Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-20 11:59:01.192 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:56636 10 6452 1 2025-09-20 11:59:39.867 00:00:10.674 TCP 23.104.0.1:60520 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:00:01.403 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:34416 10 6452 1 2025-09-20 11:56:31.099 00:05:01.296 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 12:00:40.583 00:00:10.367 TCP 23.104.0.1:57760 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:00:54.185 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 12:00:54.392 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 12:01:01.570 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:40662 10 6452 1 2025-09-20 11:57:31.101 00:05:01.290 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 12:01:40.989 00:00:10.422 TCP 23.104.0.1:38156 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:02:01.779 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:45004 10 6452 1 2025-09-20 12:02:41.450 00:00:10.326 TCP 23.104.0.1:43290 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:03:01.991 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:45864 10 6452 1 2025-09-20 12:03:41.814 00:00:10.393 TCP 23.104.0.1:58758 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:04:02.226 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:52246 10 6452 1 2025-09-20 12:04:42.265 00:00:10.364 TCP 23.104.0.1:46290 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:05:02.439 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:47762 10 6452 1 2025-09-20 12:05:54.509 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 12:05:54.202 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 12:05:42.667 00:00:10.375 TCP 23.104.0.1:37058 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:06:02.647 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:36416 12 6556 1 2025-09-20 12:02:31.099 00:05:01.296 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 12:06:43.097 00:00:10.783 TCP 23.104.0.1:52908 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:07:02.860 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:57954 10 6452 1 2025-09-20 12:03:31.105 00:05:01.290 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 12:07:43.918 00:00:10.389 TCP 23.104.0.1:58626 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:08:03.053 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:37030 10 6452 1 2025-09-20 12:08:44.342 00:00:10.338 TCP 23.104.0.1:46654 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:09:03.266 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:36916 10 6452 1 2025-09-20 12:09:44.743 00:00:10.694 TCP 23.104.0.1:35202 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:10:03.481 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:50936 10 6452 1 2025-09-20 12:10:54.438 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 12:10:45.477 00:00:10.339 TCP 23.104.0.1:53224 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:10:54.678 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 12:11:03.707 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:57634 10 6452 1 2025-09-20 12:11:45.851 00:00:10.376 TCP 23.104.0.1:40080 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:12:03.881 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:43884 10 6452 1 2025-09-20 12:08:31.101 00:05:01.297 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 12:12:46.265 00:00:10.334 TCP 23.104.0.1:42144 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:13:04.110 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:56230 10 6452 1 2025-09-20 12:09:31.104 00:05:01.291 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 12:13:46.630 00:00:10.361 TCP 23.104.0.1:59908 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:14:04.336 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:60850 10 6452 1 2025-09-20 12:14:47.036 00:00:10.367 TCP 23.104.0.1:49598 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:15:04.544 00:00:10.812 TCP 1.101.0.1:3000 -> 22.102.0.1:42084 10 6452 1 2025-09-20 12:15:54.594 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 12:15:54.641 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 12:15:47.440 00:00:10.367 TCP 23.104.0.1:43676 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:16:05.393 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:53226 10 6452 1 2025-09-20 12:16:47.843 00:00:10.396 TCP 23.104.0.1:50510 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:17:05.614 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:35534 10 6452 1 2025-09-20 12:17:48.277 00:00:10.325 TCP 23.104.0.1:49014 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:18:05.830 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:38162 10 6452 1 2025-09-20 12:14:31.102 00:05:01.296 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 12:18:48.639 00:00:10.329 TCP 23.104.0.1:37994 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:19:06.073 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:59360 10 6452 1 2025-09-20 12:15:31.106 00:05:01.291 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 12:19:49.000 00:00:10.363 TCP 23.104.0.1:58156 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:20:06.285 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51690 10 6452 1 2025-09-20 12:20:54.738 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 12:20:54.674 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 12:20:49.402 00:00:10.365 TCP 23.104.0.1:33932 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:21:06.501 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:50672 10 6452 1 2025-09-20 12:21:49.801 00:00:10.373 TCP 23.104.0.1:49210 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:22:06.714 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:45422 10 6452 1 2025-09-20 12:22:50.211 00:00:10.368 TCP 23.104.0.1:59938 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:23:06.926 00:00:10.166 TCP 1.101.0.1:3000 -> 22.102.0.1:60854 10 6452 1 2025-09-20 12:23:50.615 00:00:10.364 TCP 23.104.0.1:54436 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:24:07.126 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:38390 10 6452 1 2025-09-20 12:20:31.104 00:05:01.306 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 12:24:51.016 00:00:10.322 TCP 23.104.0.1:51366 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:25:07.334 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:35162 10 6452 1 2025-09-20 12:21:31.108 00:05:01.301 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 12:25:54.833 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 12:25:54.762 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 12:25:51.374 00:00:10.489 TCP 23.104.0.1:57834 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:26:07.558 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:36562 10 6452 1 2025-09-20 12:26:51.906 00:00:10.368 TCP 23.104.0.1:55990 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:27:07.774 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:47450 10 6452 1 2025-09-20 12:27:52.311 00:00:10.367 TCP 23.104.0.1:42918 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:28:07.948 00:00:13.508 TCP 1.101.0.1:3000 -> 22.102.0.1:58180 10 6452 1 2025-09-20 12:28:52.715 00:00:10.321 TCP 23.104.0.1:39244 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:29:11.496 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:46618 10 6452 1 2025-09-20 12:29:53.105 00:00:10.367 TCP 23.104.0.1:39490 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:30:11.707 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52228 10 6452 1 2025-09-20 12:26:31.105 00:05:01.306 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 12:30:54.977 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 12:30:54.834 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 12:30:53.514 00:00:10.368 TCP 23.104.0.1:38376 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:31:11.922 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:44300 10 6452 1 2025-09-20 12:27:31.109 00:05:01.302 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 12:31:53.921 00:00:10.388 TCP 23.104.0.1:33974 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:32:12.133 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36708 10 6452 1 2025-09-20 12:32:54.345 00:00:10.327 TCP 23.104.0.1:42766 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:33:12.346 00:00:10.128 TCP 1.101.0.1:3000 -> 22.102.0.1:43186 10 6452 1 2025-09-20 12:33:54.709 00:00:10.366 TCP 23.104.0.1:55394 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:34:12.517 00:00:10.844 TCP 1.101.0.1:3000 -> 22.102.0.1:55788 10 6452 1 2025-09-20 12:34:55.115 00:00:10.371 TCP 23.104.0.1:56758 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:35:13.395 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:43920 10 6452 1 2025-09-20 12:35:55.197 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 12:35:55.097 00:00:00.043 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 12:35:55.526 00:00:10.378 TCP 23.104.0.1:37072 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:36:13.614 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:57348 10 6452 1 2025-09-20 12:32:31.112 00:05:01.301 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 12:36:55.940 00:00:10.366 TCP 23.104.0.1:34280 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:37:13.838 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:56490 10 6452 1 2025-09-20 12:33:31.116 00:05:01.295 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 12:37:56.346 00:00:10.362 TCP 23.104.0.1:32966 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:38:14.069 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:48340 10 6452 1 2025-09-20 12:38:56.747 00:00:10.370 TCP 23.104.0.1:39376 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:39:14.281 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:33678 10 6452 1 2025-09-20 12:39:57.149 00:00:10.364 TCP 23.104.0.1:43590 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:40:14.452 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:48606 10 6452 1 2025-09-20 12:40:55.301 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 12:40:54.917 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 12:40:57.547 00:00:10.364 TCP 23.104.0.1:50002 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:41:14.673 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:32906 10 6452 1 2025-09-20 12:41:57.950 00:00:10.367 TCP 23.104.0.1:51262 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:42:14.883 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:49412 10 6452 1 2025-09-20 12:38:31.117 00:05:01.300 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 12:42:58.353 00:00:10.323 TCP 23.104.0.1:42178 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:43:15.075 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:45400 10 6452 1 2025-09-20 12:39:31.119 00:05:01.296 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 12:43:58.715 00:00:10.331 TCP 23.104.0.1:47982 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:44:15.247 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:37842 10 6452 1 2025-09-20 12:44:59.103 00:00:10.359 TCP 23.104.0.1:48046 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:45:15.464 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:46082 10 6452 1 2025-09-20 12:45:55.231 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 12:45:55.348 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 12:45:59.507 00:00:10.361 TCP 23.104.0.1:43690 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:46:15.691 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:55590 10 6452 1 2025-09-20 12:46:59.907 00:00:10.369 TCP 23.104.0.1:58836 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:47:15.913 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:48672 10 6452 1 2025-09-20 12:48:00.313 00:00:10.326 TCP 23.104.0.1:36538 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:48:16.129 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:57518 10 6452 1 2025-09-20 12:44:31.117 00:05:01.301 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 12:49:00.670 00:00:10.328 TCP 23.104.0.1:33174 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:49:16.348 00:00:10.465 TCP 1.101.0.1:3000 -> 22.102.0.1:47938 10 6452 1 2025-09-20 12:45:31.119 00:05:01.297 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 12:50:01.036 00:00:10.364 TCP 23.104.0.1:49174 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:50:16.861 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:48852 10 6452 1 2025-09-20 12:50:55.322 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 12:50:55.390 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 12:51:01.438 00:00:10.368 TCP 23.104.0.1:41328 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:51:17.086 00:00:10.150 TCP 1.101.0.1:3000 -> 22.102.0.1:46876 10 6452 1 2025-09-20 12:52:01.841 00:00:10.389 TCP 23.104.0.1:60248 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:52:17.273 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:41908 10 6452 1 2025-09-20 12:53:02.269 00:00:10.361 TCP 23.104.0.1:36594 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:53:17.446 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:36224 10 6452 1 2025-09-20 12:54:02.669 00:00:10.370 TCP 23.104.0.1:46802 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:54:17.665 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:41096 10 6452 1 2025-09-20 12:50:31.118 00:05:01.302 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 12:55:03.100 00:00:10.388 TCP 23.104.0.1:51894 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:55:17.878 00:00:10.192 TCP 1.101.0.1:3000 -> 22.102.0.1:51188 10 6452 1 2025-09-20 12:51:31.121 00:05:01.298 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 12:55:55.176 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 12:55:55.255 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 12:56:03.523 00:00:10.364 TCP 23.104.0.1:54248 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:56:18.108 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:32910 10 6452 1 2025-09-20 12:57:03.923 00:00:10.387 TCP 23.104.0.1:55296 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:57:18.277 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:35548 10 6452 1 2025-09-20 12:58:04.347 00:00:10.321 TCP 23.104.0.1:33392 -> 1.101.0.1:3000 11 1507 1 2025-09-20 12:58:18.493 00:00:10.139 TCP 1.101.0.1:3000 -> 22.102.0.1:58120 10 6452 1 Summary: total flows: 163, total bytes: 496945, total packets: 1563, avg bps: 1069, avg pps: 0, avg bpp: 317 Time window: 2025-09-20 11:56:31 - 2025-09-20 12:58:28 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0036s User: 0.0009s Wall: 0.0017s flows/second: 95311.8 Runtime: 0.0017s