Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-20 18:59:16.281 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38704 10 6452 1 2025-09-20 19:00:16.682 00:00:10.907 TCP 1.101.0.1:3000 -> 23.104.0.1:44604 10 6452 1 2025-09-20 19:01:02.942 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 19:01:03.053 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 19:01:02.782 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 19:01:03.103 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 19:01:03.184 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 19:01:17.628 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:53142 12 10367 1 2025-09-20 19:02:18.113 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:39192 10 6452 1 2025-09-20 18:57:32.543 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-20 19:03:18.591 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37524 10 6452 1 2025-09-20 18:58:32.529 00:06:00.017 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 19:04:19.001 00:00:10.970 TCP 1.101.0.1:3000 -> 23.104.0.1:34204 10 6452 1 2025-09-20 19:05:20.027 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52946 10 6452 1 2025-09-20 19:06:02.894 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 19:06:02.659 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 19:06:02.601 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 19:06:02.780 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 19:06:02.861 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 19:06:20.430 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50680 10 6452 1 2025-09-20 19:07:20.830 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45100 10 6452 1 2025-09-20 19:08:21.229 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54580 10 6452 1 2025-09-20 19:04:32.545 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-20 19:09:21.634 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:35058 10 6452 1 2025-09-20 19:05:32.531 00:06:00.018 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 19:10:21.993 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:46394 10 6452 1 2025-09-20 19:11:03.004 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 19:11:02.776 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 19:11:02.977 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 19:11:02.799 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 19:11:02.921 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 19:11:22.364 00:00:10.352 TCP 1.101.0.1:3000 -> 23.104.0.1:58452 10 6452 1 2025-09-20 19:12:22.756 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:33144 10 6452 1 2025-09-20 19:13:23.185 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:37452 10 6452 1 2025-09-20 19:14:23.664 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56014 10 6452 1 2025-09-20 19:15:24.102 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56776 10 6452 1 2025-09-20 19:16:03.197 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 19:16:03.192 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 19:16:03.200 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 19:16:02.939 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 19:16:03.113 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 19:11:32.547 00:06:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-20 19:16:24.508 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59118 10 6452 1 2025-09-20 19:12:32.533 00:06:00.016 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 19:17:24.867 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:41040 10 6452 1 2025-09-20 19:18:25.235 00:00:11.302 TCP 1.101.0.1:3000 -> 23.104.0.1:43398 10 6452 1 2025-09-20 19:19:26.577 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40690 10 6452 1 2025-09-20 19:20:26.940 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:55844 10 6452 1 2025-09-20 19:21:03.247 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 19:21:02.975 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 19:21:03.331 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 19:21:03.077 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 19:21:03.164 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 19:21:27.319 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53706 10 6452 1 2025-09-20 19:22:27.722 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49490 10 6452 1 2025-09-20 19:18:32.547 00:06:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-20 19:23:28.126 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35928 10 6452 1 2025-09-20 19:19:32.534 00:06:00.015 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 19:24:28.525 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51908 10 6452 1 2025-09-20 19:25:28.937 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:45406 10 6452 1 2025-09-20 19:26:03.254 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 19:26:03.316 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 19:26:03.060 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 19:26:03.311 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 19:26:03.394 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 19:26:29.358 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58240 10 6452 1 2025-09-20 19:27:29.768 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:50158 10 6452 1 2025-09-20 19:28:30.135 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41398 10 6452 1 2025-09-20 19:29:30.540 00:00:11.893 TCP 1.101.0.1:3000 -> 23.104.0.1:54126 10 6452 1 2025-09-20 19:25:32.546 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-20 19:30:32.472 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52508 10 6452 1 2025-09-20 19:31:03.424 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 19:31:03.322 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 19:31:03.404 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 19:31:03.400 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 19:31:03.404 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 19:26:32.535 00:06:00.017 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 19:31:32.832 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40982 10 6452 1 2025-09-20 19:32:33.232 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60770 10 6452 1 2025-09-20 19:33:33.633 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33182 10 6452 1 2025-09-20 19:34:34.037 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51390 10 6452 1 2025-09-20 19:35:34.402 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:38618 10 6452 1 2025-09-20 19:36:03.671 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 19:36:03.304 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 19:36:03.373 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 19:36:03.785 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 19:36:03.868 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 19:36:34.772 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:56144 10 6452 1 2025-09-20 19:32:32.550 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-20 19:37:35.141 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:37256 10 6452 1 2025-09-20 19:33:32.535 00:06:00.019 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 19:38:35.555 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45526 10 6452 1 2025-09-20 19:39:35.958 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56840 10 6452 1 2025-09-20 19:40:36.360 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38444 10 6452 1 2025-09-20 19:41:03.677 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 19:41:03.407 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 19:41:03.590 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 19:41:03.465 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 19:41:03.595 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 19:41:36.761 00:00:10.793 TCP 1.101.0.1:3000 -> 23.104.0.1:41410 10 6452 1 2025-09-20 19:42:37.591 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34704 10 6452 1 2025-09-20 19:43:37.956 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45498 10 6452 1 2025-09-20 19:39:32.553 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-20 19:44:38.366 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47690 10 6452 1 2025-09-20 19:40:32.537 00:06:00.018 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 19:45:38.734 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45582 10 6452 1 2025-09-20 19:46:03.786 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 19:46:03.706 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 19:46:03.423 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 19:46:03.703 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 19:46:03.725 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 19:46:39.141 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:35954 12 10367 1 2025-09-20 19:47:39.624 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:58788 10 6452 1 2025-09-20 19:48:40.020 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49932 10 6452 1 2025-09-20 19:49:40.426 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34612 10 6452 1 2025-09-20 19:50:40.791 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:52300 10 6452 1 2025-09-20 19:51:03.982 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 19:51:03.908 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 19:51:03.911 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 19:51:03.715 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 19:51:03.901 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 19:46:32.553 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-20 19:51:41.152 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53794 10 6452 1 2025-09-20 19:47:32.538 00:06:00.020 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 19:52:41.555 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52340 10 6452 1 2025-09-20 19:53:41.921 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60490 10 6452 1 2025-09-20 19:54:42.331 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:41246 10 6452 1 2025-09-20 19:55:42.703 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53208 10 6452 1 2025-09-20 19:56:03.954 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 19:56:03.807 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 19:56:03.825 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 19:56:03.903 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 19:56:03.986 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 19:56:43.113 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58000 10 6452 1 2025-09-20 19:57:43.519 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60474 10 6452 1 2025-09-20 19:53:32.554 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 Summary: total flows: 136, total bytes: 414979, total packets: 949, avg bps: 892, avg pps: 0, avg bpp: 437 Time window: 2025-09-20 18:57:32 - 2025-09-20 19:59:32 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0032s User: 0.0011s Wall: 0.0026s flows/second: 51417.5 Runtime: 0.0027s