Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-20 08:59:00.414 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:43768 10 6452 1 2025-09-20 08:59:21.815 00:00:10.364 TCP 23.104.0.1:55602 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:00:00.624 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:41220 10 6452 1 2025-09-20 08:56:30.998 00:05:00.002 TCP 179.1.22.1:179 -> 179.1.22.22:39396 11 686 1 2025-09-20 09:00:22.227 00:00:10.362 TCP 23.104.0.1:34556 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:00:50.881 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 09:00:50.761 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 09:01:00.846 00:00:10.146 TCP 1.101.0.1:3000 -> 22.102.0.1:38690 10 6452 1 2025-09-20 08:56:32.338 00:05:58.665 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 09:01:22.629 00:00:10.364 TCP 23.104.0.1:49522 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:02:01.034 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:45538 10 6452 1 2025-09-20 09:02:23.038 00:00:10.327 TCP 23.104.0.1:43574 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:03:01.254 00:00:10.125 TCP 1.101.0.1:3000 -> 22.102.0.1:52702 10 6452 1 2025-09-20 09:03:23.402 00:00:11.039 TCP 23.104.0.1:51130 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:04:01.419 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:40872 10 6452 1 2025-09-20 09:04:24.480 00:00:10.368 TCP 23.104.0.1:58800 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:05:01.640 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:56194 10 6452 1 2025-09-20 09:05:24.883 00:00:10.384 TCP 23.104.0.1:42358 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:05:50.837 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 09:05:50.570 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 09:06:01.852 00:00:10.766 TCP 1.101.0.1:3000 -> 22.102.0.1:45742 10 6452 1 2025-09-20 09:01:32.340 00:05:58.661 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 09:06:25.301 00:00:10.325 TCP 23.104.0.1:37702 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:07:02.663 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:45006 10 6452 1 2025-09-20 09:02:32.339 00:05:58.666 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 09:07:25.666 00:00:10.384 TCP 23.104.0.1:33476 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:08:02.883 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:46110 12 6556 1 2025-09-20 09:08:26.134 00:00:10.368 TCP 23.104.0.1:50710 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:09:03.104 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:41992 10 6452 1 2025-09-20 09:09:26.547 00:00:10.366 TCP 23.104.0.1:40614 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:10:03.315 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:44278 10 6452 1 2025-09-20 09:10:26.954 00:00:10.374 TCP 23.104.0.1:48698 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:10:50.880 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 09:10:50.915 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 09:11:03.533 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:51462 10 6452 1 2025-09-20 09:11:27.362 00:00:10.370 TCP 23.104.0.1:55840 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:12:03.753 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:42464 10 6452 1 2025-09-20 09:07:32.342 00:05:58.661 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 09:12:27.778 00:00:10.327 TCP 23.104.0.1:48496 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:13:03.965 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48226 10 6452 1 2025-09-20 09:08:32.339 00:05:58.685 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 09:13:28.141 00:00:10.365 TCP 23.104.0.1:43164 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:14:04.180 00:00:10.216 TCP 1.101.0.1:3000 -> 22.102.0.1:44484 10 6452 1 2025-09-20 09:14:28.545 00:00:10.486 TCP 23.104.0.1:51802 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:15:04.447 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:51506 10 6452 1 2025-09-20 09:15:29.093 00:00:10.326 TCP 23.104.0.1:36432 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:15:51.261 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 09:15:51.039 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 09:16:04.661 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:48284 10 6452 1 2025-09-20 09:16:29.456 00:00:10.365 TCP 23.104.0.1:38366 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:17:04.882 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:43918 10 6452 1 2025-09-20 09:17:29.855 00:00:10.334 TCP 23.104.0.1:45998 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:18:05.110 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:34556 10 6452 1 2025-09-20 09:13:32.345 00:05:59.999 TCP 179.1.22.1:179 -> 179.1.22.22:39396 13 790 1 2025-09-20 09:18:30.222 00:00:10.325 TCP 23.104.0.1:39528 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:19:05.320 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:54820 10 6452 1 2025-09-20 09:14:32.340 00:05:58.693 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 09:19:30.586 00:00:10.367 TCP 23.104.0.1:41718 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:20:05.530 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:48120 10 6452 1 2025-09-20 09:20:30.990 00:00:10.367 TCP 23.104.0.1:36750 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:20:51.404 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 09:20:51.414 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 09:21:05.754 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:43748 10 6452 1 2025-09-20 09:21:31.395 00:00:10.366 TCP 23.104.0.1:54964 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:22:05.979 00:00:10.219 TCP 1.101.0.1:3000 -> 22.102.0.1:55524 10 6452 1 2025-09-20 09:22:31.800 00:00:10.527 TCP 23.104.0.1:37338 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:23:06.234 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:44384 10 6452 1 2025-09-20 09:23:32.363 00:00:10.366 TCP 23.104.0.1:53376 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:24:06.448 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:33218 10 6452 1 2025-09-20 09:20:31.032 00:05:01.313 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 09:24:32.767 00:00:10.379 TCP 23.104.0.1:36438 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:25:06.676 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:54162 10 6452 1 2025-09-20 09:20:32.341 00:05:58.697 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 09:25:33.183 00:00:10.326 TCP 23.104.0.1:34828 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:25:51.425 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 09:25:51.172 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 09:26:06.887 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:45828 10 6452 1 2025-09-20 09:26:33.549 00:00:10.363 TCP 23.104.0.1:58276 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:27:07.112 00:00:25.523 TCP 1.101.0.1:3000 -> 22.102.0.1:53036 10 6452 1 2025-09-20 09:27:33.954 00:00:10.366 TCP 23.104.0.1:34418 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:28:22.678 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:47230 10 6452 1 2025-09-20 09:28:34.352 00:00:10.365 TCP 23.104.0.1:37368 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:29:22.899 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49622 10 6452 1 2025-09-20 09:29:34.755 00:00:10.386 TCP 23.104.0.1:36486 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:30:23.114 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:40558 10 6452 1 2025-09-20 09:26:31.037 00:05:01.309 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 09:30:35.175 00:00:10.362 TCP 23.104.0.1:48532 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:30:51.452 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 09:30:51.454 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 09:26:32.341 00:05:58.704 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 09:31:23.331 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:46938 10 6452 1 2025-09-20 09:31:35.571 00:00:10.384 TCP 23.104.0.1:42258 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:32:23.548 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:41206 10 6452 1 2025-09-20 09:32:35.977 00:00:10.367 TCP 23.104.0.1:45946 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:33:23.760 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:36280 10 6452 1 2025-09-20 09:33:36.381 00:00:10.365 TCP 23.104.0.1:60334 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:34:23.977 00:00:10.205 TCP 1.101.0.1:3000 -> 22.102.0.1:50354 10 6452 1 2025-09-20 09:34:36.784 00:00:10.863 TCP 23.104.0.1:41486 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:35:24.219 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:47480 10 6452 1 2025-09-20 09:35:51.913 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 09:35:37.685 00:00:10.365 TCP 23.104.0.1:56144 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:35:51.994 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 09:32:31.043 00:05:01.305 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 09:36:24.431 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:45228 10 6452 1 2025-09-20 09:36:38.105 00:00:10.363 TCP 23.104.0.1:55868 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:32:32.343 00:06:00.002 TCP 179.1.22.22:39396 -> 179.1.22.1:179 13 809 1 2025-09-20 09:37:24.652 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:50004 10 6452 1 2025-09-20 09:37:38.507 00:00:10.369 TCP 23.104.0.1:53492 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:38:24.866 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:35358 10 6452 1 2025-09-20 09:38:38.912 00:00:10.324 TCP 23.104.0.1:43428 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:39:25.087 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:40282 10 6452 1 2025-09-20 09:39:39.274 00:00:10.371 TCP 23.104.0.1:33112 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:40:25.263 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:42984 10 6452 1 2025-09-20 09:40:51.452 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 09:40:51.705 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 09:40:39.683 00:00:10.364 TCP 23.104.0.1:55410 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:41:25.485 00:00:10.145 TCP 1.101.0.1:3000 -> 22.102.0.1:48260 10 6452 1 2025-09-20 09:41:40.107 00:00:10.363 TCP 23.104.0.1:44510 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:42:25.680 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:56278 10 6452 1 2025-09-20 09:38:31.043 00:05:01.305 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 09:42:40.509 00:00:10.545 TCP 23.104.0.1:41938 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:43:25.891 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:50742 10 6452 1 2025-09-20 09:39:31.046 00:05:01.300 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 09:43:41.107 00:00:10.366 TCP 23.104.0.1:45542 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:44:26.119 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:49620 10 6452 1 2025-09-20 09:44:41.508 00:00:10.364 TCP 23.104.0.1:48236 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:45:26.344 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:37550 10 6452 1 2025-09-20 09:45:51.657 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 09:45:51.673 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 09:45:41.905 00:00:10.370 TCP 23.104.0.1:55892 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:46:26.527 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:51530 10 6452 1 2025-09-20 09:46:42.317 00:00:10.333 TCP 23.104.0.1:59296 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:47:26.739 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:54938 10 6452 1 2025-09-20 09:47:42.691 00:00:10.370 TCP 23.104.0.1:55808 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:44:31.048 00:05:01.304 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 09:48:26.955 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:38114 10 6452 1 2025-09-20 09:48:43.104 00:00:10.324 TCP 23.104.0.1:52032 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:45:31.052 00:05:01.297 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 09:49:27.133 00:00:10.130 TCP 1.101.0.1:3000 -> 22.102.0.1:44804 10 6452 1 2025-09-20 09:49:43.466 00:00:10.366 TCP 23.104.0.1:40224 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:50:27.301 00:00:10.519 TCP 1.101.0.1:3000 -> 22.102.0.1:42102 10 6452 1 2025-09-20 09:50:51.736 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 09:50:51.754 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 09:50:43.871 00:00:10.323 TCP 23.104.0.1:45448 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:51:27.858 00:00:10.216 TCP 1.101.0.1:3000 -> 22.102.0.1:35402 12 10367 1 2025-09-20 09:51:44.232 00:00:10.450 TCP 23.104.0.1:57744 -> 1.101.0.1:3000 15 1926 1 2025-09-20 09:52:28.114 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:49998 10 6452 1 2025-09-20 09:52:44.726 00:00:10.371 TCP 23.104.0.1:40862 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:53:28.293 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:37050 10 6452 1 2025-09-20 09:53:45.137 00:00:10.364 TCP 23.104.0.1:60882 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:50:31.052 00:05:01.301 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 09:54:28.507 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:42570 10 6452 1 2025-09-20 09:54:45.541 00:00:11.796 TCP 23.104.0.1:49952 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:51:31.055 00:05:01.296 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 09:55:28.726 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:44718 10 6452 1 2025-09-20 09:55:52.871 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 09:55:52.874 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 09:55:47.395 00:00:10.362 TCP 23.104.0.1:49238 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:56:28.951 00:00:10.149 TCP 1.101.0.1:3000 -> 22.102.0.1:47224 10 6452 1 2025-09-20 09:56:47.797 00:00:10.718 TCP 23.104.0.1:38512 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:57:29.142 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:55340 10 6452 1 2025-09-20 09:57:48.565 00:00:10.371 TCP 23.104.0.1:50512 -> 1.101.0.1:3000 11 1507 1 2025-09-20 09:58:29.359 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:41544 10 6452 1 Summary: total flows: 163, total bytes: 501350, total packets: 1570, avg bps: 1075, avg pps: 0, avg bpp: 319 Time window: 2025-09-20 08:56:30 - 2025-09-20 09:58:39 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0012s User: 0.0037s Wall: 0.0027s flows/second: 59860.9 Runtime: 0.0027s