Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-09 19:59:02.100 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52474 10 6452 1 2025-10-09 19:55:41.785 00:05:00.399 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 20:00:12.695 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 20:00:12.635 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 20:00:12.693 00:00:00.029 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 20:00:12.592 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 20:00:02.474 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47950 10 6452 1 2025-10-09 20:00:12.777 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 20:01:02.877 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55784 10 6452 1 2025-10-09 20:02:03.287 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49926 10 6452 1 2025-10-09 19:58:41.790 00:05:00.391 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 20:03:03.686 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:47438 10 6452 1 2025-10-09 20:04:04.053 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60668 10 6452 1 2025-10-09 20:05:12.953 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 20:05:12.671 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 20:05:12.748 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 20:05:04.456 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60476 10 6452 1 2025-10-09 20:05:12.869 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 20:05:12.778 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 20:01:41.791 00:05:00.394 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 20:06:04.860 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:37348 10 6452 1 2025-10-09 20:07:05.274 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43804 10 6452 1 2025-10-09 20:08:05.677 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36990 10 6452 1 2025-10-09 20:04:41.794 00:05:00.390 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 20:09:06.112 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41330 10 6452 1 2025-10-09 20:10:13.007 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 20:10:12.972 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 20:10:12.798 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 20:10:12.923 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 20:10:12.867 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 20:10:06.516 00:00:10.490 TCP 1.101.0.1:3000 -> 23.104.0.1:52070 13 10421 1 2025-10-09 20:11:07.059 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55216 10 6452 1 2025-10-09 20:07:41.793 00:05:00.394 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 20:12:07.466 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52342 10 6452 1 2025-10-09 20:13:07.873 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55458 10 6452 1 2025-10-09 20:14:08.281 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55278 10 6452 1 2025-10-09 20:10:41.796 00:05:00.388 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 20:15:12.975 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 20:15:12.836 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 20:15:12.762 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 20:15:12.894 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 20:15:12.895 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 20:15:08.698 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57328 10 6452 1 2025-10-09 20:16:09.112 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:36668 10 6452 1 2025-10-09 20:17:09.482 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41278 10 6452 1 2025-10-09 20:13:41.795 00:05:00.394 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 20:18:09.884 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:57322 10 6452 1 2025-10-09 20:19:10.311 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:44052 10 6452 1 2025-10-09 20:20:13.703 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 20:20:13.576 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 20:20:13.376 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 20:20:13.622 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 20:20:13.439 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 20:20:10.676 00:00:10.460 TCP 1.101.0.1:3000 -> 23.104.0.1:56314 10 6452 1 2025-10-09 20:16:41.799 00:05:00.389 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 20:21:11.201 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58986 10 6452 1 2025-10-09 20:22:11.610 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38228 10 6452 1 2025-10-09 20:23:12.010 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34798 10 6452 1 2025-10-09 20:19:41.798 00:05:00.395 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 20:24:12.416 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41902 10 6452 1 2025-10-09 20:25:13.196 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 20:25:13.194 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 20:25:13.142 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 20:25:13.113 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 20:25:13.259 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 20:25:12.812 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38934 10 6452 1 2025-10-09 20:26:13.214 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38848 10 6452 1 2025-10-09 20:22:41.802 00:05:00.389 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 20:27:13.615 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:48376 10 6452 1 2025-10-09 20:28:13.976 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36488 10 6452 1 2025-10-09 20:29:14.387 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44680 10 6452 1 2025-10-09 20:25:41.800 00:05:00.393 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 20:30:13.412 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 20:30:13.235 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 20:30:13.096 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 20:30:13.329 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 20:30:12.948 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 20:30:14.792 00:00:10.537 TCP 1.101.0.1:3000 -> 23.104.0.1:55174 10 6452 1 2025-10-09 20:31:15.365 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54432 10 6452 1 2025-10-09 20:32:15.775 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50270 10 6452 1 2025-10-09 20:28:41.803 00:05:00.389 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 20:33:16.186 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44856 10 6452 1 2025-10-09 20:34:16.586 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54668 10 6452 1 2025-10-09 20:35:13.550 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 20:35:13.169 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 20:35:13.389 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 20:35:13.467 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 20:35:13.331 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 20:35:16.996 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:40568 12 10375 1 2025-10-09 20:31:41.803 00:05:00.392 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 20:36:17.442 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:35222 10 6452 1 2025-10-09 20:37:17.806 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40834 10 6452 1 2025-10-09 20:38:18.209 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60478 10 6452 1 2025-10-09 20:34:41.804 00:05:00.390 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 20:39:18.608 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60748 10 6452 1 2025-10-09 20:40:13.838 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 20:40:13.425 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 20:40:13.637 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 20:40:13.898 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 20:40:13.718 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 20:40:19.016 00:00:10.726 TCP 1.101.0.1:3000 -> 23.104.0.1:50552 10 6452 1 2025-10-09 20:41:19.776 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38780 10 6452 1 2025-10-09 20:37:41.802 00:05:00.397 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 20:42:20.184 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41166 10 6452 1 2025-10-09 20:43:20.588 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:32778 10 6452 1 2025-10-09 20:44:20.952 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:40880 10 6452 1 2025-10-09 20:40:41.805 00:05:00.393 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 20:45:13.699 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 20:45:13.494 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 20:45:13.596 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 20:45:13.664 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 20:45:13.678 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 20:45:21.322 00:00:10.411 TCP 1.101.0.1:3000 -> 23.104.0.1:54122 12 10375 1 2025-10-09 20:46:21.787 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47352 10 6452 1 2025-10-09 20:47:22.211 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:32826 10 6452 1 2025-10-09 20:43:41.803 00:05:00.399 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 20:48:22.621 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56254 10 6452 1 2025-10-09 20:49:23.040 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43110 10 6452 1 2025-10-09 20:50:13.756 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 20:50:13.674 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 20:50:13.672 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 20:50:13.597 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 20:50:13.507 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 20:50:23.444 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39994 10 6452 1 2025-10-09 20:46:41.807 00:05:00.395 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 20:51:23.855 00:00:10.848 TCP 1.101.0.1:3000 -> 23.104.0.1:46558 10 6452 1 2025-10-09 20:52:24.742 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46946 10 6452 1 2025-10-09 20:53:25.145 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50040 10 6452 1 2025-10-09 20:49:41.804 00:05:00.399 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 20:54:25.552 00:00:10.637 TCP 1.101.0.1:3000 -> 23.104.0.1:44348 10 6452 1 2025-10-09 20:55:13.561 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 20:55:13.392 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 20:55:13.758 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 20:55:13.757 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 20:55:13.841 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 20:55:26.224 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51608 10 6452 1 2025-10-09 20:56:26.625 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55898 10 6452 1 2025-10-09 20:52:41.808 00:05:00.395 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 20:57:27.032 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:54420 10 6452 1 2025-10-09 20:58:27.452 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60900 10 6452 1 Summary: total flows: 140, total bytes: 428815, total packets: 1027, avg bps: 908, avg pps: 0, avg bpp: 417 Time window: 2025-10-09 19:55:41 - 2025-10-09 20:58:37 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0022s User: 0.0032s Wall: 0.0017s flows/second: 81874.3 Runtime: 0.0017s