Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-12 05:59:02.209 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:58486 10 6452 1 2025-09-12 05:59:37.995 00:00:10.363 TCP 23.104.0.1:56572 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:00:02.423 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:35672 10 6452 1 2025-09-12 06:00:38.396 00:00:10.370 TCP 23.104.0.1:50520 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:01:02.655 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:39050 10 6452 1 2025-09-12 05:57:27.203 00:05:00.860 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-12 05:57:27.200 00:05:00.865 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-12 06:01:38.805 00:00:10.363 TCP 23.104.0.1:46830 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:01:56.265 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-12 06:01:56.320 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-12 06:02:02.879 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:51064 10 6452 1 2025-09-12 06:02:39.208 00:00:10.364 TCP 23.104.0.1:57182 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:03:03.109 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:50656 10 6452 1 2025-09-12 06:03:39.610 00:00:10.366 TCP 23.104.0.1:55014 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:04:03.330 00:00:10.930 TCP 1.101.0.1:3000 -> 22.102.0.1:45730 10 6452 1 2025-09-12 06:04:40.017 00:00:10.367 TCP 23.104.0.1:48906 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:05:04.299 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:58382 10 6452 1 2025-09-12 06:05:40.423 00:00:10.359 TCP 23.104.0.1:38178 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:06:04.520 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:58506 10 6452 1 2025-09-12 06:06:40.830 00:00:10.360 TCP 23.104.0.1:34996 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:06:56.344 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-12 06:06:56.511 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-12 06:07:04.749 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:56344 10 6452 1 2025-09-12 06:03:27.204 00:05:00.862 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-12 06:03:27.203 00:05:00.867 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-12 06:07:41.234 00:00:10.377 TCP 23.104.0.1:34804 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:08:04.975 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:55334 13 6608 1 2025-09-12 06:08:41.647 00:00:10.362 TCP 23.104.0.1:58154 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:09:05.185 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:52806 10 6452 1 2025-09-12 06:09:42.064 00:00:10.358 TCP 23.104.0.1:36146 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:10:05.397 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:58962 10 6452 1 2025-09-12 06:10:42.462 00:00:10.322 TCP 23.104.0.1:42666 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:11:05.610 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:54830 10 6452 1 2025-09-12 06:11:42.821 00:00:10.327 TCP 23.104.0.1:52382 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:11:56.336 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-12 06:11:56.078 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-12 06:12:05.825 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:57858 10 6452 1 2025-09-12 06:12:43.195 00:00:10.370 TCP 23.104.0.1:50962 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:13:06.041 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:59590 10 6452 1 2025-09-12 06:09:27.202 00:05:00.867 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-12 06:09:27.206 00:05:00.862 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-12 06:13:43.605 00:00:10.367 TCP 23.104.0.1:41888 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:14:06.252 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53522 10 6452 1 2025-09-12 06:14:44.012 00:00:10.322 TCP 23.104.0.1:54640 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:15:06.463 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:43668 10 6452 1 2025-09-12 06:15:44.374 00:00:10.365 TCP 23.104.0.1:37660 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:16:06.694 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:39720 10 6452 1 2025-09-12 06:16:56.368 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-12 06:16:44.777 00:00:10.362 TCP 23.104.0.1:44392 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:16:56.572 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-12 06:17:06.919 00:00:10.210 TCP 1.101.0.1:3000 -> 22.102.0.1:57362 10 6452 1 2025-09-12 06:17:45.181 00:00:10.327 TCP 23.104.0.1:59114 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:18:07.167 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:46784 10 6452 1 2025-09-12 06:18:45.543 00:00:10.366 TCP 23.104.0.1:43258 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:19:07.353 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:47610 10 6452 1 2025-09-12 06:15:27.206 00:05:00.862 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-12 06:15:27.205 00:05:00.867 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-12 06:19:45.945 00:00:10.366 TCP 23.104.0.1:56046 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:20:07.568 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:60460 10 6452 1 2025-09-12 06:20:46.358 00:00:10.379 TCP 23.104.0.1:34098 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:21:07.778 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:48496 10 6452 1 2025-09-12 06:21:56.717 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-12 06:21:56.684 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-12 06:21:46.779 00:00:10.368 TCP 23.104.0.1:55208 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:22:08.003 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:34042 10 6452 1 2025-09-12 06:22:47.185 00:00:10.366 TCP 23.104.0.1:47774 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:23:08.215 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:50046 10 6452 1 2025-09-12 06:23:47.593 00:00:10.367 TCP 23.104.0.1:59448 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:24:08.427 00:00:10.231 TCP 1.101.0.1:3000 -> 22.102.0.1:52744 11 6504 1 2025-09-12 06:24:48.003 00:00:10.337 TCP 23.104.0.1:36928 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:25:08.698 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:35182 10 6452 1 2025-09-12 06:21:27.204 00:05:00.868 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-12 06:21:27.208 00:05:00.862 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-12 06:25:48.395 00:00:10.366 TCP 23.104.0.1:49518 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:26:08.923 00:00:10.217 TCP 1.101.0.1:3000 -> 22.102.0.1:46922 10 6452 1 2025-09-12 06:26:56.810 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-12 06:26:56.700 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-12 06:26:48.796 00:00:10.348 TCP 23.104.0.1:46194 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:27:09.187 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:52752 10 6452 1 2025-09-12 06:27:49.183 00:00:10.368 TCP 23.104.0.1:47220 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:28:09.411 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:45368 10 6452 1 2025-09-12 06:28:49.585 00:00:10.364 TCP 23.104.0.1:42598 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:29:09.630 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:60286 10 6452 1 2025-09-12 06:29:49.984 00:00:10.369 TCP 23.104.0.1:36664 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:30:09.844 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:47598 10 6452 1 2025-09-12 06:30:50.392 00:00:10.363 TCP 23.104.0.1:36316 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:31:10.079 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:58558 10 6452 1 2025-09-12 06:27:27.209 00:05:00.866 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-12 06:27:27.207 00:05:00.870 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-12 06:31:56.903 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-12 06:31:56.851 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-12 06:31:50.797 00:00:10.381 TCP 23.104.0.1:37112 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:32:10.260 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:39482 10 6452 1 2025-09-12 06:32:51.203 00:00:10.371 TCP 23.104.0.1:60092 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:33:10.482 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:38568 10 6452 1 2025-09-12 06:33:51.609 00:00:10.374 TCP 23.104.0.1:44690 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:34:10.710 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:57494 10 6452 1 2025-09-12 06:34:52.030 00:00:10.319 TCP 23.104.0.1:39372 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:35:10.923 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:49918 10 6452 1 2025-09-12 06:35:52.385 00:00:10.364 TCP 23.104.0.1:34938 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:36:11.133 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:52966 10 6452 1 2025-09-12 06:36:56.756 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-12 06:36:56.892 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-12 06:36:52.789 00:00:10.367 TCP 23.104.0.1:45642 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:37:11.356 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:40452 10 6452 1 2025-09-12 06:33:27.208 00:05:00.870 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-12 06:33:27.212 00:05:00.864 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-12 06:37:53.206 00:00:10.371 TCP 23.104.0.1:53214 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:38:11.576 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:49684 10 6452 1 2025-09-12 06:38:53.616 00:00:10.323 TCP 23.104.0.1:40094 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:39:11.793 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:58996 10 6452 1 2025-09-12 06:39:53.978 00:00:10.374 TCP 23.104.0.1:60532 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:40:12.021 00:00:10.217 TCP 1.101.0.1:3000 -> 22.102.0.1:33888 10 6452 1 2025-09-12 06:40:54.389 00:00:10.366 TCP 23.104.0.1:33590 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:41:12.284 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:51022 10 6452 1 2025-09-12 06:41:56.793 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-12 06:41:56.957 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-12 06:41:54.792 00:00:10.368 TCP 23.104.0.1:49936 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:42:12.502 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:54802 10 6452 1 2025-09-12 06:42:55.199 00:00:10.369 TCP 23.104.0.1:53688 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:43:12.672 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:34638 10 6452 1 2025-09-12 06:39:27.211 00:05:00.868 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-12 06:39:27.214 00:05:00.863 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-12 06:43:55.605 00:00:10.327 TCP 23.104.0.1:49240 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:44:12.885 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:48952 10 6452 1 2025-09-12 06:44:55.966 00:00:10.383 TCP 23.104.0.1:47216 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:45:13.104 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:59900 10 6452 1 2025-09-12 06:45:56.381 00:00:10.368 TCP 23.104.0.1:40720 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:46:13.279 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:42500 10 6452 1 2025-09-12 06:46:57.193 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-12 06:46:57.036 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-12 06:46:56.782 00:00:10.366 TCP 23.104.0.1:33038 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:47:13.493 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:37966 10 6452 1 2025-09-12 06:47:57.184 00:00:10.328 TCP 23.104.0.1:54362 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:48:13.703 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:44296 10 6452 1 2025-09-12 06:48:57.547 00:00:10.375 TCP 23.104.0.1:54718 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:49:13.888 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:59330 10 6452 1 2025-09-12 06:45:27.214 00:05:00.867 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-12 06:45:27.218 00:05:00.862 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-12 06:49:57.965 00:00:10.337 TCP 23.104.0.1:55274 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:50:14.103 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:36194 10 6452 1 2025-09-12 06:50:58.339 00:00:10.337 TCP 23.104.0.1:60884 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:51:14.316 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:35680 10 6452 1 2025-09-12 06:51:57.278 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-12 06:51:57.285 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-12 06:51:58.727 00:00:10.380 TCP 23.104.0.1:57840 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:52:14.544 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51700 10 6452 1 2025-09-12 06:52:59.143 00:00:10.338 TCP 23.104.0.1:56032 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:53:14.762 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55222 10 6452 1 2025-09-12 06:53:59.518 00:00:10.365 TCP 23.104.0.1:52388 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:54:14.975 00:00:10.205 TCP 1.101.0.1:3000 -> 22.102.0.1:46568 10 6452 1 2025-09-12 06:54:59.926 00:00:10.362 TCP 23.104.0.1:56256 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:55:15.219 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:38064 10 6452 1 2025-09-12 06:51:27.220 00:05:00.859 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-12 06:51:27.217 00:05:00.864 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-12 06:56:00.327 00:00:10.369 TCP 23.104.0.1:57972 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:56:15.431 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:50090 10 6452 1 2025-09-12 06:56:57.166 00:00:00.018 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-12 06:56:57.159 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-12 06:57:00.731 00:00:10.328 TCP 23.104.0.1:52366 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:57:15.651 00:00:15.122 TCP 1.101.0.1:3000 -> 22.102.0.1:58102 10 6452 1 2025-09-12 06:58:01.102 00:00:10.362 TCP 23.104.0.1:57958 -> 1.101.0.1:3000 11 1507 1 2025-09-12 06:58:20.817 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:44994 10 6452 1 Summary: total flows: 163, total bytes: 497049, total packets: 1565, avg bps: 1085, avg pps: 0, avg bpp: 317 Time window: 2025-09-12 05:57:27 - 2025-09-12 06:58:30 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0035s User: 0.0012s Wall: 0.0023s flows/second: 72285.0 Runtime: 0.0023s