Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-20 11:59:20.765 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:54506 10 6661 1 2025-10-20 11:54:47.177 00:06:00.271 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 12:00:20.749 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 12:00:21.075 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 12:00:21.129 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 12:00:21.124 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 12:00:21.212 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 12:00:21.178 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59542 10 6661 1 2025-10-20 12:01:21.578 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35946 10 6661 1 2025-10-20 11:56:47.175 00:06:00.276 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 12:02:21.978 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:38814 10 6661 1 2025-10-20 12:03:22.403 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55056 10 6661 1 2025-10-20 12:04:22.801 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44150 12 6765 1 2025-10-20 12:05:20.957 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 12:05:20.731 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 12:05:20.894 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 12:05:20.814 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 12:05:20.977 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 12:05:23.210 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46094 10 6661 1 2025-10-20 12:06:23.574 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52042 10 6661 1 2025-10-20 12:01:47.180 00:06:00.271 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 12:07:23.933 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:39980 10 6661 1 2025-10-20 12:08:24.349 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46168 10 6661 1 2025-10-20 12:03:47.176 00:06:00.277 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 12:09:24.715 00:00:10.560 TCP 1.101.0.1:3000 -> 23.104.0.1:45404 11 6713 1 2025-10-20 12:10:20.959 00:00:00.031 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 12:10:21.277 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 12:10:21.055 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 12:10:21.194 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 12:10:21.232 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 12:10:25.318 00:00:10.720 TCP 1.101.0.1:3000 -> 23.104.0.1:59064 10 6661 1 2025-10-20 12:11:26.104 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:58808 10 6661 1 2025-10-20 12:12:26.468 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50404 10 6661 1 2025-10-20 12:13:26.873 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50468 10 6661 1 2025-10-20 12:08:47.182 00:06:00.271 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 12:14:27.280 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40212 10 6661 1 2025-10-20 12:15:20.893 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 12:15:20.951 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 12:15:21.031 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 12:15:21.056 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 12:15:21.042 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 12:15:27.688 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40518 10 6661 1 2025-10-20 12:10:47.181 00:06:00.274 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 12:16:28.053 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:42604 10 6661 1 2025-10-20 12:17:28.420 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44706 10 6661 1 2025-10-20 12:18:28.824 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34280 10 6661 1 2025-10-20 12:19:29.227 00:00:10.970 TCP 1.101.0.1:3000 -> 23.104.0.1:49384 10 6661 1 2025-10-20 12:20:20.853 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 12:20:21.176 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 12:20:21.113 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 12:20:21.172 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 12:20:21.195 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 12:20:30.251 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41380 10 6661 1 2025-10-20 12:15:47.183 00:06:00.270 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 12:21:30.663 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52592 10 6661 1 2025-10-20 12:22:31.102 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45284 10 6661 1 2025-10-20 12:17:47.181 00:06:00.276 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 12:23:31.472 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35410 10 6661 1 2025-10-20 12:24:31.883 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35138 10 6661 1 2025-10-20 12:25:21.304 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 12:25:21.236 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 12:25:21.301 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 12:25:21.243 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 12:25:21.385 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 12:25:32.290 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49092 10 6661 1 2025-10-20 12:26:32.687 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55524 10 6661 1 2025-10-20 12:27:33.103 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41222 10 6661 1 2025-10-20 12:22:47.185 00:06:00.273 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 12:28:33.503 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:42870 12 10375 1 2025-10-20 12:29:33.981 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34506 10 6452 1 2025-10-20 12:24:47.181 00:06:00.279 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 12:30:21.317 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 12:30:21.366 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 12:30:21.443 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 12:30:21.314 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 12:30:21.525 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 12:30:34.395 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:48196 10 6452 1 2025-10-20 12:31:34.756 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:41126 10 6452 1 2025-10-20 12:32:35.131 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:57790 10 6452 1 2025-10-20 12:33:35.500 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53982 10 6452 1 2025-10-20 12:34:35.922 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:41890 10 6452 1 2025-10-20 12:29:47.184 00:06:00.274 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 12:35:21.587 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 12:35:21.180 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 12:35:21.507 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 12:35:21.504 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 12:35:21.456 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 12:35:36.331 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58570 10 6452 1 2025-10-20 12:36:36.737 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35722 10 6452 1 2025-10-20 12:31:47.183 00:06:00.279 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 12:37:37.139 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43102 10 6452 1 2025-10-20 12:38:37.541 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:40590 10 6452 1 2025-10-20 12:39:37.936 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:46100 10 6452 1 2025-10-20 12:40:21.534 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 12:40:21.549 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 12:40:21.469 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 12:40:21.645 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 12:40:21.551 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 12:40:38.356 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39196 10 6452 1 2025-10-20 12:41:38.762 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:47918 10 6452 1 2025-10-20 12:36:47.199 00:06:00.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 12:42:39.148 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:42354 10 6452 1 2025-10-20 12:38:47.198 00:06:00.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 12:43:39.512 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56076 10 6452 1 2025-10-20 12:44:39.916 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:32848 10 6452 1 2025-10-20 12:45:21.708 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 12:45:21.630 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 12:45:21.430 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 12:45:21.625 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 12:45:21.349 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 12:45:40.317 00:00:10.504 TCP 1.101.0.1:3000 -> 23.104.0.1:49594 10 6452 1 2025-10-20 12:46:40.865 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:55332 10 6452 1 2025-10-20 12:47:41.284 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43788 10 6452 1 2025-10-20 12:43:47.202 00:06:00.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 12:48:41.696 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53322 10 6452 1 2025-10-20 12:49:42.104 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49660 10 6452 1 2025-10-20 12:50:21.883 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 12:50:21.751 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 12:50:21.908 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 12:50:21.828 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 12:50:21.832 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 12:45:47.201 00:06:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 12:50:42.519 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49690 10 6452 1 2025-10-20 12:51:42.925 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:48376 10 6452 1 2025-10-20 12:52:43.339 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:45770 10 6452 1 2025-10-20 12:53:43.707 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48324 10 6452 1 2025-10-20 12:54:44.110 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58376 10 6452 1 2025-10-20 12:55:21.653 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 12:55:21.701 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 12:55:21.879 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 12:55:21.889 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 12:55:21.962 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 12:50:47.205 00:06:00.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 12:55:44.515 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52788 10 6452 1 2025-10-20 12:56:44.924 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:49882 10 6452 1 2025-10-20 12:52:47.204 00:06:00.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 12:57:45.338 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44448 10 6452 1 Summary: total flows: 137, total bytes: 421426, total packets: 1027, avg bps: 877, avg pps: 0, avg bpp: 410 Time window: 2025-10-20 11:54:47 - 2025-10-20 12:58:47 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0036s User: 0.0018s Wall: 0.0024s flows/second: 57733.3 Runtime: 0.0024s