Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-09 22:58:43.061 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:51422 10 6452 1 2025-09-09 22:59:43.446 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38500 10 6452 1 2025-09-09 23:00:50.192 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-09 23:00:50.116 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-09 23:00:50.114 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-09 23:00:50.086 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-09 23:00:43.810 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:32914 10 6452 1 2025-09-09 23:00:50.110 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-09 23:01:44.209 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:49552 10 6452 1 2025-09-09 23:02:44.569 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:35274 10 6452 1 2025-09-09 23:03:44.981 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:45708 10 6452 1 2025-09-09 22:59:27.103 00:06:00.146 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-09 23:04:45.365 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48996 10 6452 1 2025-09-09 23:00:27.101 00:06:00.156 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-09 23:05:49.959 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-09 23:05:50.244 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-09 23:05:50.199 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-09 23:05:50.122 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-09 23:05:50.205 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-09 23:05:45.763 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60640 10 6452 1 2025-09-09 23:06:46.170 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57116 10 6452 1 2025-09-09 23:07:46.575 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42182 10 6452 1 2025-09-09 23:08:46.980 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49284 10 6452 1 2025-09-09 23:09:47.383 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57196 10 6452 1 2025-09-09 23:10:49.835 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-09 23:10:50.048 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-09 23:10:50.205 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-09 23:10:50.149 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-09 23:10:50.233 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-09 23:10:47.790 00:00:10.507 TCP 1.101.0.1:3000 -> 23.104.0.1:35188 10 6452 1 2025-09-09 23:06:27.104 00:06:00.149 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-09 23:11:48.334 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57042 10 6452 1 2025-09-09 23:07:27.101 00:06:00.154 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-09 23:12:48.750 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39552 10 6452 1 2025-09-09 23:13:49.152 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52354 10 6452 1 2025-09-09 23:14:49.558 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35628 10 6452 1 2025-09-09 23:15:50.372 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-09 23:15:50.290 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-09 23:15:50.261 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-09 23:15:50.260 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-09 23:15:50.058 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-09 23:15:49.966 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:42226 10 6452 1 2025-09-09 23:16:50.321 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39194 10 6452 1 2025-09-09 23:17:50.685 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:35802 10 6452 1 2025-09-09 23:13:27.105 00:06:00.150 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-09 23:18:51.109 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44504 10 6452 1 2025-09-09 23:14:27.102 00:06:00.156 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-09 23:19:51.508 00:00:10.857 TCP 1.101.0.1:3000 -> 23.104.0.1:53198 10 6452 1 2025-09-09 23:20:50.328 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-09 23:20:50.160 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-09 23:20:50.385 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-09 23:20:50.366 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-09 23:20:50.246 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-09 23:20:52.410 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59538 10 6452 1 2025-09-09 23:21:52.812 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40968 10 6452 1 2025-09-09 23:22:53.213 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49998 10 6452 1 2025-09-09 23:23:53.626 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:40408 13 13935 1 2025-09-09 23:24:54.066 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38606 10 6452 1 2025-09-09 23:20:27.106 00:06:00.150 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-09 23:25:50.655 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-09 23:25:50.574 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-09 23:25:50.699 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-09 23:25:50.443 00:00:00.029 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-09 23:25:50.573 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-09 23:25:54.480 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:54518 10 6452 1 2025-09-09 23:21:27.105 00:06:00.155 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-09 23:26:54.847 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:50492 10 6452 1 2025-09-09 23:27:55.281 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37718 10 6452 1 2025-09-09 23:28:55.693 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35728 10 6452 1 2025-09-09 23:29:56.107 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47840 10 6452 1 2025-09-09 23:30:50.582 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-09 23:30:50.585 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-09 23:30:50.633 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-09 23:30:50.705 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-09 23:30:50.787 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-09 23:30:56.474 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60530 10 6452 1 2025-09-09 23:31:56.891 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:47720 10 6452 1 2025-09-09 23:27:27.108 00:06:00.151 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-09 23:32:57.325 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47058 10 6452 1 2025-09-09 23:28:27.106 00:06:00.157 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-09 23:33:57.727 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:55332 10 6452 1 2025-09-09 23:34:58.146 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39322 10 6452 1 2025-09-09 23:35:50.601 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-09 23:35:50.672 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-09 23:35:50.666 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-09 23:35:50.625 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-09 23:35:50.684 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-09 23:35:58.554 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45134 10 6452 1 2025-09-09 23:36:58.919 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60202 10 6452 1 2025-09-09 23:37:59.324 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:34322 10 6452 1 2025-09-09 23:38:59.733 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:57996 12 10367 1 2025-09-09 23:34:27.109 00:06:00.153 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-09 23:40:00.185 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44306 10 6452 1 2025-09-09 23:35:27.107 00:06:00.159 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-09 23:40:50.840 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-09 23:40:50.759 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-09 23:40:50.766 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-09 23:40:50.510 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-09 23:40:50.758 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-09 23:41:00.547 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58872 10 6452 1 2025-09-09 23:42:00.950 00:00:10.935 TCP 1.101.0.1:3000 -> 23.104.0.1:36448 10 6452 1 2025-09-09 23:43:01.920 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:45698 10 6452 1 2025-09-09 23:44:02.311 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53774 10 6452 1 2025-09-09 23:45:02.712 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34926 10 6452 1 2025-09-09 23:45:51.159 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-09 23:45:51.234 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-09 23:45:51.186 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-09 23:45:51.156 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-09 23:45:51.238 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-09 23:46:03.104 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49862 10 6452 1 2025-09-09 23:41:27.110 00:06:00.153 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-09 23:47:03.511 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:39730 10 6452 1 2025-09-09 23:42:27.108 00:06:00.159 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-09 23:48:03.871 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53882 10 6452 1 2025-09-09 23:49:04.235 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60454 10 6452 1 2025-09-09 23:50:04.649 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39888 10 6452 1 2025-09-09 23:50:50.832 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-09 23:50:50.833 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-09 23:50:50.732 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-09 23:50:50.936 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-09 23:50:50.915 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-09 23:51:05.070 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:41662 10 6452 1 2025-09-09 23:52:05.468 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53244 10 6452 1 2025-09-09 23:53:05.877 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48754 10 6452 1 2025-09-09 23:48:27.111 00:06:00.154 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-09 23:54:06.281 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39704 10 6452 1 2025-09-09 23:49:27.110 00:06:00.159 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-09 23:55:06.679 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58612 10 6452 1 2025-09-09 23:55:51.041 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-09 23:55:50.960 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-09 23:55:50.955 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-09 23:55:50.612 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-09 23:55:50.960 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-09 23:56:07.110 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35772 10 6452 1 2025-09-09 23:57:07.512 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47126 10 6452 1 2025-09-09 23:58:07.916 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:34550 10 6452 1 Summary: total flows: 136, total bytes: 427414, total packets: 1009, avg bps: 956, avg pps: 0, avg bpp: 423 Time window: 2025-09-09 22:58:43 - 2025-09-09 23:58:18 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0031s User: 0.0015s Wall: 0.0028s flows/second: 49293.6 Runtime: 0.0028s