Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-22 11:58:47.105 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57600 10 6452 1 2025-09-22 11:59:47.511 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55942 10 6452 1 2025-09-22 12:00:47.913 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57456 10 6452 1 2025-09-22 12:01:52.208 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 12:01:52.178 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 12:01:52.223 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 12:01:51.882 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 12:01:52.126 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 12:01:48.319 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54382 10 6452 1 2025-09-22 11:57:33.356 00:06:00.109 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-22 12:02:48.684 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42342 10 6452 1 2025-09-22 12:03:49.106 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37902 10 6452 1 2025-09-22 12:04:49.512 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43424 10 6452 1 2025-09-22 12:00:33.359 00:06:00.103 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-22 12:05:49.922 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:40390 10 6452 1 2025-09-22 12:06:52.000 00:00:00.036 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 12:06:52.407 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 12:06:51.850 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 12:06:51.997 00:00:00.040 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 12:06:52.081 00:00:00.039 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 12:06:50.347 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52352 10 6452 1 2025-09-22 12:07:50.751 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50108 10 6452 1 2025-09-22 12:08:51.156 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45738 10 6452 1 2025-09-22 12:04:33.357 00:06:00.108 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-22 12:09:51.558 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57878 10 6452 1 2025-09-22 12:10:51.965 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55302 10 6452 1 2025-09-22 12:11:52.358 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 12:11:52.178 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 12:11:52.036 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 12:11:52.403 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 12:11:52.276 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 12:11:52.364 00:00:10.448 TCP 1.101.0.1:3000 -> 23.104.0.1:58188 12 10367 1 2025-09-22 12:07:33.359 00:06:00.104 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-22 12:12:52.848 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:56598 10 6452 1 2025-09-22 12:13:53.264 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33822 10 6452 1 2025-09-22 12:14:53.679 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60824 10 6452 1 2025-09-22 12:15:54.109 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38714 10 6452 1 2025-09-22 12:11:33.357 00:06:00.109 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-22 12:16:52.362 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 12:16:52.445 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 12:16:52.172 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 12:16:52.494 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 12:16:52.576 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 12:16:54.504 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51064 10 6452 1 2025-09-22 12:17:54.910 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40966 10 6452 1 2025-09-22 12:18:55.312 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57538 10 6452 1 2025-09-22 12:14:33.366 00:06:00.100 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-22 12:19:55.715 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:44996 10 6452 1 2025-09-22 12:20:56.126 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37670 10 6452 1 2025-09-22 12:21:52.854 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 12:21:52.657 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 12:21:52.757 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 12:21:52.677 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 12:21:52.771 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 12:21:56.527 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60710 10 6452 1 2025-09-22 12:22:56.928 00:00:10.411 TCP 1.101.0.1:3000 -> 23.104.0.1:50166 10 6452 1 2025-09-22 12:18:33.364 00:06:00.105 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-22 12:23:57.381 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39164 10 6452 1 2025-09-22 12:24:57.782 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:42322 10 6452 1 2025-09-22 12:25:58.143 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37660 10 6452 1 2025-09-22 12:21:33.369 00:06:00.099 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-22 12:26:52.664 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 12:26:52.590 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 12:26:52.445 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 12:26:52.731 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 12:26:52.529 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 12:26:58.511 00:00:10.818 TCP 1.101.0.1:3000 -> 23.104.0.1:50242 10 6452 1 2025-09-22 12:27:59.367 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53460 10 6452 1 2025-09-22 12:28:59.772 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47758 10 6452 1 2025-09-22 12:30:00.182 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54190 10 6452 1 2025-09-22 12:25:33.366 00:06:00.105 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-22 12:31:00.586 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33558 10 6452 1 2025-09-22 12:31:52.723 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 12:31:52.705 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 12:31:52.442 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 12:31:52.677 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 12:31:52.641 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 12:32:00.989 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57140 10 6452 1 2025-09-22 12:33:01.394 00:00:10.786 TCP 1.101.0.1:3000 -> 23.104.0.1:59422 10 6452 1 2025-09-22 12:28:33.369 00:06:00.100 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-22 12:34:02.222 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44954 10 6452 1 2025-09-22 12:35:02.627 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:33036 10 6452 1 2025-09-22 12:36:03.115 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:47968 10 6452 1 2025-09-22 12:36:52.872 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 12:36:52.766 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 12:36:52.978 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 12:36:52.788 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 12:36:52.790 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 12:37:03.476 00:00:10.495 TCP 1.101.0.1:3000 -> 23.104.0.1:36838 12 10367 1 2025-09-22 12:32:33.366 00:06:00.106 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-22 12:38:04.012 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36820 10 6452 1 2025-09-22 12:39:04.416 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44194 10 6452 1 2025-09-22 12:40:04.818 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56828 10 6452 1 2025-09-22 12:35:33.369 00:06:00.100 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-22 12:41:05.221 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40474 10 6452 1 2025-09-22 12:41:52.963 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 12:41:53.009 00:00:00.033 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 12:41:52.960 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 12:41:53.006 00:00:00.038 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 12:41:53.088 00:00:00.038 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 12:42:05.624 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59730 10 6452 1 2025-09-22 12:43:06.047 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34392 10 6452 1 2025-09-22 12:44:06.454 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52730 10 6452 1 2025-09-22 12:39:33.368 00:06:00.105 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-22 12:45:06.857 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57208 10 6452 1 2025-09-22 12:46:07.273 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39028 10 6452 1 2025-09-22 12:46:52.868 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 12:46:53.007 00:00:00.040 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 12:46:53.044 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 12:46:53.009 00:00:00.040 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 12:46:53.091 00:00:00.040 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 12:47:07.673 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:49178 10 6452 1 2025-09-22 12:42:33.370 00:06:00.102 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-22 12:48:08.052 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36040 10 6452 1 2025-09-22 12:49:08.454 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52418 10 6452 1 2025-09-22 12:50:08.856 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:50404 10 6452 1 2025-09-22 12:51:09.284 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58816 10 6452 1 2025-09-22 12:46:33.369 00:06:00.105 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-22 12:51:53.316 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 12:51:53.233 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 12:51:53.239 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 12:51:53.053 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 12:51:53.199 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 12:52:09.687 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55184 10 6452 1 2025-09-22 12:53:10.112 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:59348 10 6452 1 2025-09-22 12:54:10.527 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50892 10 6452 1 2025-09-22 12:49:33.373 00:06:00.100 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-22 12:55:10.933 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:45454 10 6452 1 2025-09-22 12:56:11.356 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36308 10 6452 1 2025-09-22 12:56:53.506 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 12:56:53.272 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 12:56:53.072 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 12:56:52.972 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 12:56:53.424 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 12:57:11.761 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43734 10 6452 1 2025-09-22 12:58:12.172 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:34656 10 6452 1 2025-09-22 12:53:33.370 00:06:00.105 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 Summary: total flows: 137, total bytes: 424707, total packets: 1022, avg bps: 913, avg pps: 0, avg bpp: 415 Time window: 2025-09-22 11:57:33 - 2025-09-22 12:59:33 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0032s User: 0.0021s Wall: 0.0019s flows/second: 70905.7 Runtime: 0.0019s