Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-12 09:59:08.731 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:58830 10 6452 1 2025-09-12 09:59:27.917 00:00:10.372 TCP 23.104.0.1:42712 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:00:08.941 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:40896 10 6452 1 2025-09-12 10:00:28.330 00:00:10.362 TCP 23.104.0.1:56526 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:01:09.176 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:43470 10 6452 1 2025-09-12 09:57:27.268 00:05:00.899 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-12 09:57:27.270 00:05:00.894 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-12 10:01:28.732 00:00:10.368 TCP 23.104.0.1:37634 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:02:00.862 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-12 10:02:00.999 00:00:00.020 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-12 10:02:09.390 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:37288 10 6452 1 2025-09-12 10:02:29.136 00:00:10.380 TCP 23.104.0.1:51836 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:03:09.605 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:50016 10 6452 1 2025-09-12 10:03:29.552 00:00:10.320 TCP 23.104.0.1:35358 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:04:09.819 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:51812 10 6452 1 2025-09-12 10:04:29.908 00:00:10.366 TCP 23.104.0.1:51104 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:05:09.985 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:49638 10 6452 1 2025-09-12 10:05:30.311 00:00:10.372 TCP 23.104.0.1:51628 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:06:10.276 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:38540 10 6452 1 2025-09-12 10:06:30.725 00:00:10.383 TCP 23.104.0.1:60322 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:07:01.255 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-12 10:07:01.102 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-12 10:07:10.498 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:32878 10 6452 1 2025-09-12 10:03:27.273 00:05:00.894 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-12 10:03:27.269 00:05:00.900 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-12 10:07:31.147 00:00:10.364 TCP 23.104.0.1:42120 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:08:10.706 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48930 10 6452 1 2025-09-12 10:08:31.552 00:00:10.367 TCP 23.104.0.1:49956 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:09:10.921 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:51092 10 6452 1 2025-09-12 10:09:31.959 00:00:10.382 TCP 23.104.0.1:59782 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:10:11.138 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:58808 10 6452 1 2025-09-12 10:10:32.380 00:00:10.373 TCP 23.104.0.1:55856 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:11:11.355 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:34706 10 6452 1 2025-09-12 10:11:32.785 00:00:10.327 TCP 23.104.0.1:43940 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:12:01.060 00:00:00.038 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-12 10:12:01.008 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-12 10:12:11.532 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:60346 10 6452 1 2025-09-12 10:12:33.152 00:00:10.367 TCP 23.104.0.1:36450 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:13:11.710 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:52316 10 6452 1 2025-09-12 10:09:27.271 00:05:00.899 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-12 10:09:27.275 00:05:00.894 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-12 10:13:33.553 00:00:10.321 TCP 23.104.0.1:44098 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:14:11.928 00:00:10.154 TCP 1.101.0.1:3000 -> 22.102.0.1:37048 10 6452 1 2025-09-12 10:14:33.913 00:00:10.371 TCP 23.104.0.1:46716 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:15:12.116 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:60388 10 6452 1 2025-09-12 10:15:34.321 00:00:10.368 TCP 23.104.0.1:59264 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:16:12.333 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:37014 10 6452 1 2025-09-12 10:16:34.727 00:00:10.376 TCP 23.104.0.1:32814 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:17:01.336 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-12 10:17:01.190 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-12 10:17:12.546 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:36216 10 6452 1 2025-09-12 10:17:35.139 00:00:10.366 TCP 23.104.0.1:40184 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:18:12.764 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:46656 10 6452 1 2025-09-12 10:18:35.542 00:00:10.364 TCP 23.104.0.1:48434 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:19:12.937 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:59388 10 6452 1 2025-09-12 10:15:27.273 00:05:00.898 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-12 10:15:27.276 00:05:00.894 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-12 10:19:35.943 00:00:10.391 TCP 23.104.0.1:39822 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:20:13.179 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:40286 10 6452 1 2025-09-12 10:20:36.370 00:00:10.373 TCP 23.104.0.1:46348 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:21:13.394 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:49266 10 6452 1 2025-09-12 10:21:36.778 00:00:10.374 TCP 23.104.0.1:52650 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:22:01.423 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-12 10:22:01.182 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-12 10:22:13.572 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:53470 10 6452 1 2025-09-12 10:22:37.192 00:00:10.366 TCP 23.104.0.1:47800 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:23:13.785 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:55734 10 6452 1 2025-09-12 10:23:37.594 00:00:10.363 TCP 23.104.0.1:38278 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:24:13.996 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:42292 10 6452 1 2025-09-12 10:24:37.996 00:00:10.367 TCP 23.104.0.1:51196 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:25:14.213 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:51880 10 6452 1 2025-09-12 10:21:27.275 00:05:00.898 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-12 10:21:27.277 00:05:00.894 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-12 10:25:38.399 00:00:10.363 TCP 23.104.0.1:57008 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:26:14.426 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:56798 10 6452 1 2025-09-12 10:26:38.801 00:00:10.368 TCP 23.104.0.1:38324 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:27:01.602 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-12 10:27:01.178 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-12 10:27:14.643 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:53212 10 6452 1 2025-09-12 10:27:39.214 00:00:10.380 TCP 23.104.0.1:33118 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:28:14.858 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:53684 10 6452 1 2025-09-12 10:28:39.632 00:00:10.461 TCP 23.104.0.1:60786 -> 1.101.0.1:3000 15 1926 1 2025-09-12 10:29:15.034 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:37402 12 10367 1 2025-09-12 10:29:40.131 00:00:10.372 TCP 23.104.0.1:42658 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:30:15.273 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:45436 10 6452 1 2025-09-12 10:30:40.540 00:00:10.332 TCP 23.104.0.1:52576 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:31:15.447 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:35348 10 6452 1 2025-09-12 10:27:27.277 00:05:00.894 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-12 10:27:27.274 00:05:00.898 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-12 10:31:40.922 00:00:10.396 TCP 23.104.0.1:60440 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:32:01.605 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-12 10:32:01.242 00:00:00.025 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-12 10:32:15.674 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:38796 10 6452 1 2025-09-12 10:32:41.357 00:00:10.371 TCP 23.104.0.1:40848 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:33:15.890 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:57256 10 6452 1 2025-09-12 10:33:41.763 00:00:10.374 TCP 23.104.0.1:54048 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:34:16.123 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:41242 10 6452 1 2025-09-12 10:34:42.173 00:00:10.368 TCP 23.104.0.1:57572 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:35:16.300 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:37054 10 6452 1 2025-09-12 10:35:42.571 00:00:10.359 TCP 23.104.0.1:41188 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:36:16.513 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:54426 10 6452 1 2025-09-12 10:36:42.970 00:00:11.172 TCP 23.104.0.1:41386 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:37:01.704 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-12 10:37:01.553 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-12 10:37:16.728 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:57422 10 6452 1 2025-09-12 10:33:27.276 00:05:00.898 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-12 10:33:27.280 00:05:00.893 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-12 10:37:44.186 00:00:10.363 TCP 23.104.0.1:53224 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:38:16.945 00:00:10.155 TCP 1.101.0.1:3000 -> 22.102.0.1:56880 10 6452 1 2025-09-12 10:38:44.587 00:00:10.360 TCP 23.104.0.1:37176 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:39:17.135 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:35378 10 6452 1 2025-09-12 10:39:44.987 00:00:10.367 TCP 23.104.0.1:43154 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:40:17.345 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:48840 10 6452 1 2025-09-12 10:40:45.384 00:00:10.367 TCP 23.104.0.1:58586 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:41:17.561 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:48914 10 6452 1 2025-09-12 10:41:45.790 00:00:10.366 TCP 23.104.0.1:49176 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:42:02.162 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-12 10:42:02.068 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-12 10:42:17.777 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:43978 10 6452 1 2025-09-12 10:42:46.196 00:00:10.367 TCP 23.104.0.1:53530 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:39:27.281 00:05:00.894 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-12 10:39:27.279 00:05:00.899 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-12 10:43:17.949 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:53550 10 6452 1 2025-09-12 10:43:46.603 00:00:10.379 TCP 23.104.0.1:45594 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:44:18.183 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:50664 10 6452 1 2025-09-12 10:44:47.022 00:00:10.365 TCP 23.104.0.1:35122 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:45:18.394 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51942 10 6452 1 2025-09-12 10:45:47.425 00:00:10.364 TCP 23.104.0.1:40784 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:46:18.606 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:58402 10 6452 1 2025-09-12 10:46:47.828 00:00:10.400 TCP 23.104.0.1:45048 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:47:01.769 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-12 10:47:02.013 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-12 10:47:18.820 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:56462 10 6452 1 2025-09-12 10:47:48.262 00:00:10.364 TCP 23.104.0.1:34684 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:48:18.994 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:46936 10 6452 1 2025-09-12 10:48:48.665 00:00:10.375 TCP 23.104.0.1:48632 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:45:27.280 00:05:00.896 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-12 10:49:19.209 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:32772 10 6452 1 2025-09-12 10:45:27.278 00:05:00.900 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-12 10:49:49.108 00:00:10.769 TCP 23.104.0.1:54244 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:50:19.430 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:50414 10 6452 1 2025-09-12 10:50:49.922 00:00:10.385 TCP 23.104.0.1:33284 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:51:19.640 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:59838 10 6452 1 2025-09-12 10:51:50.347 00:00:10.365 TCP 23.104.0.1:39770 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:52:02.007 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-12 10:52:02.067 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-12 10:52:19.856 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:34238 10 6452 1 2025-09-12 10:52:50.749 00:00:10.325 TCP 23.104.0.1:48036 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:53:20.089 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:57918 10 6452 1 2025-09-12 10:53:51.115 00:00:10.770 TCP 23.104.0.1:33102 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:54:20.306 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:39052 10 6452 1 2025-09-12 10:54:51.924 00:00:10.388 TCP 23.104.0.1:47390 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:51:27.284 00:05:00.894 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-12 10:51:27.283 00:05:00.899 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-12 10:55:20.527 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:59338 10 6452 1 2025-09-12 10:55:52.352 00:00:10.380 TCP 23.104.0.1:59614 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:56:20.741 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:35522 10 6452 1 2025-09-12 10:57:01.827 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-12 10:56:52.779 00:00:10.324 TCP 23.104.0.1:48836 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:57:02.047 00:00:00.042 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-12 10:57:20.964 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:36780 12 6556 1 2025-09-12 10:57:53.144 00:00:10.375 TCP 23.104.0.1:47262 -> 1.101.0.1:3000 11 1507 1 2025-09-12 10:58:21.195 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:46406 10 6452 1 Summary: total flows: 163, total bytes: 501279, total packets: 1569, avg bps: 1094, avg pps: 0, avg bpp: 319 Time window: 2025-09-12 09:57:27 - 2025-09-12 10:58:31 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0030s User: 0.0015s Wall: 0.0022s flows/second: 75112.2 Runtime: 0.0022s