Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-17 01:59:01.472 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35870 10 6452 1 2025-10-17 02:00:01.875 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56290 10 6452 1 2025-10-17 02:01:02.278 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:44694 10 6452 1 2025-10-17 02:02:02.697 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:52174 10 6452 1 2025-10-17 02:03:03.064 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54296 10 6452 1 2025-10-17 02:03:41.906 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 02:03:42.022 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 02:03:42.077 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 02:03:42.122 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 02:03:42.204 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 01:58:45.422 00:06:00.341 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 02:04:03.466 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55468 10 6452 1 2025-10-17 01:59:45.420 00:06:00.347 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 02:05:03.861 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:34702 10 6452 1 2025-10-17 02:06:04.271 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40956 10 6452 1 2025-10-17 02:07:04.670 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:36426 12 10375 1 2025-10-17 02:08:05.151 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37458 10 6452 1 2025-10-17 02:08:42.154 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 02:08:42.277 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 02:08:42.243 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 02:08:42.227 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 02:08:42.310 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 02:09:05.553 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52246 10 6452 1 2025-10-17 02:10:05.953 00:00:10.523 TCP 1.101.0.1:3000 -> 23.104.0.1:46236 10 6452 1 2025-10-17 02:05:45.430 00:06:00.338 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 02:11:06.512 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51782 10 6452 1 2025-10-17 02:06:45.426 00:06:00.342 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 02:12:06.915 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46404 10 6452 1 2025-10-17 02:13:07.317 00:00:10.514 TCP 1.101.0.1:3000 -> 23.104.0.1:49492 10 6452 1 2025-10-17 02:13:42.407 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 02:13:42.325 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 02:13:42.326 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 02:13:42.181 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 02:13:42.323 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 02:14:07.870 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:37584 10 6452 1 2025-10-17 02:15:08.277 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:56506 11 6504 1 2025-10-17 02:16:08.762 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:56958 10 6452 1 2025-10-17 02:17:09.176 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:48358 10 6452 1 2025-10-17 02:12:45.432 00:06:00.335 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 02:18:09.592 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51796 10 6452 1 2025-10-17 02:18:42.431 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 02:18:42.439 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 02:18:42.442 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 02:18:42.510 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 02:18:42.348 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 02:13:45.431 00:06:00.339 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 02:19:09.993 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:34494 10 6452 1 2025-10-17 02:20:10.406 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:36822 10 6452 1 2025-10-17 02:21:10.774 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:54912 10 6452 1 2025-10-17 02:22:11.153 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:56576 10 6452 1 2025-10-17 02:23:11.566 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36454 10 6452 1 2025-10-17 02:23:43.181 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 02:23:43.066 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 02:23:43.398 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 02:23:43.347 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 02:23:43.482 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 02:24:11.970 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:47796 10 6452 1 2025-10-17 02:19:45.436 00:06:00.332 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 02:25:12.388 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35872 10 6452 1 2025-10-17 02:20:45.434 00:06:00.342 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 02:26:12.754 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:37600 10 6452 1 2025-10-17 02:27:13.174 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56180 10 6452 1 2025-10-17 02:28:13.577 00:00:10.586 TCP 1.101.0.1:3000 -> 23.104.0.1:49710 10 6452 1 2025-10-17 02:28:42.625 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 02:28:42.674 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 02:28:42.533 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 02:28:42.676 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 02:28:42.758 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 02:29:14.202 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40080 10 6452 1 2025-10-17 02:30:14.600 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:57246 10 6452 1 2025-10-17 02:31:15.017 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:51614 10 6452 1 2025-10-17 02:26:45.440 00:06:00.330 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 02:32:15.376 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55722 10 6452 1 2025-10-17 02:27:45.440 00:06:00.335 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 02:33:15.780 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42254 10 6452 1 2025-10-17 02:33:42.691 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 02:33:42.671 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 02:33:42.631 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 02:33:42.757 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 02:33:42.839 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 02:34:16.189 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48288 10 6452 1 2025-10-17 02:35:16.588 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35144 10 6452 1 2025-10-17 02:36:16.994 00:00:14.449 TCP 1.101.0.1:3000 -> 23.104.0.1:43058 10 6452 1 2025-10-17 02:37:21.477 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41894 10 6452 1 2025-10-17 02:38:21.881 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41536 10 6452 1 2025-10-17 02:38:42.908 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 02:38:43.163 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 02:38:43.157 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 02:38:42.932 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 02:38:43.246 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 02:33:45.445 00:06:00.328 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 02:39:22.246 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48636 10 6452 1 2025-10-17 02:34:45.444 00:06:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 02:40:22.649 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43018 10 6452 1 2025-10-17 02:41:23.068 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51338 10 6452 1 2025-10-17 02:42:23.475 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60716 10 6452 1 2025-10-17 02:43:23.883 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:52972 10 6452 1 2025-10-17 02:43:43.102 00:00:00.036 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 02:43:42.763 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 02:43:43.051 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 02:43:42.882 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 02:43:43.198 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 02:44:24.302 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:51698 10 6452 1 2025-10-17 02:45:24.664 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55228 10 6452 1 2025-10-17 02:40:45.447 00:06:00.330 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 02:46:25.081 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59340 10 6452 1 2025-10-17 02:41:45.445 00:06:00.335 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 02:47:25.487 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:32994 10 6452 1 2025-10-17 02:48:25.900 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:38918 12 6556 1 2025-10-17 02:48:43.007 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 02:48:42.929 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 02:48:42.846 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 02:48:42.970 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 02:48:42.923 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 02:49:26.321 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43252 10 6452 1 2025-10-17 02:50:26.750 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:41846 10 6452 1 2025-10-17 02:51:27.186 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40744 10 6452 1 2025-10-17 02:52:27.590 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:60500 10 6452 1 2025-10-17 02:47:45.449 00:06:00.330 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 02:53:27.955 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59380 10 6452 1 2025-10-17 02:53:43.239 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 02:53:42.996 00:00:00.041 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 02:53:42.996 00:00:00.044 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 02:53:42.740 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 02:53:43.322 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 02:48:45.446 00:06:00.336 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 02:54:28.360 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50960 10 6452 1 2025-10-17 02:55:28.762 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33004 10 6452 1 2025-10-17 02:56:29.179 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59596 10 6452 1 2025-10-17 02:57:29.584 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60096 10 6452 1 2025-10-17 02:58:43.579 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 02:58:43.494 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 02:58:43.496 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 02:58:43.246 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 02:58:43.496 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 02:58:29.987 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54264 10 6452 1 Summary: total flows: 136, total bytes: 420095, total packets: 1009, avg bps: 934, avg pps: 0, avg bpp: 416 Time window: 2025-10-17 01:58:45 - 2025-10-17 02:58:43 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0036s User: 0.0009s Wall: 0.0023s flows/second: 60254.1 Runtime: 0.0023s