Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-22 08:59:12.021 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34312 10 6452 1 2025-10-22 09:00:12.382 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47904 10 6452 1 2025-10-22 09:01:15.017 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 09:01:14.829 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 09:01:14.650 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:01:14.934 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:01:14.893 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 09:01:12.785 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52200 10 6452 1 2025-10-22 09:02:13.190 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34796 10 6452 1 2025-10-22 09:03:13.559 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50396 10 6452 1 2025-10-22 08:58:48.160 00:06:00.309 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 09:04:13.961 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36070 10 6452 1 2025-10-22 08:59:48.165 00:06:00.303 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 09:05:14.319 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:53624 10 6452 1 2025-10-22 09:06:14.935 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 09:06:14.699 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:06:14.935 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:06:14.829 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 09:06:15.020 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 09:06:14.715 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46678 10 6452 1 2025-10-22 09:07:15.115 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33420 10 6452 1 2025-10-22 09:08:15.516 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51786 10 6452 1 2025-10-22 09:09:15.922 00:00:10.462 TCP 1.101.0.1:3000 -> 23.104.0.1:43658 12 10375 1 2025-10-22 09:10:16.433 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55120 10 6452 1 2025-10-22 09:05:48.165 00:06:00.307 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 09:11:15.315 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 09:11:15.123 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:11:15.303 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:11:15.207 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 09:11:15.386 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 09:11:16.842 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:42666 12 6556 1 2025-10-22 09:06:48.166 00:06:00.302 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 09:12:17.274 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:57440 10 6452 1 2025-10-22 09:13:17.688 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46466 10 6452 1 2025-10-22 09:14:18.117 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38154 10 6452 1 2025-10-22 09:15:18.486 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38762 10 6452 1 2025-10-22 09:16:15.057 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 09:16:15.185 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:16:15.165 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:16:15.338 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 09:16:15.249 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 09:16:18.898 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:40792 10 6452 1 2025-10-22 09:17:19.274 00:00:10.874 TCP 1.101.0.1:3000 -> 23.104.0.1:34676 10 6452 1 2025-10-22 09:12:48.164 00:06:00.308 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 09:18:20.187 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58142 10 6452 1 2025-10-22 09:13:48.167 00:06:00.303 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 09:19:20.591 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48434 10 6452 1 2025-10-22 09:20:20.955 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34446 10 6452 1 2025-10-22 09:21:15.394 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 09:21:15.053 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:21:15.357 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:21:15.302 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 09:21:15.440 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 09:21:21.363 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39850 10 6452 1 2025-10-22 09:22:21.765 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40422 10 6452 1 2025-10-22 09:23:22.180 00:00:10.467 TCP 1.101.0.1:3000 -> 23.104.0.1:59848 10 6452 1 2025-10-22 09:24:22.686 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43450 10 6452 1 2025-10-22 09:19:48.167 00:06:00.309 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 09:25:23.113 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33664 10 6452 1 2025-10-22 09:20:48.169 00:06:00.303 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 09:26:15.564 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 09:26:15.484 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 09:26:15.488 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:26:15.480 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:26:15.390 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 09:26:23.514 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:56808 10 6452 1 2025-10-22 09:27:23.880 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56900 10 6452 1 2025-10-22 09:28:24.281 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57698 10 6452 1 2025-10-22 09:29:24.685 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37348 10 6452 1 2025-10-22 09:30:25.107 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60368 10 6452 1 2025-10-22 09:31:15.699 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 09:31:15.632 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:31:15.641 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:31:15.641 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 09:31:15.739 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 09:31:25.507 00:00:10.835 TCP 1.101.0.1:3000 -> 23.104.0.1:59344 10 6452 1 2025-10-22 09:26:48.167 00:06:00.309 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 09:32:26.385 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36550 10 6452 1 2025-10-22 09:27:48.169 00:06:00.304 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 09:33:26.794 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:58046 10 6452 1 2025-10-22 09:34:27.207 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41312 10 6452 1 2025-10-22 09:35:27.615 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46290 10 6452 1 2025-10-22 09:36:15.692 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 09:36:15.542 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 09:36:15.567 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:36:15.608 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:36:15.791 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 09:36:28.023 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:34024 10 6452 1 2025-10-22 09:37:28.439 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45596 10 6452 1 2025-10-22 09:38:28.804 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:42398 10 6452 1 2025-10-22 09:33:48.171 00:06:00.307 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 09:39:29.178 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47824 10 6452 1 2025-10-22 09:34:48.171 00:06:00.303 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 09:40:29.579 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52134 10 6452 1 2025-10-22 09:41:15.931 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 09:41:15.561 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 09:41:15.682 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:41:15.847 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:41:15.788 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 09:41:29.984 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:52546 11 6504 1 2025-10-22 09:42:30.436 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58196 10 6452 1 2025-10-22 09:43:30.838 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:36654 10 6452 1 2025-10-22 09:44:31.264 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52676 10 6452 1 2025-10-22 09:45:31.680 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:49366 10 6452 1 2025-10-22 09:40:48.171 00:06:00.309 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 09:46:15.861 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 09:46:15.571 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:46:15.805 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:46:15.799 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 09:46:15.887 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 09:46:32.065 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51430 10 6452 1 2025-10-22 09:41:48.173 00:06:00.304 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 09:47:32.469 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:60520 11 6504 1 2025-10-22 09:48:32.924 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40546 10 6452 1 2025-10-22 09:49:33.340 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:41546 10 6452 1 2025-10-22 09:50:33.707 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:59918 10 6452 1 2025-10-22 09:51:15.692 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:51:15.923 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:51:15.839 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 09:51:15.782 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 09:51:16.006 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 09:51:34.116 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54454 10 6452 1 2025-10-22 09:52:34.516 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40980 10 6452 1 2025-10-22 09:47:48.175 00:06:00.305 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 09:53:34.879 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37468 10 6452 1 2025-10-22 09:48:48.177 00:06:00.301 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 09:54:35.280 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:35156 10 6452 1 2025-10-22 09:55:35.645 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50586 10 6452 1 2025-10-22 09:56:15.867 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:56:16.090 00:00:00.035 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 09:56:16.136 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 09:56:16.009 00:00:00.035 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:56:16.165 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 09:56:36.058 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46330 10 6452 1 2025-10-22 09:57:36.418 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:35668 10 6452 1 2025-10-22 09:58:36.787 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:60850 10 6452 1 Summary: total flows: 136, total bytes: 420147, total packets: 1010, avg bps: 933, avg pps: 0, avg bpp: 415 Time window: 2025-10-22 08:58:48 - 2025-10-22 09:58:47 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0043s User: 0.0021s Wall: 0.0022s flows/second: 60929.9 Runtime: 0.0023s