Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-20 18:58:47.598 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:45864 10 6452 1 2025-09-20 18:59:16.276 00:00:10.365 TCP 23.104.0.1:38704 -> 1.101.0.1:3000 11 1507 1 2025-09-20 18:59:47.813 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:37506 10 6452 1 2025-09-20 19:00:16.676 00:00:10.907 TCP 23.104.0.1:44604 -> 1.101.0.1:3000 11 1507 1 2025-09-20 18:56:31.234 00:05:01.301 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 19:00:48.039 00:00:10.152 TCP 1.101.0.1:3000 -> 22.102.0.1:58130 10 6452 1 2025-09-20 19:01:02.879 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 19:01:02.905 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 19:01:17.623 00:00:10.437 TCP 23.104.0.1:53142 -> 1.101.0.1:3000 15 1926 1 2025-09-20 18:57:31.236 00:05:01.296 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 19:01:48.232 00:00:10.208 TCP 1.101.0.1:3000 -> 22.102.0.1:55500 12 10367 1 2025-09-20 19:02:18.107 00:00:10.438 TCP 23.104.0.1:39192 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:02:48.481 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52412 10 6452 1 2025-09-20 19:03:18.586 00:00:10.365 TCP 23.104.0.1:37524 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:03:48.688 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:51472 11 6492 1 2025-09-20 19:04:18.995 00:00:10.971 TCP 23.104.0.1:34204 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:04:48.904 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:36612 10 6452 1 2025-09-20 19:05:20.008 00:00:10.380 TCP 23.104.0.1:52946 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:05:49.087 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:55884 10 6452 1 2025-09-20 19:06:02.715 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 19:06:02.699 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 19:06:20.423 00:00:10.365 TCP 23.104.0.1:50680 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:02:31.235 00:05:01.301 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 19:06:49.263 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:51096 10 6452 1 2025-09-20 19:07:20.825 00:00:10.363 TCP 23.104.0.1:45100 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:03:31.239 00:05:01.295 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 19:07:49.476 00:00:10.703 TCP 1.101.0.1:3000 -> 22.102.0.1:41370 10 6452 1 2025-09-20 19:08:21.225 00:00:10.363 TCP 23.104.0.1:54580 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:08:50.215 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:59194 10 6452 1 2025-09-20 19:09:21.627 00:00:10.322 TCP 23.104.0.1:35058 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:09:50.427 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:39994 10 6452 1 2025-09-20 19:10:21.987 00:00:10.333 TCP 23.104.0.1:46394 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:10:50.659 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:59894 10 6452 1 2025-09-20 19:11:03.022 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 19:11:02.897 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 19:11:22.359 00:00:10.352 TCP 23.104.0.1:58452 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:11:50.898 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:50000 10 6452 1 2025-09-20 19:12:22.751 00:00:10.387 TCP 23.104.0.1:33144 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:08:31.237 00:05:01.300 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 19:12:51.111 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:38658 10 6452 1 2025-09-20 19:09:31.239 00:05:01.294 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 19:13:23.180 00:00:10.437 TCP 23.104.0.1:37452 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:13:51.320 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:42226 10 6452 1 2025-09-20 19:14:23.659 00:00:10.371 TCP 23.104.0.1:56014 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:14:51.533 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:49634 10 6452 1 2025-09-20 19:15:24.097 00:00:10.369 TCP 23.104.0.1:56776 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:15:51.745 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:36762 10 6452 1 2025-09-20 19:16:03.107 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 19:16:03.038 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 19:16:24.504 00:00:10.326 TCP 23.104.0.1:59118 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:16:51.923 00:00:10.150 TCP 1.101.0.1:3000 -> 22.102.0.1:53830 10 6452 1 2025-09-20 19:17:24.863 00:00:10.330 TCP 23.104.0.1:41040 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:17:52.109 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:48532 10 6452 1 2025-09-20 19:14:31.237 00:05:01.300 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 19:18:25.230 00:00:11.302 TCP 23.104.0.1:43398 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:18:52.326 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:49740 10 6452 1 2025-09-20 19:19:26.571 00:00:10.325 TCP 23.104.0.1:40690 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:15:31.240 00:05:01.295 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 19:19:52.500 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:34080 10 6452 1 2025-09-20 19:20:26.934 00:00:10.345 TCP 23.104.0.1:55844 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:21:03.174 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 19:21:03.044 00:00:00.046 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 19:20:52.676 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:49016 10 6452 1 2025-09-20 19:21:27.314 00:00:10.366 TCP 23.104.0.1:53706 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:21:52.884 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:57188 10 6452 1 2025-09-20 19:22:27.717 00:00:10.371 TCP 23.104.0.1:49490 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:22:53.106 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:55424 10 6452 1 2025-09-20 19:23:28.121 00:00:10.365 TCP 23.104.0.1:35928 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:23:53.333 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:56508 10 6452 1 2025-09-20 19:20:31.239 00:05:01.300 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 19:24:28.522 00:00:10.372 TCP 23.104.0.1:51908 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:24:53.506 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:33812 10 6452 1 2025-09-20 19:21:31.241 00:05:01.296 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 19:25:28.932 00:00:10.382 TCP 23.104.0.1:45406 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:26:03.159 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 19:25:53.721 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:36040 10 6452 1 2025-09-20 19:26:03.109 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 19:26:29.354 00:00:10.368 TCP 23.104.0.1:58240 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:26:53.934 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:59550 10 6452 1 2025-09-20 19:27:29.762 00:00:10.328 TCP 23.104.0.1:50158 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:27:54.168 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:49968 10 6452 1 2025-09-20 19:28:30.129 00:00:10.367 TCP 23.104.0.1:41398 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:28:54.377 00:00:10.167 TCP 1.101.0.1:3000 -> 22.102.0.1:47484 10 6452 1 2025-09-20 19:29:30.535 00:00:11.893 TCP 23.104.0.1:54126 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:29:54.587 00:00:10.143 TCP 1.101.0.1:3000 -> 22.102.0.1:37580 10 6452 1 2025-09-20 19:26:31.241 00:05:01.300 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 19:30:32.467 00:00:10.324 TCP 23.104.0.1:52508 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:31:03.507 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 19:30:54.771 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:42794 10 6452 1 2025-09-20 19:31:03.523 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 19:27:31.243 00:05:01.295 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 19:31:32.827 00:00:10.364 TCP 23.104.0.1:40982 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:31:54.942 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:33660 10 6452 1 2025-09-20 19:32:33.227 00:00:10.364 TCP 23.104.0.1:60770 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:32:55.172 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:53648 10 6452 1 2025-09-20 19:33:33.627 00:00:10.362 TCP 23.104.0.1:33182 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:33:55.385 00:00:10.733 TCP 1.101.0.1:3000 -> 22.102.0.1:49860 10 6452 1 2025-09-20 19:34:34.033 00:00:10.326 TCP 23.104.0.1:51390 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:34:56.155 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:39512 10 6452 1 2025-09-20 19:35:34.398 00:00:10.327 TCP 23.104.0.1:38618 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:35:56.373 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:40402 10 6452 1 2025-09-20 19:36:03.578 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 19:36:03.470 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 19:32:31.251 00:05:01.292 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 19:36:34.766 00:00:10.330 TCP 23.104.0.1:56144 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:36:56.546 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:57730 10 6452 1 2025-09-20 19:33:31.244 00:05:01.295 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 19:37:35.135 00:00:10.373 TCP 23.104.0.1:37256 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:37:56.751 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:36492 10 6452 1 2025-09-20 19:38:35.549 00:00:10.369 TCP 23.104.0.1:45526 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:38:56.918 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51610 10 6452 1 2025-09-20 19:39:35.952 00:00:10.364 TCP 23.104.0.1:56840 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:39:57.128 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:58678 10 6452 1 2025-09-20 19:40:36.356 00:00:10.361 TCP 23.104.0.1:38444 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:41:03.564 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 19:41:03.575 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 19:40:57.342 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:54554 10 6452 1 2025-09-20 19:41:36.755 00:00:10.794 TCP 23.104.0.1:41410 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:41:57.557 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:35870 10 6452 1 2025-09-20 19:38:31.243 00:05:01.303 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 19:42:37.587 00:00:10.324 TCP 23.104.0.1:34704 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:42:57.769 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:39048 10 6452 1 2025-09-20 19:39:31.246 00:05:01.298 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 19:43:37.951 00:00:10.370 TCP 23.104.0.1:45498 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:43:57.939 00:00:10.193 TCP 1.101.0.1:3000 -> 22.102.0.1:33746 10 6452 1 2025-09-20 19:44:38.361 00:00:10.325 TCP 23.104.0.1:47690 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:44:58.172 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:52486 10 6452 1 2025-09-20 19:45:38.729 00:00:10.373 TCP 23.104.0.1:45582 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:46:03.522 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 19:46:03.705 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 19:45:58.384 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:48964 10 6452 1 2025-09-20 19:46:39.135 00:00:10.447 TCP 23.104.0.1:35954 -> 1.101.0.1:3000 15 1926 1 2025-09-20 19:46:58.563 00:00:10.205 TCP 1.101.0.1:3000 -> 22.102.0.1:57882 13 10407 1 2025-09-20 19:47:39.618 00:00:10.359 TCP 23.104.0.1:58788 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:47:58.804 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:34700 10 6452 1 2025-09-20 19:44:31.247 00:05:01.300 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 19:48:40.014 00:00:10.368 TCP 23.104.0.1:49932 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:48:59.014 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:59956 10 6452 1 2025-09-20 19:45:31.249 00:05:01.295 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 19:49:40.422 00:00:10.323 TCP 23.104.0.1:34612 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:49:59.189 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:60320 10 6452 1 2025-09-20 19:50:40.785 00:00:10.328 TCP 23.104.0.1:52300 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:51:03.892 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 19:51:03.812 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 19:50:59.405 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:41498 10 6452 1 2025-09-20 19:51:41.147 00:00:10.367 TCP 23.104.0.1:53794 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:51:59.615 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:58852 10 6452 1 2025-09-20 19:52:41.550 00:00:10.324 TCP 23.104.0.1:52340 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:52:59.832 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:54852 10 6452 1 2025-09-20 19:53:41.916 00:00:10.375 TCP 23.104.0.1:60490 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:54:00.011 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:56128 10 6452 1 2025-09-20 19:50:31.247 00:05:01.301 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-20 19:54:42.326 00:00:10.334 TCP 23.104.0.1:41246 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:55:00.225 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:51646 10 6452 1 2025-09-20 19:51:31.249 00:05:01.299 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-20 19:55:42.699 00:00:10.361 TCP 23.104.0.1:53208 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:56:03.922 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 19:56:03.781 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-20 19:56:00.433 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:43650 10 6452 1 2025-09-20 19:56:43.109 00:00:10.363 TCP 23.104.0.1:58000 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:57:00.642 00:00:10.138 TCP 1.101.0.1:3000 -> 22.102.0.1:58652 10 6452 1 2025-09-20 19:57:43.513 00:00:10.366 TCP 23.104.0.1:60474 -> 1.101.0.1:3000 11 1507 1 2025-09-20 19:58:00.820 00:00:10.134 TCP 1.101.0.1:3000 -> 22.102.0.1:39604 10 6452 1 Summary: total flows: 163, total bytes: 505589, total packets: 1575, avg bps: 1093, avg pps: 0, avg bpp: 321 Time window: 2025-09-20 18:56:31 - 2025-09-20 19:58:10 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0108s User: 0.0029s Wall: 0.0037s flows/second: 44437.5 Runtime: 0.0037s