Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-11 05:59:02.190 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33746 10 6452 1 2025-10-11 05:54:42.443 00:06:00.409 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-11 06:00:02.599 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54298 10 6452 1 2025-10-11 06:00:53.659 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 06:00:53.464 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 06:00:53.384 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 06:00:53.615 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 06:00:53.467 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 06:01:03.007 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55318 10 6452 1 2025-10-11 06:02:03.405 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:35058 10 6452 1 2025-10-11 06:03:03.805 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:45646 10 6452 1 2025-10-11 06:04:04.172 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53350 10 6452 1 2025-10-11 05:59:42.448 00:06:00.405 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-11 06:05:04.571 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58994 10 6452 1 2025-10-11 06:05:53.626 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 06:05:53.358 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 06:05:53.679 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 06:05:53.545 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 06:05:53.761 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 06:06:04.987 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44634 10 6452 1 2025-10-11 06:01:42.445 00:06:00.409 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-11 06:07:05.391 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51746 10 6452 1 2025-10-11 06:08:05.793 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52810 10 6452 1 2025-10-11 06:09:06.200 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:49196 10 6452 1 2025-10-11 06:10:06.594 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59506 10 6452 1 2025-10-11 06:10:53.864 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 06:10:53.432 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 06:10:53.781 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 06:10:53.646 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 06:10:53.860 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 06:11:07.002 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:55900 10 6452 1 2025-10-11 06:06:42.449 00:06:00.404 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-11 06:12:07.401 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53314 10 6452 1 2025-10-11 06:13:07.809 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:59484 10 6452 1 2025-10-11 06:08:42.447 00:06:00.411 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-11 06:14:08.181 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41308 10 6452 1 2025-10-11 06:15:08.537 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37806 10 6452 1 2025-10-11 06:15:53.770 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 06:15:53.790 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 06:15:53.874 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 06:15:53.765 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 06:15:53.957 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 06:16:08.936 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:40410 10 6452 1 2025-10-11 06:17:09.362 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40942 10 6452 1 2025-10-11 06:18:09.763 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:33808 10 6452 1 2025-10-11 06:13:42.453 00:06:00.406 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-11 06:19:10.186 00:00:10.497 TCP 1.101.0.1:3000 -> 23.104.0.1:47324 10 6452 1 2025-10-11 06:20:10.744 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:40210 10 6452 1 2025-10-11 06:15:42.452 00:06:00.409 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-11 06:20:53.779 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 06:20:53.799 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 06:20:53.935 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 06:20:53.841 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 06:20:54.019 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 06:21:11.192 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44080 10 6452 1 2025-10-11 06:22:11.593 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38128 10 6452 1 2025-10-11 06:23:11.997 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53634 10 6452 1 2025-10-11 06:24:12.404 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42908 10 6452 1 2025-10-11 06:25:12.814 00:00:13.529 TCP 1.101.0.1:3000 -> 23.104.0.1:52822 10 6452 1 2025-10-11 06:20:42.459 00:06:00.402 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-11 06:25:54.234 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 06:25:54.049 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 06:25:54.062 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 06:25:54.152 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 06:25:54.170 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 06:26:16.383 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38248 10 6452 1 2025-10-11 06:27:16.784 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51830 10 6452 1 2025-10-11 06:22:42.457 00:06:00.405 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-11 06:28:17.196 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41696 10 6452 1 2025-10-11 06:29:17.603 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50418 10 6452 1 2025-10-11 06:30:18.007 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34736 10 6452 1 2025-10-11 06:30:54.259 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 06:30:54.058 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 06:30:54.177 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 06:30:54.176 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 06:30:54.262 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 06:31:18.419 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59610 10 6452 1 2025-10-11 06:32:18.824 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52302 10 6452 1 2025-10-11 06:27:42.460 00:06:00.400 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-11 06:33:19.223 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55924 10 6452 1 2025-10-11 06:34:19.625 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:60754 10 6452 1 2025-10-11 06:29:42.458 00:06:00.405 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-11 06:35:19.985 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35510 10 6452 1 2025-10-11 06:35:54.453 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 06:35:54.327 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 06:35:54.193 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 06:35:54.372 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 06:35:54.097 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 06:36:20.390 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60032 10 6452 1 2025-10-11 06:37:20.796 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47620 10 6452 1 2025-10-11 06:38:21.196 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37020 10 6452 1 2025-10-11 06:39:21.603 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:32810 10 6452 1 2025-10-11 06:34:42.461 00:06:00.401 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-11 06:40:22.003 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34854 10 6452 1 2025-10-11 06:40:54.375 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 06:40:54.285 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 06:40:54.052 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 06:40:54.325 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 06:40:54.135 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 06:41:22.402 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51026 10 6452 1 2025-10-11 06:36:42.459 00:06:00.407 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-11 06:42:22.778 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34718 10 6452 1 2025-10-11 06:43:23.195 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47138 10 6452 1 2025-10-11 06:44:23.590 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:55008 10 6452 1 2025-10-11 06:45:23.952 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:48542 10 6452 1 2025-10-11 06:45:54.740 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 06:45:54.582 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 06:45:54.984 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 06:45:54.977 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 06:45:55.066 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 06:46:24.318 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:55262 10 6452 1 2025-10-11 06:41:42.462 00:06:00.403 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-11 06:47:24.788 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:54080 10 6452 1 2025-10-11 06:48:25.213 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:35228 10 6452 1 2025-10-11 06:43:42.461 00:06:00.408 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-11 06:49:25.627 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59564 10 6452 1 2025-10-11 06:50:26.030 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60334 10 6452 1 2025-10-11 06:50:54.621 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 06:50:54.565 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 06:50:54.291 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 06:50:54.621 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 06:50:54.374 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 06:51:26.451 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59904 10 6452 1 2025-10-11 06:52:26.853 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:47696 10 6452 1 2025-10-11 06:53:27.281 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48354 10 6452 1 2025-10-11 06:48:42.465 00:06:00.402 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-11 06:54:27.687 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55978 10 6452 1 2025-10-11 06:55:28.110 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:34060 10 6452 1 2025-10-11 06:50:42.463 00:06:00.407 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-11 06:55:54.597 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 06:55:54.439 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 06:55:54.489 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 06:55:54.797 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 06:55:54.572 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 06:56:28.515 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37524 10 6452 1 2025-10-11 06:57:28.919 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:51212 10 6452 1 2025-10-11 06:58:29.348 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42234 10 6452 1 Summary: total flows: 137, total bytes: 416877, total packets: 1018, avg bps: 869, avg pps: 0, avg bpp: 409 Time window: 2025-10-11 05:54:42 - 2025-10-11 06:58:39 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0018s User: 0.0027s Wall: 0.0021s flows/second: 66668.9 Runtime: 0.0021s