466 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:41732 10 6452 1 2025-09-02 16:55:58.186 00:00:10.359 TCP 23.104.0.1:42276 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:56:05.674 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:43134 10 6452 1 2025-09-02 16:56:58.580 00:00:10.363 TCP 23.104.0.1:55484 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:57:13.245 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-02 16:57:13.108 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-02 16:57:05.850 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:58242 10 6452 1 2025-09-02 16:53:22.485 00:05:00.765 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-02 16:57:58.985 00:00:10.368 TCP 23.104.0.1:53474 -> 1.101.0.1:3000 11 1507 1 2025-09-02 16:58:06.088 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:53574 10 6452 1 2025-09-02 16:54:22.482 00:05:00.771 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 Summary: total flows: 163, total bytes: 501175, total packets: 1567, avg bps: 1104, avg pps: 0, avg bpp: 319 Time window: 2025-09-02 15:58:52 - 2025-09-02 16:59:23 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0022s User: 0.0022s Wall: 0.0025s flows/second: 64576.5 Runtime: 0.0025s