Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-08 10:59:19.403 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56574 10 6452 1 2025-10-08 10:59:32.813 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 10:59:32.933 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 10:59:32.999 00:00:00.035 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 10:59:32.880 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 10:59:32.897 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 11:00:19.806 00:00:21.343 TCP 1.101.0.1:3000 -> 23.104.0.1:45770 10 6452 1 2025-10-08 11:01:31.213 00:00:10.496 TCP 1.101.0.1:3000 -> 23.104.0.1:54668 10 6452 1 2025-10-08 10:56:41.143 00:06:00.323 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 11:02:31.744 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42086 10 6452 1 2025-10-08 11:03:32.148 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56232 10 6452 1 2025-10-08 11:04:33.217 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 11:04:33.007 00:00:00.038 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 11:04:33.130 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 11:04:32.958 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 11:04:33.134 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 10:59:41.147 00:06:00.316 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 11:04:32.513 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51678 10 6452 1 2025-10-08 11:05:32.871 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33746 10 6452 1 2025-10-08 11:06:33.282 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37230 10 6452 1 2025-10-08 11:07:33.682 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:32800 10 6452 1 2025-10-08 11:08:34.111 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38238 10 6452 1 2025-10-08 11:03:41.148 00:06:00.319 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 11:09:33.349 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 11:09:33.201 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 11:09:33.201 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 11:09:33.148 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 11:09:33.267 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 11:09:34.521 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44366 10 6452 1 2025-10-08 11:10:34.928 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:43898 10 6452 1 2025-10-08 11:06:41.153 00:06:00.311 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 11:11:35.352 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35952 10 6452 1 2025-10-08 11:12:35.754 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43244 10 6452 1 2025-10-08 11:13:36.121 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60246 10 6452 1 2025-10-08 11:14:33.433 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 11:14:33.370 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 11:14:33.182 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 11:14:33.295 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 11:14:33.516 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 11:14:36.525 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40088 10 6452 1 2025-10-08 11:10:41.151 00:06:00.317 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 11:15:36.926 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:48666 10 6452 1 2025-10-08 11:16:37.347 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53324 10 6452 1 2025-10-08 11:17:37.757 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:43146 10 6452 1 2025-10-08 11:13:41.153 00:06:00.315 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 11:18:38.173 00:00:10.632 TCP 1.101.0.1:3000 -> 23.104.0.1:51314 10 6452 1 2025-10-08 11:19:33.330 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 11:19:33.443 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 11:19:33.416 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 11:19:33.336 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 11:19:33.418 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 11:19:38.845 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:48836 11 6504 1 2025-10-08 11:20:39.335 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54844 10 6452 1 2025-10-08 11:21:39.738 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46868 10 6452 1 2025-10-08 11:17:41.152 00:06:00.320 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 11:22:40.149 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48836 10 6452 1 2025-10-08 11:23:40.550 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59474 10 6452 1 2025-10-08 11:24:33.457 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 11:24:33.375 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 11:24:33.310 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 11:24:33.104 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 11:24:33.390 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 11:24:40.949 00:00:10.409 TCP 1.101.0.1:3000 -> 23.104.0.1:50056 12 10375 1 2025-10-08 11:20:41.154 00:06:00.317 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 11:25:41.400 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59398 10 6452 1 2025-10-08 11:26:41.803 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45436 10 6452 1 2025-10-08 11:27:42.202 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:33922 10 6452 1 2025-10-08 11:28:42.560 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:57496 10 6452 1 2025-10-08 11:29:33.692 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 11:29:33.620 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 11:29:33.467 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 11:29:33.508 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 11:29:33.609 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 11:24:41.154 00:06:00.322 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 11:29:42.921 00:00:10.603 TCP 1.101.0.1:3000 -> 23.104.0.1:49922 10 6452 1 2025-10-08 11:30:43.575 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:44838 10 6452 1 2025-10-08 11:31:43.985 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52168 10 6452 1 2025-10-08 11:27:41.157 00:06:00.316 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 11:32:44.391 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48988 10 6452 1 2025-10-08 11:33:44.788 00:00:11.069 TCP 1.101.0.1:3000 -> 23.104.0.1:46392 10 6452 1 2025-10-08 11:34:33.747 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 11:34:33.669 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 11:34:33.745 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 11:34:33.534 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 11:34:33.665 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 11:34:45.896 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:47008 12 6556 1 2025-10-08 11:35:46.311 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41150 10 6452 1 2025-10-08 11:31:41.155 00:06:00.323 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 11:36:46.716 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44446 10 6452 1 2025-10-08 11:37:47.119 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53290 10 6452 1 2025-10-08 11:38:47.527 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:53096 10 6452 1 2025-10-08 11:39:33.586 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 11:39:33.741 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 11:39:33.478 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 11:39:33.740 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 11:39:33.824 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 11:34:41.157 00:06:00.319 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 11:39:47.888 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:56206 10 6452 1 2025-10-08 11:40:48.307 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:48590 10 6452 1 2025-10-08 11:41:48.709 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39034 10 6452 1 2025-10-08 11:42:49.116 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50560 10 6452 1 2025-10-08 11:38:41.156 00:06:00.325 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 11:43:49.524 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60712 10 6452 1 2025-10-08 11:44:33.758 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 11:44:33.880 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 11:44:33.664 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 11:44:33.877 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 11:44:33.959 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 11:44:49.929 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:36220 10 6452 1 2025-10-08 11:45:50.359 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:44594 10 6452 1 2025-10-08 11:41:41.159 00:06:00.322 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 11:46:50.724 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46316 10 6452 1 2025-10-08 11:47:51.136 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:51554 10 6452 1 2025-10-08 11:48:51.510 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58626 10 6452 1 2025-10-08 11:49:33.901 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 11:49:33.944 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 11:49:33.772 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 11:49:33.851 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 11:49:33.936 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 11:49:51.908 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49098 12 6556 1 2025-10-08 11:45:41.157 00:06:00.327 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 11:50:52.320 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55334 10 6452 1 2025-10-08 11:51:52.730 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:35692 10 6452 1 2025-10-08 11:52:53.110 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39068 10 6452 1 2025-10-08 11:48:41.161 00:06:00.321 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 11:53:53.475 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47930 12 6556 1 2025-10-08 11:54:34.363 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 11:54:34.265 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 11:54:34.316 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 11:54:34.224 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 11:54:34.279 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 11:54:53.877 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55074 10 6452 1 2025-10-08 11:55:54.281 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45502 10 6452 1 2025-10-08 11:56:54.680 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42280 10 6452 1 2025-10-08 11:52:41.160 00:06:00.326 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 11:57:55.040 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52834 10 6452 1 Summary: total flows: 136, total bytes: 414712, total packets: 1017, avg bps: 891, avg pps: 0, avg bpp: 407 Time window: 2025-10-08 10:56:41 - 2025-10-08 11:58:41 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0037s User: 0.0009s Wall: 0.0025s flows/second: 54996.7 Runtime: 0.0025s