Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-14 11:59:25.776 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:45472 10 6452 1 2025-10-14 11:54:44.080 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-10-14 12:00:26.197 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44194 10 6452 1 2025-10-14 12:01:26.601 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:47410 10 6452 1 2025-10-14 11:57:44.083 00:04:00.431 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 12:02:27.555 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 12:02:27.543 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 12:02:27.465 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 12:02:27.496 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 12:02:27.471 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 12:02:26.997 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57900 10 6452 1 2025-10-14 12:03:27.401 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35944 10 6452 1 2025-10-14 12:04:27.808 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33878 10 6452 1 2025-10-14 12:05:28.212 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37178 10 6452 1 2025-10-14 12:00:44.518 00:06:00.004 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 790 1 2025-10-14 12:06:28.617 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:42800 12 10375 1 2025-10-14 12:02:44.083 00:04:00.435 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 12:07:27.590 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 12:07:27.506 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 12:07:27.346 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 12:07:27.695 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 12:07:27.778 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 12:07:29.123 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39066 10 6452 1 2025-10-14 12:08:29.522 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37788 10 6452 1 2025-10-14 12:07:44.082 00:01:00.440 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-14 12:09:29.926 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:45138 10 6452 1 2025-10-14 12:10:30.346 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33822 10 6452 1 2025-10-14 12:11:30.708 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51248 10 6452 1 2025-10-14 12:12:27.669 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 12:12:27.666 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 12:12:27.667 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 12:12:27.808 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 12:12:27.891 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 12:07:44.084 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-10-14 12:12:31.115 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52752 10 6452 1 2025-10-14 12:13:31.519 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34662 10 6452 1 2025-10-14 12:09:44.082 00:04:00.441 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 12:14:31.931 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:57814 10 6452 1 2025-10-14 12:15:32.362 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42954 10 6452 1 2025-10-14 12:16:32.772 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:56738 10 6452 1 2025-10-14 12:17:28.228 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 12:17:27.963 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 12:17:28.116 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 12:17:28.080 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 12:17:28.145 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 12:17:33.193 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57584 10 6452 1 2025-10-14 12:18:33.596 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33260 10 6452 1 2025-10-14 12:13:44.520 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-10-14 12:14:44.084 00:04:00.440 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 12:19:33.996 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33280 10 6452 1 2025-10-14 12:20:34.363 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42196 10 6452 1 2025-10-14 12:21:34.780 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45704 10 6452 1 2025-10-14 12:22:27.962 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 12:22:27.996 00:00:00.047 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 12:22:27.886 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 12:22:27.853 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 12:22:27.880 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 12:22:35.187 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:32916 10 6452 1 2025-10-14 12:23:35.590 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:57418 10 6452 1 2025-10-14 12:19:44.083 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-10-14 12:24:36.012 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55338 10 6452 1 2025-10-14 12:20:44.088 00:06:00.435 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-14 12:25:36.415 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38376 10 6452 1 2025-10-14 12:26:36.819 00:00:10.406 TCP 1.101.0.1:3000 -> 23.104.0.1:55676 12 10369 1 2025-10-14 12:27:27.973 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 12:27:28.131 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 12:27:28.102 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 12:27:27.978 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 12:27:28.061 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 12:27:37.272 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:43548 11 6504 1 2025-10-14 12:27:44.089 00:01:00.434 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-14 12:28:37.729 00:00:10.673 TCP 1.101.0.1:3000 -> 23.104.0.1:34486 10 6452 1 2025-10-14 12:29:38.455 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50282 10 6452 1 2025-10-14 12:25:44.525 00:06:00.009 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 790 1 2025-10-14 12:30:38.862 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40870 10 6452 1 2025-10-14 12:31:39.270 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:32944 10 6452 1 2025-10-14 12:32:28.203 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 12:32:28.089 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 12:32:28.121 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 12:32:27.923 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 12:32:28.011 00:00:00.047 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 12:32:39.679 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:48652 10 6452 1 2025-10-14 12:29:44.089 00:04:00.434 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 12:33:40.102 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37462 10 6452 1 2025-10-14 12:34:40.510 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41010 10 6452 1 2025-10-14 12:32:44.087 00:03:00.439 TCP 179.21.23.23:179 -> 179.21.23.21:38570 8 492 1 2025-10-14 12:35:40.912 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54466 10 6452 1 2025-10-14 12:36:41.276 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:48448 10 6452 1 2025-10-14 12:37:28.531 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 12:37:28.098 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 12:37:28.494 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 12:37:28.052 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 12:37:28.447 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 12:37:41.638 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51686 10 6452 1 2025-10-14 12:34:44.090 00:04:00.435 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 12:38:42.042 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:46618 10 6452 1 2025-10-14 12:39:42.404 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48278 10 6452 1 2025-10-14 12:36:44.090 00:04:00.438 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 12:40:42.814 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:40244 10 6452 1 2025-10-14 12:41:43.214 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49362 10 6452 1 2025-10-14 12:42:28.383 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 12:42:28.227 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 12:42:28.426 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 12:42:28.163 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 12:42:28.299 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 12:42:43.618 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:42412 10 6452 1 2025-10-14 12:43:43.985 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38528 10 6452 1 2025-10-14 12:39:44.091 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-10-14 12:44:44.386 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45604 10 6452 1 2025-10-14 12:41:44.091 00:04:00.436 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 12:45:44.789 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46924 10 6452 1 2025-10-14 12:46:45.196 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44320 10 6452 1 2025-10-14 12:47:28.335 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 12:47:28.454 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 12:47:28.408 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 12:47:28.076 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 12:47:28.254 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 12:47:45.599 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48670 10 6452 1 2025-10-14 12:48:46.002 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49410 10 6452 1 2025-10-14 12:49:46.398 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:51806 10 6452 1 2025-10-14 12:46:44.092 00:04:00.442 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 12:45:44.525 00:06:00.006 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-10-14 12:50:46.759 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40368 10 6452 1 2025-10-14 12:51:47.153 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51434 10 6452 1 2025-10-14 12:52:28.598 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 12:52:28.395 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 12:52:28.389 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 12:52:28.306 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 12:52:28.516 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 12:52:47.563 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42322 10 6452 1 2025-10-14 12:53:47.964 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36530 10 6452 1 2025-10-14 12:54:48.380 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55952 10 6452 1 2025-10-14 12:55:48.780 00:00:10.595 TCP 1.101.0.1:3000 -> 23.104.0.1:57376 10 6452 1 2025-10-14 12:51:44.092 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-10-14 12:56:49.413 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47756 10 6452 1 2025-10-14 12:57:28.857 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 12:57:28.698 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 12:57:28.773 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 12:57:28.720 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 12:57:28.499 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 12:52:44.096 00:06:00.439 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-14 12:57:49.780 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48716 10 6452 1 Summary: total flows: 142, total bytes: 419126, total packets: 1026, avg bps: 873, avg pps: 0, avg bpp: 408 Time window: 2025-10-14 11:54:44 - 2025-10-14 12:58:44 Total flows processed: 142, passed: 142, Blocks skipped: 0, Bytes read: 14832 Sys: 0.0028s User: 0.0028s Wall: 0.0019s flows/second: 74115.4 Runtime: 0.0019s