Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-22 01:59:34.187 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45356 10 6452 1 2025-10-22 02:00:34.549 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51552 10 6452 1 2025-10-22 01:56:47.992 00:05:00.317 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-22 01:56:47.990 00:05:00.322 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-22 02:01:06.486 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 02:01:06.267 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 02:01:06.321 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 02:01:06.217 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 02:01:06.403 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 02:01:34.949 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53684 10 6452 1 2025-10-22 02:02:35.366 00:00:11.349 TCP 1.101.0.1:3000 -> 23.104.0.1:38856 10 6452 1 2025-10-22 02:03:36.780 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37210 10 6452 1 2025-10-22 02:04:37.181 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51206 10 6452 1 2025-10-22 02:05:37.582 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38830 10 6452 1 2025-10-22 02:06:06.708 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 02:06:06.429 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 02:06:06.513 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 02:06:06.624 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 02:06:06.620 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 02:02:47.992 00:05:00.321 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-22 02:02:47.995 00:05:00.316 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-22 02:06:38.002 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38082 10 6452 1 2025-10-22 02:07:38.417 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42144 10 6452 1 2025-10-22 02:08:38.822 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47722 10 6452 1 2025-10-22 02:09:39.224 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59326 10 6452 1 2025-10-22 02:10:39.627 00:00:10.820 TCP 1.101.0.1:3000 -> 23.104.0.1:45388 10 6452 1 2025-10-22 02:11:06.872 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 02:11:06.658 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 02:11:06.826 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 02:11:06.525 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 02:11:06.910 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 02:11:40.504 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48366 10 6452 1 2025-10-22 02:08:47.997 00:05:00.315 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-22 02:08:47.995 00:05:00.320 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-22 02:12:40.911 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43678 10 6452 1 2025-10-22 02:13:41.275 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:44262 10 6452 1 2025-10-22 02:14:41.639 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46062 10 6452 1 2025-10-22 02:15:42.053 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50140 10 6452 1 2025-10-22 02:16:06.859 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 02:16:06.939 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 02:16:06.862 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 02:16:06.864 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 02:16:06.946 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 02:16:42.457 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36596 10 6452 1 2025-10-22 02:17:42.861 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:45448 10 6452 1 2025-10-22 02:14:47.998 00:05:00.317 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-22 02:14:47.997 00:05:00.321 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-22 02:18:43.276 00:00:10.484 TCP 1.101.0.1:3000 -> 23.104.0.1:53370 11 6504 1 2025-10-22 02:19:43.801 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46858 10 6452 1 2025-10-22 02:20:44.210 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40532 10 6452 1 2025-10-22 02:21:07.243 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 02:21:06.887 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 02:21:07.161 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 02:21:07.094 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 02:21:06.741 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 02:21:44.613 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60774 10 6452 1 2025-10-22 02:22:45.016 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43316 10 6452 1 2025-10-22 02:23:45.414 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:58086 12 10369 1 2025-10-22 02:20:47.997 00:05:00.322 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-22 02:24:45.898 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:48840 10 6452 1 2025-10-22 02:20:48.000 00:06:00.316 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 02:25:46.261 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57914 10 6452 1 2025-10-22 02:26:07.146 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 02:26:06.948 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 02:26:06.886 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 02:26:07.063 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 02:26:06.849 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 02:26:46.670 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:34782 10 6452 1 2025-10-22 02:27:47.111 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:50792 10 6452 1 2025-10-22 02:28:47.479 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:43352 10 6452 1 2025-10-22 02:29:47.845 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:42556 10 6452 1 2025-10-22 02:30:48.265 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43616 10 6452 1 2025-10-22 02:31:07.161 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 02:31:06.941 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 02:31:06.991 00:00:00.043 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 02:31:07.078 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 02:31:06.938 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 02:26:48.000 00:06:00.321 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 02:31:48.669 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46000 10 6452 1 2025-10-22 02:27:48.003 00:06:00.316 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 02:32:49.102 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41766 10 6452 1 2025-10-22 02:33:49.520 00:00:10.459 TCP 1.101.0.1:3000 -> 23.104.0.1:43508 12 10375 1 2025-10-22 02:34:50.017 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43240 10 6452 1 2025-10-22 02:35:50.420 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46584 10 6452 1 2025-10-22 02:36:07.371 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 02:36:07.250 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 02:36:06.950 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 02:36:07.288 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 02:36:06.896 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 02:36:50.825 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60106 10 6452 1 2025-10-22 02:37:51.228 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57052 10 6452 1 2025-10-22 02:33:48.000 00:06:00.323 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 02:38:51.631 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:34960 10 6452 1 2025-10-22 02:34:48.003 00:06:00.318 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 02:39:52.009 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:40028 10 6452 1 2025-10-22 02:40:52.375 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:46560 10 6452 1 2025-10-22 02:41:07.485 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 02:41:07.177 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 02:41:07.478 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 02:41:07.272 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 02:41:07.560 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 02:41:52.753 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:51236 10 6452 1 2025-10-22 02:42:53.112 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60868 10 6452 1 2025-10-22 02:43:53.518 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54714 10 6452 1 2025-10-22 02:44:53.923 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56118 10 6452 1 2025-10-22 02:40:48.001 00:06:00.323 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 02:45:54.324 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51468 10 6452 1 2025-10-22 02:46:07.912 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 02:46:07.533 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 02:46:07.528 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 02:46:07.740 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 02:46:07.612 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 02:41:48.004 00:06:00.318 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 02:46:54.735 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43474 10 6452 1 2025-10-22 02:47:55.143 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37026 10 6452 1 2025-10-22 02:48:55.547 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36190 10 6452 1 2025-10-22 02:49:55.945 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:46026 10 6452 1 2025-10-22 02:51:07.630 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 02:51:07.550 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 02:51:07.476 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 02:51:07.548 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 02:51:07.783 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 02:50:56.317 00:00:11.286 TCP 1.101.0.1:3000 -> 23.104.0.1:41734 10 6452 1 2025-10-22 02:51:57.640 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56516 10 6452 1 2025-10-22 02:47:48.033 00:06:00.296 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 02:52:58.055 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52666 10 6452 1 2025-10-22 02:48:48.038 00:06:00.289 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 02:53:58.458 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:37038 10 6452 1 2025-10-22 02:54:58.822 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:34928 10 6452 1 2025-10-22 02:55:59.216 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43828 11 6492 1 2025-10-22 02:56:07.661 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 02:56:07.785 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 02:56:07.665 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 02:56:07.590 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 02:56:07.748 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 02:56:59.625 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40568 10 6452 1 2025-10-22 02:58:00.029 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47080 10 6452 1 Summary: total flows: 137, total bytes: 418111, total packets: 1010, avg bps: 908, avg pps: 0, avg bpp: 413 Time window: 2025-10-22 01:56:47 - 2025-10-22 02:58:10 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0048s User: 0.0000s Wall: 0.0022s flows/second: 61967.0 Runtime: 0.0022s