Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-05 10:59:01.739 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:55388 10 6452 1 2025-09-05 10:55:23.960 00:05:00.728 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 10:59:25.827 00:00:10.480 TCP 23.104.0.1:37084 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:00:01.951 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:53296 10 6452 1 2025-09-05 11:00:26.343 00:00:10.363 TCP 23.104.0.1:50952 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:01:02.177 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:51904 10 6452 1 2025-09-05 11:01:26.748 00:00:10.364 TCP 23.104.0.1:46068 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:02:02.388 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:53406 10 6452 1 2025-09-05 11:02:27.152 00:00:10.366 TCP 23.104.0.1:43248 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:03:02.603 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:43932 10 6452 1 2025-09-05 11:03:32.820 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 11:03:32.707 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 11:03:27.559 00:00:10.371 TCP 23.104.0.1:37180 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:04:02.814 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:42576 10 6452 1 2025-09-05 11:00:23.960 00:05:00.731 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 11:04:27.967 00:00:10.368 TCP 23.104.0.1:35270 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:05:03.046 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:47856 10 6452 1 2025-09-05 11:01:23.962 00:05:00.727 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 11:05:28.366 00:00:10.368 TCP 23.104.0.1:54262 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:06:03.264 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49696 10 6452 1 2025-09-05 11:06:28.773 00:00:10.369 TCP 23.104.0.1:40036 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:07:03.479 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:49310 10 6452 1 2025-09-05 11:07:29.177 00:00:10.323 TCP 23.104.0.1:51986 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:08:03.689 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:60842 10 6452 1 2025-09-05 11:08:32.797 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 11:08:32.966 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 11:08:29.539 00:00:10.322 TCP 23.104.0.1:35876 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:09:03.904 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:37204 10 6452 1 2025-09-05 11:09:29.903 00:00:10.368 TCP 23.104.0.1:33352 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:10:04.116 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:41164 10 6452 1 2025-09-05 11:06:23.960 00:05:00.733 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 11:10:30.306 00:00:10.373 TCP 23.104.0.1:46536 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:11:04.321 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:54284 10 6452 1 2025-09-05 11:07:23.962 00:05:00.730 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 11:11:30.719 00:00:10.326 TCP 23.104.0.1:49726 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:12:04.535 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:54584 10 6452 1 2025-09-05 11:12:31.096 00:00:10.339 TCP 23.104.0.1:49910 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:13:04.745 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:36566 10 6452 1 2025-09-05 11:13:32.780 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 11:13:32.941 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 11:13:31.475 00:00:10.366 TCP 23.104.0.1:58302 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:14:04.965 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:51432 12 6556 1 2025-09-05 11:14:31.881 00:00:10.365 TCP 23.104.0.1:35984 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:15:05.196 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:58600 10 6452 1 2025-09-05 11:15:32.286 00:00:10.369 TCP 23.104.0.1:46960 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:16:05.412 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:59054 10 6452 1 2025-09-05 11:12:23.961 00:05:00.737 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 11:16:32.695 00:00:10.377 TCP 23.104.0.1:35068 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:17:05.619 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:40728 10 6452 1 2025-09-05 11:13:23.965 00:05:00.732 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 11:17:33.113 00:00:10.367 TCP 23.104.0.1:57804 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:18:05.833 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:40810 10 6452 1 2025-09-05 11:18:33.051 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 11:18:33.100 00:00:00.043 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 11:18:33.516 00:00:10.330 TCP 23.104.0.1:47134 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:19:06.012 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:51816 10 6452 1 2025-09-05 11:19:33.883 00:00:10.370 TCP 23.104.0.1:37544 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:20:06.245 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:39476 10 6452 1 2025-09-05 11:20:34.288 00:00:10.328 TCP 23.104.0.1:53616 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:21:06.477 00:00:10.217 TCP 1.101.0.1:3000 -> 22.102.0.1:49428 10 6452 1 2025-09-05 11:21:34.650 00:00:10.369 TCP 23.104.0.1:55768 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:22:06.733 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:52838 10 6452 1 2025-09-05 11:18:23.963 00:05:00.738 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 11:22:35.057 00:00:10.363 TCP 23.104.0.1:58432 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:23:06.941 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:49784 10 6452 1 2025-09-05 11:19:23.964 00:05:00.734 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 11:23:33.213 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 11:23:32.912 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 11:23:35.459 00:00:10.372 TCP 23.104.0.1:35134 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:24:07.177 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54302 10 6452 1 2025-09-05 11:24:35.874 00:00:10.379 TCP 23.104.0.1:37278 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:25:07.388 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:60326 10 6452 1 2025-09-05 11:25:36.294 00:00:10.360 TCP 23.104.0.1:36270 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:26:07.601 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:58542 10 6452 1 2025-09-05 11:26:36.694 00:00:10.328 TCP 23.104.0.1:51178 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:27:07.811 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:59074 10 6452 1 2025-09-05 11:27:37.062 00:00:10.368 TCP 23.104.0.1:55840 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:28:08.035 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:37906 10 6452 1 2025-09-05 11:24:23.963 00:05:00.739 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 11:28:33.279 00:00:00.031 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 11:28:33.033 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 11:28:37.473 00:00:10.370 TCP 23.104.0.1:57984 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:29:08.245 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:60646 10 6452 1 2025-09-05 11:25:23.965 00:05:00.734 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 11:29:37.873 00:00:10.324 TCP 23.104.0.1:41008 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:30:08.458 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:40226 10 6452 1 2025-09-05 11:30:38.233 00:00:10.365 TCP 23.104.0.1:56078 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:31:08.671 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:36730 10 6452 1 2025-09-05 11:31:38.637 00:00:10.360 TCP 23.104.0.1:39748 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:32:08.842 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:41160 10 6452 1 2025-09-05 11:32:39.037 00:00:10.364 TCP 23.104.0.1:34362 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:33:09.086 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33684 10 6452 1 2025-09-05 11:33:33.114 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 11:33:33.369 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 11:33:39.437 00:00:10.365 TCP 23.104.0.1:53132 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:34:09.300 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:40582 10 6452 1 2025-09-05 11:30:23.964 00:05:00.742 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 11:34:39.840 00:00:10.393 TCP 23.104.0.1:50502 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:35:09.484 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:47878 10 6452 1 2025-09-05 11:31:23.967 00:05:00.737 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 11:35:40.273 00:00:10.780 TCP 23.104.0.1:60386 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:36:09.694 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:36334 10 6452 1 2025-09-05 11:36:41.121 00:00:10.326 TCP 23.104.0.1:55516 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:37:09.908 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:57928 10 6452 1 2025-09-05 11:37:41.486 00:00:10.321 TCP 23.104.0.1:54906 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:38:10.127 00:00:10.162 TCP 1.101.0.1:3000 -> 22.102.0.1:58716 10 6452 1 2025-09-05 11:38:33.417 00:00:00.031 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 11:38:33.659 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 11:38:41.845 00:00:10.388 TCP 23.104.0.1:58538 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:39:10.342 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:40376 10 6452 1 2025-09-05 11:39:42.274 00:00:10.365 TCP 23.104.0.1:50752 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:40:10.552 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:37130 10 6452 1 2025-09-05 11:36:23.966 00:05:00.743 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 11:40:42.690 00:00:10.364 TCP 23.104.0.1:35168 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:41:10.763 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:41356 10 6452 1 2025-09-05 11:37:23.967 00:05:00.738 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 11:41:43.103 00:00:10.371 TCP 23.104.0.1:44810 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:42:10.978 00:00:10.159 TCP 1.101.0.1:3000 -> 22.102.0.1:35172 10 6452 1 2025-09-05 11:42:43.506 00:00:10.376 TCP 23.104.0.1:52442 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:43:11.175 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:41384 10 6452 1 2025-09-05 11:43:33.591 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 11:43:33.640 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 11:43:43.918 00:00:10.351 TCP 23.104.0.1:50532 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:44:11.389 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:56536 10 6452 1 2025-09-05 11:44:44.314 00:00:10.360 TCP 23.104.0.1:55950 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:45:11.616 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:39698 10 6452 1 2025-09-05 11:45:44.710 00:00:10.360 TCP 23.104.0.1:56668 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:46:11.834 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:48366 10 6452 1 2025-09-05 11:42:23.968 00:05:00.743 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 11:46:45.113 00:00:10.372 TCP 23.104.0.1:47742 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:47:12.008 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:47012 10 6452 1 2025-09-05 11:43:23.970 00:05:00.738 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 11:47:45.526 00:00:10.379 TCP 23.104.0.1:58130 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:48:12.221 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:45006 10 6452 1 2025-09-05 11:48:33.579 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 11:48:33.603 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 11:48:45.940 00:00:10.340 TCP 23.104.0.1:34112 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:49:12.437 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:54560 10 6452 1 2025-09-05 11:49:46.314 00:00:10.359 TCP 23.104.0.1:53726 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:50:12.627 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:56518 10 6452 1 2025-09-05 11:50:46.714 00:00:10.384 TCP 23.104.0.1:54070 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:51:12.837 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:33708 10 6452 1 2025-09-05 11:51:47.137 00:00:10.367 TCP 23.104.0.1:53720 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:52:13.076 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:36542 10 6452 1 2025-09-05 11:48:23.967 00:05:00.748 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 11:52:47.538 00:00:10.325 TCP 23.104.0.1:38170 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:49:23.971 00:05:00.744 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-05 11:53:13.289 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:46086 10 6452 1 2025-09-05 11:53:34.209 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 11:53:34.220 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-05 11:53:47.902 00:00:10.329 TCP 23.104.0.1:57042 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:54:13.460 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:60894 10 6452 1 2025-09-05 11:54:48.275 00:00:10.365 TCP 23.104.0.1:49936 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:55:13.672 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:40214 10 6452 1 2025-09-05 11:55:48.679 00:00:10.363 TCP 23.104.0.1:51076 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:56:13.844 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:35750 10 6452 1 2025-09-05 11:56:49.104 00:00:10.366 TCP 23.104.0.1:40444 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:57:14.076 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:35880 10 6452 1 2025-09-05 11:57:49.508 00:00:10.371 TCP 23.104.0.1:35772 -> 1.101.0.1:3000 11 1507 1 2025-09-05 11:54:23.971 00:05:00.748 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-05 11:58:14.287 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:53164 10 6452 1 2025-09-05 11:58:34.061 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-05 11:58:34.185 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 Summary: total flows: 163, total bytes: 496945, total packets: 1563, avg bps: 1035, avg pps: 0, avg bpp: 317 Time window: 2025-09-05 10:55:23 - 2025-09-05 11:59:24 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0047s User: 0.0009s Wall: 0.0023s flows/second: 70905.6 Runtime: 0.0023s