Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-19 22:59:10.541 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57424 10 6452 1 2025-10-19 23:00:04.906 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 23:00:04.966 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 23:00:04.788 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 23:00:04.871 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 23:00:05.004 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 23:00:10.941 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:57946 10 6452 1 2025-10-19 22:56:46.907 00:05:00.245 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 23:01:11.317 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:39830 10 6452 1 2025-10-19 22:57:46.904 00:05:00.250 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 23:02:11.711 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43992 10 6452 1 2025-10-19 23:03:12.115 00:00:10.455 TCP 1.101.0.1:3000 -> 23.104.0.1:39952 10 6452 1 2025-10-19 23:04:12.606 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50104 10 6452 1 2025-10-19 23:05:04.970 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 23:05:05.198 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 23:05:05.098 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 23:05:05.205 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 23:05:05.287 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 23:05:13.025 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38320 10 6452 1 2025-10-19 23:06:13.423 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49736 10 6452 1 2025-10-19 23:02:46.914 00:05:00.239 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 23:07:13.827 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33228 12 6556 1 2025-10-19 23:03:46.910 00:05:00.246 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 23:08:14.232 00:00:10.739 TCP 1.101.0.1:3000 -> 23.104.0.1:56646 10 6452 1 2025-10-19 23:09:15.017 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37364 10 6452 1 2025-10-19 23:10:05.225 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 23:10:05.227 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 23:10:05.326 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 23:10:05.354 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 23:10:05.437 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 23:10:15.422 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51998 10 6452 1 2025-10-19 23:11:15.833 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:43404 10 6452 1 2025-10-19 23:12:16.260 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59472 10 6452 1 2025-10-19 23:08:46.914 00:05:00.239 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 23:13:16.669 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:47108 10 6452 1 2025-10-19 23:09:46.910 00:05:00.245 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 23:14:17.114 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45610 10 6452 1 2025-10-19 23:15:05.513 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 23:15:05.417 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 23:15:05.661 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 23:15:05.632 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 23:15:05.714 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 23:15:17.519 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41886 10 6452 1 2025-10-19 23:16:17.920 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57306 10 6452 1 2025-10-19 23:17:18.315 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46492 10 6452 1 2025-10-19 23:18:18.720 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40194 10 6452 1 2025-10-19 23:14:46.916 00:05:00.240 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 23:19:19.128 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42990 10 6452 1 2025-10-19 23:15:46.913 00:05:00.244 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 23:20:05.618 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 23:20:05.534 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 23:20:05.581 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 23:20:05.296 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 23:20:05.536 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 23:20:19.530 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:48320 10 6452 1 2025-10-19 23:21:19.947 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:51686 10 6452 1 2025-10-19 23:22:20.366 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56478 10 6452 1 2025-10-19 23:23:20.768 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:55974 10 6452 1 2025-10-19 23:24:21.184 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46692 10 6452 1 2025-10-19 23:20:46.917 00:05:00.240 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 23:25:05.574 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 23:25:05.493 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 23:25:05.574 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 23:25:05.379 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 23:25:05.507 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 23:25:21.588 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33054 10 6452 1 2025-10-19 23:21:46.914 00:05:00.245 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 23:26:21.996 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52578 10 6452 1 2025-10-19 23:27:22.397 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44658 10 6452 1 2025-10-19 23:28:22.806 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42570 10 6452 1 2025-10-19 23:29:23.215 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40132 10 6452 1 2025-10-19 23:30:05.721 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 23:30:05.771 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 23:30:05.466 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 23:30:05.631 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 23:30:05.715 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 23:30:23.619 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49450 10 6452 1 2025-10-19 23:26:46.918 00:05:00.243 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 23:31:24.024 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36116 10 6452 1 2025-10-19 23:27:46.915 00:05:00.249 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 23:32:24.436 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57978 10 6452 1 2025-10-19 23:33:24.846 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:46760 10 6452 1 2025-10-19 23:34:25.274 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60566 10 6452 1 2025-10-19 23:35:05.568 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 23:35:05.983 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 23:35:06.077 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 23:35:05.981 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 23:35:06.066 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 23:35:25.685 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42680 10 6452 1 2025-10-19 23:36:26.110 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:48764 10 6452 1 2025-10-19 23:32:46.920 00:05:00.245 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 23:37:26.508 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58430 10 6452 1 2025-10-19 23:33:46.918 00:05:00.251 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 23:38:26.911 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56582 10 6452 1 2025-10-19 23:39:27.308 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55518 10 6452 1 2025-10-19 23:40:06.136 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 23:40:06.226 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 23:40:05.929 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 23:40:06.131 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 23:40:06.216 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 23:40:27.718 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50826 10 6452 1 2025-10-19 23:41:28.133 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48786 10 6452 1 2025-10-19 23:42:28.543 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42480 10 6452 1 2025-10-19 23:38:46.925 00:05:00.241 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 23:43:28.952 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55416 10 6452 1 2025-10-19 23:39:46.923 00:05:00.246 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 23:44:29.359 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45600 10 6452 1 2025-10-19 23:45:06.166 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 23:45:06.074 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 23:45:05.976 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 23:45:05.898 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 23:45:06.083 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 23:45:29.763 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:38720 10 6452 1 2025-10-19 23:46:30.183 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38960 10 6452 1 2025-10-19 23:47:30.587 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:48874 10 6452 1 2025-10-19 23:48:30.991 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48682 10 6452 1 2025-10-19 23:44:46.926 00:05:00.242 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 23:49:31.401 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39814 10 6452 1 2025-10-19 23:45:46.924 00:05:00.246 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 23:50:06.127 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 23:50:05.931 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 23:50:06.048 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 23:50:06.185 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 23:50:06.015 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 23:50:31.804 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33960 10 6452 1 2025-10-19 23:51:32.211 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33664 10 6452 1 2025-10-19 23:52:32.575 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56096 10 6452 1 2025-10-19 23:53:32.986 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48176 10 6452 1 2025-10-19 23:54:33.390 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39852 10 6452 1 2025-10-19 23:50:46.935 00:05:00.235 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 23:55:06.388 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 23:55:06.254 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 23:55:05.948 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 23:55:06.306 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 23:55:06.051 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 23:55:33.795 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:37966 10 6452 1 2025-10-19 23:51:46.931 00:05:00.241 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 23:56:34.166 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41446 10 6452 1 2025-10-19 23:57:34.568 00:00:10.766 TCP 1.101.0.1:3000 -> 23.104.0.1:34184 10 6452 1 2025-10-19 23:58:35.374 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38674 10 6452 1 Summary: total flows: 140, total bytes: 417104, total packets: 1022, avg bps: 897, avg pps: 0, avg bpp: 408 Time window: 2025-10-19 22:56:46 - 2025-10-19 23:58:45 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0030s User: 0.0020s Wall: 0.0034s flows/second: 41091.9 Runtime: 0.0034s