Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-22 14:59:04.816 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55640 10 6452 1 2025-10-22 15:00:05.224 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57380 10 6452 1 2025-10-22 14:55:48.273 00:06:00.294 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 15:01:05.626 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:49614 10 6452 1 2025-10-22 15:01:22.013 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 15:01:22.222 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 15:01:21.996 00:00:00.048 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:01:21.930 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:01:22.121 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 14:56:48.276 00:06:00.289 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 15:02:06.010 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:60668 10 6452 1 2025-10-22 15:03:06.368 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:60606 10 6452 1 2025-10-22 15:04:06.741 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33368 10 6452 1 2025-10-22 15:05:07.150 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41880 10 6452 1 2025-10-22 15:06:07.513 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41452 10 6452 1 2025-10-22 15:06:22.533 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 15:06:22.453 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:06:22.049 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 15:06:22.320 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 15:06:22.367 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:07:07.923 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:38254 10 6452 1 2025-10-22 15:02:48.274 00:06:00.294 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 15:08:08.337 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36160 10 6452 1 2025-10-22 15:03:48.277 00:06:00.289 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 15:09:08.738 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37672 10 6452 1 2025-10-22 15:10:09.144 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:37126 10 6452 1 2025-10-22 15:11:09.520 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43706 10 6452 1 2025-10-22 15:11:22.176 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 15:11:22.002 00:00:00.045 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:11:22.337 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:11:22.344 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 15:11:22.419 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 15:12:09.923 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:50372 10 6452 1 2025-10-22 15:13:10.331 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37186 10 6452 1 2025-10-22 15:14:10.731 00:00:10.411 TCP 1.101.0.1:3000 -> 23.104.0.1:38150 12 10375 1 2025-10-22 15:09:48.277 00:06:00.294 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 15:15:11.182 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34818 10 6452 1 2025-10-22 15:10:48.280 00:06:00.289 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 15:16:22.606 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 15:16:22.487 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 15:16:22.306 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:16:11.586 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53038 10 6452 1 2025-10-22 15:16:22.524 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:16:22.243 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 15:17:11.993 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39906 10 6452 1 2025-10-22 15:18:12.396 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51356 10 6452 1 2025-10-22 15:19:12.795 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:53470 10 6452 1 2025-10-22 15:20:13.154 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51262 10 6452 1 2025-10-22 15:21:22.606 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 15:21:22.357 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:21:22.524 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:21:22.583 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 15:21:13.554 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46722 10 6452 1 2025-10-22 15:21:22.582 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 15:16:48.281 00:06:00.293 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 15:22:13.964 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56714 10 6452 1 2025-10-22 15:17:48.286 00:06:00.284 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 15:23:14.381 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43920 10 6452 1 2025-10-22 15:24:14.783 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:35074 10 6452 1 2025-10-22 15:25:15.194 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:55624 10 6452 1 2025-10-22 15:26:22.778 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 15:26:22.578 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:26:22.580 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:26:22.650 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 15:26:15.569 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58276 10 6452 1 2025-10-22 15:26:22.663 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 15:27:15.971 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:55332 10 6452 1 2025-10-22 15:28:16.402 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34108 10 6452 1 2025-10-22 15:23:48.285 00:06:00.291 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 15:29:16.807 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57990 10 6452 1 2025-10-22 15:24:48.287 00:06:00.285 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 15:30:17.211 00:00:10.646 TCP 1.101.0.1:3000 -> 23.104.0.1:40746 10 6452 1 2025-10-22 15:31:22.740 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 15:31:22.735 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:31:22.912 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:31:22.731 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 15:31:22.996 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 15:31:17.892 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:54240 10 6452 1 2025-10-22 15:32:18.263 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35944 10 6452 1 2025-10-22 15:33:18.664 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53422 10 6452 1 2025-10-22 15:34:19.101 00:00:10.522 TCP 1.101.0.1:3000 -> 23.104.0.1:40402 14 14292 1 2025-10-22 15:35:19.662 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35072 10 6452 1 2025-10-22 15:30:48.287 00:06:00.290 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 15:36:22.983 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 15:36:23.004 00:00:00.041 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:36:22.983 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:36:22.980 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 15:36:23.066 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 15:36:20.099 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37210 10 6452 1 2025-10-22 15:31:48.289 00:06:00.285 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 15:37:20.500 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47690 10 6452 1 2025-10-22 15:38:20.906 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43998 10 6452 1 2025-10-22 15:39:21.317 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33644 10 6452 1 2025-10-22 15:40:21.724 00:00:10.662 TCP 1.101.0.1:3000 -> 23.104.0.1:36348 10 6452 1 2025-10-22 15:41:23.153 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 15:41:23.117 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:41:23.268 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:41:23.146 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 15:41:23.351 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 15:41:22.426 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51338 10 6452 1 2025-10-22 15:42:22.833 00:00:10.404 TCP 1.101.0.1:3000 -> 23.104.0.1:56314 10 6452 1 2025-10-22 15:37:48.289 00:06:00.293 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 15:43:23.281 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36178 10 6452 1 2025-10-22 15:38:48.292 00:06:00.288 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 15:44:23.691 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48498 10 6452 1 2025-10-22 15:45:24.109 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49424 10 6452 1 2025-10-22 15:46:23.218 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 15:46:22.993 00:00:00.040 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:46:23.136 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:46:23.131 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 15:46:23.351 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 15:46:24.510 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59822 10 6452 1 2025-10-22 15:47:24.916 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:55616 10 6452 1 2025-10-22 15:48:25.288 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41940 10 6452 1 2025-10-22 15:49:25.702 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54192 10 6452 1 2025-10-22 15:44:48.291 00:06:00.295 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 15:50:26.114 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47756 10 6452 1 2025-10-22 15:45:48.293 00:06:00.290 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 15:51:23.227 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 15:51:23.138 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 15:51:22.790 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:51:23.144 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:51:22.960 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 15:51:26.522 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52334 10 6452 1 2025-10-22 15:52:26.926 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:46988 10 6452 1 2025-10-22 15:53:27.353 00:00:10.610 TCP 1.101.0.1:3000 -> 23.104.0.1:34804 10 6452 1 2025-10-22 15:54:28.005 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54186 10 6452 1 2025-10-22 15:55:28.408 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34290 10 6452 1 2025-10-22 15:56:23.282 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 15:56:23.270 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 15:56:23.212 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:56:23.201 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:56:23.202 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 15:56:28.806 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:60580 10 6452 1 2025-10-22 15:51:48.291 00:06:00.296 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 15:57:29.185 00:00:10.642 TCP 1.101.0.1:3000 -> 23.104.0.1:60098 10 6452 1 2025-10-22 15:52:48.295 00:06:00.290 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 15:58:29.864 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:36402 10 6452 1 Summary: total flows: 138, total bytes: 429501, total packets: 1038, avg bps: 908, avg pps: 0, avg bpp: 413 Time window: 2025-10-22 14:55:48 - 2025-10-22 15:58:48 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0036s User: 0.0027s Wall: 0.0022s flows/second: 61393.1 Runtime: 0.0023s