Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-08 15:59:39.605 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39750 10 6452 1 2025-09-08 16:00:12.732 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 16:00:12.650 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 16:00:12.448 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 16:00:12.603 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 16:00:12.647 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 16:00:40.007 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44252 10 6452 1 2025-09-08 16:01:40.408 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42168 10 6452 1 2025-09-08 15:57:26.491 00:06:00.116 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-08 16:02:40.817 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48072 10 6452 1 2025-09-08 15:58:26.491 00:06:00.120 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-08 16:03:41.224 00:00:10.487 TCP 1.101.0.1:3000 -> 23.104.0.1:50380 14 10471 1 2025-09-08 16:04:41.748 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:42348 10 6452 1 2025-09-08 16:05:12.705 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 16:05:12.622 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 16:05:12.697 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 16:05:12.696 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 16:05:12.622 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 16:05:42.183 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58172 10 6452 1 2025-09-08 16:06:42.584 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41544 12 6556 1 2025-09-08 16:07:42.989 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49990 10 6452 1 2025-09-08 16:08:43.392 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58036 10 6452 1 2025-09-08 16:04:26.494 00:06:00.114 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-08 16:09:43.795 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37458 10 6452 1 2025-09-08 16:10:12.780 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 16:10:12.695 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 16:10:12.639 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 16:10:12.781 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 16:10:12.864 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 16:05:26.492 00:06:00.119 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-08 16:10:44.195 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50954 10 6452 1 2025-09-08 16:11:44.600 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58356 10 6452 1 2025-09-08 16:12:44.960 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33990 10 6452 1 2025-09-08 16:13:45.363 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54682 10 6452 1 2025-09-08 16:14:45.767 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49902 10 6452 1 2025-09-08 16:15:13.210 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 16:15:13.087 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 16:15:13.129 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 16:15:13.163 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 16:15:13.128 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 16:15:46.183 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:46746 10 6452 1 2025-09-08 16:11:26.496 00:06:00.114 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-08 16:16:46.571 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:50852 10 6452 1 2025-09-08 16:12:26.494 00:06:00.119 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-08 16:17:46.994 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40056 10 6452 1 2025-09-08 16:18:47.400 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55148 10 6452 1 2025-09-08 16:19:47.796 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:46306 10 6452 1 2025-09-08 16:20:13.050 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 16:20:12.834 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 16:20:12.960 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 16:20:13.157 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 16:20:13.240 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 16:20:48.188 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33290 10 6452 1 2025-09-08 16:21:48.547 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50962 10 6452 1 2025-09-08 16:22:48.963 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53642 10 6452 1 2025-09-08 16:18:26.497 00:06:00.114 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-08 16:23:49.365 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39796 10 6452 1 2025-09-08 16:19:26.496 00:06:00.120 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-08 16:24:49.768 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:41408 10 6452 1 2025-09-08 16:25:13.103 00:00:00.030 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 16:25:13.080 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 16:25:12.809 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 16:25:13.084 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 16:25:13.021 00:00:00.029 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 16:25:50.145 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:40900 10 6452 1 2025-09-08 16:26:50.513 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:51640 10 6452 1 2025-09-08 16:27:50.885 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:52614 12 6556 1 2025-09-08 16:28:51.311 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36500 10 6452 1 2025-09-08 16:29:51.714 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:44934 10 6452 1 2025-09-08 16:30:13.052 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 16:30:13.240 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 16:30:13.243 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 16:30:13.012 00:00:00.035 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 16:30:12.970 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 16:25:26.504 00:06:00.108 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-08 16:30:52.139 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:52742 10 6452 1 2025-09-08 16:26:26.503 00:06:00.112 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-08 16:31:52.510 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58364 10 6452 1 2025-09-08 16:32:52.921 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50170 10 6452 1 2025-09-08 16:33:53.330 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55982 10 6452 1 2025-09-08 16:34:53.729 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38438 10 6452 1 2025-09-08 16:35:13.576 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 16:35:13.538 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 16:35:13.255 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 16:35:13.295 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 16:35:13.493 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 16:35:54.138 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:49288 10 6452 1 2025-09-08 16:36:54.510 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:35782 10 6452 1 2025-09-08 16:32:26.506 00:06:00.111 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-08 16:37:54.939 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:45940 10 6452 1 2025-09-08 16:33:26.504 00:06:00.115 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-08 16:38:55.362 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53752 10 6452 1 2025-09-08 16:39:55.769 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:44292 10 6452 1 2025-09-08 16:40:13.353 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 16:40:13.435 00:00:00.048 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 16:40:13.267 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 16:40:13.509 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 16:40:13.271 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 16:40:56.186 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48522 10 6452 1 2025-09-08 16:41:56.592 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:57736 10 6452 1 2025-09-08 16:42:56.953 00:00:10.512 TCP 1.101.0.1:3000 -> 23.104.0.1:44180 10 6452 1 2025-09-08 16:43:57.496 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37960 10 6452 1 2025-09-08 16:39:26.509 00:06:00.110 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-08 16:45:13.635 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 16:44:57.861 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:37890 10 6452 1 2025-09-08 16:45:13.431 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 16:45:13.483 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 16:45:13.396 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 16:45:13.553 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 16:40:26.507 00:06:00.114 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-08 16:45:58.240 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56376 10 6452 1 2025-09-08 16:46:58.647 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52134 10 6452 1 2025-09-08 16:47:59.064 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39016 10 6452 1 2025-09-08 16:48:59.469 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48296 10 6452 1 2025-09-08 16:50:13.638 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 16:50:13.555 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 16:50:13.541 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 16:50:13.628 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 16:49:59.881 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:42628 12 6556 1 2025-09-08 16:50:13.556 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 16:51:00.316 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37392 10 6452 1 2025-09-08 16:46:26.512 00:06:00.118 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-08 16:52:00.684 00:00:10.501 TCP 1.101.0.1:3000 -> 23.104.0.1:41422 10 6452 1 2025-09-08 16:47:26.510 00:06:00.124 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-08 16:53:01.223 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47400 10 6452 1 2025-09-08 16:54:01.627 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35028 10 6452 1 2025-09-08 16:55:13.854 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 16:55:13.672 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 16:55:13.735 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 16:55:13.687 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 16:55:02.028 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57036 10 6452 1 2025-09-08 16:55:13.772 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 16:56:02.431 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35872 10 6452 1 2025-09-08 16:57:02.838 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:34340 10 6452 1 2025-09-08 16:58:03.257 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37276 10 6452 1 2025-09-08 16:53:26.515 00:06:00.116 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 Summary: total flows: 136, total bytes: 414756, total packets: 1018, avg bps: 891, avg pps: 0, avg bpp: 407 Time window: 2025-09-08 15:57:26 - 2025-09-08 16:59:26 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0028s User: 0.0021s Wall: 0.0022s flows/second: 61848.1 Runtime: 0.0022s