Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-20 16:59:21.523 00:00:10.369 TCP 23.104.0.1:34578 -> 1.101.0.1:3000 11 1507 1 2025-09-20 16:59:17.677 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:48494 10 6452 1 2025-09-20 17:00:21.935 00:00:10.378 TCP 23.104.0.1:43704 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:00:17.897 00:00:10.771 TCP 1.101.0.1:3000 -> 22.102.0.1:57694 10 6452 1 2025-09-20 16:56:31.198 00:05:01.296 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 17:01:00.920 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 17:01:00.615 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 17:01:18.705 00:00:10.141 TCP 1.101.0.1:3000 -> 22.102.0.1:55582 10 6452 1 2025-09-20 17:01:22.355 00:00:10.363 TCP 23.104.0.1:34762 -> 1.101.0.1:3000 11 1507 1 2025-09-20 16:57:31.201 00:05:01.291 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 17:02:18.886 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:48174 10 6452 1 2025-09-20 17:02:22.758 00:00:10.372 TCP 23.104.0.1:48332 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:03:19.110 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:37898 10 6452 1 2025-09-20 17:03:23.170 00:00:10.358 TCP 23.104.0.1:52512 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:04:19.324 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:53818 10 6452 1 2025-09-20 17:04:23.562 00:00:10.360 TCP 23.104.0.1:59866 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:05:19.541 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:49204 10 6452 1 2025-09-20 17:05:23.958 00:00:10.363 TCP 23.104.0.1:42320 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:06:00.626 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 17:06:00.555 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 17:06:19.710 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:33644 10 6452 1 2025-09-20 17:02:31.198 00:05:01.308 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 17:06:24.368 00:00:10.327 TCP 23.104.0.1:37588 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:07:19.931 00:00:10.207 TCP 1.101.0.1:3000 -> 22.102.0.1:43692 10 6452 1 2025-09-20 17:03:31.203 00:05:01.301 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 17:07:24.732 00:00:10.850 TCP 23.104.0.1:55484 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:08:20.174 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:34492 10 6452 1 2025-09-20 17:08:25.626 00:00:10.367 TCP 23.104.0.1:43800 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:09:20.388 00:00:10.189 TCP 1.101.0.1:3000 -> 22.102.0.1:52168 10 6452 1 2025-09-20 17:09:26.033 00:00:10.365 TCP 23.104.0.1:58462 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:10:20.614 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:60328 10 6452 1 2025-09-20 17:10:26.439 00:00:10.363 TCP 23.104.0.1:37302 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:11:00.681 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 17:11:00.615 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 17:11:20.829 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:37344 10 6452 1 2025-09-20 17:11:26.836 00:00:10.389 TCP 23.104.0.1:36222 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:12:21.071 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:48946 10 6452 1 2025-09-20 17:08:31.204 00:05:01.302 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 17:12:27.266 00:00:10.363 TCP 23.104.0.1:60150 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:13:21.288 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:44316 10 6452 1 2025-09-20 17:09:31.206 00:05:01.297 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 17:13:27.669 00:00:10.325 TCP 23.104.0.1:60666 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:14:21.502 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:35268 10 6452 1 2025-09-20 17:14:28.047 00:00:10.383 TCP 23.104.0.1:42516 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:15:21.717 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:54592 10 6452 1 2025-09-20 17:15:28.508 00:00:10.325 TCP 23.104.0.1:44716 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:16:01.113 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 17:16:00.577 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 17:16:21.932 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:59530 10 6452 1 2025-09-20 17:16:28.873 00:00:10.368 TCP 23.104.0.1:60808 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:17:22.155 00:00:10.770 TCP 1.101.0.1:3000 -> 22.102.0.1:47586 10 6452 1 2025-09-20 17:17:29.282 00:00:10.376 TCP 23.104.0.1:46854 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:18:22.960 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:42970 10 6452 1 2025-09-20 17:14:31.205 00:05:01.302 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 17:18:29.689 00:00:10.374 TCP 23.104.0.1:43526 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:19:23.198 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:51034 10 6452 1 2025-09-20 17:15:31.207 00:05:01.297 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 17:19:30.103 00:00:10.369 TCP 23.104.0.1:46774 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:20:23.426 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:46554 10 6452 1 2025-09-20 17:20:30.510 00:00:10.328 TCP 23.104.0.1:34240 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:21:00.834 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 17:21:00.831 00:00:00.029 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 17:21:23.651 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:33948 10 6452 1 2025-09-20 17:21:30.877 00:00:10.365 TCP 23.104.0.1:50906 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:22:23.872 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:50142 10 6452 1 2025-09-20 17:22:31.279 00:00:10.366 TCP 23.104.0.1:55822 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:23:24.103 00:00:10.450 TCP 1.101.0.1:3000 -> 22.102.0.1:37936 10 6452 1 2025-09-20 17:23:31.682 00:00:10.368 TCP 23.104.0.1:48414 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:24:24.593 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:40328 10 6452 1 2025-09-20 17:20:31.208 00:05:01.300 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 17:24:32.102 00:00:10.365 TCP 23.104.0.1:52638 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:21:31.210 00:05:01.296 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 17:25:24.809 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:58262 10 6452 1 2025-09-20 17:25:32.505 00:00:10.364 TCP 23.104.0.1:55434 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:26:00.933 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 17:26:00.939 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 17:26:25.026 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:44108 10 6452 1 2025-09-20 17:26:32.906 00:00:10.326 TCP 23.104.0.1:48378 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:27:25.240 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:54606 10 6452 1 2025-09-20 17:27:33.267 00:00:10.361 TCP 23.104.0.1:51894 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:28:25.449 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:48090 10 6452 1 2025-09-20 17:28:33.667 00:00:10.319 TCP 23.104.0.1:35904 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:29:25.659 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:54044 10 6452 1 2025-09-20 17:29:34.024 00:00:10.364 TCP 23.104.0.1:38014 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:26:31.209 00:05:01.300 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 17:30:25.873 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:52980 10 6452 1 2025-09-20 17:30:34.430 00:00:10.366 TCP 23.104.0.1:47822 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:31:00.998 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 17:31:01.005 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 17:27:31.211 00:05:01.295 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 17:31:26.095 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:56672 10 6452 1 2025-09-20 17:31:34.838 00:00:10.340 TCP 23.104.0.1:47150 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:32:26.311 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:52354 10 6452 1 2025-09-20 17:32:35.215 00:00:10.363 TCP 23.104.0.1:57904 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:33:26.534 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:51062 10 6452 1 2025-09-20 17:33:35.614 00:00:10.363 TCP 23.104.0.1:59698 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:34:26.719 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:34482 10 6452 1 2025-09-20 17:34:36.016 00:00:10.321 TCP 23.104.0.1:34888 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:35:26.934 00:00:10.195 TCP 1.101.0.1:3000 -> 22.102.0.1:38854 10 6452 1 2025-09-20 17:35:36.381 00:00:10.363 TCP 23.104.0.1:47124 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:36:01.266 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 17:36:01.251 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 17:32:31.210 00:05:01.301 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 17:36:27.175 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:51068 10 6452 1 2025-09-20 17:36:36.782 00:00:10.364 TCP 23.104.0.1:32820 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:33:31.212 00:05:01.296 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 17:37:27.400 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:44820 10 6452 1 2025-09-20 17:37:37.191 00:00:10.318 TCP 23.104.0.1:49250 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:38:27.626 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:34888 10 6452 1 2025-09-20 17:38:37.547 00:00:10.324 TCP 23.104.0.1:52476 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:39:27.851 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:57928 10 6452 1 2025-09-20 17:39:37.907 00:00:10.370 TCP 23.104.0.1:48292 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:40:28.085 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:35788 10 6452 1 2025-09-20 17:40:38.322 00:00:10.370 TCP 23.104.0.1:56140 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:41:01.326 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 17:41:01.182 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 17:41:28.299 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:59944 10 6452 1 2025-09-20 17:41:38.756 00:00:10.382 TCP 23.104.0.1:47832 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:38:31.211 00:05:01.300 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 17:42:28.522 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:56328 10 6452 1 2025-09-20 17:42:39.175 00:00:10.327 TCP 23.104.0.1:47478 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:39:31.214 00:05:01.295 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 17:43:28.737 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:42498 10 6452 1 2025-09-20 17:43:39.544 00:00:10.378 TCP 23.104.0.1:38782 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:44:28.964 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:54022 10 6452 1 2025-09-20 17:44:39.963 00:00:10.334 TCP 23.104.0.1:35340 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:45:29.195 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:46204 10 6452 1 2025-09-20 17:45:40.330 00:00:10.325 TCP 23.104.0.1:59182 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:46:00.930 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 17:46:01.307 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 17:46:29.412 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:56550 10 6452 1 2025-09-20 17:46:40.689 00:00:10.368 TCP 23.104.0.1:56482 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:47:29.623 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:35934 10 6452 1 2025-09-20 17:47:41.103 00:00:10.360 TCP 23.104.0.1:41256 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:44:31.216 00:05:01.297 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 17:48:29.836 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:40410 10 6452 1 2025-09-20 17:48:41.503 00:00:10.374 TCP 23.104.0.1:58040 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:45:31.219 00:05:01.291 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 17:49:30.081 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:42466 10 6452 1 2025-09-20 17:49:41.919 00:00:10.373 TCP 23.104.0.1:46186 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:50:30.293 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:39220 10 6452 1 2025-09-20 17:50:42.332 00:00:10.367 TCP 23.104.0.1:42740 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:51:01.467 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 17:51:01.022 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 17:51:30.506 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:34242 10 6452 1 2025-09-20 17:51:42.750 00:00:10.387 TCP 23.104.0.1:59812 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:52:30.721 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:48424 10 6452 1 2025-09-20 17:52:43.175 00:00:10.367 TCP 23.104.0.1:42480 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:53:30.928 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:36574 10 6452 1 2025-09-20 17:53:43.584 00:00:10.367 TCP 23.104.0.1:49978 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:50:31.218 00:05:01.295 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 17:54:31.161 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:39978 10 6452 1 2025-09-20 17:54:43.988 00:00:10.365 TCP 23.104.0.1:38180 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:51:31.221 00:05:01.291 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 17:55:31.376 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:47186 10 6452 1 2025-09-20 17:56:01.850 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 17:55:44.390 00:00:10.368 TCP 23.104.0.1:56114 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:56:01.488 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 17:56:31.591 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:54880 10 6452 1 2025-09-20 17:56:44.800 00:00:10.369 TCP 23.104.0.1:42280 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:57:31.810 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:36692 10 6452 1 2025-09-20 17:57:45.210 00:00:10.369 TCP 23.104.0.1:37472 -> 1.101.0.1:3000 11 1507 1 2025-09-20 17:58:32.029 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:58702 10 6452 1 Summary: total flows: 163, total bytes: 496841, total packets: 1561, avg bps: 1065, avg pps: 0, avg bpp: 318 Time window: 2025-09-20 16:56:31 - 2025-09-20 17:58:42 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0036s User: 0.0012s Wall: 0.0022s flows/second: 75527.1 Runtime: 0.0022s