Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-20 17:58:45.621 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36734 10 6452 1 2025-09-20 17:54:32.520 00:06:00.004 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-20 17:59:46.034 00:00:10.843 TCP 1.101.0.1:3000 -> 23.104.0.1:39430 10 6452 1 2025-09-20 17:55:32.511 00:06:00.016 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 18:00:46.915 00:00:10.430 TCP 1.101.0.1:3000 -> 23.104.0.1:45220 10 6452 1 2025-09-20 18:01:01.554 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 18:01:01.449 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 18:01:01.570 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 18:01:01.448 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 18:01:01.531 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 18:01:47.381 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42932 10 6452 1 2025-09-20 18:02:47.794 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41060 10 6452 1 2025-09-20 18:03:48.202 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51204 10 6452 1 2025-09-20 18:04:48.606 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49122 10 6452 1 2025-09-20 18:05:48.968 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39894 10 6452 1 2025-09-20 18:06:01.663 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 18:06:01.738 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 18:06:01.622 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 18:06:01.663 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 18:06:01.746 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 18:01:32.524 00:06:00.006 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-20 18:06:49.370 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40296 10 6452 1 2025-09-20 18:02:32.515 00:06:00.017 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 18:07:49.735 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33738 10 6452 1 2025-09-20 18:08:50.139 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:58618 10 6452 1 2025-09-20 18:09:50.510 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47272 10 6452 1 2025-09-20 18:11:01.621 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 18:11:01.730 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 18:11:01.633 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 18:11:01.539 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 18:10:50.927 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:39658 10 6452 1 2025-09-20 18:11:01.639 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 18:11:51.358 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:53432 10 6452 1 2025-09-20 18:12:51.722 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34634 10 6452 1 2025-09-20 18:08:32.529 00:06:00.004 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-20 18:13:52.134 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47490 10 6452 1 2025-09-20 18:09:32.517 00:06:00.020 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 18:14:52.537 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:37554 10 6452 1 2025-09-20 18:16:02.276 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 18:16:01.788 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 18:16:02.190 00:00:00.017 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 18:16:01.898 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 18:16:02.193 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 18:15:52.958 00:00:16.486 TCP 1.101.0.1:3000 -> 23.104.0.1:38260 10 6452 1 2025-09-20 18:16:59.508 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51866 10 6452 1 2025-09-20 18:17:59.870 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56760 10 6452 1 2025-09-20 18:19:00.276 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:41066 10 6452 1 2025-09-20 18:20:00.629 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44834 10 6452 1 2025-09-20 18:15:32.536 00:06:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-20 18:21:01.904 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 18:21:02.000 00:00:00.036 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 18:21:01.757 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 18:21:02.000 00:00:00.044 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 18:21:02.082 00:00:00.044 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 18:21:00.993 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44574 10 6452 1 2025-09-20 18:16:32.518 00:06:00.021 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 18:22:01.356 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56264 10 6452 1 2025-09-20 18:23:01.759 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:54558 10 6452 1 2025-09-20 18:24:02.188 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:55968 10 6452 1 2025-09-20 18:25:02.589 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:60846 10 6452 1 2025-09-20 18:26:01.790 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 18:26:02.148 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 18:26:02.128 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 18:26:02.154 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 18:26:02.237 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 18:26:02.948 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:55358 10 6452 1 2025-09-20 18:27:03.361 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47300 10 6452 1 2025-09-20 18:22:32.536 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-20 18:28:03.761 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50494 10 6452 1 2025-09-20 18:23:32.521 00:06:00.019 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 18:29:04.168 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:32972 10 6452 1 2025-09-20 18:30:04.574 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43114 10 6452 1 2025-09-20 18:31:02.043 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 18:31:02.261 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 18:31:02.258 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 18:31:02.146 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 18:31:02.230 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 18:31:04.944 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54532 10 6452 1 2025-09-20 18:32:05.352 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59556 10 6452 1 2025-09-20 18:33:05.757 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:41452 10 6452 1 2025-09-20 18:34:06.177 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54500 10 6452 1 2025-09-20 18:29:32.537 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-20 18:35:06.579 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34578 10 6452 1 2025-09-20 18:30:32.522 00:06:00.019 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 18:36:02.452 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 18:36:02.371 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 18:36:02.119 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 18:36:02.304 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 18:36:02.387 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 18:36:06.999 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49788 10 6452 1 2025-09-20 18:37:07.395 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43108 10 6452 1 2025-09-20 18:38:07.795 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55388 10 6452 1 2025-09-20 18:39:08.201 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58180 10 6452 1 2025-09-20 18:40:08.561 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:53924 10 6452 1 2025-09-20 18:41:02.524 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 18:41:02.457 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 18:41:02.442 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 18:41:02.444 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 18:41:02.276 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 18:41:08.983 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:44566 10 6452 1 2025-09-20 18:36:32.539 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-20 18:42:09.341 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44328 10 6452 1 2025-09-20 18:37:32.523 00:06:00.020 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 18:43:09.747 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:35408 10 6452 1 2025-09-20 18:44:10.144 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42002 10 6452 1 2025-09-20 18:45:10.548 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36360 10 6452 1 2025-09-20 18:46:02.494 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 18:46:02.260 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 18:46:02.436 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 18:46:02.552 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 18:46:02.521 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 18:46:10.954 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45940 10 6452 1 2025-09-20 18:47:11.364 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58448 10 6452 1 2025-09-20 18:48:11.776 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46770 10 6452 1 2025-09-20 18:43:32.541 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-20 18:49:12.175 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53932 10 6452 1 2025-09-20 18:44:32.527 00:06:00.019 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 18:50:12.578 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45650 10 6452 1 2025-09-20 18:51:02.701 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 18:51:02.575 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 18:51:02.404 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 18:51:02.569 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 18:51:02.652 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 18:51:12.980 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:54104 12 10367 1 2025-09-20 18:52:13.464 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59842 10 6452 1 2025-09-20 18:53:13.866 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33252 10 6452 1 2025-09-20 18:54:14.277 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48750 10 6452 1 2025-09-20 18:55:14.684 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35436 10 6452 1 2025-09-20 18:50:32.542 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-20 18:56:02.723 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 18:56:02.723 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 18:56:02.813 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 18:56:02.467 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 18:56:02.805 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 18:56:15.113 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36738 10 6452 1 2025-09-20 18:51:32.527 00:06:00.019 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 18:57:15.513 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:34322 10 6452 1 2025-09-20 18:58:15.876 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58320 10 6452 1 Summary: total flows: 138, total bytes: 418377, total packets: 971, avg bps: 873, avg pps: 0, avg bpp: 430 Time window: 2025-09-20 17:54:32 - 2025-09-20 18:58:26 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0022s User: 0.0022s Wall: 0.0019s flows/second: 71282.5 Runtime: 0.0020s