Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-16 01:59:34.576 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42776 10 6452 1 2025-10-16 02:00:34.981 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45248 10 6452 1 2025-10-16 01:57:44.874 00:05:00.433 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 02:01:35.386 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35356 10 6452 1 2025-10-16 02:02:35.783 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60544 10 6452 1 2025-10-16 02:03:13.394 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 02:03:13.346 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 02:03:13.276 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:03:13.399 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:03:13.483 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 01:59:44.873 00:05:00.438 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 02:03:36.187 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38268 10 6452 1 2025-10-16 02:04:36.610 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47482 10 6452 1 2025-10-16 02:05:37.008 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54190 10 6452 1 2025-10-16 02:06:37.409 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:47662 10 6452 1 2025-10-16 02:07:37.779 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55680 10 6452 1 2025-10-16 02:03:44.875 00:05:00.433 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 02:08:14.162 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 02:08:14.081 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 02:08:13.873 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 02:08:13.230 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:08:14.078 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:08:38.190 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50762 10 6452 1 2025-10-16 02:09:38.596 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41456 10 6452 1 2025-10-16 02:05:44.874 00:05:00.438 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 02:10:39.001 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:46720 10 6452 1 2025-10-16 02:11:39.379 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:57792 10 6452 1 2025-10-16 02:12:39.747 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37536 10 6452 1 2025-10-16 02:13:13.571 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 02:13:13.501 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 02:13:13.448 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:13:13.572 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:13:13.657 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 02:09:44.877 00:05:00.433 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 02:13:40.114 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56956 10 6452 1 2025-10-16 02:14:40.512 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53872 10 6452 1 2025-10-16 02:11:44.875 00:05:00.438 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 02:15:40.917 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39462 10 6452 1 2025-10-16 02:16:41.320 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54400 10 6452 1 2025-10-16 02:17:41.724 00:00:10.550 TCP 1.101.0.1:3000 -> 23.104.0.1:45204 10 6452 1 2025-10-16 02:18:13.918 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 02:18:13.811 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 02:18:13.730 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 02:18:13.446 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:18:13.836 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:18:42.313 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:52788 11 6504 1 2025-10-16 02:15:44.878 00:05:00.433 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 02:19:42.771 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:42560 10 6452 1 2025-10-16 02:20:43.135 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56116 10 6452 1 2025-10-16 02:17:44.876 00:05:00.437 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 02:21:43.534 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53230 10 6452 1 2025-10-16 02:22:43.936 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:48078 10 6452 1 2025-10-16 02:23:13.700 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 02:23:13.838 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 02:23:13.768 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:23:13.708 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:23:13.790 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 02:23:44.355 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50610 10 6452 1 2025-10-16 02:24:44.755 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:44636 10 6452 1 2025-10-16 02:21:44.879 00:05:00.431 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 02:25:45.171 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56542 10 6452 1 2025-10-16 02:26:45.570 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55018 10 6452 1 2025-10-16 02:23:44.876 00:05:00.437 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 02:27:45.970 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:37900 10 6452 1 2025-10-16 02:28:14.150 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 02:28:13.887 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 02:28:14.011 00:00:00.043 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:28:14.148 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:28:14.232 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 02:28:46.384 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39896 10 6452 1 2025-10-16 02:29:46.786 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60836 10 6452 1 2025-10-16 02:30:47.191 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42176 10 6452 1 2025-10-16 02:27:44.880 00:05:00.432 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 02:31:47.592 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58040 10 6452 1 2025-10-16 02:32:47.991 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37502 10 6452 1 2025-10-16 02:33:14.116 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 02:33:13.913 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 02:33:14.011 00:00:00.031 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:33:14.116 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:33:14.201 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 02:29:44.879 00:05:00.436 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 02:33:48.402 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37582 10 6452 1 2025-10-16 02:34:48.803 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:41566 10 6452 1 2025-10-16 02:35:49.219 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54738 10 6452 1 2025-10-16 02:36:49.620 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33060 10 6452 1 2025-10-16 02:33:44.883 00:05:00.432 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 02:37:50.028 00:00:10.479 TCP 1.101.0.1:3000 -> 23.104.0.1:58790 10 6452 1 2025-10-16 02:38:14.043 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 02:38:14.083 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 02:38:14.083 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 02:38:13.648 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:38:13.959 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:38:50.549 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:50838 10 6452 1 2025-10-16 02:35:44.880 00:05:00.438 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 02:39:50.915 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42858 10 6452 1 2025-10-16 02:40:51.311 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50292 10 6452 1 2025-10-16 02:41:51.719 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:52668 10 6452 1 2025-10-16 02:42:52.142 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48758 10 6452 1 2025-10-16 02:43:14.043 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 02:43:14.060 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 02:43:13.743 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:43:14.122 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:43:14.205 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 02:39:44.883 00:05:00.432 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 02:43:52.543 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44220 10 6452 1 2025-10-16 02:44:52.951 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38998 10 6452 1 2025-10-16 02:41:44.883 00:05:00.435 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 02:45:53.358 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35378 10 6452 1 2025-10-16 02:46:53.762 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:37264 10 6452 1 2025-10-16 02:47:54.133 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58162 10 6452 1 2025-10-16 02:48:14.352 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 02:48:14.060 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 02:48:14.160 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:48:14.237 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:48:14.320 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 02:48:54.537 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:58032 10 6452 1 2025-10-16 02:45:44.884 00:05:00.432 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 02:49:54.952 00:00:20.429 TCP 1.101.0.1:3000 -> 23.104.0.1:57852 10 6452 1 2025-10-16 02:51:05.416 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58672 10 6452 1 2025-10-16 02:47:44.882 00:05:00.437 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 02:52:05.829 00:00:10.353 TCP 1.101.0.1:3000 -> 23.104.0.1:41262 10 6452 1 2025-10-16 02:53:14.429 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 02:53:14.427 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 02:53:14.490 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:53:14.421 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:53:14.505 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 02:53:06.200 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35242 10 6452 1 2025-10-16 02:54:06.608 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:51084 10 6452 1 2025-10-16 02:55:07.021 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47062 10 6452 1 2025-10-16 02:51:44.886 00:05:00.431 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 02:56:07.419 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40984 10 6452 1 2025-10-16 02:57:07.822 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55658 10 6452 1 2025-10-16 02:53:44.883 00:05:00.437 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 02:58:14.535 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 02:58:14.523 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 02:58:14.337 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:58:14.529 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:58:14.612 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 02:58:08.219 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:39320 10 6452 1 Summary: total flows: 139, total bytes: 410600, total packets: 1011, avg bps: 897, avg pps: 0, avg bpp: 406 Time window: 2025-10-16 01:57:44 - 2025-10-16 02:58:45 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0054s User: 0.0009s Wall: 0.0026s flows/second: 52952.6 Runtime: 0.0026s