Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-12 02:59:36.473 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50310 10 6452 1 2025-10-12 03:00:36.879 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:32968 10 6452 1 2025-10-12 03:01:18.899 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 03:01:18.901 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 03:01:18.599 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:01:18.817 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:01:18.897 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 03:01:37.281 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:55690 10 6452 1 2025-10-12 02:58:42.838 00:05:00.479 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 03:02:37.642 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57078 10 6452 1 2025-10-12 03:03:38.050 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:58756 10 6452 1 2025-10-12 03:00:42.836 00:05:00.483 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 03:04:38.456 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38620 10 6452 1 2025-10-12 03:05:38.822 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59770 10 6452 1 2025-10-12 03:06:19.054 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 03:06:18.886 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:06:18.917 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:06:18.975 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 03:06:19.000 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 03:06:39.228 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46278 10 6452 1 2025-10-12 03:07:39.636 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55518 10 6452 1 2025-10-12 03:04:42.840 00:05:00.478 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 03:08:40.042 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57674 10 6452 1 2025-10-12 03:09:40.442 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49352 10 6452 1 2025-10-12 03:06:42.838 00:05:00.484 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 03:10:40.847 00:00:10.409 TCP 1.101.0.1:3000 -> 23.104.0.1:41652 12 10375 1 2025-10-12 03:11:19.074 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 03:11:19.015 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:11:18.995 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:11:18.898 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 03:11:19.078 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 03:11:41.297 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60988 10 6452 1 2025-10-12 03:12:41.700 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:55746 10 6452 1 2025-10-12 03:13:42.111 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42910 10 6452 1 2025-10-12 03:10:42.843 00:05:00.478 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 03:14:42.515 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:55476 10 6452 1 2025-10-12 03:15:42.935 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:40034 10 6452 1 2025-10-12 03:16:18.941 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 03:16:19.162 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:16:18.942 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:16:19.123 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 03:16:19.026 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 03:12:42.840 00:05:00.482 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 03:16:43.299 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:41976 10 6452 1 2025-10-12 03:17:43.661 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:48656 10 6452 1 2025-10-12 03:18:44.028 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41090 10 6452 1 2025-10-12 03:19:44.437 00:00:10.458 TCP 1.101.0.1:3000 -> 23.104.0.1:52890 10 6452 1 2025-10-12 03:16:42.844 00:05:00.479 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 03:20:44.935 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:50632 10 6452 1 2025-10-12 03:21:19.372 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 03:21:19.338 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 03:21:19.167 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:21:19.290 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:21:19.226 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 03:21:45.354 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38244 10 6452 1 2025-10-12 03:18:42.841 00:05:00.484 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 03:22:45.715 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60574 10 6452 1 2025-10-12 03:23:46.105 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56088 10 6452 1 2025-10-12 03:24:46.468 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35638 10 6452 1 2025-10-12 03:25:46.879 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:43344 10 6452 1 2025-10-12 03:26:19.472 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 03:26:19.419 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:26:19.542 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:26:19.540 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 03:26:19.624 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 03:22:42.844 00:05:00.478 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 03:26:47.277 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39192 10 6452 1 2025-10-12 03:27:47.680 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45754 10 6452 1 2025-10-12 03:24:42.842 00:05:00.486 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 03:28:48.106 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36734 10 6452 1 2025-10-12 03:29:48.509 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39802 10 6452 1 2025-10-12 03:30:48.919 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41686 10 6452 1 2025-10-12 03:31:19.580 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 03:31:19.501 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 03:31:19.322 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:31:19.496 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:31:19.504 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 03:31:49.321 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54036 10 6452 1 2025-10-12 03:28:42.845 00:05:00.481 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 03:32:49.737 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52260 10 6452 1 2025-10-12 03:33:50.145 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:50792 10 6452 1 2025-10-12 03:30:42.843 00:05:00.487 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 03:34:50.514 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54906 10 6452 1 2025-10-12 03:35:50.914 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44276 10 6452 1 2025-10-12 03:36:19.880 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 03:36:19.673 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:36:19.848 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:36:19.795 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 03:36:19.931 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 03:36:51.319 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56288 10 6452 1 2025-10-12 03:37:51.726 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:47580 10 6452 1 2025-10-12 03:34:42.846 00:05:00.483 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 03:38:52.135 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43796 10 6452 1 2025-10-12 03:39:52.537 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38668 10 6452 1 2025-10-12 03:36:42.844 00:05:00.487 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 03:40:52.951 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:56554 10 6452 1 2025-10-12 03:41:19.814 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 03:41:19.393 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:41:19.721 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:41:19.589 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 03:41:19.804 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 03:41:53.356 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36498 10 6452 1 2025-10-12 03:42:53.770 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:33308 10 6452 1 2025-10-12 03:43:54.194 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57526 10 6452 1 2025-10-12 03:40:42.848 00:05:00.483 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 03:44:54.558 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45564 10 6452 1 2025-10-12 03:45:54.966 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48784 10 6452 1 2025-10-12 03:46:19.701 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:46:19.652 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:46:19.749 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 03:46:19.650 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 03:46:19.735 00:00:00.030 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 03:42:42.845 00:05:00.487 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 03:46:55.370 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40544 10 6452 1 2025-10-12 03:47:55.773 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55982 10 6452 1 2025-10-12 03:48:56.138 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50946 10 6452 1 2025-10-12 03:49:56.539 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52244 10 6452 1 2025-10-12 03:46:42.850 00:05:00.482 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 03:50:56.942 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:34424 10 6452 1 2025-10-12 03:51:19.793 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 03:51:19.695 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:51:19.839 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:51:19.793 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 03:51:19.921 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 03:51:57.319 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36466 10 6452 1 2025-10-12 03:48:42.848 00:05:00.488 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 03:52:57.688 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58744 10 6452 1 2025-10-12 03:53:58.104 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51690 10 6452 1 2025-10-12 03:54:58.506 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46398 10 6452 1 2025-10-12 03:55:58.938 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57624 10 6452 1 2025-10-12 03:56:20.166 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 03:56:19.987 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 03:56:19.795 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:56:20.083 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:56:19.992 00:00:00.039 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 03:52:42.852 00:05:00.482 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 03:56:59.354 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40306 10 6452 1 2025-10-12 03:57:59.759 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:47436 10 6452 1 2025-10-12 03:54:42.850 00:05:00.487 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 Summary: total flows: 139, total bytes: 414471, total packets: 1012, avg bps: 905, avg pps: 0, avg bpp: 409 Time window: 2025-10-12 02:58:42 - 2025-10-12 03:59:43 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0028s User: 0.0028s Wall: 0.0029s flows/second: 48162.6 Runtime: 0.0029s