Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-04 05:55:38.924 00:05:00.382 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 05:59:37.177 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:60980 10 6452 1 2025-10-04 06:00:37.545 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38394 10 6452 1 2025-10-04 06:01:37.959 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45312 10 6452 1 2025-10-04 06:02:31.623 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 06:02:31.594 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 06:02:31.526 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:02:31.539 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:02:31.636 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 06:02:38.322 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56436 10 6452 1 2025-10-04 05:59:38.928 00:05:00.377 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 06:03:38.733 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34680 10 6452 1 2025-10-04 06:04:39.133 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51428 10 6452 1 2025-10-04 06:01:38.926 00:05:00.381 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 06:05:39.529 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55186 10 6452 1 2025-10-04 06:06:39.932 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:40296 10 6452 1 2025-10-04 06:07:31.845 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 06:07:31.750 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 06:07:31.446 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:07:31.762 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:07:31.437 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 06:07:40.348 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50322 10 6452 1 2025-10-04 06:08:40.749 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42108 10 6452 1 2025-10-04 06:05:38.929 00:05:00.377 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 06:09:41.114 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53546 10 6452 1 2025-10-04 06:10:41.521 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:39368 10 6452 1 2025-10-04 06:07:38.926 00:05:00.382 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 06:11:41.897 00:00:10.771 TCP 1.101.0.1:3000 -> 23.104.0.1:56844 12 6556 1 2025-10-04 06:12:31.886 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 06:12:31.663 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:12:31.723 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:12:31.721 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 06:12:31.808 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 06:12:42.709 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40560 10 6452 1 2025-10-04 06:13:43.111 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55254 10 6452 1 2025-10-04 06:14:43.516 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59976 10 6452 1 2025-10-04 06:11:38.928 00:05:00.378 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 06:15:43.926 00:00:11.764 TCP 1.101.0.1:3000 -> 23.104.0.1:48674 10 6452 1 2025-10-04 06:16:45.761 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:47480 10 6452 1 2025-10-04 06:17:31.911 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 06:17:31.736 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 06:17:31.798 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:17:31.830 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:17:31.911 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 06:13:38.928 00:05:00.381 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 06:17:46.185 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:59744 10 6452 1 2025-10-04 06:18:46.550 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58446 10 6452 1 2025-10-04 06:19:46.958 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36300 10 6452 1 2025-10-04 06:20:47.361 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60316 10 6452 1 2025-10-04 06:17:38.934 00:05:00.377 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 06:21:47.767 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54206 10 6452 1 2025-10-04 06:22:31.955 00:00:00.033 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 06:22:31.917 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 06:22:31.985 00:00:00.078 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:22:31.873 00:00:00.033 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:22:31.879 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 06:22:48.150 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:55584 10 6452 1 2025-10-04 06:19:38.930 00:05:00.383 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 06:23:48.514 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33506 10 6452 1 2025-10-04 06:24:48.920 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56328 10 6452 1 2025-10-04 06:25:49.320 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47280 10 6452 1 2025-10-04 06:26:49.721 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40074 10 6452 1 2025-10-04 06:27:31.966 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 06:27:32.149 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:27:32.154 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:27:32.135 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 06:27:32.238 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 06:23:38.935 00:05:00.379 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 06:27:50.136 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:37712 10 6452 1 2025-10-04 06:28:50.536 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45562 10 6452 1 2025-10-04 06:25:38.932 00:05:00.383 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 06:29:50.937 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:45392 10 6452 1 2025-10-04 06:30:51.354 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52606 10 6452 1 2025-10-04 06:31:51.754 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:60028 10 6452 1 2025-10-04 06:32:33.387 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 06:32:33.384 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:32:33.546 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:32:33.460 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 06:32:33.628 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 06:32:52.134 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37516 10 6452 1 2025-10-04 06:29:38.935 00:05:00.379 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 06:33:52.536 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:60426 10 6452 1 2025-10-04 06:34:52.914 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53796 10 6452 1 2025-10-04 06:31:38.932 00:05:00.386 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 06:35:53.315 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42014 10 6452 1 2025-10-04 06:36:53.726 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37630 10 6452 1 2025-10-04 06:37:32.307 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 06:37:32.137 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:37:32.190 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:37:32.306 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 06:37:32.272 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 06:37:54.133 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59046 10 6452 1 2025-10-04 06:38:54.537 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57030 10 6452 1 2025-10-04 06:35:38.938 00:05:00.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 06:39:54.902 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:57564 10 6452 1 2025-10-04 06:40:55.274 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:33256 10 6452 1 2025-10-04 06:37:38.937 00:05:00.384 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 06:41:55.635 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:50716 10 6452 1 2025-10-04 06:42:32.475 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 06:42:32.516 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 06:42:32.274 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:42:32.393 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:42:32.389 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 06:42:55.993 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49950 10 6452 1 2025-10-04 06:43:56.400 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35206 10 6452 1 2025-10-04 06:44:56.802 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54474 10 6452 1 2025-10-04 06:41:38.941 00:05:00.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 06:45:57.207 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57830 10 6452 1 2025-10-04 06:46:57.605 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:33330 10 6452 1 2025-10-04 06:47:31.723 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 06:47:31.642 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 06:47:31.564 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:47:31.640 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:47:31.658 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 06:43:38.938 00:05:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 06:47:58.040 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:51486 10 6452 1 2025-10-04 06:48:58.443 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53290 10 6452 1 2025-10-04 06:49:58.807 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52632 10 6452 1 2025-10-04 06:50:59.214 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35646 10 6452 1 2025-10-04 06:47:38.945 00:05:00.381 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 06:51:59.622 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52258 10 6452 1 2025-10-04 06:52:32.361 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:52:32.501 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:52:32.608 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 06:52:32.507 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 06:52:32.583 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 06:53:00.029 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54148 10 6452 1 2025-10-04 06:49:38.942 00:05:00.386 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 06:54:00.436 00:00:10.408 TCP 1.101.0.1:3000 -> 23.104.0.1:57324 11 6504 1 2025-10-04 06:55:00.883 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:37470 12 6556 1 2025-10-04 06:56:01.313 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:60424 10 6452 1 2025-10-04 06:57:01.678 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53460 10 6452 1 2025-10-04 06:57:32.533 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:57:32.567 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:57:32.574 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 06:57:32.570 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 06:57:32.650 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 06:53:38.946 00:05:00.381 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 06:58:02.110 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41650 10 6452 1 Summary: total flows: 139, total bytes: 410808, total packets: 1015, avg bps: 869, avg pps: 0, avg bpp: 404 Time window: 2025-10-04 05:55:38 - 2025-10-04 06:58:39 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0029s User: 0.0019s Wall: 0.0020s flows/second: 68100.5 Runtime: 0.0021s