Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-02 04:58:50.567 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40384 10 6452 1 2025-09-02 04:59:50.979 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:57704 10 6452 1 2025-09-02 05:00:51.396 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50642 10 6452 1 2025-09-02 05:01:59.205 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 05:01:59.073 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 05:01:59.169 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 05:01:58.885 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 05:01:59.122 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 05:01:51.765 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:58018 10 6452 1 2025-09-02 04:57:23.354 00:06:00.131 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 04:57:23.358 00:06:00.126 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 05:02:52.192 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45636 10 6452 1 2025-09-02 05:03:52.610 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35890 10 6452 1 2025-09-02 05:04:53.020 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:51652 10 6452 1 2025-09-02 05:05:53.417 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59722 10 6452 1 2025-09-02 05:06:59.050 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 05:06:59.348 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 05:06:58.968 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 05:06:59.275 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 05:06:59.358 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 05:06:53.819 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:40260 10 6452 1 2025-09-02 05:07:54.193 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54598 10 6452 1 2025-09-02 05:08:54.594 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39534 10 6452 1 2025-09-02 05:04:23.358 00:06:00.125 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 05:04:23.357 00:06:00.130 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 05:09:55.007 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39196 10 6452 1 2025-09-02 05:10:55.415 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:33464 10 6452 1 2025-09-02 05:11:58.961 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 05:11:59.147 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 05:11:59.322 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 05:11:59.003 00:00:00.042 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 05:11:59.045 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 05:11:55.794 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57390 10 6452 1 2025-09-02 05:12:56.154 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54994 10 6452 1 2025-09-02 05:13:56.557 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:51298 10 6452 1 2025-09-02 05:14:56.974 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:59434 10 6452 1 2025-09-02 05:15:57.389 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:47982 10 6452 1 2025-09-02 05:11:23.359 00:06:00.128 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 05:11:23.361 00:06:00.124 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 05:16:59.238 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 05:16:59.238 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 05:16:59.071 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 05:16:58.883 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 05:16:58.967 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 05:16:57.748 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59976 10 6452 1 2025-09-02 05:17:58.152 00:00:10.946 TCP 1.101.0.1:3000 -> 23.104.0.1:42700 10 6452 1 2025-09-02 05:18:59.140 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42846 10 6452 1 2025-09-02 05:19:59.547 00:00:10.903 TCP 1.101.0.1:3000 -> 23.104.0.1:47668 10 6452 1 2025-09-02 05:21:00.499 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49788 10 6452 1 2025-09-02 05:21:59.219 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 05:21:59.130 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 05:21:59.210 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 05:21:59.352 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 05:21:59.435 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 05:22:00.859 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:42006 10 6452 1 2025-09-02 05:23:01.290 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:53640 12 10367 1 2025-09-02 05:18:23.360 00:06:00.129 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 05:18:23.362 00:06:00.124 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 05:24:01.769 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:38050 10 6452 1 2025-09-02 05:25:02.190 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59928 10 6452 1 2025-09-02 05:26:02.595 00:00:10.739 TCP 1.101.0.1:3000 -> 23.104.0.1:53182 10 6452 1 2025-09-02 05:26:59.564 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 05:26:59.392 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 05:26:59.530 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 05:26:59.387 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 05:26:59.468 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 05:27:03.376 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37958 10 6452 1 2025-09-02 05:28:03.744 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58430 10 6452 1 2025-09-02 05:29:04.157 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52682 10 6452 1 2025-09-02 05:30:04.564 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:37252 10 6452 1 2025-09-02 05:25:23.362 00:06:00.129 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 05:25:23.365 00:06:00.123 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 05:31:04.985 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59602 10 6452 1 2025-09-02 05:31:59.611 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 05:31:59.567 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 05:31:59.473 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 05:31:59.542 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 05:31:59.528 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 05:32:05.389 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51158 10 6452 1 2025-09-02 05:33:05.793 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51114 10 6452 1 2025-09-02 05:34:06.204 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43460 10 6452 1 2025-09-02 05:35:06.606 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:49200 10 6452 1 2025-09-02 05:36:06.965 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58274 10 6452 1 2025-09-02 05:36:59.566 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 05:36:59.487 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 05:36:59.487 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 05:36:59.648 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 05:36:59.484 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 05:37:07.373 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55200 10 6452 1 2025-09-02 05:32:23.365 00:06:00.124 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 05:32:23.363 00:06:00.128 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 05:38:07.735 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46898 10 6452 1 2025-09-02 05:39:08.148 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44774 10 6452 1 2025-09-02 05:40:08.515 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59160 10 6452 1 2025-09-02 05:41:08.923 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:41272 10 6452 1 2025-09-02 05:41:59.547 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 05:41:59.755 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 05:41:59.571 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 05:41:59.574 00:00:00.020 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 05:41:59.466 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 05:42:09.346 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46954 10 6452 1 2025-09-02 05:43:09.757 00:00:10.458 TCP 1.101.0.1:3000 -> 23.104.0.1:58892 12 10367 1 2025-09-02 05:39:23.366 00:06:00.123 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 05:44:10.249 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55676 10 6452 1 2025-09-02 05:39:23.364 00:06:00.128 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 05:45:10.655 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43376 10 6452 1 2025-09-02 05:46:11.064 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50506 10 6452 1 2025-09-02 05:46:59.904 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 05:46:59.823 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 05:46:59.814 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 05:46:59.720 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 05:46:59.984 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 05:47:11.472 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41824 10 6452 1 2025-09-02 05:48:11.874 00:00:10.490 TCP 1.101.0.1:3000 -> 23.104.0.1:59854 10 6452 1 2025-09-02 05:49:12.400 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50660 10 6452 1 2025-09-02 05:50:12.800 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:54104 10 6452 1 2025-09-02 05:46:23.368 00:06:00.129 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 05:46:23.367 00:06:00.134 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 05:51:13.186 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56026 10 6452 1 2025-09-02 05:51:59.872 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 05:51:59.871 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 05:51:59.881 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 05:51:59.802 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 05:51:59.884 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 05:52:13.586 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49538 10 6452 1 2025-09-02 05:53:13.989 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:34202 10 6452 1 2025-09-02 05:54:14.411 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:44008 10 6452 1 2025-09-02 05:55:14.810 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:47322 10 6452 1 2025-09-02 05:56:15.235 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46684 10 6452 1 2025-09-02 05:56:59.863 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 05:56:59.947 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 05:56:59.589 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 05:56:59.947 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 05:57:00.031 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 05:57:15.639 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:39950 10 6452 1 2025-09-02 05:53:23.370 00:06:00.129 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 05:53:23.368 00:06:00.134 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 05:58:16.066 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59538 10 6452 1 Summary: total flows: 138, total bytes: 425568, total packets: 1036, avg bps: 915, avg pps: 0, avg bpp: 410 Time window: 2025-09-02 04:57:23 - 2025-09-02 05:59:23 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0026s User: 0.0017s Wall: 0.0014s flows/second: 98004.4 Runtime: 0.0014s