Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-13 12:59:08.075 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:35308 10 6452 1 2025-09-13 12:59:24.773 00:00:10.369 TCP 23.104.0.1:49878 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:00:08.309 00:00:10.765 TCP 1.101.0.1:3000 -> 22.102.0.1:48236 10 6452 1 2025-09-13 13:00:25.178 00:00:10.323 TCP 23.104.0.1:58016 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:01:09.115 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:53228 10 6452 1 2025-09-13 12:57:27.854 00:05:00.853 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-13 12:57:27.857 00:05:00.848 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-13 13:01:25.542 00:00:10.367 TCP 23.104.0.1:59142 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:02:09.333 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:47572 10 6452 1 2025-09-13 13:02:25.949 00:00:10.319 TCP 23.104.0.1:59854 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:02:33.508 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-13 13:02:33.363 00:00:00.017 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-13 13:03:09.554 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:43288 10 6452 1 2025-09-13 13:03:26.312 00:00:10.323 TCP 23.104.0.1:51794 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:04:09.778 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:43832 10 6452 1 2025-09-13 13:04:26.675 00:00:10.326 TCP 23.104.0.1:53424 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:05:09.988 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:58442 10 6452 1 2025-09-13 13:05:27.046 00:00:10.361 TCP 23.104.0.1:55188 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:06:10.215 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:36878 10 6452 1 2025-09-13 13:06:27.448 00:00:10.364 TCP 23.104.0.1:50866 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:07:10.429 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:43040 10 6452 1 2025-09-13 13:03:27.860 00:05:00.847 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-13 13:03:27.857 00:05:00.853 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-13 13:07:33.431 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-13 13:07:33.634 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-13 13:07:27.849 00:00:10.387 TCP 23.104.0.1:42240 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:08:10.604 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:52806 10 6452 1 2025-09-13 13:08:28.272 00:00:10.362 TCP 23.104.0.1:34968 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:09:10.773 00:00:10.939 TCP 1.101.0.1:3000 -> 22.102.0.1:53130 10 6452 1 2025-09-13 13:09:28.678 00:00:10.325 TCP 23.104.0.1:60200 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:10:11.754 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:36242 10 6452 1 2025-09-13 13:10:29.056 00:00:10.328 TCP 23.104.0.1:49256 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:11:11.973 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:48244 10 6452 1 2025-09-13 13:11:29.423 00:00:10.366 TCP 23.104.0.1:47800 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:12:12.199 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:39160 10 6452 1 2025-09-13 13:12:33.635 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-13 13:12:33.561 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-13 13:12:29.825 00:00:10.399 TCP 23.104.0.1:45822 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:13:12.381 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:38748 10 6452 1 2025-09-13 13:09:27.862 00:05:00.849 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-13 13:09:27.865 00:05:00.844 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-13 13:13:30.280 00:00:10.332 TCP 23.104.0.1:54870 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:14:12.592 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:44290 10 6452 1 2025-09-13 13:14:30.649 00:00:10.325 TCP 23.104.0.1:55912 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:15:12.807 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:57974 10 6452 1 2025-09-13 13:15:31.025 00:00:10.360 TCP 23.104.0.1:44634 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:16:13.025 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:51710 10 6452 1 2025-09-13 13:16:31.424 00:00:10.510 TCP 23.104.0.1:57296 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:17:13.236 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49390 10 6452 1 2025-09-13 13:17:33.591 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-13 13:17:34.026 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-13 13:17:31.976 00:00:10.368 TCP 23.104.0.1:32908 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:18:13.450 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:33074 10 6452 1 2025-09-13 13:18:32.385 00:00:10.364 TCP 23.104.0.1:43264 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:19:13.664 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:46190 10 6452 1 2025-09-13 13:15:27.866 00:05:00.845 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-13 13:15:27.864 00:05:00.850 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-13 13:19:32.790 00:00:10.363 TCP 23.104.0.1:55528 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:20:13.890 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:54838 12 6556 1 2025-09-13 13:20:33.195 00:00:10.362 TCP 23.104.0.1:41784 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:21:14.123 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:36650 10 6452 1 2025-09-13 13:21:33.597 00:00:10.360 TCP 23.104.0.1:48710 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:22:14.291 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:52136 10 6452 1 2025-09-13 13:22:33.899 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-13 13:22:34.039 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-13 13:22:34.002 00:00:10.358 TCP 23.104.0.1:44162 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:23:14.507 00:00:12.760 TCP 1.101.0.1:3000 -> 22.102.0.1:43132 12 6556 1 2025-09-13 13:23:34.396 00:00:10.365 TCP 23.104.0.1:48638 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:24:17.304 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:57752 10 6452 1 2025-09-13 13:24:34.796 00:00:10.361 TCP 23.104.0.1:38824 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:21:27.867 00:05:00.844 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-13 13:21:27.865 00:05:00.849 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-13 13:25:17.538 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:48866 10 6452 1 2025-09-13 13:25:35.199 00:00:10.365 TCP 23.104.0.1:33862 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:26:17.748 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:58348 10 6452 1 2025-09-13 13:26:35.602 00:00:10.369 TCP 23.104.0.1:53132 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:27:17.959 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:52676 12 6556 1 2025-09-13 13:27:33.984 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-13 13:27:33.754 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-13 13:27:36.009 00:00:10.365 TCP 23.104.0.1:48004 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:28:18.192 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:59484 10 6452 1 2025-09-13 13:28:36.408 00:00:10.362 TCP 23.104.0.1:38272 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:29:18.408 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:52864 10 6452 1 2025-09-13 13:29:36.805 00:00:10.369 TCP 23.104.0.1:52978 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:30:18.589 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:50102 10 6452 1 2025-09-13 13:30:37.204 00:00:10.367 TCP 23.104.0.1:60470 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:27:27.867 00:05:00.849 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-13 13:31:18.816 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:42172 10 6452 1 2025-09-13 13:27:27.869 00:05:00.844 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-13 13:31:37.612 00:00:10.363 TCP 23.104.0.1:55946 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:32:19.044 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:36350 10 6452 1 2025-09-13 13:32:34.305 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-13 13:32:34.331 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-13 13:32:38.010 00:00:10.366 TCP 23.104.0.1:43590 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:33:19.262 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:36510 10 6452 1 2025-09-13 13:33:38.412 00:00:10.608 TCP 23.104.0.1:50022 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:34:19.482 00:00:10.166 TCP 1.101.0.1:3000 -> 22.102.0.1:41734 10 6452 1 2025-09-13 13:34:39.065 00:00:10.360 TCP 23.104.0.1:50376 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:35:19.687 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:40378 10 6452 1 2025-09-13 13:35:39.462 00:00:10.370 TCP 23.104.0.1:47850 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:36:19.900 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:43022 10 6452 1 2025-09-13 13:36:39.876 00:00:10.336 TCP 23.104.0.1:59764 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:33:27.873 00:05:00.842 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-13 13:37:20.116 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:41496 10 6452 1 2025-09-13 13:33:27.870 00:05:00.847 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-13 13:37:34.197 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-13 13:37:34.063 00:00:00.039 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-13 13:37:40.250 00:00:10.366 TCP 23.104.0.1:57700 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:38:20.324 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:54252 10 6452 1 2025-09-13 13:38:40.657 00:00:10.517 TCP 23.104.0.1:51956 -> 1.101.0.1:3000 19 2345 1 2025-09-13 13:39:20.541 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:45770 15 17850 1 2025-09-13 13:39:41.212 00:00:10.380 TCP 23.104.0.1:50566 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:40:20.761 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:49982 10 6452 1 2025-09-13 13:40:41.630 00:00:10.325 TCP 23.104.0.1:41080 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:41:20.991 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:35534 10 6452 1 2025-09-13 13:41:41.990 00:00:10.327 TCP 23.104.0.1:53392 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:42:21.224 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:59612 10 6452 1 2025-09-13 13:42:34.306 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-13 13:42:34.315 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-13 13:42:42.358 00:00:10.365 TCP 23.104.0.1:33136 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:43:21.440 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:41996 10 6452 1 2025-09-13 13:39:27.874 00:05:00.845 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-13 13:39:27.877 00:05:00.840 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-13 13:43:42.761 00:00:10.376 TCP 23.104.0.1:55792 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:44:21.663 00:00:10.214 TCP 1.101.0.1:3000 -> 22.102.0.1:49950 10 6452 1 2025-09-13 13:44:43.177 00:00:10.365 TCP 23.104.0.1:42666 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:45:21.910 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:53606 10 6452 1 2025-09-13 13:45:43.580 00:00:11.008 TCP 23.104.0.1:35528 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:46:22.127 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:47424 10 6452 1 2025-09-13 13:46:44.625 00:00:10.329 TCP 23.104.0.1:46354 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:47:34.380 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-13 13:47:22.344 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:38804 10 6452 1 2025-09-13 13:47:34.317 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-13 13:47:44.986 00:00:10.365 TCP 23.104.0.1:43368 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:48:22.588 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:40422 10 6452 1 2025-09-13 13:48:45.388 00:00:10.369 TCP 23.104.0.1:36928 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:45:27.874 00:05:00.849 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-13 13:45:27.877 00:05:00.843 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-13 13:49:22.754 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:59066 10 6452 1 2025-09-13 13:49:45.787 00:00:10.466 TCP 23.104.0.1:48242 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:50:22.931 00:00:10.214 TCP 1.101.0.1:3000 -> 22.102.0.1:46626 12 6556 1 2025-09-13 13:50:46.295 00:00:10.365 TCP 23.104.0.1:39492 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:51:23.185 00:00:10.619 TCP 1.101.0.1:3000 -> 22.102.0.1:34492 10 6452 1 2025-09-13 13:51:46.700 00:00:10.365 TCP 23.104.0.1:51708 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:52:34.650 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-13 13:52:23.839 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:47912 10 6452 1 2025-09-13 13:52:34.591 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-13 13:52:47.105 00:00:10.363 TCP 23.104.0.1:57872 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:53:24.065 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:39686 10 6452 1 2025-09-13 13:53:47.511 00:00:10.334 TCP 23.104.0.1:46872 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:54:24.288 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:41614 10 6452 1 2025-09-13 13:54:47.889 00:00:10.375 TCP 23.104.0.1:37804 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:51:27.878 00:05:00.845 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-13 13:51:27.875 00:05:00.850 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-13 13:55:24.510 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:49104 10 6452 1 2025-09-13 13:55:48.303 00:00:10.362 TCP 23.104.0.1:57764 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:56:24.727 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:42698 10 6452 1 2025-09-13 13:56:48.703 00:00:10.326 TCP 23.104.0.1:57638 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:57:24.948 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:36290 10 6452 1 2025-09-13 13:57:34.436 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-13 13:57:34.574 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-13 13:57:49.092 00:00:10.365 TCP 23.104.0.1:58584 -> 1.101.0.1:3000 11 1507 1 2025-09-13 13:58:25.184 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:51552 10 6452 1 Summary: total flows: 163, total bytes: 509493, total packets: 1582, avg bps: 1111, avg pps: 0, avg bpp: 322 Time window: 2025-09-13 12:57:27 - 2025-09-13 13:58:35 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0039s User: 0.0010s Wall: 0.0026s flows/second: 62118.1 Runtime: 0.0026s