Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-16 13:59:34.503 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33070 10 6452 1 2025-10-16 14:00:34.902 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:49314 10 6452 1 2025-10-16 14:01:35.267 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35648 10 6452 1 2025-10-16 14:02:35.674 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:41148 10 6452 1 2025-10-16 13:57:45.156 00:06:00.382 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 14:03:27.789 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 14:03:27.833 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 14:03:28.109 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 14:03:27.679 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 14:03:28.191 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 13:58:45.154 00:06:00.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 14:03:36.033 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53216 10 6452 1 2025-10-16 14:04:36.435 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:58566 10 6452 1 2025-10-16 14:05:36.796 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58904 10 6452 1 2025-10-16 14:06:37.204 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:49408 12 10375 1 2025-10-16 14:07:37.683 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:54552 10 6452 1 2025-10-16 14:08:27.816 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 14:08:27.643 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 14:08:27.861 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 14:08:27.645 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 14:08:27.733 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 14:08:38.108 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46938 10 6452 1 2025-10-16 14:09:38.506 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47158 10 6452 1 2025-10-16 14:04:45.158 00:06:00.382 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 14:05:45.155 00:06:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 14:10:38.909 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:40378 10 6452 1 2025-10-16 14:11:39.271 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44166 10 6452 1 2025-10-16 14:12:39.677 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:49890 10 6452 1 2025-10-16 14:13:27.638 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 14:13:27.924 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 14:13:27.996 00:00:00.040 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 14:13:28.054 00:00:00.029 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 14:13:28.141 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 14:13:40.107 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39036 10 6452 1 2025-10-16 14:14:40.520 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58664 10 6452 1 2025-10-16 14:15:40.933 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33344 10 6452 1 2025-10-16 14:11:45.160 00:06:00.381 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 14:16:41.342 00:00:10.456 TCP 1.101.0.1:3000 -> 23.104.0.1:56566 12 10375 1 2025-10-16 14:12:45.158 00:06:00.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 14:17:41.840 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:54390 10 6452 1 2025-10-16 14:18:28.061 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 14:18:27.986 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 14:18:27.818 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 14:18:27.978 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 14:18:27.983 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 14:18:42.232 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49320 10 6452 1 2025-10-16 14:19:42.643 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54626 10 6452 1 2025-10-16 14:20:43.048 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49172 10 6452 1 2025-10-16 14:21:43.451 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54220 10 6452 1 2025-10-16 14:22:43.853 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:42900 10 6452 1 2025-10-16 14:23:28.029 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 14:23:28.124 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 14:23:27.947 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 14:23:28.148 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 14:23:27.947 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 14:18:45.161 00:06:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 14:23:44.230 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38078 10 6452 1 2025-10-16 14:19:45.159 00:06:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 14:24:44.638 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57448 10 6452 1 2025-10-16 14:25:45.040 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46212 10 6452 1 2025-10-16 14:26:45.443 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:42638 10 6452 1 2025-10-16 14:27:45.799 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49494 10 6452 1 2025-10-16 14:28:28.440 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 14:28:28.233 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 14:28:28.304 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 14:28:28.179 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 14:28:28.357 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 14:28:46.198 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51692 10 6452 1 2025-10-16 14:29:46.604 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35368 10 6452 1 2025-10-16 14:25:45.162 00:06:00.385 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 14:30:47.012 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50260 10 6452 1 2025-10-16 14:26:45.161 00:06:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 14:31:47.418 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49198 10 6452 1 2025-10-16 14:32:47.817 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:44184 10 6452 1 2025-10-16 14:33:28.114 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 14:33:28.118 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 14:33:28.220 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 14:33:28.346 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 14:33:28.428 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 14:33:48.189 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54330 10 6452 1 2025-10-16 14:34:48.597 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59514 10 6452 1 2025-10-16 14:35:48.995 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:34294 10 6452 1 2025-10-16 14:36:49.362 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45370 10 6452 1 2025-10-16 14:32:45.163 00:06:00.386 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 14:37:49.767 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58336 10 6452 1 2025-10-16 14:38:28.290 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 14:38:28.353 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 14:38:28.372 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 14:38:28.510 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 14:38:28.454 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 14:33:45.160 00:06:00.392 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 14:38:50.182 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47988 10 6452 1 2025-10-16 14:39:50.582 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36086 10 6452 1 2025-10-16 14:40:50.942 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:47972 10 6452 1 2025-10-16 14:41:51.376 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42180 10 6452 1 2025-10-16 14:42:51.795 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:47658 10 6452 1 2025-10-16 14:43:28.606 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 14:43:28.532 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 14:43:28.587 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 14:43:28.243 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 14:43:28.525 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 14:43:52.180 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56618 10 6452 1 2025-10-16 14:39:45.164 00:06:00.388 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 14:44:52.583 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:43984 12 6556 1 2025-10-16 14:40:45.162 00:06:00.392 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 14:45:53.013 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40980 10 6452 1 2025-10-16 14:46:53.420 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39330 10 6452 1 2025-10-16 14:47:53.781 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43532 10 6452 1 2025-10-16 14:48:29.059 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 14:48:29.008 00:00:00.049 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 14:48:29.137 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 14:48:29.165 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 14:48:29.249 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 14:48:54.189 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:38620 10 6452 1 2025-10-16 14:49:54.556 00:00:13.866 TCP 1.101.0.1:3000 -> 23.104.0.1:47018 10 6452 1 2025-10-16 14:50:58.461 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:55108 10 6452 1 2025-10-16 14:46:45.168 00:06:00.385 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 14:51:58.822 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45764 10 6452 1 2025-10-16 14:47:45.167 00:06:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 14:52:59.224 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58358 10 6452 1 2025-10-16 14:53:28.770 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 14:53:28.774 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 14:53:28.673 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 14:53:28.653 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 14:53:28.737 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 14:53:59.624 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:54044 10 6452 1 2025-10-16 14:54:59.994 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:46632 10 6452 1 2025-10-16 14:56:00.396 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51186 10 6452 1 2025-10-16 14:57:00.797 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34478 10 6452 1 2025-10-16 14:58:01.204 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60858 10 6452 1 2025-10-16 14:58:28.821 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 14:58:28.741 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 14:58:28.643 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 14:58:28.839 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 14:58:28.737 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 14:53:45.169 00:06:00.391 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 Summary: total flows: 136, total bytes: 418375, total packets: 1014, avg bps: 899, avg pps: 0, avg bpp: 412 Time window: 2025-10-16 13:57:45 - 2025-10-16 14:59:45 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0042s User: 0.0011s Wall: 0.0021s flows/second: 66113.3 Runtime: 0.0021s