Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-23 11:58:45.150 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40722 10 6661 1 2025-10-23 11:55:48.680 00:05:00.355 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 11:59:45.550 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49496 10 6661 1 2025-10-23 12:00:45.955 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37944 10 6661 1 2025-10-23 12:01:47.332 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 12:01:47.365 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 12:01:47.518 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 12:01:47.407 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 12:01:47.600 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 12:01:46.361 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57652 10 6661 1 2025-10-23 12:02:46.768 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:36202 10 6661 1 2025-10-23 12:03:47.135 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43938 10 6661 1 2025-10-23 12:00:48.677 00:05:00.360 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 12:04:47.498 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:48336 10 6661 1 2025-10-23 12:01:48.680 00:05:00.356 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 12:05:47.897 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58718 12 6765 1 2025-10-23 12:06:47.396 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 12:06:47.552 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 12:06:47.328 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 12:06:47.313 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 12:06:47.500 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 12:06:48.303 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53850 10 6661 1 2025-10-23 12:07:48.665 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:36768 10 6661 1 2025-10-23 12:08:49.029 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49190 10 6661 1 2025-10-23 12:09:49.437 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52320 10 6661 1 2025-10-23 12:06:48.679 00:05:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 12:10:49.844 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:45800 10 6661 1 2025-10-23 12:11:47.676 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 12:11:47.577 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 12:11:47.791 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 12:11:47.594 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 12:11:47.578 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 12:07:48.682 00:05:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 12:11:50.282 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:42342 10 6661 1 2025-10-23 12:12:50.649 00:00:10.540 TCP 1.101.0.1:3000 -> 23.104.0.1:39030 10 6661 1 2025-10-23 12:13:51.245 00:00:10.353 TCP 1.101.0.1:3000 -> 23.104.0.1:44976 10 6661 1 2025-10-23 12:14:51.639 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52600 10 6661 1 2025-10-23 12:15:52.041 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49778 10 6661 1 2025-10-23 12:12:48.682 00:05:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 12:16:47.642 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 12:16:47.644 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 12:16:47.576 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 12:16:47.560 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 12:16:47.799 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 12:16:52.443 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43730 10 6661 1 2025-10-23 12:13:48.686 00:05:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 12:17:52.802 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55996 10 6661 1 2025-10-23 12:18:53.206 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33798 10 6661 1 2025-10-23 12:19:53.565 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48476 10 6661 1 2025-10-23 12:20:53.968 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:42766 10 6661 1 2025-10-23 12:21:47.808 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 12:21:47.752 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 12:21:47.804 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 12:21:47.807 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 12:21:47.886 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 12:21:54.334 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41792 10 6661 1 2025-10-23 12:18:48.687 00:05:00.364 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 12:22:54.740 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54656 10 6661 1 2025-10-23 12:19:48.690 00:05:00.358 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 12:23:55.147 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41316 10 6661 1 2025-10-23 12:24:55.552 00:00:10.434 TCP 1.101.0.1:3000 -> 23.104.0.1:47174 12 10369 1 2025-10-23 12:25:56.031 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48692 10 6452 1 2025-10-23 12:26:47.972 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 12:26:47.848 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 12:26:47.890 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 12:26:47.891 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 12:26:47.773 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 12:26:56.435 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:32886 10 6452 1 2025-10-23 12:27:56.827 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43730 10 6452 1 2025-10-23 12:24:48.687 00:05:00.370 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 12:28:57.232 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34268 10 6452 1 2025-10-23 12:25:48.697 00:05:00.357 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 12:29:57.641 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41414 10 6452 1 2025-10-23 12:30:58.058 00:00:11.145 TCP 1.101.0.1:3000 -> 23.104.0.1:47504 10 6452 1 2025-10-23 12:31:47.905 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 12:31:47.731 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 12:31:47.905 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 12:31:47.965 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 12:31:47.989 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 12:31:59.242 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43640 10 6452 1 2025-10-23 12:32:59.647 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53020 10 6452 1 2025-10-23 12:34:00.060 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49530 10 6452 1 2025-10-23 12:30:48.698 00:05:00.360 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 12:35:00.459 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:53416 14 10473 1 2025-10-23 12:31:48.702 00:05:00.354 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 12:36:00.936 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:38760 10 6452 1 2025-10-23 12:36:48.205 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 12:36:48.250 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 12:36:48.122 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 12:36:48.243 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 12:36:48.235 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 12:37:01.368 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:38566 10 6452 1 2025-10-23 12:38:01.758 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:47242 10 6452 1 2025-10-23 12:39:02.173 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59046 10 6452 1 2025-10-23 12:40:02.580 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:55854 10 6452 1 2025-10-23 12:36:48.702 00:05:00.357 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 12:41:02.947 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:55954 10 6452 1 2025-10-23 12:41:48.152 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 12:41:48.099 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 12:41:48.142 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 12:37:48.705 00:05:00.352 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 12:41:48.300 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 12:41:48.235 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 12:42:03.368 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:43000 10 6452 1 2025-10-23 12:43:03.728 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55192 10 6452 1 2025-10-23 12:44:04.141 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54618 10 6452 1 2025-10-23 12:45:04.547 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44636 10 6452 1 2025-10-23 12:46:04.947 00:00:10.665 TCP 1.101.0.1:3000 -> 23.104.0.1:39218 10 6452 1 2025-10-23 12:46:48.498 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 12:46:48.475 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 12:46:48.281 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 12:46:48.376 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 12:42:48.703 00:05:00.356 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 12:46:48.364 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 12:47:05.659 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60454 10 6452 1 2025-10-23 12:43:48.706 00:05:00.352 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 12:48:06.091 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49062 10 6452 1 2025-10-23 12:49:06.495 00:00:10.517 TCP 1.101.0.1:3000 -> 23.104.0.1:58348 10 6452 1 2025-10-23 12:50:07.070 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42144 10 6452 1 2025-10-23 12:51:07.476 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:52966 10 6452 1 2025-10-23 12:51:48.791 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 12:51:48.418 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 12:51:48.707 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 12:51:48.873 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 12:51:48.790 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 12:52:07.839 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:53366 10 6452 1 2025-10-23 12:48:48.703 00:05:00.358 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 12:53:08.270 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35262 10 6452 1 2025-10-23 12:49:48.706 00:05:00.352 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 12:54:08.673 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42680 10 6452 1 2025-10-23 12:55:09.103 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57008 10 6452 1 2025-10-23 12:56:09.507 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43328 10 6452 1 2025-10-23 12:56:48.551 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 12:56:48.549 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 12:56:48.464 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 12:56:48.558 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 12:56:48.635 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 12:57:09.912 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41360 10 6452 1 2025-10-23 12:58:10.325 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52582 10 6452 1 2025-10-23 12:54:48.710 00:05:00.353 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 Summary: total flows: 140, total bytes: 430476, total packets: 1028, avg bps: 896, avg pps: 0, avg bpp: 418 Time window: 2025-10-23 11:55:48 - 2025-10-23 12:59:49 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0038s User: 0.0019s Wall: 0.0022s flows/second: 63119.7 Runtime: 0.0022s