Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-10 14:58:41.810 00:00:10.235 TCP 1.101.0.1:3000 -> 22.102.0.1:38492 12 10367 1 2025-09-10 14:59:26.791 00:00:10.372 TCP 23.104.0.1:49948 -> 1.101.0.1:3000 11 1507 1 2025-09-10 14:59:42.087 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:49366 10 6452 1 2025-09-10 14:56:26.400 00:05:00.832 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 15:00:27.202 00:00:10.364 TCP 23.104.0.1:57276 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:00:42.302 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:40242 10 6452 1 2025-09-10 15:01:09.265 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 15:01:09.127 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 15:01:27.607 00:00:10.367 TCP 23.104.0.1:38348 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:01:42.515 00:00:10.129 TCP 1.101.0.1:3000 -> 22.102.0.1:57096 10 6452 1 2025-09-10 15:02:28.018 00:00:10.328 TCP 23.104.0.1:57484 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:02:42.682 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:57052 10 6452 1 2025-09-10 15:03:28.387 00:00:10.326 TCP 23.104.0.1:34490 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:03:42.896 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:33806 10 6452 1 2025-09-10 15:00:26.404 00:05:00.827 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 15:04:28.754 00:00:10.385 TCP 23.104.0.1:54544 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:04:43.112 00:00:11.397 TCP 1.101.0.1:3000 -> 22.102.0.1:39876 10 6452 1 2025-09-10 15:05:29.176 00:00:10.320 TCP 23.104.0.1:60496 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:05:44.544 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:43016 10 6452 1 2025-09-10 15:06:09.539 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 15:06:09.500 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 15:02:26.404 00:05:00.831 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 15:06:29.545 00:00:10.368 TCP 23.104.0.1:38852 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:06:44.773 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:55094 10 6452 1 2025-09-10 15:07:30.091 00:00:10.362 TCP 23.104.0.1:51054 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:07:44.945 00:00:10.197 TCP 1.101.0.1:3000 -> 22.102.0.1:45736 10 6452 1 2025-09-10 15:08:30.490 00:00:10.367 TCP 23.104.0.1:37804 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:08:45.177 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:55236 10 6452 1 2025-09-10 15:09:30.903 00:00:10.363 TCP 23.104.0.1:51302 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:09:45.384 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:55248 10 6452 1 2025-09-10 15:06:26.406 00:05:00.826 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 15:10:31.311 00:00:10.553 TCP 23.104.0.1:59376 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:10:45.594 00:00:10.255 TCP 1.101.0.1:3000 -> 22.102.0.1:44022 11 6504 1 2025-09-10 15:11:09.757 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 15:11:09.454 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 15:11:31.904 00:00:10.364 TCP 23.104.0.1:60994 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:11:45.889 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:46128 10 6452 1 2025-09-10 15:08:26.404 00:05:00.831 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 15:12:32.306 00:00:10.362 TCP 23.104.0.1:47050 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:12:46.118 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:41792 10 6452 1 2025-09-10 15:13:32.705 00:00:10.393 TCP 23.104.0.1:50586 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:13:46.293 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:42544 10 6452 1 2025-09-10 15:14:33.134 00:00:10.365 TCP 23.104.0.1:41946 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:14:46.515 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:47470 10 6452 1 2025-09-10 15:15:33.544 00:00:10.359 TCP 23.104.0.1:44238 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:15:46.689 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:39142 10 6452 1 2025-09-10 15:16:09.647 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 15:16:09.515 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 15:12:26.408 00:05:00.827 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 15:16:33.948 00:00:10.366 TCP 23.104.0.1:59622 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:16:46.928 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:53094 10 6452 1 2025-09-10 15:17:34.357 00:00:10.325 TCP 23.104.0.1:35618 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:17:47.179 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:35110 10 6452 1 2025-09-10 15:14:26.407 00:05:00.830 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 15:18:34.723 00:00:10.378 TCP 23.104.0.1:41502 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:18:47.407 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:41046 10 6452 1 2025-09-10 15:19:35.141 00:00:10.363 TCP 23.104.0.1:42144 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:19:47.623 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:49682 10 6452 1 2025-09-10 15:20:35.543 00:00:10.369 TCP 23.104.0.1:56276 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:20:47.811 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:34652 10 6452 1 2025-09-10 15:21:09.702 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 15:21:09.773 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 15:21:35.949 00:00:10.328 TCP 23.104.0.1:39654 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:21:48.027 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:52118 10 6452 1 2025-09-10 15:18:26.411 00:05:00.826 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 15:22:36.314 00:00:10.485 TCP 23.104.0.1:42820 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:22:48.200 00:00:10.589 TCP 1.101.0.1:3000 -> 22.102.0.1:38496 10 6452 1 2025-09-10 15:23:36.837 00:00:10.347 TCP 23.104.0.1:59910 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:23:48.830 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:36042 10 6452 1 2025-09-10 15:20:26.408 00:05:00.831 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 15:24:37.217 00:00:10.363 TCP 23.104.0.1:48256 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:24:49.077 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:46562 10 6452 1 2025-09-10 15:25:37.619 00:00:10.365 TCP 23.104.0.1:60822 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:25:49.297 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:48260 10 6452 1 2025-09-10 15:26:09.860 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 15:26:09.632 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 15:26:38.023 00:00:10.366 TCP 23.104.0.1:60672 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:26:49.509 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:41578 10 6452 1 2025-09-10 15:27:38.428 00:00:10.331 TCP 23.104.0.1:59908 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:27:49.716 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:33258 10 6452 1 2025-09-10 15:24:26.412 00:05:00.827 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 15:28:38.796 00:00:10.364 TCP 23.104.0.1:34106 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:28:49.936 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:55798 10 6452 1 2025-09-10 15:29:39.200 00:00:10.365 TCP 23.104.0.1:36674 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:29:50.175 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:60720 10 6452 1 2025-09-10 15:26:26.409 00:05:00.842 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 15:30:39.605 00:00:10.340 TCP 23.104.0.1:45846 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:30:50.388 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:56164 10 6452 1 2025-09-10 15:31:10.469 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 15:31:10.182 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 15:31:39.995 00:00:10.368 TCP 23.104.0.1:38506 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:31:50.600 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:37840 10 6452 1 2025-09-10 15:32:40.401 00:00:10.379 TCP 23.104.0.1:40948 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:32:50.813 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:44798 10 6452 1 2025-09-10 15:33:40.811 00:00:10.367 TCP 23.104.0.1:49066 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:33:51.040 00:00:10.205 TCP 1.101.0.1:3000 -> 22.102.0.1:36794 10 6452 1 2025-09-10 15:30:26.416 00:05:00.827 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 15:34:41.225 00:00:10.368 TCP 23.104.0.1:36820 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:34:51.282 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:45454 10 6452 1 2025-09-10 15:35:41.627 00:00:10.364 TCP 23.104.0.1:47736 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:35:51.492 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:43472 10 6452 1 2025-09-10 15:36:10.004 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 15:36:09.914 00:00:00.020 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 15:32:26.413 00:05:00.831 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 15:36:42.027 00:00:10.322 TCP 23.104.0.1:42124 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:36:51.705 00:00:10.385 TCP 1.101.0.1:3000 -> 22.102.0.1:39764 10 6452 1 2025-09-10 15:37:42.385 00:00:10.328 TCP 23.104.0.1:34892 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:37:52.123 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:48280 10 6452 1 2025-09-10 15:38:42.748 00:00:10.367 TCP 23.104.0.1:53466 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:38:52.340 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54578 10 6452 1 2025-09-10 15:39:43.152 00:00:10.329 TCP 23.104.0.1:38046 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:39:52.561 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:51750 10 6452 1 2025-09-10 15:36:26.415 00:05:00.827 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 15:40:43.516 00:00:10.366 TCP 23.104.0.1:35906 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:40:52.772 00:00:10.148 TCP 1.101.0.1:3000 -> 22.102.0.1:35628 10 6452 1 2025-09-10 15:41:09.934 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 15:41:10.033 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 15:41:43.918 00:00:10.362 TCP 23.104.0.1:47094 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:41:52.960 00:00:10.205 TCP 1.101.0.1:3000 -> 22.102.0.1:55416 12 6556 1 2025-09-10 15:38:26.413 00:05:00.833 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 15:42:44.313 00:00:10.327 TCP 23.104.0.1:60552 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:42:53.193 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:53466 10 6452 1 2025-09-10 15:43:44.672 00:00:10.325 TCP 23.104.0.1:51342 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:43:53.406 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:32942 10 6452 1 2025-09-10 15:44:45.054 00:00:10.371 TCP 23.104.0.1:37984 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:44:53.629 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:60048 10 6452 1 2025-09-10 15:45:45.461 00:00:10.360 TCP 23.104.0.1:40916 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:45:53.845 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:50102 10 6452 1 2025-09-10 15:46:10.107 00:00:00.038 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 15:46:10.017 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 15:42:26.416 00:05:00.839 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 15:46:45.860 00:00:10.372 TCP 23.104.0.1:50598 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:46:54.034 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:42188 10 6452 1 2025-09-10 15:47:46.271 00:00:10.363 TCP 23.104.0.1:46436 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:47:54.254 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:37074 10 6452 1 2025-09-10 15:44:26.418 00:05:00.828 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 15:48:46.672 00:00:10.326 TCP 23.104.0.1:41232 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:48:54.476 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:60956 10 6452 1 2025-09-10 15:49:47.035 00:00:10.325 TCP 23.104.0.1:46730 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:49:54.698 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:43448 10 6452 1 2025-09-10 15:50:47.396 00:00:10.326 TCP 23.104.0.1:44622 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:50:54.927 00:00:10.206 TCP 1.101.0.1:3000 -> 22.102.0.1:55426 11 6813 1 2025-09-10 15:51:10.903 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 15:51:10.562 00:00:00.026 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 15:51:47.756 00:00:10.378 TCP 23.104.0.1:60986 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:51:55.178 00:00:10.248 TCP 1.101.0.1:3000 -> 22.102.0.1:36380 10 6452 1 2025-09-10 15:48:26.421 00:05:00.823 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-10 15:52:48.171 00:00:10.370 TCP 23.104.0.1:58720 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:52:55.470 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:51410 10 6452 1 2025-09-10 15:53:48.577 00:00:10.329 TCP 23.104.0.1:39952 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:53:55.634 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:59906 10 6452 1 2025-09-10 15:50:26.418 00:05:00.829 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-10 15:54:48.950 00:00:10.378 TCP 23.104.0.1:50594 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:54:55.850 00:00:10.205 TCP 1.101.0.1:3000 -> 22.102.0.1:55146 10 6452 1 2025-09-10 15:55:49.372 00:00:10.362 TCP 23.104.0.1:35746 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:55:56.094 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:51428 10 6452 1 2025-09-10 15:56:10.434 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-10 15:56:10.007 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-10 15:56:49.777 00:00:10.373 TCP 23.104.0.1:59704 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:56:56.259 00:00:10.292 TCP 1.101.0.1:3000 -> 22.102.0.1:49544 10 6452 1 2025-09-10 15:57:50.202 00:00:10.367 TCP 23.104.0.1:42434 -> 1.101.0.1:3000 11 1507 1 2025-09-10 15:57:56.588 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:39852 10 6452 1 2025-09-10 15:54:26.422 00:05:00.824 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 Summary: total flows: 163, total bytes: 501273, total packets: 1567, avg bps: 1060, avg pps: 0, avg bpp: 319 Time window: 2025-09-10 14:56:26 - 2025-09-10 15:59:27 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0035s User: 0.0018s Wall: 0.0021s flows/second: 77216.1 Runtime: 0.0021s