Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-28 10:59:11.021 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47134 10 6452 1 2025-09-28 10:59:44.464 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 10:59:44.596 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 10:59:44.266 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 10:59:44.383 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 10:59:44.467 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 11:00:11.418 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43716 10 6452 1 2025-09-28 10:55:36.172 00:06:00.134 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-28 11:01:11.817 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35320 10 6452 1 2025-09-28 10:56:36.174 00:06:00.129 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-28 11:02:12.218 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55166 10 6452 1 2025-09-28 11:03:12.621 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52500 10 6452 1 2025-09-28 11:04:13.032 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42874 10 6452 1 2025-09-28 11:04:44.363 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 11:04:44.281 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 11:04:44.095 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 11:04:44.421 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 11:04:44.504 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 11:05:13.435 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54370 10 6452 1 2025-09-28 11:06:13.841 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:40766 10 6452 1 2025-09-28 11:07:14.267 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53528 10 6452 1 2025-09-28 11:02:36.174 00:06:00.133 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-28 11:08:14.625 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59002 10 6452 1 2025-09-28 11:03:36.176 00:06:00.129 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-28 11:09:15.025 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41112 10 6452 1 2025-09-28 11:09:44.473 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 11:09:44.423 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 11:09:44.424 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 11:09:44.417 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 11:09:44.501 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 11:10:15.431 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:45600 10 6452 1 2025-09-28 11:11:15.805 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51778 10 6452 1 2025-09-28 11:12:16.210 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36234 10 6452 1 2025-09-28 11:13:16.605 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50138 10 6452 1 2025-09-28 11:14:17.012 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:54716 10 6452 1 2025-09-28 11:09:36.175 00:06:00.133 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-28 11:14:44.612 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 11:14:44.411 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 11:14:44.452 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 11:14:44.530 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 11:14:44.633 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 11:15:17.408 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55482 10 6452 1 2025-09-28 11:10:36.178 00:06:00.128 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-28 11:16:17.815 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:43566 10 6452 1 2025-09-28 11:17:18.189 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54846 10 6452 1 2025-09-28 11:18:18.588 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39052 10 6452 1 2025-09-28 11:19:18.990 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51030 10 6452 1 2025-09-28 11:19:44.632 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 11:19:44.682 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 11:19:44.423 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 11:19:44.727 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 11:19:44.809 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 11:20:19.396 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:38708 10 6452 1 2025-09-28 11:21:19.821 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35456 10 6452 1 2025-09-28 11:16:36.176 00:06:00.134 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-28 11:22:20.227 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:39896 10 6452 1 2025-09-28 11:17:36.179 00:06:00.129 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-28 11:23:20.650 00:00:10.825 TCP 1.101.0.1:3000 -> 23.104.0.1:41374 10 6452 1 2025-09-28 11:24:21.514 00:00:10.407 TCP 1.101.0.1:3000 -> 23.104.0.1:41486 10 6452 1 2025-09-28 11:24:44.587 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 11:24:44.586 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 11:24:44.637 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 11:24:44.657 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 11:24:44.740 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 11:25:21.953 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:43184 10 6452 1 2025-09-28 11:26:22.366 00:00:10.628 TCP 1.101.0.1:3000 -> 23.104.0.1:36908 10 6452 1 2025-09-28 11:27:23.036 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49172 10 6452 1 2025-09-28 11:28:23.444 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56034 10 6452 1 2025-09-28 11:23:36.178 00:06:00.135 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-28 11:29:23.846 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:50854 10 6452 1 2025-09-28 11:24:36.180 00:06:00.130 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-28 11:29:44.927 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 11:29:44.881 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 11:29:44.823 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 11:29:44.977 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 11:29:45.059 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 11:30:24.273 00:00:10.989 TCP 1.101.0.1:3000 -> 23.104.0.1:34660 10 6452 1 2025-09-28 11:31:25.299 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59254 10 6452 1 2025-09-28 11:32:25.698 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:39072 10 6452 1 2025-09-28 11:33:26.068 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54654 10 6452 1 2025-09-28 11:34:26.472 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:51994 10 6452 1 2025-09-28 11:34:44.574 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 11:34:44.860 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 11:34:44.915 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 11:34:44.775 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 11:34:44.657 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 11:35:26.843 00:00:10.411 TCP 1.101.0.1:3000 -> 23.104.0.1:60852 10 6452 1 2025-09-28 11:30:36.179 00:06:00.135 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-28 11:31:36.181 00:06:00.130 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-28 11:36:27.290 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:38706 10 6452 1 2025-09-28 11:37:27.657 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60044 10 6452 1 2025-09-28 11:38:28.063 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36962 10 6452 1 2025-09-28 11:39:28.466 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:57870 10 6452 1 2025-09-28 11:39:44.908 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 11:39:45.114 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 11:39:44.982 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 11:39:45.072 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 11:39:45.198 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 11:40:28.830 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60622 10 6452 1 2025-09-28 11:41:29.240 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:37408 10 6452 1 2025-09-28 11:42:29.603 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57254 10 6452 1 2025-09-28 11:37:36.179 00:06:00.135 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-28 11:38:36.182 00:06:00.130 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-28 11:43:30.009 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:43908 10 6452 1 2025-09-28 11:44:45.140 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 11:44:30.375 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60348 10 6452 1 2025-09-28 11:44:45.056 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 11:44:45.104 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 11:44:45.077 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 11:44:45.058 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 11:45:30.782 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35778 10 6452 1 2025-09-28 11:46:31.181 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58664 10 6452 1 2025-09-28 11:47:31.586 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37000 10 6452 1 2025-09-28 11:48:31.987 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51092 10 6452 1 2025-09-28 11:44:36.180 00:06:00.137 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-28 11:49:32.394 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34550 10 6452 1 2025-09-28 11:49:44.903 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 11:49:44.988 00:00:00.043 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 11:49:45.172 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 11:49:45.246 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 11:49:45.329 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 11:45:36.184 00:06:00.131 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-28 11:50:32.806 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:50106 10 6452 1 2025-09-28 11:51:33.230 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47564 10 6452 1 2025-09-28 11:52:33.627 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36606 10 6452 1 2025-09-28 11:53:34.035 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58876 10 6452 1 2025-09-28 11:54:34.437 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57744 10 6452 1 2025-09-28 11:54:45.458 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 11:54:45.298 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 11:54:45.381 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 11:54:45.439 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 11:54:45.375 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 11:55:34.848 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:44944 10 6452 1 2025-09-28 11:51:36.182 00:06:00.137 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-28 11:56:35.267 00:00:10.593 TCP 1.101.0.1:3000 -> 23.104.0.1:48232 10 6452 1 2025-09-28 11:52:36.185 00:06:00.132 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-28 11:57:35.901 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:55968 14 10469 1 2025-09-28 11:58:36.387 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48908 10 6452 1 Summary: total flows: 138, total bytes: 421755, total packets: 1036, avg bps: 890, avg pps: 0, avg bpp: 407 Time window: 2025-09-28 10:55:36 - 2025-09-28 11:58:46 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0055s User: 0.0000s Wall: 0.0025s flows/second: 54739.4 Runtime: 0.0025s