Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-05 11:58:57.881 00:00:10.430 TCP 1.101.0.1:3000 -> 23.104.0.1:37828 12 10375 1 2025-10-05 11:59:58.349 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:51010 10 6452 1 2025-10-05 12:00:58.712 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:36464 10 6452 1 2025-10-05 11:56:39.492 00:06:00.423 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 11:56:39.494 00:06:00.418 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 12:01:59.136 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:50472 10 6452 1 2025-10-05 12:02:59.497 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54800 10 6452 1 2025-10-05 12:03:07.736 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 12:03:07.374 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 12:03:07.739 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 12:03:07.813 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 12:03:07.822 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 12:03:59.902 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:36012 10 6452 1 2025-10-05 12:05:00.327 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58488 10 6452 1 2025-10-05 12:06:00.735 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46362 10 6452 1 2025-10-05 12:07:01.137 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36966 10 6452 1 2025-10-05 12:08:08.102 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 12:08:07.852 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 12:08:08.038 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 12:08:08.041 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 12:08:08.122 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 12:08:01.545 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46894 10 6452 1 2025-10-05 12:03:39.496 00:06:00.417 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 12:03:39.495 00:06:00.422 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 12:09:01.946 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47252 10 6452 1 2025-10-05 12:10:02.362 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44536 10 6452 1 2025-10-05 12:11:02.765 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:41978 10 6452 1 2025-10-05 12:12:03.188 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49776 10 6452 1 2025-10-05 12:13:07.796 00:00:00.042 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 12:13:07.828 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 12:13:07.794 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 12:13:07.730 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 12:13:07.877 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 12:13:03.590 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44784 10 6452 1 2025-10-05 12:14:03.955 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60370 10 6452 1 2025-10-05 12:15:04.361 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52094 10 6452 1 2025-10-05 12:10:39.497 00:06:00.421 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 12:10:39.497 00:06:00.417 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 12:16:04.766 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56486 10 6452 1 2025-10-05 12:17:05.177 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58750 10 6452 1 2025-10-05 12:18:07.914 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 12:18:07.882 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 12:18:07.659 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 12:18:07.832 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 12:18:07.820 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 12:18:05.577 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57976 10 6452 1 2025-10-05 12:19:05.982 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34266 10 6452 1 2025-10-05 12:20:06.389 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53222 10 6452 1 2025-10-05 12:21:06.794 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56296 10 6452 1 2025-10-05 12:22:07.194 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56884 10 6452 1 2025-10-05 12:17:39.502 00:06:00.413 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 12:17:39.500 00:06:00.418 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 12:23:08.236 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 12:23:08.216 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 12:23:07.955 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 12:23:08.153 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 12:23:08.208 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 12:23:07.560 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53222 10 6452 1 2025-10-05 12:24:07.924 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:56726 10 6452 1 2025-10-05 12:25:08.355 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39866 10 6452 1 2025-10-05 12:26:08.754 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36474 10 6452 1 2025-10-05 12:27:09.126 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38562 10 6452 1 2025-10-05 12:28:08.293 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 12:28:08.040 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 12:28:08.083 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 12:28:08.213 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 12:28:08.219 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 12:28:09.533 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42898 10 6452 1 2025-10-05 12:29:09.938 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36454 10 6452 1 2025-10-05 12:24:39.504 00:06:00.413 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 12:24:39.502 00:06:00.419 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 12:30:10.352 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40218 10 6452 1 2025-10-05 12:31:10.758 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:53786 10 6452 1 2025-10-05 12:32:11.178 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57344 10 6452 1 2025-10-05 12:33:08.300 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 12:33:08.313 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 12:33:08.119 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 12:33:08.222 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 12:33:08.202 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 12:33:11.582 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52498 10 6452 1 2025-10-05 12:34:11.984 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:48568 12 6556 1 2025-10-05 12:35:12.412 00:00:11.038 TCP 1.101.0.1:3000 -> 23.104.0.1:59594 10 6452 1 2025-10-05 12:36:13.521 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33134 10 6452 1 2025-10-05 12:31:39.507 00:06:00.412 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 12:31:39.504 00:06:00.417 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 12:37:13.923 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:43212 10 6452 1 2025-10-05 12:38:08.406 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 12:38:08.324 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 12:38:08.274 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 12:38:08.323 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 12:38:08.145 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 12:38:14.295 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49466 10 6452 1 2025-10-05 12:39:14.697 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:44822 10 6452 1 2025-10-05 12:40:15.112 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56452 10 6452 1 2025-10-05 12:41:15.516 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33288 10 6452 1 2025-10-05 12:42:15.917 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37706 10 6452 1 2025-10-05 12:43:08.321 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 12:43:08.337 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 12:43:08.326 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 12:43:08.124 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 12:43:08.409 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 12:43:16.282 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59478 10 6452 1 2025-10-05 12:38:39.507 00:06:00.411 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 12:38:39.507 00:06:00.416 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 12:44:16.687 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39386 10 6452 1 2025-10-05 12:45:17.117 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52480 10 6452 1 2025-10-05 12:46:17.475 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45686 10 6452 1 2025-10-05 12:47:17.877 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40742 10 6452 1 2025-10-05 12:48:08.576 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 12:48:08.377 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 12:48:08.530 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 12:48:08.530 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 12:48:08.612 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 12:48:18.278 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49050 10 6452 1 2025-10-05 12:49:18.685 00:00:10.448 TCP 1.101.0.1:3000 -> 23.104.0.1:33342 12 10369 1 2025-10-05 12:50:19.173 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44992 10 6452 1 2025-10-05 12:45:39.510 00:06:00.414 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 12:45:39.512 00:06:00.409 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 12:51:19.575 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:49564 10 6452 1 2025-10-05 12:52:19.934 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:60980 10 6452 1 2025-10-05 12:53:08.495 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 12:53:08.414 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 12:53:08.550 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 12:53:08.504 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 12:53:08.679 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 12:53:20.351 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:32788 10 6452 1 2025-10-05 12:54:20.752 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:55546 10 6452 1 2025-10-05 12:55:21.113 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55494 10 6452 1 2025-10-05 12:56:21.522 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44640 10 6452 1 2025-10-05 12:57:21.928 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42504 10 6452 1 2025-10-05 12:52:39.513 00:06:00.410 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 12:52:39.509 00:06:00.416 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 12:58:08.715 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 12:58:08.695 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 12:58:08.630 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 12:58:08.633 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 12:58:08.748 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 12:58:22.336 00:00:10.983 TCP 1.101.0.1:3000 -> 23.104.0.1:48410 12 10375 1 Summary: total flows: 138, total bytes: 429605, total packets: 1040, avg bps: 923, avg pps: 0, avg bpp: 413 Time window: 2025-10-05 11:56:39 - 2025-10-05 12:58:39 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0044s User: 0.0000s Wall: 0.0024s flows/second: 57285.6 Runtime: 0.0024s