Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-18 08:58:42.818 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48512 10 6452 1 2025-10-18 08:59:19.402 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 08:59:19.455 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 08:59:19.233 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 08:59:19.319 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 08:59:19.319 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 08:59:43.221 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37432 10 6452 1 2025-10-18 08:55:46.142 00:06:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 09:00:43.631 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53618 10 6452 1 2025-10-18 09:01:43.994 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50004 10 6452 1 2025-10-18 09:02:44.411 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:51286 10 6452 1 2025-10-18 09:03:44.822 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60826 10 6452 1 2025-10-18 09:04:19.378 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 09:04:19.304 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 09:04:19.489 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 09:04:19.483 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 09:04:19.572 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 08:59:46.145 00:06:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 09:04:45.233 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:44092 10 6452 1 2025-10-18 09:05:45.654 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52678 10 6452 1 2025-10-18 09:06:46.068 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:53090 10 6452 1 2025-10-18 09:02:46.144 00:06:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 09:07:46.494 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:41234 11 6504 1 2025-10-18 09:08:46.917 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36332 10 6452 1 2025-10-18 09:09:19.679 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 09:09:19.782 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 09:09:19.832 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 09:09:20.049 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 09:09:19.915 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 09:09:47.336 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39064 10 6452 1 2025-10-18 09:10:47.762 00:00:10.790 TCP 1.101.0.1:3000 -> 23.104.0.1:57362 10 6452 1 2025-10-18 09:06:46.148 00:06:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 09:11:48.591 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39842 10 6452 1 2025-10-18 09:12:48.992 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33600 10 6452 1 2025-10-18 09:13:49.400 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51798 10 6452 1 2025-10-18 09:14:19.645 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 09:14:19.710 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 09:14:19.557 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 09:14:19.562 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 09:14:19.689 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 09:09:46.146 00:06:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 09:14:49.806 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:60560 10 6452 1 2025-10-18 09:15:50.183 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:42626 10 6452 1 2025-10-18 09:16:50.549 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:44976 10 6452 1 2025-10-18 09:17:50.903 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:42422 10 6452 1 2025-10-18 09:13:46.151 00:06:00.278 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 09:18:51.270 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34660 10 6452 1 2025-10-18 09:19:19.902 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 09:19:19.657 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 09:19:19.598 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 09:19:19.819 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 09:19:19.741 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 09:19:51.674 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44840 10 6452 1 2025-10-18 09:20:52.094 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46368 10 6452 1 2025-10-18 09:16:46.150 00:06:00.283 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 09:21:52.497 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:56712 10 6452 1 2025-10-18 09:22:52.858 00:00:10.753 TCP 1.101.0.1:3000 -> 23.104.0.1:39460 10 6452 1 2025-10-18 09:23:53.652 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56286 10 6452 1 2025-10-18 09:24:19.872 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 09:24:19.786 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 09:24:19.927 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 09:24:19.921 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 09:24:20.011 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 09:24:54.068 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55274 10 6452 1 2025-10-18 09:20:46.153 00:06:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 09:25:54.436 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49188 10 6452 1 2025-10-18 09:26:54.834 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51866 10 6452 1 2025-10-18 09:27:55.230 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50724 10 6452 1 2025-10-18 09:23:46.150 00:06:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 09:28:55.632 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34214 10 6452 1 2025-10-18 09:29:19.980 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 09:29:19.821 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 09:29:19.861 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 09:29:19.898 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 09:29:19.908 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 09:29:55.995 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:39296 10 6452 1 2025-10-18 09:30:56.367 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52968 10 6452 1 2025-10-18 09:31:56.769 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39200 10 6452 1 2025-10-18 09:27:46.154 00:06:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 09:32:57.180 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49602 10 6452 1 2025-10-18 09:33:57.588 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:54110 10 6452 1 2025-10-18 09:34:20.320 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 09:34:20.378 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 09:34:20.371 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 09:34:20.237 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 09:34:20.327 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 09:34:57.953 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:51668 10 6452 1 2025-10-18 09:30:46.151 00:06:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 09:35:58.320 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33840 10 6452 1 2025-10-18 09:36:58.719 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:35226 10 6452 1 2025-10-18 09:37:59.138 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60470 10 6452 1 2025-10-18 09:38:59.538 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48642 10 6452 1 2025-10-18 09:39:20.283 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 09:39:20.204 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 09:39:20.062 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 09:39:20.202 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 09:39:20.116 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 09:34:46.157 00:06:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 09:39:59.942 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:47418 10 6452 1 2025-10-18 09:41:00.323 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36532 10 6452 1 2025-10-18 09:42:00.732 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41776 10 6452 1 2025-10-18 09:37:46.153 00:06:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 09:43:01.146 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49246 10 6452 1 2025-10-18 09:44:01.556 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59454 10 6452 1 2025-10-18 09:44:20.365 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 09:44:20.161 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 09:44:20.189 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 09:44:20.282 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 09:44:20.237 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 09:45:01.957 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:60410 10 6452 1 2025-10-18 09:46:02.328 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36946 10 6452 1 2025-10-18 09:41:46.156 00:06:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 09:47:02.734 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47096 10 6452 1 2025-10-18 09:48:03.141 00:00:11.178 TCP 1.101.0.1:3000 -> 23.104.0.1:37844 10 6452 1 2025-10-18 09:49:04.357 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52694 10 6452 1 2025-10-18 09:49:20.412 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 09:49:20.147 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 09:49:20.413 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 09:49:20.365 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 09:49:20.495 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 09:44:46.153 00:06:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 09:50:04.756 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:44412 10 6452 1 2025-10-18 09:51:05.179 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42880 10 6452 1 2025-10-18 09:52:05.586 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:45628 10 6452 1 2025-10-18 09:53:05.947 00:00:10.452 TCP 1.101.0.1:3000 -> 23.104.0.1:58630 13 13955 1 2025-10-18 09:48:46.156 00:06:00.282 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 09:54:20.634 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 09:54:06.438 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39696 10 6452 1 2025-10-18 09:54:20.397 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 09:54:20.357 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 09:54:20.551 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 09:54:20.466 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 09:55:06.846 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:43550 10 6452 1 2025-10-18 09:56:07.226 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60102 10 6452 1 2025-10-18 09:51:46.154 00:06:00.287 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 09:57:07.630 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:57282 10 6452 1 2025-10-18 09:58:07.992 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51364 10 6452 1 Summary: total flows: 137, total bytes: 424432, total packets: 1022, avg bps: 904, avg pps: 0, avg bpp: 415 Time window: 2025-10-18 08:55:46 - 2025-10-18 09:58:18 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0050s User: 0.0010s Wall: 0.0020s flows/second: 69786.2 Runtime: 0.0020s