Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-06 17:58:43.308 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:41574 10 6452 1 2025-09-06 17:59:09.997 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-06 17:59:09.988 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-06 17:59:40.612 00:00:10.327 TCP 23.104.0.1:43426 -> 1.101.0.1:3000 11 1507 1 2025-09-06 17:59:43.523 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:58956 10 6452 1 2025-09-06 17:56:24.554 00:05:00.804 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-06 18:00:40.978 00:00:10.369 TCP 23.104.0.1:40176 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:00:43.741 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:35200 10 6452 1 2025-09-06 18:01:41.383 00:00:10.363 TCP 23.104.0.1:54080 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:01:43.953 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:55734 10 6452 1 2025-09-06 17:58:24.558 00:05:00.798 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-06 18:02:41.786 00:00:10.373 TCP 23.104.0.1:45846 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:02:44.164 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:47392 10 6452 1 2025-09-06 18:03:42.197 00:00:10.443 TCP 23.104.0.1:51126 -> 1.101.0.1:3000 15 1926 1 2025-09-06 18:03:44.339 00:00:10.158 TCP 1.101.0.1:3000 -> 22.102.0.1:39504 12 10367 1 2025-09-06 18:04:09.843 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-06 18:04:10.042 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-06 18:04:42.676 00:00:10.357 TCP 23.104.0.1:43920 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:04:44.542 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:37526 10 6452 1 2025-09-06 18:05:43.098 00:00:10.372 TCP 23.104.0.1:56434 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:05:44.767 00:00:10.207 TCP 1.101.0.1:3000 -> 22.102.0.1:35742 10 6452 1 2025-09-06 18:02:24.556 00:05:00.804 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-06 18:06:45.016 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:58954 10 6452 1 2025-09-06 18:06:43.503 00:00:10.366 TCP 23.104.0.1:44962 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:07:45.227 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:33798 10 6452 1 2025-09-06 18:07:43.909 00:00:10.368 TCP 23.104.0.1:49950 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:04:24.558 00:05:00.800 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-06 18:08:44.310 00:00:10.373 TCP 23.104.0.1:36722 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:08:45.400 00:00:10.126 TCP 1.101.0.1:3000 -> 22.102.0.1:41584 10 6452 1 2025-09-06 18:09:09.848 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-06 18:09:10.170 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-06 18:09:44.720 00:00:10.379 TCP 23.104.0.1:42658 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:09:45.570 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:41718 10 6452 1 2025-09-06 18:10:45.139 00:00:10.372 TCP 23.104.0.1:59034 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:10:45.754 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:57308 10 6452 1 2025-09-06 18:11:45.966 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:44764 10 6452 1 2025-09-06 18:11:45.553 00:00:10.422 TCP 23.104.0.1:51070 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:08:24.557 00:05:00.806 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-06 18:12:46.010 00:00:10.322 TCP 23.104.0.1:44704 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:12:46.206 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:42062 10 6452 1 2025-09-06 18:13:46.380 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:41942 10 6452 1 2025-09-06 18:13:46.368 00:00:10.357 TCP 23.104.0.1:58832 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:14:10.271 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-06 18:14:10.609 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-06 18:10:24.559 00:05:00.801 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-06 18:14:46.762 00:00:10.500 TCP 23.104.0.1:51900 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:14:46.594 00:00:10.605 TCP 1.101.0.1:3000 -> 22.102.0.1:42590 10 6452 1 2025-09-06 18:15:47.237 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:58456 10 6452 1 2025-09-06 18:15:47.300 00:00:10.361 TCP 23.104.0.1:33488 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:16:47.463 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:40772 12 6556 1 2025-09-06 18:16:47.699 00:00:10.368 TCP 23.104.0.1:55190 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:17:47.693 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:46346 10 6452 1 2025-09-06 18:17:48.107 00:00:10.320 TCP 23.104.0.1:53534 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:14:24.558 00:05:00.805 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-06 18:18:47.907 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:33718 10 6452 1 2025-09-06 18:18:48.467 00:00:10.369 TCP 23.104.0.1:59090 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:19:10.483 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-06 18:19:10.343 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-06 18:19:48.125 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:33614 10 6452 1 2025-09-06 18:19:48.871 00:00:10.370 TCP 23.104.0.1:39814 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:16:24.562 00:05:00.798 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-06 18:20:48.305 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:33484 10 6452 1 2025-09-06 18:20:49.280 00:00:10.373 TCP 23.104.0.1:44716 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:21:49.688 00:00:10.366 TCP 23.104.0.1:48678 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:21:48.545 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:39228 10 6452 1 2025-09-06 18:22:48.759 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:55864 10 6452 1 2025-09-06 18:22:50.111 00:00:10.364 TCP 23.104.0.1:58466 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:23:50.515 00:00:10.364 TCP 23.104.0.1:48536 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:23:48.986 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:43402 10 6452 1 2025-09-06 18:24:10.427 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-06 18:24:10.395 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-06 18:20:24.560 00:05:00.804 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-06 18:24:50.919 00:00:10.337 TCP 23.104.0.1:39838 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:24:49.222 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:36998 10 6452 1 2025-09-06 18:25:51.292 00:00:10.367 TCP 23.104.0.1:42112 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:25:49.440 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:51792 10 6452 1 2025-09-06 18:22:24.563 00:05:00.798 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-06 18:26:49.658 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45662 10 6452 1 2025-09-06 18:26:51.698 00:00:10.368 TCP 23.104.0.1:46210 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:27:49.870 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:48566 10 6452 1 2025-09-06 18:27:52.109 00:00:10.324 TCP 23.104.0.1:53826 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:28:50.065 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:45942 10 6452 1 2025-09-06 18:28:52.472 00:00:10.364 TCP 23.104.0.1:48068 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:29:10.649 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-06 18:29:10.732 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-06 18:29:50.281 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:34936 10 6452 1 2025-09-06 18:29:52.880 00:00:10.395 TCP 23.104.0.1:53472 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:26:24.567 00:05:00.798 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-06 18:30:50.498 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:45946 10 6452 1 2025-09-06 18:30:53.307 00:00:10.666 TCP 23.104.0.1:36578 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:31:50.726 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:57536 10 6452 1 2025-09-06 18:31:54.009 00:00:10.368 TCP 23.104.0.1:40048 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:28:24.571 00:05:00.792 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-06 18:32:50.934 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:40106 10 6452 1 2025-09-06 18:32:54.411 00:00:10.377 TCP 23.104.0.1:43012 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:33:51.172 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:46882 10 6452 1 2025-09-06 18:33:54.837 00:00:10.349 TCP 23.104.0.1:51010 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:34:10.541 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-06 18:34:10.496 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-06 18:34:51.349 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:33064 10 6452 1 2025-09-06 18:34:55.220 00:00:10.366 TCP 23.104.0.1:56404 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:35:51.568 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:38942 10 6452 1 2025-09-06 18:35:55.622 00:00:10.366 TCP 23.104.0.1:37822 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:32:24.569 00:05:00.799 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-06 18:36:51.788 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:47796 10 6452 1 2025-09-06 18:36:56.024 00:00:10.366 TCP 23.104.0.1:57802 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:37:51.965 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:54708 10 6452 1 2025-09-06 18:37:56.429 00:00:10.324 TCP 23.104.0.1:39002 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:34:24.571 00:05:00.794 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-06 18:38:52.213 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:60080 10 6452 1 2025-09-06 18:39:10.664 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-06 18:38:56.790 00:00:10.345 TCP 23.104.0.1:39290 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:39:10.955 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-06 18:39:52.426 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:47096 10 6452 1 2025-09-06 18:39:57.173 00:00:10.322 TCP 23.104.0.1:41024 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:40:52.660 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:37222 10 6452 1 2025-09-06 18:40:57.531 00:00:10.365 TCP 23.104.0.1:59810 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:41:52.889 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:36210 10 6452 1 2025-09-06 18:41:57.935 00:00:10.380 TCP 23.104.0.1:57588 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:38:24.569 00:05:00.799 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-06 18:42:53.119 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:50912 10 6452 1 2025-09-06 18:42:58.360 00:00:10.361 TCP 23.104.0.1:50438 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:44:10.770 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-06 18:43:58.758 00:00:10.373 TCP 23.104.0.1:42708 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:43:53.337 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:56866 10 6452 1 2025-09-06 18:44:10.959 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-06 18:40:24.572 00:05:00.794 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-06 18:44:53.560 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:57488 10 6452 1 2025-09-06 18:44:59.171 00:00:10.363 TCP 23.104.0.1:60338 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:45:53.773 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:43060 10 6452 1 2025-09-06 18:45:59.575 00:00:10.363 TCP 23.104.0.1:47042 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:46:53.992 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:33698 10 6452 1 2025-09-06 18:46:59.974 00:00:10.366 TCP 23.104.0.1:57302 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:47:54.227 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:55382 10 6452 1 2025-09-06 18:48:00.373 00:00:10.325 TCP 23.104.0.1:56632 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:44:24.570 00:05:00.800 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-06 18:48:54.462 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:44698 10 6452 1 2025-09-06 18:49:10.826 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-06 18:49:10.914 00:00:00.027 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-06 18:49:00.734 00:00:10.368 TCP 23.104.0.1:41146 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:49:54.670 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:51906 10 6452 1 2025-09-06 18:50:01.140 00:00:10.324 TCP 23.104.0.1:36252 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:46:24.574 00:05:00.795 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-06 18:50:54.898 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:48464 10 6452 1 2025-09-06 18:51:01.504 00:00:10.366 TCP 23.104.0.1:54884 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:51:55.114 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:50140 10 6452 1 2025-09-06 18:52:01.908 00:00:10.363 TCP 23.104.0.1:55298 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:52:55.334 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:46960 10 6452 1 2025-09-06 18:53:02.311 00:00:10.365 TCP 23.104.0.1:57494 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:53:55.542 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:46402 10 6452 1 2025-09-06 18:54:11.052 00:00:00.045 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-06 18:54:11.141 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-06 18:54:02.716 00:00:10.377 TCP 23.104.0.1:50528 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:50:24.573 00:05:00.799 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-06 18:54:55.766 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:46830 10 6452 1 2025-09-06 18:55:03.133 00:00:10.322 TCP 23.104.0.1:42934 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:55:55.994 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:42752 10 6452 1 2025-09-06 18:56:03.498 00:00:10.363 TCP 23.104.0.1:41176 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:52:24.576 00:05:00.793 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-06 18:56:56.229 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:55438 10 6452 1 2025-09-06 18:57:03.903 00:00:10.327 TCP 23.104.0.1:58746 -> 1.101.0.1:3000 11 1507 1 2025-09-06 18:57:56.452 00:00:10.205 TCP 1.101.0.1:3000 -> 22.102.0.1:34686 12 10367 1 2025-09-06 18:58:04.267 00:00:10.439 TCP 23.104.0.1:48268 -> 1.101.0.1:3000 15 1926 1 Summary: total flows: 163, total bytes: 505613, total packets: 1575, avg bps: 1090, avg pps: 0, avg bpp: 321 Time window: 2025-09-06 17:56:24 - 2025-09-06 18:58:14 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0046s User: 0.0009s Wall: 0.0025s flows/second: 64680.4 Runtime: 0.0025s