Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-13 16:59:19.719 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:33310 10 6452 1 2025-10-13 17:00:20.114 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51312 10 6452 1 2025-10-13 17:01:20.533 00:00:10.465 TCP 1.101.0.1:3000 -> 23.104.0.1:41776 10 6452 1 2025-10-13 17:02:04.549 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 17:02:04.458 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 17:02:04.727 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 17:02:04.695 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 17:02:04.780 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 17:02:21.035 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37992 10 6452 1 2025-10-13 17:03:21.436 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:33864 10 6452 1 2025-10-13 16:59:43.684 00:05:00.476 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 16:59:43.683 00:05:00.482 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 17:04:21.848 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:55682 10 6452 1 2025-10-13 17:05:22.271 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57864 10 6452 1 2025-10-13 17:06:22.673 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38710 10 6452 1 2025-10-13 17:07:04.767 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 17:07:04.851 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 17:07:04.636 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 17:07:04.582 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 17:07:04.665 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 17:07:23.038 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50836 10 6452 1 2025-10-13 17:08:23.399 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:35050 10 6452 1 2025-10-13 17:09:23.763 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:54432 10 6452 1 2025-10-13 17:05:43.684 00:05:00.481 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 17:05:43.686 00:05:00.476 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 17:10:24.179 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37712 10 6452 1 2025-10-13 17:11:24.543 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:56578 12 10375 1 2025-10-13 17:12:04.914 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 17:12:04.813 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 17:12:04.680 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 17:12:05.140 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 17:12:05.222 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 17:12:25.023 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51246 10 6452 1 2025-10-13 17:13:25.429 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56190 10 6452 1 2025-10-13 17:14:25.840 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:45954 10 6452 1 2025-10-13 17:15:26.266 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57610 10 6452 1 2025-10-13 17:11:43.687 00:05:00.476 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 17:11:43.684 00:05:00.481 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 17:16:26.677 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57288 10 6452 1 2025-10-13 17:17:04.611 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 17:17:05.276 00:00:00.032 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 17:17:05.004 00:00:00.047 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 17:17:05.285 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 17:17:05.193 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 17:17:27.102 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54016 10 6452 1 2025-10-13 17:18:27.509 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45530 10 6452 1 2025-10-13 17:19:27.915 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41990 10 6452 1 2025-10-13 17:20:28.275 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44034 10 6452 1 2025-10-13 17:21:28.636 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60344 10 6452 1 2025-10-13 17:17:43.688 00:05:00.476 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 17:17:43.685 00:05:00.481 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 17:22:04.906 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 17:22:04.938 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 17:22:04.822 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 17:22:04.960 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 17:22:04.824 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 17:22:29.059 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53676 10 6452 1 2025-10-13 17:23:29.433 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47492 10 6452 1 2025-10-13 17:24:29.837 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:35730 10 6452 1 2025-10-13 17:25:30.231 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:47632 10 6452 1 2025-10-13 17:26:30.630 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57702 10 6452 1 2025-10-13 17:27:04.955 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 17:27:05.131 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 17:27:05.092 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 17:27:05.140 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 17:27:05.222 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 17:23:43.687 00:05:00.481 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 17:27:31.031 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46132 10 6452 1 2025-10-13 17:23:43.690 00:05:00.476 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 17:28:31.431 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55800 10 6452 1 2025-10-13 17:29:31.837 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:42090 10 6452 1 2025-10-13 17:30:32.264 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55438 10 6452 1 2025-10-13 17:31:32.670 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36262 10 6452 1 2025-10-13 17:32:05.458 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 17:32:05.466 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 17:32:05.302 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 17:32:05.463 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 17:32:05.547 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 17:32:33.035 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49190 10 6452 1 2025-10-13 17:29:43.691 00:05:00.477 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 17:33:33.443 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35966 10 6452 1 2025-10-13 17:29:43.690 00:05:00.483 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 17:34:33.848 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:53466 10 6452 1 2025-10-13 17:35:34.230 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60696 10 6452 1 2025-10-13 17:36:34.634 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41830 10 6452 1 2025-10-13 17:37:05.379 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 17:37:05.157 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 17:37:05.382 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 17:37:05.381 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 17:37:05.465 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 17:37:35.042 00:00:10.353 TCP 1.101.0.1:3000 -> 23.104.0.1:49500 10 6452 1 2025-10-13 17:38:35.432 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:52364 10 6452 1 2025-10-13 17:35:43.691 00:05:00.481 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 17:35:43.694 00:05:00.476 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 17:39:35.843 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:56574 10 6452 1 2025-10-13 17:40:36.261 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41192 10 6452 1 2025-10-13 17:41:36.674 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33812 10 6452 1 2025-10-13 17:42:05.530 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 17:42:05.527 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 17:42:05.456 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 17:42:05.531 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 17:42:05.614 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 17:42:37.102 00:00:13.225 TCP 1.101.0.1:3000 -> 23.104.0.1:39564 10 6452 1 2025-10-13 17:43:40.379 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52284 10 6452 1 2025-10-13 17:44:40.791 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43666 10 6452 1 2025-10-13 17:41:43.695 00:05:00.474 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 17:41:43.692 00:05:00.480 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 17:45:41.153 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:46354 10 6452 1 2025-10-13 17:46:41.572 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47554 10 6452 1 2025-10-13 17:47:05.854 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 17:47:05.647 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 17:47:05.779 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 17:47:05.436 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 17:47:05.771 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 17:47:41.972 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:49004 10 6452 1 2025-10-13 17:48:42.340 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33858 10 6452 1 2025-10-13 17:49:42.753 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56112 10 6452 1 2025-10-13 17:50:43.162 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41126 10 6452 1 2025-10-13 17:47:43.692 00:05:00.481 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 17:47:43.695 00:05:00.475 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 17:51:43.567 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33480 10 6452 1 2025-10-13 17:52:05.803 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 17:52:05.595 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 17:52:05.530 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 17:52:05.697 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 17:52:05.779 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 17:52:43.970 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44300 10 6452 1 2025-10-13 17:53:44.381 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46342 10 6452 1 2025-10-13 17:54:44.788 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60512 10 6452 1 2025-10-13 17:55:45.189 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50734 10 6452 1 2025-10-13 17:56:45.587 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:55088 10 6452 1 2025-10-13 17:57:05.932 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 17:57:05.922 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 17:57:05.911 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 17:57:05.969 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 17:57:05.993 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 17:53:43.697 00:05:00.474 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 17:53:43.694 00:05:00.480 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 17:57:45.947 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34456 10 6452 1 Summary: total flows: 139, total bytes: 414471, total packets: 1012, avg bps: 930, avg pps: 0, avg bpp: 409 Time window: 2025-10-13 16:59:19 - 2025-10-13 17:58:44 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0038s User: 0.0009s Wall: 0.0019s flows/second: 72441.4 Runtime: 0.0019s