Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-13 15:58:54.758 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:33362 10 6452 1 2025-10-13 15:59:55.177 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:58720 10 6452 1 2025-10-13 16:00:55.595 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45392 10 6452 1 2025-10-13 16:02:03.558 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 16:02:03.345 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 16:02:03.345 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 16:02:03.310 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 16:02:03.474 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 16:01:55.993 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51952 10 6452 1 2025-10-13 16:02:56.399 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39086 10 6452 1 2025-10-13 15:59:43.657 00:05:00.486 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 15:59:43.655 00:05:00.491 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 16:03:56.773 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:47796 10 6452 1 2025-10-13 16:04:57.141 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34146 10 6452 1 2025-10-13 16:05:57.544 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38410 10 6452 1 2025-10-13 16:07:03.820 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 16:07:03.634 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 16:07:03.488 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 16:07:03.697 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 16:07:03.781 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 16:06:57.949 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:54078 10 6452 1 2025-10-13 16:07:58.360 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59180 10 6452 1 2025-10-13 16:08:58.761 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:52392 10 6452 1 2025-10-13 16:05:43.657 00:05:00.492 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 16:05:43.658 00:05:00.487 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 16:09:59.172 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:44764 10 6452 1 2025-10-13 16:10:59.568 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50852 10 6452 1 2025-10-13 16:12:03.655 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 16:12:03.490 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 16:12:03.647 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 16:12:03.439 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 16:12:03.572 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 16:11:59.970 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59582 10 6452 1 2025-10-13 16:13:00.372 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37686 10 6452 1 2025-10-13 16:14:00.782 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:44982 10 6452 1 2025-10-13 16:15:01.150 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46252 10 6452 1 2025-10-13 16:11:43.657 00:05:00.493 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 16:11:43.659 00:05:00.487 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 16:16:01.565 00:00:10.450 TCP 1.101.0.1:3000 -> 23.104.0.1:50294 12 10369 1 2025-10-13 16:17:03.911 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 16:17:03.521 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 16:17:03.907 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 16:17:04.083 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 16:17:03.990 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 16:17:02.066 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36966 10 6452 1 2025-10-13 16:18:02.474 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:56760 10 6452 1 2025-10-13 16:19:02.837 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:47342 10 6452 1 2025-10-13 16:20:03.262 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50216 10 6452 1 2025-10-13 16:21:03.662 00:00:10.650 TCP 1.101.0.1:3000 -> 23.104.0.1:33870 10 6452 1 2025-10-13 16:17:43.660 00:05:00.488 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 16:17:43.657 00:05:00.494 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 16:22:03.951 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 16:22:03.867 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 16:22:03.868 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 16:22:03.592 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 16:22:03.869 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 16:22:04.344 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49862 10 6452 1 2025-10-13 16:23:04.743 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48388 10 6452 1 2025-10-13 16:24:05.148 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:50562 10 6452 1 2025-10-13 16:25:05.562 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58088 10 6452 1 2025-10-13 16:26:05.962 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53636 10 6452 1 2025-10-13 16:27:03.931 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 16:27:03.936 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 16:27:03.681 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 16:27:03.935 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 16:27:04.019 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 16:27:06.366 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44372 10 6452 1 2025-10-13 16:23:43.664 00:05:00.487 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 16:23:43.661 00:05:00.492 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 16:28:06.771 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:55496 10 6452 1 2025-10-13 16:29:07.146 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55462 10 6452 1 2025-10-13 16:30:07.554 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51472 10 6452 1 2025-10-13 16:31:07.955 00:00:10.736 TCP 1.101.0.1:3000 -> 23.104.0.1:50012 10 6452 1 2025-10-13 16:32:04.640 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 16:32:04.504 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 16:32:04.378 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 16:32:04.428 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 16:32:04.510 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 16:32:08.731 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46166 10 6452 1 2025-10-13 16:33:09.139 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54522 10 6452 1 2025-10-13 16:29:43.673 00:05:00.481 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 16:29:43.670 00:05:00.486 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 16:34:09.551 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45130 10 6452 1 2025-10-13 16:35:09.954 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45874 10 6452 1 2025-10-13 16:36:10.366 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:46650 12 10375 1 2025-10-13 16:37:04.214 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 16:37:04.120 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 16:37:04.010 00:00:00.032 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 16:37:04.133 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 16:37:04.215 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 16:37:10.852 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:41748 10 6452 1 2025-10-13 16:38:11.268 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35460 10 6452 1 2025-10-13 16:39:11.671 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43244 10 6452 1 2025-10-13 16:35:43.669 00:05:00.486 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 16:35:43.673 00:05:00.481 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 16:40:12.095 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33474 10 6452 1 2025-10-13 16:41:12.496 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48324 10 6452 1 2025-10-13 16:42:04.105 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 16:42:04.325 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 16:42:03.914 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 16:42:04.480 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 16:42:03.996 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 16:42:12.896 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57902 10 6452 1 2025-10-13 16:43:13.310 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46978 10 6452 1 2025-10-13 16:44:13.709 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34140 10 6452 1 2025-10-13 16:45:14.118 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38640 10 6452 1 2025-10-13 16:41:43.677 00:05:00.478 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 16:41:43.674 00:05:00.484 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 16:46:14.484 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41984 10 6452 1 2025-10-13 16:47:04.247 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 16:47:04.361 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 16:47:04.234 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 16:47:04.296 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 16:47:04.378 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 16:47:14.898 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58796 12 6556 1 2025-10-13 16:48:15.306 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47346 10 6452 1 2025-10-13 16:49:15.707 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60152 10 6452 1 2025-10-13 16:50:16.114 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49678 10 6452 1 2025-10-13 16:51:16.515 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56532 10 6452 1 2025-10-13 16:47:43.676 00:05:00.483 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 16:47:43.680 00:05:00.477 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 16:52:04.528 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 16:52:04.342 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 16:52:04.466 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 16:52:04.569 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 16:52:04.548 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 16:52:16.921 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48208 10 6452 1 2025-10-13 16:53:17.330 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54330 10 6452 1 2025-10-13 16:54:17.724 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:41094 10 6452 1 2025-10-13 16:55:18.138 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34080 10 6452 1 2025-10-13 16:56:18.503 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50582 10 6452 1 2025-10-13 16:57:04.407 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 16:57:04.326 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 16:57:04.322 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 16:57:04.427 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 16:57:04.324 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 16:57:18.909 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52832 10 6452 1 2025-10-13 16:53:43.677 00:05:00.485 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 16:53:43.679 00:05:00.480 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 16:58:19.315 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59100 10 6452 1 Summary: total flows: 140, total bytes: 424944, total packets: 1026, avg bps: 947, avg pps: 0, avg bpp: 414 Time window: 2025-10-13 15:58:54 - 2025-10-13 16:58:44 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0037s User: 0.0009s Wall: 0.0018s flows/second: 76508.5 Runtime: 0.0018s