Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-03 03:59:34.822 00:00:10.741 TCP 1.101.0.1:3000 -> 23.104.0.1:55462 10 6452 1 2025-10-03 04:00:35.597 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36360 10 6452 1 2025-10-03 03:56:38.388 00:06:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 04:01:36.003 00:00:11.084 TCP 1.101.0.1:3000 -> 23.104.0.1:48498 10 6452 1 2025-10-03 04:02:00.381 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 04:02:00.198 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 04:02:00.197 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 04:02:00.299 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 04:02:00.255 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 04:02:37.127 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45170 10 6452 1 2025-10-03 04:03:37.532 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54746 10 6452 1 2025-10-03 04:04:37.936 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:35034 10 6452 1 2025-10-03 04:00:38.400 00:06:00.251 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 04:05:38.353 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35968 10 6452 1 2025-10-03 04:06:38.759 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36856 10 6452 1 2025-10-03 04:07:00.545 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 04:07:00.204 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 04:07:00.254 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 04:07:00.470 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 04:07:00.336 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 04:07:39.165 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35912 10 6452 1 2025-10-03 04:03:38.403 00:06:00.249 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 04:08:39.564 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46368 10 6452 1 2025-10-03 04:09:39.968 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48586 10 6452 1 2025-10-03 04:10:40.372 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52328 10 6452 1 2025-10-03 04:11:40.775 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:48206 10 6452 1 2025-10-03 04:12:00.406 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 04:12:00.424 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 04:12:00.301 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 04:12:00.324 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 04:12:00.167 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 04:07:38.404 00:06:00.252 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 04:12:41.189 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44740 10 6452 1 2025-10-03 04:13:41.588 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43454 10 6452 1 2025-10-03 04:14:42.004 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:43914 10 6452 1 2025-10-03 04:10:38.407 00:06:00.247 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 04:15:42.454 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56602 10 6452 1 2025-10-03 04:16:42.856 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:60214 10 6452 1 2025-10-03 04:17:00.486 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 04:17:00.314 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 04:17:00.403 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 04:17:00.536 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 04:17:00.408 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 04:17:43.232 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:59152 10 6452 1 2025-10-03 04:18:43.593 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:39672 10 6452 1 2025-10-03 04:14:38.404 00:06:00.253 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 04:19:43.985 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:57268 10 6452 1 2025-10-03 04:20:44.352 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:36712 10 6452 1 2025-10-03 04:21:44.767 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:33244 10 6452 1 2025-10-03 04:22:00.644 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 04:22:00.456 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 04:22:00.561 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 04:22:00.494 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 04:22:00.560 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 04:17:38.411 00:06:00.245 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 04:22:45.189 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56194 10 6452 1 2025-10-03 04:23:45.590 00:00:10.640 TCP 1.101.0.1:3000 -> 23.104.0.1:33184 10 6452 1 2025-10-03 04:24:46.267 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37282 10 6452 1 2025-10-03 04:25:46.687 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:36680 10 6452 1 2025-10-03 04:21:38.410 00:06:00.251 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 04:27:00.886 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 04:27:00.802 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 04:26:47.124 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:54930 10 6452 1 2025-10-03 04:27:00.876 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 04:27:00.804 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 04:27:00.679 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 04:27:47.488 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53228 10 6452 1 2025-10-03 04:28:47.893 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:57464 10 6452 1 2025-10-03 04:24:38.413 00:06:00.248 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 04:29:48.318 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52922 10 6452 1 2025-10-03 04:30:48.717 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41578 10 6452 1 2025-10-03 04:32:00.702 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 04:32:00.569 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 04:32:00.810 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 04:32:00.708 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 04:31:49.119 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46484 10 6452 1 2025-10-03 04:32:00.892 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 04:32:49.521 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34400 10 6452 1 2025-10-03 04:28:38.410 00:06:00.255 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 04:33:49.946 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58444 10 6452 1 2025-10-03 04:34:50.359 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50780 10 6452 1 2025-10-03 04:35:50.726 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:39666 10 6452 1 2025-10-03 04:31:38.412 00:06:00.250 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 04:37:00.893 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 04:37:00.700 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 04:37:00.897 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 04:37:00.894 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 04:36:51.146 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60972 10 6452 1 2025-10-03 04:37:00.982 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 04:37:51.552 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42040 10 6452 1 2025-10-03 04:38:51.963 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34010 10 6452 1 2025-10-03 04:39:52.371 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:46674 10 6452 1 2025-10-03 04:35:38.410 00:06:00.256 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 04:40:52.769 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38386 10 6452 1 2025-10-03 04:42:00.785 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 04:42:00.702 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 04:42:01.068 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 04:42:01.072 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 04:42:01.077 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 04:41:53.185 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59156 10 6452 1 2025-10-03 04:42:53.594 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40720 10 6452 1 2025-10-03 04:38:38.413 00:06:00.252 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 04:43:54.007 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:53392 10 6452 1 2025-10-03 04:44:54.371 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60266 10 6452 1 2025-10-03 04:45:54.776 00:00:16.344 TCP 1.101.0.1:3000 -> 23.104.0.1:42496 10 6452 1 2025-10-03 04:47:01.137 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 04:47:01.178 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 04:47:01.091 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 04:47:01.076 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 04:47:01.173 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 04:47:01.165 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33494 10 6452 1 2025-10-03 04:42:38.412 00:06:00.256 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 04:48:01.522 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49188 10 6452 1 2025-10-03 04:49:01.929 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:54776 10 6452 1 2025-10-03 04:50:02.303 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40966 10 6452 1 2025-10-03 04:45:38.415 00:06:00.251 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 04:51:02.705 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39844 10 6452 1 2025-10-03 04:52:01.161 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 04:52:01.101 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 04:52:01.207 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 04:52:01.160 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 04:52:01.290 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 04:52:03.101 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41806 10 6452 1 2025-10-03 04:53:03.507 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56818 10 6452 1 2025-10-03 04:54:03.914 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34370 10 6452 1 2025-10-03 04:49:38.412 00:06:00.258 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 04:55:04.315 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49160 10 6452 1 2025-10-03 04:56:04.727 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36380 10 6452 1 2025-10-03 04:57:01.313 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 04:57:01.298 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 04:57:01.300 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 04:57:01.232 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 04:57:01.232 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 04:57:05.116 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58776 10 6452 1 2025-10-03 04:52:38.415 00:06:00.253 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 04:58:05.529 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47026 10 6452 1 Summary: total flows: 136, total bytes: 410425, total packets: 1008, avg bps: 882, avg pps: 0, avg bpp: 407 Time window: 2025-10-03 03:56:38 - 2025-10-03 04:58:38 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0047s User: 0.0000s Wall: 0.0021s flows/second: 65475.8 Runtime: 0.0021s