Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-05 03:55:23.826 00:05:00.698 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 03:59:25.831 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:52630 10 6452 1 2025-09-05 03:59:34.684 00:00:10.321 TCP 23.104.0.1:52892 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:00:26.005 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:34110 10 6452 1 2025-09-05 04:00:35.057 00:00:10.365 TCP 23.104.0.1:47508 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:01:26.218 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:42752 10 6452 1 2025-09-05 04:01:35.464 00:00:10.366 TCP 23.104.0.1:50832 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:02:26.429 00:00:10.733 TCP 1.101.0.1:3000 -> 22.102.0.1:50758 10 6452 1 2025-09-05 04:02:35.869 00:00:10.370 TCP 23.104.0.1:55644 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:03:24.300 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 04:03:24.273 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 04:03:27.198 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52398 10 6452 1 2025-09-05 04:03:36.277 00:00:10.370 TCP 23.104.0.1:54776 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:00:23.825 00:05:00.702 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 04:04:27.410 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:52820 10 6452 1 2025-09-05 04:04:36.700 00:00:10.364 TCP 23.104.0.1:34628 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:01:23.827 00:05:00.697 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 04:05:27.625 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:53704 10 6452 1 2025-09-05 04:05:37.112 00:00:10.332 TCP 23.104.0.1:38370 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:06:27.851 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55284 10 6452 1 2025-09-05 04:06:37.480 00:00:10.366 TCP 23.104.0.1:44510 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:07:28.085 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:38690 10 6452 1 2025-09-05 04:07:37.887 00:00:10.445 TCP 23.104.0.1:44848 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:08:24.192 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 04:08:24.463 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 04:08:28.260 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:35674 10 6452 1 2025-09-05 04:08:38.375 00:00:10.367 TCP 23.104.0.1:50738 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:09:28.469 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:33722 10 6452 1 2025-09-05 04:09:38.772 00:00:10.337 TCP 23.104.0.1:40978 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:06:23.830 00:05:00.699 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 04:10:28.690 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:54756 10 6452 1 2025-09-05 04:10:39.150 00:00:10.375 TCP 23.104.0.1:35520 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:07:23.833 00:05:00.695 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 04:11:28.899 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:53902 10 6452 1 2025-09-05 04:11:39.567 00:00:10.361 TCP 23.104.0.1:51538 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:12:29.113 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:56006 11 6813 1 2025-09-05 04:12:39.967 00:00:10.367 TCP 23.104.0.1:45706 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:13:24.622 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 04:13:24.482 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 04:13:29.355 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:56554 12 10365 1 2025-09-05 04:13:40.371 00:00:10.436 TCP 23.104.0.1:50382 -> 1.101.0.1:3000 15 1926 1 2025-09-05 04:14:29.597 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48596 10 6452 1 2025-09-05 04:14:40.841 00:00:10.932 TCP 23.104.0.1:56038 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:15:29.810 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:49024 10 6452 1 2025-09-05 04:15:41.816 00:00:10.364 TCP 23.104.0.1:37916 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:12:23.832 00:05:00.699 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 04:16:29.986 00:00:10.256 TCP 1.101.0.1:3000 -> 22.102.0.1:43240 11 6504 1 2025-09-05 04:16:42.213 00:00:10.374 TCP 23.104.0.1:57688 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:13:23.835 00:05:00.695 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 04:17:30.284 00:00:10.298 TCP 1.101.0.1:3000 -> 22.102.0.1:42248 10 6452 1 2025-09-05 04:17:42.625 00:00:10.325 TCP 23.104.0.1:34792 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:18:24.728 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 04:18:24.868 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 04:18:30.619 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:44220 10 6452 1 2025-09-05 04:18:43.000 00:00:10.364 TCP 23.104.0.1:48830 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:19:30.830 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:58332 10 6452 1 2025-09-05 04:19:43.407 00:00:10.323 TCP 23.104.0.1:49952 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:20:31.067 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:57682 10 6452 1 2025-09-05 04:20:43.766 00:00:10.372 TCP 23.104.0.1:37410 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:21:31.281 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:47658 10 6452 1 2025-09-05 04:21:44.173 00:00:10.325 TCP 23.104.0.1:52580 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:18:23.833 00:05:00.701 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 04:22:31.501 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:33312 10 6452 1 2025-09-05 04:22:44.542 00:00:10.369 TCP 23.104.0.1:55222 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:23:24.700 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 04:23:24.917 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 04:19:23.836 00:05:00.696 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 04:23:31.713 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:59620 10 6452 1 2025-09-05 04:23:44.948 00:00:10.333 TCP 23.104.0.1:53814 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:24:31.932 00:00:10.219 TCP 1.101.0.1:3000 -> 22.102.0.1:33096 12 6556 1 2025-09-05 04:24:45.322 00:00:11.014 TCP 23.104.0.1:42706 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:25:32.188 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55438 10 6452 1 2025-09-05 04:25:46.369 00:00:10.371 TCP 23.104.0.1:58128 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:26:32.400 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:45548 10 6452 1 2025-09-05 04:26:46.778 00:00:10.324 TCP 23.104.0.1:45456 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:27:32.616 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:49478 10 6452 1 2025-09-05 04:27:47.143 00:00:10.364 TCP 23.104.0.1:56764 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:28:24.852 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 04:28:24.868 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 04:24:23.835 00:05:00.701 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 04:28:32.785 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56780 10 6452 1 2025-09-05 04:28:47.546 00:00:10.360 TCP 23.104.0.1:49716 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:25:23.837 00:05:00.696 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 04:29:33.001 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:35470 10 6452 1 2025-09-05 04:29:47.945 00:00:10.381 TCP 23.104.0.1:47676 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:30:33.214 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:56372 10 6452 1 2025-09-05 04:30:48.369 00:00:10.321 TCP 23.104.0.1:56050 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:31:33.429 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:41262 10 6452 1 2025-09-05 04:31:48.729 00:00:10.497 TCP 23.104.0.1:58774 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:32:33.638 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:46024 10 6452 1 2025-09-05 04:32:49.272 00:00:10.367 TCP 23.104.0.1:50404 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:33:24.994 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 04:33:25.029 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 04:33:33.811 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:59398 10 6452 1 2025-09-05 04:33:49.677 00:00:10.365 TCP 23.104.0.1:51350 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:30:23.835 00:05:00.702 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 04:34:34.024 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:59916 10 6452 1 2025-09-05 04:34:50.105 00:00:10.368 TCP 23.104.0.1:48398 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:31:23.838 00:05:00.697 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 04:35:34.237 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:39978 10 6452 1 2025-09-05 04:35:50.519 00:00:10.402 TCP 23.104.0.1:36244 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:36:34.454 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:52888 10 6452 1 2025-09-05 04:36:50.972 00:00:10.331 TCP 23.104.0.1:51788 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:37:34.624 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:37546 10 6452 1 2025-09-05 04:37:51.337 00:00:10.364 TCP 23.104.0.1:42722 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:38:24.929 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 04:38:25.388 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 04:38:34.843 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:49806 10 6452 1 2025-09-05 04:38:51.740 00:00:10.364 TCP 23.104.0.1:39770 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:39:35.085 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:34042 10 6452 1 2025-09-05 04:39:52.141 00:00:10.427 TCP 23.104.0.1:46194 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:36:23.837 00:05:00.703 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 04:40:35.298 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:37922 10 6452 1 2025-09-05 04:40:52.603 00:00:10.372 TCP 23.104.0.1:59802 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:37:23.840 00:05:00.697 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 04:41:35.467 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:59564 10 6452 1 2025-09-05 04:41:53.019 00:00:10.362 TCP 23.104.0.1:43950 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:42:35.684 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:39514 10 6452 1 2025-09-05 04:42:53.419 00:00:10.362 TCP 23.104.0.1:51174 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:43:25.095 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 04:43:25.037 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 04:43:35.905 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:47468 10 6452 1 2025-09-05 04:43:53.820 00:00:10.367 TCP 23.104.0.1:59570 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:44:36.095 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:45712 10 6452 1 2025-09-05 04:44:54.230 00:00:10.367 TCP 23.104.0.1:57398 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:45:36.319 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52474 10 6452 1 2025-09-05 04:45:54.633 00:00:10.367 TCP 23.104.0.1:38972 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:42:23.837 00:05:00.703 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 04:46:36.535 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:42738 10 6452 1 2025-09-05 04:46:55.048 00:00:10.848 TCP 23.104.0.1:40404 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:43:23.840 00:05:00.698 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 04:47:36.720 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55852 10 6452 1 2025-09-05 04:47:55.932 00:00:10.379 TCP 23.104.0.1:43488 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:48:25.263 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 04:48:25.309 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 04:48:36.929 00:00:10.163 TCP 1.101.0.1:3000 -> 22.102.0.1:55426 10 6452 1 2025-09-05 04:48:56.351 00:00:10.366 TCP 23.104.0.1:50616 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:49:37.129 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:34880 10 6452 1 2025-09-05 04:49:56.754 00:00:10.373 TCP 23.104.0.1:59130 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:50:37.344 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:38806 10 6452 1 2025-09-05 04:50:57.165 00:00:10.363 TCP 23.104.0.1:42292 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:51:37.557 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:34990 10 6452 1 2025-09-05 04:51:57.569 00:00:10.360 TCP 23.104.0.1:52262 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:48:23.839 00:05:00.704 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 04:52:37.772 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:46834 10 6452 1 2025-09-05 04:52:57.967 00:00:10.326 TCP 23.104.0.1:44104 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:53:25.657 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 04:49:23.842 00:05:00.698 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 04:53:25.773 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 04:53:37.985 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:37642 10 6452 1 2025-09-05 04:53:58.332 00:00:10.323 TCP 23.104.0.1:39808 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:54:38.210 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:33940 10 6452 1 2025-09-05 04:54:58.693 00:00:10.359 TCP 23.104.0.1:36128 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:55:38.426 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49034 10 6452 1 2025-09-05 04:55:59.109 00:00:10.370 TCP 23.104.0.1:53758 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:56:38.641 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:55984 10 6452 1 2025-09-05 04:56:59.517 00:00:10.365 TCP 23.104.0.1:57880 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:57:38.847 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:34904 10 6452 1 2025-09-05 04:57:59.922 00:00:10.393 TCP 23.104.0.1:50114 -> 1.101.0.1:3000 11 1507 1 2025-09-05 04:58:25.833 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 04:58:25.785 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 04:54:23.840 00:05:00.704 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 04:58:39.087 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:51376 10 6452 1 Summary: total flows: 163, total bytes: 501690, total packets: 1571, avg bps: 1044, avg pps: 0, avg bpp: 319 Time window: 2025-09-05 03:55:23 - 2025-09-05 04:59:24 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0011s User: 0.0034s Wall: 0.0025s flows/second: 64760.0 Runtime: 0.0025s