Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-15 07:59:16.830 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:46492 10 6452 1 2025-09-15 07:59:31.630 00:00:10.367 TCP 23.104.0.1:50210 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:00:17.075 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56274 10 6452 1 2025-09-15 07:56:28.668 00:05:00.966 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-15 08:00:32.063 00:00:10.367 TCP 23.104.0.1:34642 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:01:17.284 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49918 10 6452 1 2025-09-15 07:57:28.671 00:05:00.960 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-15 08:01:32.469 00:00:10.321 TCP 23.104.0.1:49768 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:02:17.494 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:53876 10 6452 1 2025-09-15 08:02:32.833 00:00:12.493 TCP 23.104.0.1:39938 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:03:25.163 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 08:03:25.342 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 08:03:17.734 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49940 10 6452 1 2025-09-15 08:03:35.374 00:00:10.360 TCP 23.104.0.1:59254 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:04:17.950 00:00:10.217 TCP 1.101.0.1:3000 -> 22.102.0.1:43200 12 6556 1 2025-09-15 08:04:35.769 00:00:10.376 TCP 23.104.0.1:38628 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:05:18.208 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:60690 10 6452 1 2025-09-15 08:05:36.183 00:00:10.366 TCP 23.104.0.1:50288 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:06:18.425 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:42304 10 6452 1 2025-09-15 08:02:28.668 00:05:00.966 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-15 08:06:36.586 00:00:10.368 TCP 23.104.0.1:37296 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:07:18.645 00:00:10.152 TCP 1.101.0.1:3000 -> 22.102.0.1:35634 10 6452 1 2025-09-15 08:03:28.670 00:05:00.962 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-15 08:07:36.989 00:00:10.432 TCP 23.104.0.1:52214 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:08:25.351 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 08:08:25.381 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 08:08:18.838 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:60776 10 6452 1 2025-09-15 08:08:37.455 00:00:10.362 TCP 23.104.0.1:44890 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:09:19.082 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:60572 10 6452 1 2025-09-15 08:09:37.854 00:00:10.385 TCP 23.104.0.1:58388 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:10:19.299 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:45546 10 6452 1 2025-09-15 08:10:38.272 00:00:10.321 TCP 23.104.0.1:51234 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:11:19.520 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:38180 10 6452 1 2025-09-15 08:11:38.632 00:00:10.368 TCP 23.104.0.1:55760 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:12:19.746 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:42478 10 6452 1 2025-09-15 08:08:28.669 00:05:00.967 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-15 08:12:39.045 00:00:10.327 TCP 23.104.0.1:48788 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:13:25.470 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 08:13:19.959 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:47808 10 6452 1 2025-09-15 08:13:25.305 00:00:00.020 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 08:09:28.672 00:05:00.962 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-15 08:13:39.413 00:00:10.364 TCP 23.104.0.1:57732 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:14:20.185 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:46570 10 6452 1 2025-09-15 08:14:39.814 00:00:10.363 TCP 23.104.0.1:56012 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:15:20.398 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:43682 10 6452 1 2025-09-15 08:15:40.213 00:00:10.605 TCP 23.104.0.1:55862 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:16:20.613 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:36648 10 6452 1 2025-09-15 08:16:40.858 00:00:10.374 TCP 23.104.0.1:45910 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:17:20.832 00:00:10.166 TCP 1.101.0.1:3000 -> 22.102.0.1:33252 10 6452 1 2025-09-15 08:17:41.269 00:00:10.608 TCP 23.104.0.1:40742 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:18:25.271 00:00:00.028 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 08:18:25.605 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 08:14:28.670 00:05:00.968 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-15 08:18:21.042 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:55762 10 6452 1 2025-09-15 08:18:41.915 00:00:10.378 TCP 23.104.0.1:38268 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:19:21.256 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:36462 10 6452 1 2025-09-15 08:15:28.675 00:05:00.962 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-15 08:19:42.336 00:00:10.371 TCP 23.104.0.1:45374 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:20:21.471 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:48692 10 6452 1 2025-09-15 08:20:42.737 00:00:10.380 TCP 23.104.0.1:33154 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:21:21.682 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:39632 10 6452 1 2025-09-15 08:21:43.158 00:00:10.358 TCP 23.104.0.1:56526 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:22:21.856 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:60776 10 6452 1 2025-09-15 08:22:43.556 00:00:10.360 TCP 23.104.0.1:44346 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:23:25.703 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 08:23:25.651 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 08:23:22.082 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:44642 10 6452 1 2025-09-15 08:23:43.955 00:00:10.322 TCP 23.104.0.1:42800 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:20:28.674 00:05:00.967 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-15 08:24:22.291 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:50702 10 6452 1 2025-09-15 08:24:44.315 00:00:10.327 TCP 23.104.0.1:43982 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:21:28.677 00:05:00.961 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-15 08:25:22.503 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:53894 10 6452 1 2025-09-15 08:25:44.676 00:00:10.333 TCP 23.104.0.1:59238 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:26:22.717 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:50228 10 6452 1 2025-09-15 08:26:45.074 00:00:10.326 TCP 23.104.0.1:35514 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:27:22.936 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:40462 10 6452 1 2025-09-15 08:27:45.436 00:00:10.370 TCP 23.104.0.1:39588 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:28:25.826 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 08:28:25.668 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 08:28:23.178 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:36500 10 6452 1 2025-09-15 08:28:45.842 00:00:10.400 TCP 23.104.0.1:51976 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:29:23.404 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:56094 10 6452 1 2025-09-15 08:29:46.283 00:00:10.382 TCP 23.104.0.1:33454 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:26:28.675 00:05:00.967 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-15 08:30:23.615 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:51526 10 6452 1 2025-09-15 08:30:46.707 00:00:10.502 TCP 23.104.0.1:48208 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:27:28.678 00:05:00.961 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-15 08:31:23.830 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:55356 10 6452 1 2025-09-15 08:31:47.253 00:00:10.361 TCP 23.104.0.1:44178 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:32:24.006 00:00:10.218 TCP 1.101.0.1:3000 -> 22.102.0.1:60534 10 6452 1 2025-09-15 08:32:47.656 00:00:10.791 TCP 23.104.0.1:53988 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:33:25.682 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 08:33:25.592 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 08:33:24.282 00:00:10.204 TCP 1.101.0.1:3000 -> 22.102.0.1:49064 10 6452 1 2025-09-15 08:33:48.495 00:00:10.370 TCP 23.104.0.1:49110 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:34:24.520 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:57802 10 6452 1 2025-09-15 08:34:48.899 00:00:10.371 TCP 23.104.0.1:52988 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:35:24.734 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:49894 10 6452 1 2025-09-15 08:35:49.302 00:00:10.479 TCP 23.104.0.1:59990 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:32:28.683 00:05:00.959 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-15 08:36:24.946 00:00:10.194 TCP 1.101.0.1:3000 -> 22.102.0.1:44158 10 6452 1 2025-09-15 08:36:49.825 00:00:10.804 TCP 23.104.0.1:37362 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:33:28.686 00:05:00.954 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-15 08:37:25.182 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:59264 10 6452 1 2025-09-15 08:37:50.668 00:00:10.325 TCP 23.104.0.1:55460 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:38:25.751 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 08:38:25.892 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 08:38:25.428 00:00:10.903 TCP 1.101.0.1:3000 -> 22.102.0.1:52462 10 6452 1 2025-09-15 08:38:51.036 00:00:10.362 TCP 23.104.0.1:53950 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:39:26.376 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:33448 10 6452 1 2025-09-15 08:39:51.434 00:00:10.376 TCP 23.104.0.1:57872 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:40:26.585 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:56722 10 6452 1 2025-09-15 08:40:51.850 00:00:10.380 TCP 23.104.0.1:56766 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:41:26.799 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:35112 10 6452 1 2025-09-15 08:41:52.264 00:00:10.365 TCP 23.104.0.1:41390 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:38:28.688 00:05:00.959 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-15 08:42:27.017 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:38832 10 6452 1 2025-09-15 08:42:52.668 00:00:10.360 TCP 23.104.0.1:45130 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:43:26.129 00:00:00.025 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 08:43:25.986 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 08:39:28.691 00:05:00.955 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-15 08:43:27.236 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:44708 10 6452 1 2025-09-15 08:43:53.106 00:00:10.363 TCP 23.104.0.1:43380 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:44:27.446 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:42300 10 6452 1 2025-09-15 08:44:53.506 00:00:10.369 TCP 23.104.0.1:42402 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:45:27.610 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:33098 10 6452 1 2025-09-15 08:45:53.911 00:00:10.366 TCP 23.104.0.1:56532 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:46:27.831 00:00:10.218 TCP 1.101.0.1:3000 -> 22.102.0.1:53810 10 6452 1 2025-09-15 08:46:54.316 00:00:10.365 TCP 23.104.0.1:45962 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:47:28.104 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:33822 10 6452 1 2025-09-15 08:47:54.720 00:00:10.380 TCP 23.104.0.1:58734 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:48:25.986 00:00:00.029 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 08:48:26.091 00:00:00.043 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 08:44:28.687 00:05:00.962 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-15 08:48:28.285 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:35296 10 6452 1 2025-09-15 08:48:55.139 00:00:10.326 TCP 23.104.0.1:38442 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:45:28.690 00:05:00.956 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-15 08:49:28.494 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:42580 10 6452 1 2025-09-15 08:49:55.501 00:00:10.326 TCP 23.104.0.1:37232 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:50:28.707 00:00:10.421 TCP 1.101.0.1:3000 -> 22.102.0.1:33572 10 6452 1 2025-09-15 08:50:55.865 00:00:10.333 TCP 23.104.0.1:40792 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:51:29.166 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:60794 10 6452 1 2025-09-15 08:51:56.229 00:00:10.335 TCP 23.104.0.1:49884 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:52:29.384 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:37414 10 6452 1 2025-09-15 08:52:56.601 00:00:10.363 TCP 23.104.0.1:44608 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:53:26.380 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 08:53:26.082 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 08:53:29.597 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:45504 10 6452 1 2025-09-15 08:53:57.002 00:00:10.363 TCP 23.104.0.1:54368 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:50:28.689 00:05:00.962 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-15 08:54:29.767 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:38910 10 6452 1 2025-09-15 08:54:57.403 00:00:10.363 TCP 23.104.0.1:55200 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:51:28.691 00:05:00.957 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-15 08:55:29.979 00:00:10.220 TCP 1.101.0.1:3000 -> 22.102.0.1:51834 10 6452 1 2025-09-15 08:55:57.804 00:00:10.374 TCP 23.104.0.1:57398 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:56:30.233 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:35538 10 6452 1 2025-09-15 08:56:58.219 00:00:10.361 TCP 23.104.0.1:39544 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:57:30.441 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:57940 10 6452 1 2025-09-15 08:57:58.619 00:00:10.327 TCP 23.104.0.1:57388 -> 1.101.0.1:3000 11 1507 1 2025-09-15 08:58:26.345 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-15 08:58:26.197 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-15 08:58:30.661 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:60106 10 6452 1 Summary: total flows: 163, total bytes: 496945, total packets: 1563, avg bps: 1065, avg pps: 0, avg bpp: 317 Time window: 2025-09-15 07:56:28 - 2025-09-15 08:58:40 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0042s User: 0.0008s Wall: 0.0029s flows/second: 56209.1 Runtime: 0.0029s