Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-30 07:59:21.697 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:33486 10 6452 1 2025-09-30 07:59:20.907 00:00:10.367 TCP 23.104.0.1:50528 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:00:21.914 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:54418 10 6452 1 2025-09-30 08:00:21.310 00:00:10.833 TCP 23.104.0.1:53996 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:00:38.677 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-30 08:00:38.537 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-30 07:56:35.605 00:05:01.677 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-30 08:01:22.128 00:00:10.142 TCP 1.101.0.1:3000 -> 22.102.0.1:36892 10 6452 1 2025-09-30 08:01:22.184 00:00:10.328 TCP 23.104.0.1:36258 -> 1.101.0.1:3000 11 1507 1 2025-09-30 07:57:35.607 00:05:01.673 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-30 08:02:22.553 00:00:10.364 TCP 23.104.0.1:49730 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:02:22.308 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:46608 10 6452 1 2025-09-30 08:03:22.525 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:37590 10 6452 1 2025-09-30 08:03:22.957 00:00:10.325 TCP 23.104.0.1:49074 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:04:22.699 00:00:17.692 TCP 1.101.0.1:3000 -> 22.102.0.1:44658 10 6452 1 2025-09-30 08:04:23.321 00:00:17.190 TCP 23.104.0.1:32858 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:05:30.435 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:38440 10 6452 1 2025-09-30 08:05:38.614 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-30 08:05:38.519 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-30 08:05:30.555 00:00:10.367 TCP 23.104.0.1:45792 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:06:30.650 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:49700 10 6452 1 2025-09-30 08:02:35.606 00:05:01.679 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-30 08:06:30.965 00:00:10.375 TCP 23.104.0.1:36332 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:07:30.858 00:00:10.171 TCP 1.101.0.1:3000 -> 22.102.0.1:58608 10 6452 1 2025-09-30 08:07:31.381 00:00:10.327 TCP 23.104.0.1:38740 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:03:35.610 00:05:01.675 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-30 08:08:31.082 00:00:10.179 TCP 1.101.0.1:3000 -> 22.102.0.1:42354 10 6452 1 2025-09-30 08:08:31.736 00:00:10.364 TCP 23.104.0.1:35276 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:09:31.310 00:00:10.427 TCP 1.101.0.1:3000 -> 22.102.0.1:53386 10 6452 1 2025-09-30 08:09:32.140 00:00:10.365 TCP 23.104.0.1:52034 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:10:31.777 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:51086 10 6452 1 2025-09-30 08:10:38.683 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-30 08:10:38.809 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-30 08:10:32.547 00:00:10.357 TCP 23.104.0.1:40634 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:11:31.989 00:00:10.199 TCP 1.101.0.1:3000 -> 22.102.0.1:51864 10 6452 1 2025-09-30 08:11:32.942 00:00:10.329 TCP 23.104.0.1:50162 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:08:35.609 00:05:01.681 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-30 08:12:32.223 00:00:10.184 TCP 1.101.0.1:3000 -> 22.102.0.1:40558 10 6452 1 2025-09-30 08:12:33.314 00:00:10.324 TCP 23.104.0.1:44154 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:09:35.612 00:05:01.678 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-30 08:13:32.451 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:51780 10 6452 1 2025-09-30 08:13:33.675 00:00:10.370 TCP 23.104.0.1:39182 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:14:32.672 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:37204 10 6452 1 2025-09-30 08:14:34.101 00:00:10.363 TCP 23.104.0.1:55362 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:15:38.703 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-30 08:15:38.658 00:00:00.024 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-30 08:15:34.507 00:00:10.370 TCP 23.104.0.1:51084 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:15:32.898 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:43558 10 6452 1 2025-09-30 08:16:33.113 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:48750 10 6452 1 2025-09-30 08:16:34.911 00:00:10.364 TCP 23.104.0.1:60748 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:17:33.318 00:00:10.137 TCP 1.101.0.1:3000 -> 22.102.0.1:55678 10 6452 1 2025-09-30 08:17:35.315 00:00:10.365 TCP 23.104.0.1:48520 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:14:35.610 00:05:01.681 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-30 08:18:33.507 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:52630 10 6452 1 2025-09-30 08:18:35.720 00:00:10.372 TCP 23.104.0.1:50150 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:15:35.615 00:05:01.675 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-30 08:19:36.133 00:00:10.369 TCP 23.104.0.1:53608 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:19:33.732 00:00:10.191 TCP 1.101.0.1:3000 -> 22.102.0.1:47892 10 6452 1 2025-09-30 08:20:38.765 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-30 08:20:38.947 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-30 08:20:33.967 00:00:10.190 TCP 1.101.0.1:3000 -> 22.102.0.1:53452 10 6452 1 2025-09-30 08:20:36.554 00:00:10.321 TCP 23.104.0.1:47716 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:21:34.194 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:52144 10 6452 1 2025-09-30 08:21:36.914 00:00:10.376 TCP 23.104.0.1:33952 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:22:34.405 00:00:10.169 TCP 1.101.0.1:3000 -> 22.102.0.1:45132 10 6452 1 2025-09-30 08:22:37.333 00:00:10.332 TCP 23.104.0.1:37926 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:23:34.614 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:46742 10 6452 1 2025-09-30 08:23:37.705 00:00:10.364 TCP 23.104.0.1:59276 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:20:35.613 00:05:01.683 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-30 08:24:34.824 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:46366 10 6452 1 2025-09-30 08:24:38.109 00:00:10.324 TCP 23.104.0.1:56794 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:25:38.822 00:00:00.024 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-30 08:25:38.937 00:00:00.032 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-30 08:21:35.615 00:05:01.678 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-30 08:25:35.049 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:58954 10 6452 1 2025-09-30 08:25:38.469 00:00:10.356 TCP 23.104.0.1:42672 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:26:35.263 00:00:10.176 TCP 1.101.0.1:3000 -> 22.102.0.1:33544 10 6452 1 2025-09-30 08:26:38.865 00:00:10.377 TCP 23.104.0.1:60020 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:27:35.473 00:00:10.198 TCP 1.101.0.1:3000 -> 22.102.0.1:32850 12 10369 1 2025-09-30 08:27:39.281 00:00:10.441 TCP 23.104.0.1:53032 -> 1.101.0.1:3000 15 1926 1 2025-09-30 08:28:35.713 00:00:10.187 TCP 1.101.0.1:3000 -> 22.102.0.1:40710 10 6452 1 2025-09-30 08:28:39.760 00:00:10.371 TCP 23.104.0.1:48762 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:29:35.937 00:00:10.397 TCP 1.101.0.1:3000 -> 22.102.0.1:44876 10 6452 1 2025-09-30 08:29:40.170 00:00:11.245 TCP 23.104.0.1:44350 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:30:39.041 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-30 08:30:38.537 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-30 08:26:35.614 00:05:01.683 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-30 08:30:36.372 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:57288 10 6452 1 2025-09-30 08:30:41.461 00:00:11.008 TCP 23.104.0.1:44720 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:27:35.618 00:05:01.677 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-30 08:31:36.592 00:00:10.164 TCP 1.101.0.1:3000 -> 22.102.0.1:34540 10 6452 1 2025-09-30 08:31:42.506 00:00:11.314 TCP 23.104.0.1:46164 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:32:36.800 00:00:10.180 TCP 1.101.0.1:3000 -> 22.102.0.1:60204 10 6452 1 2025-09-30 08:32:43.859 00:00:10.505 TCP 23.104.0.1:34726 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:33:37.021 00:00:10.177 TCP 1.101.0.1:3000 -> 22.102.0.1:37220 10 6452 1 2025-09-30 08:33:44.407 00:00:10.323 TCP 23.104.0.1:50726 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:34:37.246 00:00:10.183 TCP 1.101.0.1:3000 -> 22.102.0.1:60022 10 6452 1 2025-09-30 08:34:44.770 00:00:10.378 TCP 23.104.0.1:47042 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:35:39.053 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-30 08:35:38.912 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-30 08:35:37.467 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:41962 10 6452 1 2025-09-30 08:35:45.187 00:00:10.363 TCP 23.104.0.1:50782 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:32:35.616 00:05:01.684 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-30 08:36:37.683 00:00:10.170 TCP 1.101.0.1:3000 -> 22.102.0.1:56452 10 6452 1 2025-09-30 08:36:45.599 00:00:10.361 TCP 23.104.0.1:51134 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:33:35.619 00:05:01.679 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-30 08:37:37.889 00:00:10.135 TCP 1.101.0.1:3000 -> 22.102.0.1:58104 10 6452 1 2025-09-30 08:37:45.998 00:00:10.362 TCP 23.104.0.1:48460 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:38:38.082 00:00:10.201 TCP 1.101.0.1:3000 -> 22.102.0.1:40210 10 6452 1 2025-09-30 08:38:46.404 00:00:10.383 TCP 23.104.0.1:55626 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:39:38.321 00:00:10.172 TCP 1.101.0.1:3000 -> 22.102.0.1:51620 10 6452 1 2025-09-30 08:39:46.828 00:00:10.366 TCP 23.104.0.1:43006 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:40:38.953 00:00:00.022 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-30 08:40:39.037 00:00:00.023 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-30 08:40:38.531 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:33528 10 6452 1 2025-09-30 08:40:47.233 00:00:10.367 TCP 23.104.0.1:34298 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:41:38.744 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:57860 10 6452 1 2025-09-30 08:41:47.649 00:00:10.364 TCP 23.104.0.1:45852 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:38:35.617 00:05:01.686 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-30 08:42:38.953 00:00:10.150 TCP 1.101.0.1:3000 -> 22.102.0.1:59028 10 6452 1 2025-09-30 08:42:48.063 00:00:10.365 TCP 23.104.0.1:41104 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:39:35.621 00:05:01.680 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-30 08:43:39.141 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:49426 10 6452 1 2025-09-30 08:43:48.470 00:00:10.366 TCP 23.104.0.1:42864 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:44:39.353 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:37338 10 6452 1 2025-09-30 08:44:48.874 00:00:10.371 TCP 23.104.0.1:38518 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:45:39.408 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-30 08:45:39.693 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-30 08:45:39.560 00:00:10.175 TCP 1.101.0.1:3000 -> 22.102.0.1:43646 10 6452 1 2025-09-30 08:45:49.279 00:00:10.368 TCP 23.104.0.1:35998 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:46:39.781 00:00:10.173 TCP 1.101.0.1:3000 -> 22.102.0.1:57836 10 6452 1 2025-09-30 08:46:49.691 00:00:10.369 TCP 23.104.0.1:42442 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:47:39.995 00:00:14.465 TCP 1.101.0.1:3000 -> 22.102.0.1:32832 10 6452 1 2025-09-30 08:47:50.105 00:00:10.527 TCP 23.104.0.1:53898 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:44:35.617 00:05:01.687 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-30 08:48:44.523 00:00:10.182 TCP 1.101.0.1:3000 -> 22.102.0.1:36622 10 6452 1 2025-09-30 08:48:50.670 00:00:10.364 TCP 23.104.0.1:54072 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:45:35.621 00:05:01.681 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-30 08:49:44.742 00:00:10.136 TCP 1.101.0.1:3000 -> 22.102.0.1:47384 10 6452 1 2025-09-30 08:49:51.106 00:00:10.366 TCP 23.104.0.1:60450 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:50:39.379 00:00:00.021 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-30 08:50:39.392 00:00:00.021 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-30 08:50:44.919 00:00:10.746 TCP 1.101.0.1:3000 -> 22.102.0.1:35742 10 6452 1 2025-09-30 08:50:51.515 00:00:10.373 TCP 23.104.0.1:37422 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:51:45.710 00:00:10.174 TCP 1.101.0.1:3000 -> 22.102.0.1:36758 10 6452 1 2025-09-30 08:51:51.927 00:00:10.386 TCP 23.104.0.1:36736 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:52:45.922 00:00:10.178 TCP 1.101.0.1:3000 -> 22.102.0.1:49912 10 6452 1 2025-09-30 08:52:52.358 00:00:10.335 TCP 23.104.0.1:37100 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:53:46.134 00:00:10.131 TCP 1.101.0.1:3000 -> 22.102.0.1:42552 10 6452 1 2025-09-30 08:53:52.730 00:00:10.368 TCP 23.104.0.1:46930 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:50:35.618 00:05:01.689 TCP 179.1.22.1:179 -> 179.1.22.22:39396 12 738 1 2025-09-30 08:54:46.307 00:00:10.181 TCP 1.101.0.1:3000 -> 22.102.0.1:60164 10 6452 1 2025-09-30 08:54:53.136 00:00:10.321 TCP 23.104.0.1:33810 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:55:39.368 00:00:00.023 ICMP 4.0.198.2:0 -> 22.102.0.1:8.0 3 252 1 2025-09-30 08:55:39.356 00:00:00.022 ICMP 23.107.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-30 08:51:35.622 00:05:01.684 TCP 179.1.22.22:39396 -> 179.1.22.1:179 12 738 1 2025-09-30 08:55:46.527 00:00:10.185 TCP 1.101.0.1:3000 -> 22.102.0.1:55756 10 6452 1 2025-09-30 08:55:53.497 00:00:10.366 TCP 23.104.0.1:57974 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:56:46.752 00:00:10.343 TCP 1.101.0.1:3000 -> 22.102.0.1:46368 10 6452 1 2025-09-30 08:56:53.900 00:00:10.333 TCP 23.104.0.1:49668 -> 1.101.0.1:3000 11 1507 1 2025-09-30 08:57:47.132 00:00:10.202 TCP 1.101.0.1:3000 -> 22.102.0.1:46198 12 10375 1 2025-09-30 08:57:54.269 00:00:10.397 TCP 23.104.0.1:35488 -> 1.101.0.1:3000 15 1926 1 Summary: total flows: 162, total bytes: 499067, total packets: 1563, avg bps: 1082, avg pps: 0, avg bpp: 319 Time window: 2025-09-30 07:56:35 - 2025-09-30 08:58:04 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0031s User: 0.0021s Wall: 0.0025s flows/second: 64595.2 Runtime: 0.0025s