Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-22 04:59:14.466 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35774 10 6452 1 2025-10-22 04:54:48.081 00:06:00.289 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 05:00:14.869 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52934 10 6452 1 2025-10-22 05:01:09.923 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 05:01:09.939 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:01:09.927 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:01:10.011 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 05:01:10.105 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 05:01:15.273 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44858 10 6452 1 2025-10-22 05:02:15.674 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39818 10 6452 1 2025-10-22 04:57:48.083 00:06:00.285 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 05:03:16.104 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51238 10 6452 1 2025-10-22 05:04:16.463 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46954 10 6452 1 2025-10-22 05:05:16.871 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47612 10 6452 1 2025-10-22 05:06:10.319 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 05:06:10.321 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 05:06:10.419 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:06:10.503 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:06:10.586 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 05:06:17.276 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38696 10 6452 1 2025-10-22 05:01:48.083 00:06:00.289 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 05:07:17.676 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:60240 10 6452 1 2025-10-22 05:08:18.103 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38852 10 6452 1 2025-10-22 05:09:18.509 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36316 10 6452 1 2025-10-22 05:04:48.089 00:06:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 05:10:18.919 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39478 10 6452 1 2025-10-22 05:11:10.346 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 05:11:10.350 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 05:11:10.100 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:11:10.440 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:11:10.523 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 05:11:19.287 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40918 10 6452 1 2025-10-22 05:12:19.689 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:52372 10 6452 1 2025-10-22 05:13:20.100 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39630 10 6452 1 2025-10-22 05:08:48.087 00:06:00.289 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 05:14:20.509 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45092 10 6452 1 2025-10-22 05:15:20.914 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35248 10 6452 1 2025-10-22 05:16:10.567 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 05:16:10.651 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 05:16:10.615 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:16:10.486 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:16:10.605 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 05:16:21.277 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35032 10 6452 1 2025-10-22 05:11:48.091 00:06:00.283 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 05:17:21.678 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57812 10 6452 1 2025-10-22 05:18:22.107 00:00:11.140 TCP 1.101.0.1:3000 -> 23.104.0.1:44678 10 6452 1 2025-10-22 05:19:23.285 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:60800 10 6452 1 2025-10-22 05:20:23.685 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45610 10 6452 1 2025-10-22 05:15:48.089 00:06:00.288 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 05:21:10.475 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:21:10.480 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 05:21:10.478 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 05:21:10.641 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:21:10.558 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 05:21:24.103 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42244 10 6452 1 2025-10-22 05:22:24.514 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35412 10 6452 1 2025-10-22 05:23:24.917 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49856 10 6452 1 2025-10-22 05:18:48.091 00:06:00.284 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 05:24:25.281 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:34454 10 6452 1 2025-10-22 05:25:25.641 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54872 10 6452 1 2025-10-22 05:26:10.669 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 05:26:10.449 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 05:26:10.636 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:26:10.564 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:26:10.646 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 05:26:26.060 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38694 10 6452 1 2025-10-22 05:27:26.418 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:58056 10 6452 1 2025-10-22 05:22:48.090 00:06:00.289 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 05:28:26.789 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:57222 10 6452 1 2025-10-22 05:29:27.146 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55936 10 6452 1 2025-10-22 05:30:27.545 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36360 10 6452 1 2025-10-22 05:25:48.093 00:06:00.284 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 05:31:10.836 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 05:31:10.795 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 05:31:10.551 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:31:10.618 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:31:10.700 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 05:31:27.948 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55260 10 6452 1 2025-10-22 05:32:28.354 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:58952 10 6452 1 2025-10-22 05:33:28.768 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42418 10 6452 1 2025-10-22 05:34:29.180 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53992 10 6452 1 2025-10-22 05:29:48.091 00:06:00.289 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 05:35:29.587 00:00:10.485 TCP 1.101.0.1:3000 -> 23.104.0.1:36504 10 6452 1 2025-10-22 05:36:10.703 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 05:36:10.628 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 05:36:10.642 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 05:36:10.460 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:36:10.620 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:36:30.113 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37588 10 6452 1 2025-10-22 05:37:30.517 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47838 10 6452 1 2025-10-22 05:32:48.095 00:06:00.283 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 05:38:30.929 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:40758 10 6452 1 2025-10-22 05:39:31.360 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:44902 12 10375 1 2025-10-22 05:40:31.838 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38334 10 6452 1 2025-10-22 05:41:11.056 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 05:41:10.913 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 05:41:10.569 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:41:10.946 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:41:11.030 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 05:41:32.242 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47672 10 6452 1 2025-10-22 05:36:48.092 00:06:00.291 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 05:42:32.649 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:48946 10 6452 1 2025-10-22 05:43:33.100 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:33996 10 6452 1 2025-10-22 05:44:33.525 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45230 10 6452 1 2025-10-22 05:39:48.098 00:06:00.284 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 05:45:33.931 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:53604 10 6452 1 2025-10-22 05:46:11.105 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 05:46:11.103 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 05:46:11.091 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:46:11.157 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:46:11.240 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 05:46:34.351 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33666 10 6452 1 2025-10-22 05:47:34.754 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:54688 10 6452 1 2025-10-22 05:43:48.095 00:06:00.289 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 05:48:35.173 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53020 10 6452 1 2025-10-22 05:49:35.577 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56166 10 6452 1 2025-10-22 05:50:35.992 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58122 10 6452 1 2025-10-22 05:51:10.924 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 05:51:11.062 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 05:51:11.058 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:51:10.924 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:51:11.008 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 05:46:48.098 00:06:00.284 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 05:51:36.398 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41500 10 6452 1 2025-10-22 05:52:36.816 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42246 10 6452 1 2025-10-22 05:53:37.184 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:52014 10 6452 1 2025-10-22 05:54:37.562 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58836 10 6452 1 2025-10-22 05:50:48.096 00:06:00.290 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 05:55:37.963 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:60252 10 6452 1 2025-10-22 05:56:11.295 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 05:56:11.522 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 05:56:11.307 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 05:56:11.115 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:56:11.213 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:56:38.322 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47942 10 6452 1 2025-10-22 05:57:38.724 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:33360 10 6452 1 2025-10-22 05:53:48.099 00:06:00.285 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 05:58:39.137 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40402 10 6452 1 Summary: total flows: 138, total bytes: 421661, total packets: 1034, avg bps: 864, avg pps: 0, avg bpp: 407 Time window: 2025-10-22 04:54:48 - 2025-10-22 05:59:48 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0038s User: 0.0015s Wall: 0.0034s flows/second: 40647.0 Runtime: 0.0034s