Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-23 01:58:39.843 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:55112 10 6452 1 2025-09-23 01:59:40.266 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34248 10 6452 1 2025-09-23 02:00:40.672 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:49484 10 6452 1 2025-09-23 02:01:41.057 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57686 10 6452 1 2025-09-23 02:02:08.888 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-23 02:02:08.908 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-23 02:02:08.815 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-23 02:02:08.775 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 02:02:08.805 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 01:57:33.603 00:06:00.143 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-23 02:02:41.457 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52218 10 6452 1 2025-09-23 02:03:41.864 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39570 10 6452 1 2025-09-23 02:04:42.276 00:00:10.316 TCP 1.101.0.1:3000 -> 23.104.0.1:34256 10 6452 1 2025-09-23 02:00:33.608 00:06:00.137 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-23 02:05:42.632 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:41722 10 6452 1 2025-09-23 02:06:42.992 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53646 10 6452 1 2025-09-23 02:07:09.314 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-23 02:07:09.118 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-23 02:07:09.041 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-23 02:07:08.975 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 02:07:09.232 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 02:07:43.355 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50548 10 6452 1 2025-09-23 02:08:43.759 00:00:10.662 TCP 1.101.0.1:3000 -> 23.104.0.1:58408 10 6452 1 2025-09-23 02:04:33.608 00:06:00.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-23 02:09:44.459 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:43172 10 6452 1 2025-09-23 02:10:44.844 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:59160 10 6452 1 2025-09-23 02:11:45.275 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41200 10 6452 1 2025-09-23 02:12:09.234 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-23 02:12:09.168 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-23 02:12:09.268 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 02:12:09.293 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 02:12:09.377 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-23 02:07:33.612 00:06:00.135 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-23 02:12:45.640 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43022 10 6452 1 2025-09-23 02:13:46.054 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41294 10 6452 1 2025-09-23 02:14:46.431 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57284 10 6452 1 2025-09-23 02:15:46.837 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:36290 10 6452 1 2025-09-23 02:11:33.608 00:06:00.142 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-23 02:16:47.221 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53702 10 6452 1 2025-09-23 02:17:09.264 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-23 02:17:09.688 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-23 02:17:09.380 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-23 02:17:09.051 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 02:17:09.181 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 02:17:47.627 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:51634 10 6452 1 2025-09-23 02:18:47.988 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49566 10 6452 1 2025-09-23 02:14:33.614 00:06:00.134 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-23 02:19:48.397 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59628 10 6452 1 2025-09-23 02:20:48.805 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:38986 10 6452 1 2025-09-23 02:21:49.173 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33808 10 6452 1 2025-09-23 02:22:09.440 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-23 02:22:09.613 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-23 02:22:09.355 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-23 02:22:09.310 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 02:22:09.358 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 02:22:49.538 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:35936 10 6452 1 2025-09-23 02:18:33.609 00:06:00.142 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-23 02:23:49.895 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49694 10 6452 1 2025-09-23 02:24:50.307 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60864 10 6452 1 2025-09-23 02:25:50.708 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55756 10 6452 1 2025-09-23 02:21:33.613 00:06:00.136 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-23 02:26:51.114 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:50368 12 10367 1 2025-09-23 02:27:09.531 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-23 02:27:09.415 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-23 02:27:09.314 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 02:27:09.483 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 02:27:09.566 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-23 02:27:51.572 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37560 10 6452 1 2025-09-23 02:28:51.975 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53984 10 6452 1 2025-09-23 02:29:52.385 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40920 10 6452 1 2025-09-23 02:25:33.612 00:06:00.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-23 02:30:52.788 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:43406 10 6452 1 2025-09-23 02:32:09.639 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-23 02:31:53.195 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46244 10 6452 1 2025-09-23 02:32:09.637 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-23 02:32:09.690 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-23 02:32:09.298 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 02:32:09.558 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 02:32:53.604 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56564 10 6452 1 2025-09-23 02:28:33.615 00:06:00.137 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-23 02:33:53.967 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:47720 10 6452 1 2025-09-23 02:34:54.331 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43836 10 6452 1 2025-09-23 02:35:54.729 00:00:10.932 TCP 1.101.0.1:3000 -> 23.104.0.1:60224 10 6452 1 2025-09-23 02:37:09.902 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-23 02:37:09.917 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-23 02:37:09.807 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-23 02:37:09.718 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 02:36:55.693 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43966 10 6452 1 2025-09-23 02:37:09.817 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 02:32:33.613 00:06:00.142 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-23 02:37:56.100 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:59662 10 6452 1 2025-09-23 02:38:56.464 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:43668 10 6452 1 2025-09-23 02:39:56.844 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:52632 10 6452 1 2025-09-23 02:35:33.616 00:06:00.137 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-23 02:40:57.266 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43244 10 6452 1 2025-09-23 02:42:09.953 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-23 02:42:09.707 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-23 02:42:09.862 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-23 02:42:09.799 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 02:41:57.670 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44022 10 6452 1 2025-09-23 02:42:09.871 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 02:42:58.099 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43116 10 6452 1 2025-09-23 02:43:58.501 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54756 10 6452 1 2025-09-23 02:39:33.614 00:06:00.143 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-23 02:44:58.865 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:47304 10 6452 1 2025-09-23 02:45:59.276 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35864 10 6452 1 2025-09-23 02:47:09.957 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-23 02:47:09.885 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 02:47:09.957 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 02:47:10.066 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-23 02:46:59.678 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50984 10 6452 1 2025-09-23 02:47:10.040 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-23 02:42:33.617 00:06:00.138 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-23 02:48:00.096 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41118 10 6452 1 2025-09-23 02:49:00.501 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51156 10 6452 1 2025-09-23 02:50:00.901 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51582 10 6452 1 2025-09-23 02:51:01.310 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34454 10 6452 1 2025-09-23 02:46:33.619 00:06:00.140 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-23 02:52:10.090 00:00:00.040 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-23 02:52:10.172 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-23 02:52:10.099 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-23 02:52:10.079 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 02:52:10.009 00:00:00.039 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 02:52:01.718 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38864 10 6452 1 2025-09-23 02:53:02.123 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35130 10 6452 1 2025-09-23 02:54:02.525 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:55376 10 6452 1 2025-09-23 02:49:33.623 00:06:00.133 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-23 02:55:02.945 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:47926 10 6452 1 2025-09-23 02:56:03.370 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35146 10 6452 1 2025-09-23 02:57:09.864 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 02:57:10.139 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-23 02:57:10.058 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-23 02:57:10.042 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-23 02:57:03.774 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33844 10 6452 1 2025-09-23 02:57:10.057 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 02:58:04.139 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37784 10 6452 1 2025-09-23 02:53:33.622 00:06:00.139 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 Summary: total flows: 137, total bytes: 420792, total packets: 1020, avg bps: 904, avg pps: 0, avg bpp: 412 Time window: 2025-09-23 01:57:33 - 2025-09-23 02:59:33 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0041s User: 0.0000s Wall: 0.0012s flows/second: 111837.2 Runtime: 0.0012s