Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-18 00:59:12.828 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:36222 10 6870 1 2025-09-18 00:59:31.108 00:00:10.326 TCP 23.104.0.1:44478 -> 1.101.0.1:3000 11 1507 1 2025-09-18 00:59:43.615 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-18 00:59:43.351 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-18 01:00:13.074 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:44556 10 6870 1 2025-09-18 00:56:29.906 00:05:01.184 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-18 01:00:31.468 00:00:10.364 TCP 23.104.0.1:45064 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:01:13.255 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:38750 10 6870 1 2025-09-18 00:57:29.904 00:05:01.185 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-18 01:01:31.873 00:00:10.348 TCP 23.104.0.1:43402 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:02:13.482 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:49498 10 6870 1 2025-09-18 01:02:32.259 00:00:10.364 TCP 23.104.0.1:58954 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:03:13.715 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:36364 10 6870 1 2025-09-18 01:03:32.662 00:00:10.373 TCP 23.104.0.1:60964 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:04:13.957 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:45330 10 6870 1 2025-09-18 01:04:33.100 00:00:10.320 TCP 23.104.0.1:55096 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:04:43.511 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-18 01:04:43.499 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-18 01:05:14.152 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:38172 10 6870 1 2025-09-18 01:05:33.458 00:00:10.320 TCP 23.104.0.1:41478 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:06:14.371 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45476 10 6870 1 2025-09-18 01:02:29.904 00:05:01.189 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-18 01:06:33.818 00:00:10.357 TCP 23.104.0.1:52298 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:07:14.587 00:00:10.342 TCP 1.101.0.1:3000 -> 22.102.0.1:35058 10 6870 1 2025-09-18 01:03:29.906 00:05:01.183 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-18 01:07:34.215 00:00:10.363 TCP 23.104.0.1:45084 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:08:14.968 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:39498 10 6870 1 2025-09-18 01:08:34.616 00:00:10.364 TCP 23.104.0.1:53240 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:09:15.202 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:46662 10 6870 1 2025-09-18 01:09:43.410 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-18 01:09:35.022 00:00:10.375 TCP 23.104.0.1:52178 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:09:43.655 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-18 01:10:15.421 00:00:10.127 TCP 1.101.0.1:3000 -> 22.102.0.1:42576 10 6870 1 2025-09-18 01:10:35.431 00:00:10.383 TCP 23.104.0.1:37562 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:11:15.588 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:34110 10 6870 1 2025-09-18 01:11:35.850 00:00:10.374 TCP 23.104.0.1:59614 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:12:15.811 00:00:10.851 TCP 1.101.0.1:3000 -> 22.102.0.1:47648 10 6870 1 2025-09-18 01:08:29.905 00:05:01.190 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-18 01:12:36.267 00:00:10.365 TCP 23.104.0.1:56420 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:13:16.697 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:34810 10 6870 1 2025-09-18 01:09:29.908 00:05:01.184 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-18 01:13:36.668 00:00:10.364 TCP 23.104.0.1:36976 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:14:16.910 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:34696 10 6870 1 2025-09-18 01:14:43.684 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-18 01:14:43.543 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-18 01:14:37.094 00:00:10.324 TCP 23.104.0.1:45646 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:15:17.116 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:48400 10 6870 1 2025-09-18 01:15:37.460 00:00:10.351 TCP 23.104.0.1:48940 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:16:17.327 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:45026 10 6870 1 2025-09-18 01:16:37.853 00:00:10.381 TCP 23.104.0.1:35886 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:17:17.537 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:55352 10 6870 1 2025-09-18 01:17:38.269 00:00:10.366 TCP 23.104.0.1:35070 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:14:29.911 00:05:01.187 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-18 01:18:17.710 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:38832 10 6870 1 2025-09-18 01:18:38.672 00:00:10.363 TCP 23.104.0.1:42270 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:15:29.913 00:05:01.183 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-18 01:19:17.923 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:34676 10 6870 1 2025-09-18 01:19:44.051 00:00:00.027 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-18 01:19:43.814 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-18 01:19:39.106 00:00:10.340 TCP 23.104.0.1:43716 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:20:18.139 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:47032 10 6870 1 2025-09-18 01:20:39.485 00:00:10.365 TCP 23.104.0.1:33686 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:21:18.319 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:60564 10 6870 1 2025-09-18 01:21:39.889 00:00:10.331 TCP 23.104.0.1:58666 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:22:18.533 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:39898 10 6870 1 2025-09-18 01:22:40.264 00:00:10.317 TCP 23.104.0.1:44758 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:23:18.754 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:56984 10 6870 1 2025-09-18 01:23:40.619 00:00:10.358 TCP 23.104.0.1:45436 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:24:18.969 00:00:10.151 TCP 1.101.0.1:3000 -> 22.102.0.1:55060 10 6870 1 2025-09-18 01:20:29.912 00:05:01.188 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-18 01:24:43.829 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-18 01:24:43.762 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-18 01:24:41.016 00:00:10.359 TCP 23.104.0.1:59518 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:25:19.160 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:48694 10 6870 1 2025-09-18 01:21:29.914 00:05:01.183 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-18 01:25:41.418 00:00:10.325 TCP 23.104.0.1:32784 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:26:19.377 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:44558 10 6870 1 2025-09-18 01:26:41.777 00:00:10.372 TCP 23.104.0.1:54888 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:27:19.596 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:55214 10 6870 1 2025-09-18 01:27:42.183 00:00:10.362 TCP 23.104.0.1:58426 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:28:19.812 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:38150 10 6870 1 2025-09-18 01:28:42.584 00:00:10.365 TCP 23.104.0.1:38932 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:29:20.034 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:34972 10 6870 1 2025-09-18 01:29:43.820 00:00:00.026 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-18 01:29:43.989 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-18 01:29:42.987 00:00:10.323 TCP 23.104.0.1:52846 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:26:29.915 00:05:01.187 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-18 01:30:20.246 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:59084 10 6870 1 2025-09-18 01:30:43.350 00:00:10.369 TCP 23.104.0.1:42480 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:31:20.463 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:53348 10 6870 1 2025-09-18 01:27:29.917 00:05:01.182 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-18 01:31:43.755 00:00:10.510 TCP 23.104.0.1:48776 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:32:20.673 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:60706 10 6870 1 2025-09-18 01:32:44.326 00:00:10.371 TCP 23.104.0.1:54380 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:33:20.882 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:52868 10 6870 1 2025-09-18 01:33:44.735 00:00:10.370 TCP 23.104.0.1:34424 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:34:21.122 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:60850 10 6870 1 2025-09-18 01:34:43.936 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-18 01:34:44.157 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-18 01:34:45.146 00:00:10.365 TCP 23.104.0.1:55324 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:35:21.333 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:60062 10 6870 1 2025-09-18 01:35:45.550 00:00:10.369 TCP 23.104.0.1:40122 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:36:21.556 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:44770 10 6870 1 2025-09-18 01:32:29.917 00:05:01.190 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-18 01:36:45.955 00:00:10.367 TCP 23.104.0.1:37388 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:37:21.726 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:59162 10 6870 1 2025-09-18 01:33:29.918 00:05:01.185 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-18 01:37:46.359 00:00:10.370 TCP 23.104.0.1:44844 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:38:21.902 00:00:10.200 TCP 1.101.0.1:3000 -> 22.102.0.1:57442 10 6870 1 2025-09-18 01:38:46.763 00:00:10.425 TCP 23.104.0.1:37882 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:39:22.150 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:35912 10 6870 1 2025-09-18 01:39:44.026 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-18 01:39:44.202 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-18 01:39:47.228 00:00:10.367 TCP 23.104.0.1:44044 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:40:22.330 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:36154 10 6870 1 2025-09-18 01:40:47.630 00:00:10.371 TCP 23.104.0.1:44152 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:41:22.503 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:50472 10 6870 1 2025-09-18 01:41:48.045 00:00:10.364 TCP 23.104.0.1:49680 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:38:29.918 00:05:01.191 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-18 01:42:22.721 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:58236 10 6870 1 2025-09-18 01:42:48.444 00:00:10.367 TCP 23.104.0.1:36266 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:39:29.920 00:05:01.187 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-18 01:43:22.892 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:40204 10 6870 1 2025-09-18 01:43:48.850 00:00:10.379 TCP 23.104.0.1:34424 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:44:23.107 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:44642 10 6870 1 2025-09-18 01:44:44.417 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-18 01:44:44.296 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-18 01:44:49.265 00:00:10.369 TCP 23.104.0.1:54212 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:45:23.282 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:40560 10 6870 1 2025-09-18 01:45:49.669 00:00:10.375 TCP 23.104.0.1:45814 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:46:23.456 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:57804 10 6870 1 2025-09-18 01:46:50.104 00:00:10.364 TCP 23.104.0.1:52436 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:47:23.663 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:43012 10 6870 1 2025-09-18 01:47:50.509 00:00:10.364 TCP 23.104.0.1:60302 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:44:29.920 00:05:01.192 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-18 01:48:23.877 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:46128 10 6870 1 2025-09-18 01:48:50.912 00:00:10.364 TCP 23.104.0.1:37168 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:45:29.923 00:05:01.186 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-18 01:49:24.098 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:41022 10 6870 1 2025-09-18 01:49:44.122 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-18 01:49:44.298 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-18 01:49:51.309 00:00:10.365 TCP 23.104.0.1:46342 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:50:24.311 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:49184 10 6870 1 2025-09-18 01:50:51.708 00:00:10.328 TCP 23.104.0.1:37318 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:51:24.523 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:52328 10 6870 1 2025-09-18 01:51:52.102 00:00:10.364 TCP 23.104.0.1:57988 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:52:24.736 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:51352 10 6870 1 2025-09-18 01:52:52.508 00:00:10.363 TCP 23.104.0.1:55354 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:53:24.911 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:54850 10 6870 1 2025-09-18 01:53:52.908 00:00:10.365 TCP 23.104.0.1:49830 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:50:29.920 00:05:01.192 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-18 01:54:25.127 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:43506 10 6870 1 2025-09-18 01:54:44.885 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-18 01:54:44.794 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-18 01:54:53.314 00:00:10.359 TCP 23.104.0.1:44084 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:51:29.922 00:05:01.187 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-18 01:55:25.301 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:37312 11 6910 1 2025-09-18 01:55:53.715 00:00:10.372 TCP 23.104.0.1:55032 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:56:25.510 00:00:10.457 TCP 1.101.0.1:3000 -> 22.102.0.1:53876 10 6870 1 2025-09-18 01:56:54.123 00:00:10.377 TCP 23.104.0.1:56926 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:57:26.010 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:53582 10 6870 1 2025-09-18 01:57:54.547 00:00:10.319 TCP 23.104.0.1:34108 -> 1.101.0.1:3000 11 1507 1 2025-09-18 01:58:26.215 00:00:10.147 TCP 1.101.0.1:3000 -> 22.102.0.1:33912 10 6870 1 Summary: total flows: 163, total bytes: 521961, total packets: 1562, avg bps: 1120, avg pps: 0, avg bpp: 334 Time window: 2025-09-18 00:56:29 - 2025-09-18 01:58:36 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0029s User: 0.0019s Wall: 0.0025s flows/second: 65435.6 Runtime: 0.0025s