Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-08 08:59:16.677 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:56960 10 6452 1 2025-10-08 08:59:30.496 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 08:59:30.597 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 08:59:30.431 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 08:59:30.203 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 08:59:30.414 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 09:00:17.107 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40802 10 6452 1 2025-10-08 09:01:17.513 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:52528 10 6452 1 2025-10-08 09:02:17.893 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:54290 12 6556 1 2025-10-08 08:57:41.112 00:06:00.305 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 09:03:18.310 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45604 10 6452 1 2025-10-08 09:04:18.722 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:44340 10 6452 1 2025-10-08 09:04:30.805 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 09:04:30.742 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 09:04:30.960 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 09:04:30.869 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 09:04:30.724 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 09:05:19.140 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45182 10 6452 1 2025-10-08 09:00:41.116 00:06:00.300 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 09:06:19.551 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45604 10 6452 1 2025-10-08 09:07:19.917 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49896 10 6452 1 2025-10-08 09:08:20.321 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37208 10 6452 1 2025-10-08 09:09:30.832 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 09:09:30.807 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 09:09:30.670 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 09:09:30.502 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 09:09:30.749 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 09:09:20.717 00:00:10.456 TCP 1.101.0.1:3000 -> 23.104.0.1:50466 12 10369 1 2025-10-08 09:04:41.113 00:06:00.305 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 09:10:21.202 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36196 10 6452 1 2025-10-08 09:11:21.601 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:44920 10 6452 1 2025-10-08 09:12:21.970 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:42654 10 6452 1 2025-10-08 09:07:41.116 00:06:00.301 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 09:13:22.332 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:59358 10 6452 1 2025-10-08 09:14:30.891 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 09:14:30.867 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 09:14:30.741 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 09:14:30.817 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 09:14:22.698 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34612 10 6452 1 2025-10-08 09:14:30.807 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 09:15:23.065 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53794 10 6452 1 2025-10-08 09:16:23.463 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43924 10 6452 1 2025-10-08 09:11:41.116 00:06:00.305 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 09:17:23.872 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45834 10 6452 1 2025-10-08 09:18:24.283 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38066 10 6452 1 2025-10-08 09:19:30.830 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 09:19:30.907 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 09:19:30.865 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 09:19:30.828 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 09:19:30.911 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 09:19:24.687 00:00:10.408 TCP 1.101.0.1:3000 -> 23.104.0.1:48160 12 10369 1 2025-10-08 09:14:41.120 00:06:00.298 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 09:20:25.135 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53014 10 6452 1 2025-10-08 09:21:25.540 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59122 10 6452 1 2025-10-08 09:22:25.943 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:45780 10 6452 1 2025-10-08 09:23:26.316 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59860 10 6452 1 2025-10-08 09:18:41.118 00:06:00.307 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 09:24:31.001 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 09:24:30.902 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 09:24:30.833 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 09:24:30.918 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 09:24:30.904 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 09:24:26.717 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54488 10 6452 1 2025-10-08 09:25:27.117 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45528 10 6452 1 2025-10-08 09:26:27.524 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49614 10 6452 1 2025-10-08 09:21:41.121 00:06:00.301 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 09:27:27.926 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:52808 10 6452 1 2025-10-08 09:28:28.340 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48062 10 6452 1 2025-10-08 09:29:30.818 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 09:29:30.804 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 09:29:31.002 00:00:00.043 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 09:29:31.227 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 09:29:31.310 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 09:29:28.746 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47358 10 6452 1 2025-10-08 09:30:29.151 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:48248 10 6452 1 2025-10-08 09:25:41.119 00:06:00.307 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 09:31:29.531 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33152 10 6452 1 2025-10-08 09:32:29.938 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:38554 10 6452 1 2025-10-08 09:28:41.121 00:06:00.302 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 09:33:30.351 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54176 10 6452 1 2025-10-08 09:34:31.227 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 09:34:31.166 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 09:34:31.289 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 09:34:31.225 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 09:34:31.309 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 09:34:30.758 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:39870 10 6452 1 2025-10-08 09:35:31.187 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59868 10 6452 1 2025-10-08 09:36:31.595 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:52092 10 6452 1 2025-10-08 09:37:31.953 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:46706 10 6452 1 2025-10-08 09:32:41.121 00:06:00.307 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 09:38:32.363 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47286 10 6452 1 2025-10-08 09:39:31.474 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 09:39:31.402 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 09:39:31.094 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 09:39:31.581 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 09:39:31.664 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 09:39:32.776 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47000 10 6452 1 2025-10-08 09:40:33.186 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33356 10 6452 1 2025-10-08 09:35:41.125 00:06:00.302 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 09:41:33.594 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50894 10 6452 1 2025-10-08 09:42:34.005 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34340 10 6452 1 2025-10-08 09:43:34.415 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:58894 10 6452 1 2025-10-08 09:44:31.504 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 09:44:31.363 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 09:44:31.371 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 09:44:31.206 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 09:44:31.588 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 09:39:41.121 00:06:00.310 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 09:44:34.824 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58542 10 6452 1 2025-10-08 09:45:35.230 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59414 10 6452 1 2025-10-08 09:46:35.632 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43040 10 6452 1 2025-10-08 09:42:41.126 00:06:00.302 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 09:47:35.998 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:49296 10 6452 1 2025-10-08 09:48:36.360 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:52514 10 6452 1 2025-10-08 09:49:31.560 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 09:49:31.548 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 09:49:31.555 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 09:49:31.299 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 09:49:31.478 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 09:49:36.756 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:51256 10 6452 1 2025-10-08 09:50:37.189 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37818 10 6452 1 2025-10-08 09:46:41.123 00:06:00.311 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 09:51:37.589 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:49308 10 6452 1 2025-10-08 09:52:37.988 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41354 10 6452 1 2025-10-08 09:53:38.394 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:42828 10 6452 1 2025-10-08 09:54:31.724 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 09:54:31.644 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 09:54:31.766 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 09:54:31.725 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 09:54:31.808 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 09:49:41.127 00:06:00.306 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 09:54:38.757 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:49426 10 6452 1 2025-10-08 09:55:39.124 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51154 10 6452 1 2025-10-08 09:56:39.531 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:56242 10 6452 1 2025-10-08 09:57:39.893 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:33298 10 6452 1 2025-10-08 09:53:41.125 00:06:00.310 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 Summary: total flows: 136, total bytes: 418363, total packets: 1014, avg bps: 899, avg pps: 0, avg bpp: 412 Time window: 2025-10-08 08:57:41 - 2025-10-08 09:59:41 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0046s User: 0.0011s Wall: 0.0018s flows/second: 75935.2 Runtime: 0.0018s