Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-13 06:59:13.352 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34886 10 6452 1 2025-10-13 07:00:13.757 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42934 10 6452 1 2025-10-13 07:01:14.163 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:45442 10 6452 1 2025-10-13 06:56:43.491 00:06:00.459 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 07:01:52.353 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 07:01:52.271 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 07:01:52.460 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 07:01:52.466 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 07:01:52.543 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 07:02:14.523 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:52630 10 6452 1 2025-10-13 06:57:43.489 00:06:00.464 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 07:03:14.879 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:33130 10 6452 1 2025-10-13 07:04:15.270 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56180 10 6452 1 2025-10-13 07:05:15.671 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50540 10 6452 1 2025-10-13 07:06:16.036 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38640 10 6452 1 2025-10-13 07:06:52.649 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 07:06:52.565 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 07:06:52.714 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 07:06:52.664 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 07:06:52.423 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 07:07:16.436 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41882 10 6452 1 2025-10-13 07:08:16.839 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:60214 10 6452 1 2025-10-13 07:03:43.492 00:06:00.462 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 07:09:17.260 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41906 10 6452 1 2025-10-13 07:04:43.490 00:06:00.468 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 07:10:17.666 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:51026 10 6452 1 2025-10-13 07:11:18.032 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35386 10 6452 1 2025-10-13 07:11:52.764 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 07:11:52.780 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 07:11:52.691 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 07:11:52.818 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 07:11:52.774 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 07:12:18.437 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:54622 10 6452 1 2025-10-13 07:13:18.837 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:56624 10 6452 1 2025-10-13 07:14:19.260 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:52146 10 6452 1 2025-10-13 07:15:19.669 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52762 10 6452 1 2025-10-13 07:10:43.496 00:06:00.461 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 07:16:20.101 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:37634 10 6452 1 2025-10-13 07:11:43.495 00:06:00.465 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 07:16:52.992 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 07:16:52.817 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 07:16:52.696 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 07:16:52.909 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 07:16:53.227 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 07:17:20.477 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51634 10 6452 1 2025-10-13 07:18:20.877 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:44100 10 6452 1 2025-10-13 07:19:21.241 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:39148 10 6452 1 2025-10-13 07:20:21.659 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54116 10 6452 1 2025-10-13 07:21:22.079 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:48042 10 6452 1 2025-10-13 07:21:52.997 00:00:00.041 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 07:21:52.837 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 07:21:52.996 00:00:00.041 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 07:21:52.962 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 07:21:53.078 00:00:00.041 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 07:22:22.440 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55308 10 6452 1 2025-10-13 07:17:43.498 00:06:00.460 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 07:23:22.841 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:43812 10 6452 1 2025-10-13 07:18:43.496 00:06:00.465 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 07:24:23.266 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45774 10 6452 1 2025-10-13 07:25:23.663 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43940 10 6452 1 2025-10-13 07:26:24.089 00:00:10.448 TCP 1.101.0.1:3000 -> 23.104.0.1:55888 12 10375 1 2025-10-13 07:26:53.121 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 07:26:52.903 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 07:26:53.170 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 07:26:53.067 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 07:26:53.252 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 07:27:24.571 00:00:10.907 TCP 1.101.0.1:3000 -> 23.104.0.1:49278 10 6452 1 2025-10-13 07:28:25.516 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52954 10 6452 1 2025-10-13 07:29:25.915 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58632 10 6452 1 2025-10-13 07:24:43.503 00:06:00.456 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 07:30:26.355 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32992 10 6452 1 2025-10-13 07:25:43.500 00:06:00.462 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 07:31:26.754 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:37158 10 6452 1 2025-10-13 07:31:53.247 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 07:31:53.255 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 07:31:53.061 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 07:31:52.994 00:00:00.049 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 07:31:53.077 00:00:00.049 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 07:32:27.171 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42394 10 6452 1 2025-10-13 07:33:27.575 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39886 10 6452 1 2025-10-13 07:34:27.975 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:50966 11 6504 1 2025-10-13 07:35:28.435 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:58840 10 6452 1 2025-10-13 07:36:28.801 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:38022 12 10375 1 2025-10-13 07:31:43.507 00:06:00.458 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 07:36:53.474 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 07:36:53.439 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 07:36:53.422 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 07:36:53.557 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 07:36:53.503 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 07:37:29.285 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52060 10 6452 1 2025-10-13 07:32:43.505 00:06:00.463 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 07:38:29.689 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34270 10 6452 1 2025-10-13 07:39:30.063 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34136 10 6452 1 2025-10-13 07:40:30.466 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55376 10 6452 1 2025-10-13 07:41:30.862 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:48300 10 6452 1 2025-10-13 07:41:53.192 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 07:41:53.307 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 07:41:53.252 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 07:41:53.108 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 07:41:53.426 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 07:42:31.273 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:58000 10 6452 1 2025-10-13 07:43:31.635 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57918 10 6452 1 2025-10-13 07:38:43.510 00:06:00.456 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 07:44:32.063 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52086 10 6452 1 2025-10-13 07:39:43.509 00:06:00.460 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 07:45:32.429 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47538 10 6452 1 2025-10-13 07:46:32.833 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54590 10 6452 1 2025-10-13 07:46:53.390 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 07:46:53.098 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 07:46:53.386 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 07:46:53.454 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 07:46:53.468 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 07:47:33.231 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:45702 10 6452 1 2025-10-13 07:48:33.606 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:35052 10 6452 1 2025-10-13 07:49:34.016 00:00:10.541 TCP 1.101.0.1:3000 -> 23.104.0.1:59716 10 6452 1 2025-10-13 07:50:34.599 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44758 10 6452 1 2025-10-13 07:45:43.514 00:06:00.456 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 07:51:34.962 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:33300 11 6504 1 2025-10-13 07:46:43.511 00:06:00.460 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 07:51:53.640 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 07:51:53.571 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 07:51:53.671 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 07:51:53.580 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 07:51:53.753 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 07:52:35.425 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47380 10 6452 1 2025-10-13 07:53:35.833 00:00:10.421 TCP 1.101.0.1:3000 -> 23.104.0.1:39994 11 6504 1 2025-10-13 07:54:36.293 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35300 10 6452 1 2025-10-13 07:55:36.697 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56654 10 6452 1 2025-10-13 07:56:37.108 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35856 10 6452 1 2025-10-13 07:56:53.532 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 07:56:53.532 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 07:56:53.711 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 07:56:53.732 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 07:56:53.615 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 07:52:43.514 00:06:00.455 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 07:57:37.512 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43924 10 6452 1 2025-10-13 07:53:43.513 00:06:00.460 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 07:58:37.874 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43268 10 6452 1 Summary: total flows: 138, total bytes: 425740, total packets: 1039, avg bps: 900, avg pps: 0, avg bpp: 409 Time window: 2025-10-13 06:56:43 - 2025-10-13 07:59:43 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0039s User: 0.0019s Wall: 0.0025s flows/second: 55130.4 Runtime: 0.0025s