Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-28 15:59:23.545 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:41858 10 6452 1 2025-09-28 15:59:24.371 00:00:10.368 TCP 23.104.0.1:36244 -> 1.101.0.1:3000 11 1507 1 2025-09-28 15:59:50.291 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-28 15:59:50.264 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 16:00:24.776 00:00:10.365 TCP 23.104.0.1:44118 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:00:23.762 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:33802 10 6452 1 2025-09-28 15:56:34.838 00:05:01.601 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-28 16:01:23.969 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:55762 10 6452 1 2025-09-28 16:01:25.181 00:00:10.366 TCP 23.104.0.1:35750 -> 1.101.0.1:3000 11 1507 1 2025-09-28 15:57:34.841 00:05:01.596 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-28 16:02:24.198 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:43338 10 6452 1 2025-09-28 16:02:25.586 00:00:10.364 TCP 23.104.0.1:60028 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:03:24.413 00:00:10.196 TCP 1.101.0.1:3000 -> 22.102.0.1:43486 10 6452 1 2025-09-28 16:03:25.989 00:00:10.366 TCP 23.104.0.1:50604 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:04:24.651 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:43200 10 6452 1 2025-09-28 16:04:26.391 00:00:10.369 TCP 23.104.0.1:36280 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:04:49.940 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 16:04:50.324 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-28 16:05:24.880 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:37660 10 6452 1 2025-09-28 16:05:26.800 00:00:10.362 TCP 23.104.0.1:49564 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:06:25.110 00:00:10.188 TCP 1.101.0.1:3000 -> 22.102.0.1:33516 10 6452 1 2025-09-28 16:02:34.840 00:05:01.600 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-28 16:06:27.202 00:00:10.322 TCP 23.104.0.1:35296 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:07:25.338 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:50346 10 6452 1 2025-09-28 16:03:34.843 00:05:01.595 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-28 16:07:27.576 00:00:10.362 TCP 23.104.0.1:45902 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:08:25.559 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:44066 10 6452 1 2025-09-28 16:08:27.974 00:00:10.381 TCP 23.104.0.1:39198 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:09:25.787 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:45170 10 6452 1 2025-09-28 16:09:28.394 00:00:10.366 TCP 23.104.0.1:43908 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:09:50.564 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 16:09:50.085 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-28 16:10:26.005 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:36940 10 6452 1 2025-09-28 16:10:28.813 00:00:10.362 TCP 23.104.0.1:58524 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:11:26.229 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:45604 10 6452 1 2025-09-28 16:11:29.212 00:00:10.323 TCP 23.104.0.1:48044 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:12:26.440 00:00:10.206 TCP 1.101.0.1:3000 -> 22.102.0.1:43690 12 10367 1 2025-09-28 16:08:34.841 00:05:01.601 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-28 16:12:29.579 00:00:10.466 TCP 23.104.0.1:35426 -> 1.101.0.1:3000 15 1926 1 2025-09-28 16:13:26.679 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:49928 10 6452 1 2025-09-28 16:09:34.844 00:05:01.596 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-28 16:13:30.103 00:00:10.399 TCP 23.104.0.1:51642 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:14:26.896 00:00:10.303 TCP 1.101.0.1:3000 -> 22.102.0.1:39836 10 6452 1 2025-09-28 16:14:30.539 00:00:10.325 TCP 23.104.0.1:55834 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:14:50.602 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 16:14:50.623 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-28 16:15:30.902 00:00:10.372 TCP 23.104.0.1:43900 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:15:27.228 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:55778 10 6452 1 2025-09-28 16:16:31.306 00:00:10.364 TCP 23.104.0.1:44720 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:16:27.401 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:49304 10 6452 1 2025-09-28 16:17:27.620 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:47288 10 6452 1 2025-09-28 16:17:31.711 00:00:10.319 TCP 23.104.0.1:55834 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:18:27.837 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:35694 10 6452 1 2025-09-28 16:14:34.842 00:05:01.602 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-28 16:18:32.097 00:00:10.358 TCP 23.104.0.1:56342 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:19:28.074 00:00:10.866 TCP 1.101.0.1:3000 -> 22.102.0.1:47738 10 6452 1 2025-09-28 16:15:34.845 00:05:01.597 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-28 16:19:32.493 00:00:10.360 TCP 23.104.0.1:49400 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:19:50.543 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 16:19:50.677 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-28 16:20:28.980 00:00:10.156 TCP 1.101.0.1:3000 -> 22.102.0.1:41096 10 6452 1 2025-09-28 16:20:32.892 00:00:10.366 TCP 23.104.0.1:40722 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:21:29.176 00:00:10.148 TCP 1.101.0.1:3000 -> 22.102.0.1:36950 10 6452 1 2025-09-28 16:21:33.297 00:00:10.324 TCP 23.104.0.1:54812 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:22:29.362 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:35150 10 6452 1 2025-09-28 16:22:33.672 00:00:10.366 TCP 23.104.0.1:60110 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:23:29.580 00:00:10.144 TCP 1.101.0.1:3000 -> 22.102.0.1:36972 10 6452 1 2025-09-28 16:23:34.101 00:00:10.365 TCP 23.104.0.1:58684 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:20:34.845 00:05:01.602 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-28 16:24:29.766 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:55370 10 6452 1 2025-09-28 16:24:34.506 00:00:10.328 TCP 23.104.0.1:60926 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:24:50.743 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-28 16:24:50.662 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 16:21:34.849 00:05:01.596 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-28 16:25:29.979 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:60864 10 6452 1 2025-09-28 16:25:34.866 00:00:10.327 TCP 23.104.0.1:38210 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:26:30.205 00:00:10.705 TCP 1.101.0.1:3000 -> 22.102.0.1:37708 10 6452 1 2025-09-28 16:26:35.227 00:00:10.362 TCP 23.104.0.1:46506 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:27:30.949 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:60144 10 6452 1 2025-09-28 16:27:35.627 00:00:10.369 TCP 23.104.0.1:45622 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:28:31.183 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:56172 10 6452 1 2025-09-28 16:28:36.035 00:00:10.365 TCP 23.104.0.1:54554 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:29:31.404 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:43478 10 6452 1 2025-09-28 16:29:36.434 00:00:10.372 TCP 23.104.0.1:34586 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:29:50.718 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-28 16:29:50.930 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 16:30:31.573 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:37512 10 6452 1 2025-09-28 16:26:34.846 00:05:01.602 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-28 16:30:36.842 00:00:10.389 TCP 23.104.0.1:48114 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:31:31.800 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:57646 10 6452 1 2025-09-28 16:27:34.851 00:05:01.596 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-28 16:31:37.266 00:00:10.364 TCP 23.104.0.1:56262 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:32:32.025 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:38662 10 6452 1 2025-09-28 16:32:37.674 00:00:10.382 TCP 23.104.0.1:59084 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:33:32.234 00:00:10.287 TCP 1.101.0.1:3000 -> 22.102.0.1:56986 10 6452 1 2025-09-28 16:33:38.099 00:00:10.370 TCP 23.104.0.1:55108 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:34:32.559 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:38662 10 6452 1 2025-09-28 16:34:51.110 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-28 16:34:50.767 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 16:34:38.510 00:00:10.328 TCP 23.104.0.1:52766 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:35:32.770 00:00:10.140 TCP 1.101.0.1:3000 -> 22.102.0.1:37158 10 6452 1 2025-09-28 16:35:38.871 00:00:10.378 TCP 23.104.0.1:33254 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:32:34.847 00:05:01.603 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-28 16:36:32.943 00:00:10.154 TCP 1.101.0.1:3000 -> 22.102.0.1:47618 10 6452 1 2025-09-28 16:36:39.311 00:00:10.363 TCP 23.104.0.1:52998 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:33:34.849 00:05:01.598 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-28 16:37:33.133 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:36262 12 10365 1 2025-09-28 16:37:39.714 00:00:10.505 TCP 23.104.0.1:57280 -> 1.101.0.1:3000 15 1926 1 2025-09-28 16:38:33.369 00:00:10.168 TCP 1.101.0.1:3000 -> 22.102.0.1:49664 10 6452 1 2025-09-28 16:38:40.256 00:00:10.368 TCP 23.104.0.1:48660 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:39:33.577 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:55920 10 6452 1 2025-09-28 16:39:51.021 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-28 16:39:50.867 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 16:39:40.661 00:00:10.365 TCP 23.104.0.1:33732 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:40:33.791 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:42362 10 6452 1 2025-09-28 16:40:41.087 00:00:13.857 TCP 23.104.0.1:36122 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:41:34.012 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:38734 10 6452 1 2025-09-28 16:41:44.982 00:00:10.368 TCP 23.104.0.1:36528 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:38:34.848 00:05:01.605 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-28 16:42:34.222 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:41314 10 6452 1 2025-09-28 16:42:45.388 00:00:10.329 TCP 23.104.0.1:44318 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:39:34.850 00:05:01.600 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-28 16:43:34.436 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:46530 10 6452 1 2025-09-28 16:43:45.760 00:00:10.376 TCP 23.104.0.1:56150 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:44:34.648 00:00:10.186 TCP 1.101.0.1:3000 -> 22.102.0.1:59700 10 6452 1 2025-09-28 16:44:51.246 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-28 16:44:50.948 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 16:44:46.175 00:00:10.360 TCP 23.104.0.1:52658 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:45:34.869 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:52190 10 6452 1 2025-09-28 16:45:46.575 00:00:10.364 TCP 23.104.0.1:46944 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:46:35.062 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:51930 10 6452 1 2025-09-28 16:46:46.977 00:00:10.367 TCP 23.104.0.1:34586 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:47:35.270 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:40248 10 6452 1 2025-09-28 16:47:47.384 00:00:10.358 TCP 23.104.0.1:36514 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:44:34.850 00:05:01.606 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-28 16:48:35.487 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:47338 10 6452 1 2025-09-28 16:48:47.783 00:00:10.394 TCP 23.104.0.1:40344 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:45:34.853 00:05:01.602 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-28 16:49:51.160 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 16:49:35.657 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:56314 10 6452 1 2025-09-28 16:49:51.185 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-28 16:49:48.213 00:00:10.362 TCP 23.104.0.1:38258 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:50:35.862 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:57784 10 6452 1 2025-09-28 16:50:48.616 00:00:10.322 TCP 23.104.0.1:60544 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:51:36.092 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:49800 10 6452 1 2025-09-28 16:51:48.978 00:00:10.396 TCP 23.104.0.1:40410 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:52:36.263 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:39358 10 6452 1 2025-09-28 16:52:49.417 00:00:10.365 TCP 23.104.0.1:34648 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:53:36.479 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:55914 10 6452 1 2025-09-28 16:53:49.817 00:00:10.355 TCP 23.104.0.1:44880 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:50:34.851 00:05:01.607 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-28 16:54:36.694 00:00:10.132 TCP 1.101.0.1:3000 -> 22.102.0.1:55412 10 6452 1 2025-09-28 16:54:51.421 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-28 16:54:51.359 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-28 16:54:50.211 00:00:10.320 TCP 23.104.0.1:45102 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:51:34.853 00:05:01.603 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-28 16:55:36.861 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:43806 10 6452 1 2025-09-28 16:55:50.569 00:00:10.375 TCP 23.104.0.1:33626 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:56:37.098 00:00:10.133 TCP 1.101.0.1:3000 -> 22.102.0.1:48380 10 6452 1 2025-09-28 16:56:50.987 00:00:10.368 TCP 23.104.0.1:40600 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:57:37.270 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:58082 10 6452 1 2025-09-28 16:57:51.387 00:00:10.368 TCP 23.104.0.1:41628 -> 1.101.0.1:3000 11 1507 1 2025-09-28 16:58:37.483 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:44872 10 6452 1 Summary: total flows: 163, total bytes: 505507, total packets: 1573, avg bps: 1083, avg pps: 0, avg bpp: 321 Time window: 2025-09-28 15:56:34 - 2025-09-28 16:58:47 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0029s User: 0.0029s Wall: 0.0025s flows/second: 66234.4 Runtime: 0.0025s