Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-23 17:59:31.151 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40450 10 6452 1 2025-10-23 17:55:48.805 00:05:00.340 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 18:00:31.551 00:00:11.052 TCP 1.101.0.1:3000 -> 23.104.0.1:37406 10 6452 1 2025-10-23 18:01:32.640 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55990 10 6452 1 2025-10-23 18:01:54.680 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 18:01:54.454 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 18:01:54.682 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 18:01:54.566 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 18:01:54.762 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 18:02:33.051 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48226 10 6452 1 2025-10-23 17:58:48.807 00:05:00.334 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 18:03:33.457 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40366 10 6452 1 2025-10-23 18:04:33.820 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52118 10 6452 1 2025-10-23 18:05:34.224 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55336 10 6452 1 2025-10-23 18:01:48.804 00:05:00.340 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 18:06:34.586 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37094 10 6452 1 2025-10-23 18:06:54.841 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 18:06:54.886 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 18:06:54.844 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 18:06:54.927 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 18:06:54.991 00:00:00.029 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 18:07:34.984 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39986 10 6452 1 2025-10-23 18:04:48.807 00:05:00.335 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 18:08:35.383 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39632 10 6452 1 2025-10-23 18:09:35.746 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:42432 10 6452 1 2025-10-23 18:10:36.160 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:45280 10 6452 1 2025-10-23 18:11:36.518 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59568 10 6452 1 2025-10-23 18:07:48.807 00:05:00.340 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 18:11:54.873 00:00:00.032 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 18:11:54.790 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 18:11:54.736 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 18:11:54.685 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 18:11:54.790 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 18:12:36.920 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48902 10 6452 1 2025-10-23 18:13:37.324 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36204 10 6452 1 2025-10-23 18:10:48.809 00:05:00.335 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 18:14:37.732 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47940 10 6452 1 2025-10-23 18:15:38.142 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:42744 10 6452 1 2025-10-23 18:16:38.557 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53380 10 6452 1 2025-10-23 18:16:54.896 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 18:16:54.956 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 18:16:54.660 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 18:16:54.949 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 18:16:55.032 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 18:17:38.971 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:36840 10 6452 1 2025-10-23 18:13:48.809 00:05:00.341 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 18:18:39.397 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41650 10 6452 1 2025-10-23 18:19:39.802 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33160 10 6452 1 2025-10-23 18:16:48.811 00:05:00.344 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 18:20:40.211 00:00:15.511 TCP 1.101.0.1:3000 -> 23.104.0.1:36048 10 6452 1 2025-10-23 18:21:54.922 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 18:21:54.912 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 18:21:55.089 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 18:21:45.778 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36066 10 6452 1 2025-10-23 18:21:55.167 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 18:21:55.251 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 18:22:46.187 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37020 10 6452 1 2025-10-23 18:19:48.810 00:05:00.344 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 18:23:46.586 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52144 10 6452 1 2025-10-23 18:24:46.992 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56212 10 6452 1 2025-10-23 18:25:47.402 00:00:10.950 TCP 1.101.0.1:3000 -> 23.104.0.1:53430 10 6452 1 2025-10-23 18:22:48.812 00:05:00.341 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 18:26:55.326 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 18:26:55.243 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 18:26:55.009 00:00:00.050 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 18:26:48.389 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39154 10 6452 1 2025-10-23 18:26:55.138 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 18:26:55.221 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 18:27:48.789 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33530 10 6452 1 2025-10-23 18:28:49.193 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53694 10 6452 1 2025-10-23 18:25:48.810 00:05:00.345 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 18:29:49.596 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:40830 12 10369 1 2025-10-23 18:30:50.101 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45632 10 6452 1 2025-10-23 18:31:55.147 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 18:31:55.238 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 18:31:55.291 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 18:31:55.013 00:00:00.042 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 18:31:55.229 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 18:31:50.502 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34526 10 6452 1 2025-10-23 18:28:48.814 00:05:00.340 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 18:32:50.867 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57152 10 6452 1 2025-10-23 18:33:51.279 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46746 10 6452 1 2025-10-23 18:34:51.682 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34916 10 6452 1 2025-10-23 18:31:48.813 00:05:00.345 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 18:35:52.054 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51554 10 6452 1 2025-10-23 18:36:55.388 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 18:36:55.385 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 18:36:55.316 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 18:36:55.243 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 18:36:55.470 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 18:36:52.462 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34434 10 6452 1 2025-10-23 18:37:52.860 00:00:10.411 TCP 1.101.0.1:3000 -> 23.104.0.1:49440 10 6452 1 2025-10-23 18:34:48.815 00:05:00.340 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 18:38:53.307 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59712 10 6452 1 2025-10-23 18:39:53.708 00:00:10.461 TCP 1.101.0.1:3000 -> 23.104.0.1:41488 12 10375 1 2025-10-23 18:40:54.213 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:34942 10 6452 1 2025-10-23 18:37:48.815 00:05:00.345 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 18:41:56.024 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 18:41:55.971 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 18:41:56.090 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 18:41:55.182 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 18:41:55.941 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 18:41:54.644 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:58444 10 6452 1 2025-10-23 18:42:55.013 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:40318 10 6452 1 2025-10-23 18:43:55.383 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49516 10 6452 1 2025-10-23 18:40:48.818 00:05:00.339 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 18:44:55.790 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:51672 10 6452 1 2025-10-23 18:45:56.148 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35146 10 6452 1 2025-10-23 18:46:55.405 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 18:46:55.435 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 18:46:55.479 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 18:46:55.494 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 18:46:55.562 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 18:46:56.552 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41716 10 6452 1 2025-10-23 18:43:48.815 00:05:00.344 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 18:47:56.954 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35906 10 6452 1 2025-10-23 18:48:57.361 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59836 10 6452 1 2025-10-23 18:49:57.762 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:55678 10 6452 1 2025-10-23 18:46:48.818 00:05:00.340 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 18:50:58.178 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48994 10 6452 1 2025-10-23 18:51:55.688 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 18:51:55.545 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 18:51:55.677 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 18:51:55.682 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 18:51:55.604 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 18:51:58.581 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:49218 11 6504 1 2025-10-23 18:52:58.998 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53710 10 6452 1 2025-10-23 18:49:48.821 00:05:00.340 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 18:53:59.405 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54116 10 6452 1 2025-10-23 18:54:59.809 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57044 10 6452 1 2025-10-23 18:56:00.212 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57618 10 6452 1 2025-10-23 18:52:48.824 00:05:00.336 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 18:56:55.567 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 18:56:55.752 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 18:56:55.857 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 18:56:55.595 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 18:56:55.486 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 18:57:00.610 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33098 10 6452 1 2025-10-23 18:58:01.011 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60858 10 6452 1 Summary: total flows: 139, total bytes: 418440, total packets: 1015, avg bps: 894, avg pps: 0, avg bpp: 412 Time window: 2025-10-23 17:55:48 - 2025-10-23 18:58:11 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0040s User: 0.0020s Wall: 0.0027s flows/second: 50842.3 Runtime: 0.0028s