Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-25 07:59:40.906 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50676 12 6556 1 2025-10-25 08:00:41.311 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:49264 10 6452 1 2025-10-25 07:56:49.709 00:06:00.260 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 08:01:41.669 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41042 10 6452 1 2025-10-25 08:02:40.789 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 08:02:40.769 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 08:02:40.784 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 08:02:40.658 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 08:02:40.867 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 08:02:42.099 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57524 10 6452 1 2025-10-25 08:03:42.503 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57426 10 6452 1 2025-10-25 07:59:49.706 00:06:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 08:04:42.907 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45200 10 6452 1 2025-10-25 08:05:43.309 00:00:10.708 TCP 1.101.0.1:3000 -> 23.104.0.1:40886 10 6452 1 2025-10-25 08:06:44.062 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55276 10 6452 1 2025-10-25 08:07:41.425 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 08:07:41.525 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 08:07:41.231 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 08:07:41.344 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 08:07:41.350 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 08:07:44.466 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39704 10 6452 1 2025-10-25 08:03:49.711 00:06:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 08:08:44.869 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54158 10 6452 1 2025-10-25 08:09:45.287 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:55800 10 6452 1 2025-10-25 08:10:45.653 00:00:10.533 TCP 1.101.0.1:3000 -> 23.104.0.1:52326 14 14292 1 2025-10-25 08:06:49.711 00:06:00.261 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 08:11:46.236 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43920 10 6452 1 2025-10-25 08:12:40.813 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 08:12:40.852 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 08:12:40.865 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 08:12:40.731 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 08:12:40.742 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 08:12:46.648 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57180 10 6452 1 2025-10-25 08:13:47.097 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:55900 10 6452 1 2025-10-25 08:14:47.533 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33764 10 6452 1 2025-10-25 08:10:49.717 00:06:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 08:15:47.934 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:46050 10 6452 1 2025-10-25 08:16:48.364 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:46658 10 6452 1 2025-10-25 08:17:40.681 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 08:17:41.077 00:00:00.046 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 08:17:40.995 00:00:00.046 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 08:17:41.109 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 08:17:41.148 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 08:17:48.727 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41590 10 6452 1 2025-10-25 08:13:49.715 00:06:00.260 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 08:18:49.118 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36620 10 6452 1 2025-10-25 08:19:49.477 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39516 10 6452 1 2025-10-25 08:20:49.879 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38794 10 6452 1 2025-10-25 08:21:50.286 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59522 10 6452 1 2025-10-25 08:22:40.772 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 08:22:40.925 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 08:22:40.976 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 08:22:41.065 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 08:22:40.983 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 08:17:49.717 00:06:00.256 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 08:22:50.689 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36868 10 6452 1 2025-10-25 08:23:51.119 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57738 10 6452 1 2025-10-25 08:24:51.484 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43348 10 6452 1 2025-10-25 08:20:49.715 00:06:00.262 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 08:25:51.847 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:47296 10 6452 1 2025-10-25 08:26:52.274 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:40990 10 6452 1 2025-10-25 08:27:41.368 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 08:27:41.276 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 08:27:41.436 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 08:27:41.372 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 08:27:41.517 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 08:27:52.632 00:00:10.984 TCP 1.101.0.1:3000 -> 23.104.0.1:42780 10 6452 1 2025-10-25 08:28:53.655 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:38406 10 6452 1 2025-10-25 08:24:49.719 00:06:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 08:29:54.072 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55718 10 6452 1 2025-10-25 08:30:54.469 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36478 10 6452 1 2025-10-25 08:31:54.879 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57540 10 6452 1 2025-10-25 08:32:41.339 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 08:32:41.144 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 08:32:41.345 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 08:32:41.288 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 08:32:41.431 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 08:27:49.717 00:06:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 08:32:55.279 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36190 10 6452 1 2025-10-25 08:33:55.686 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:49388 10 6452 1 2025-10-25 08:34:56.113 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:52794 10 6452 1 2025-10-25 08:35:56.476 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46102 10 6452 1 2025-10-25 08:31:49.718 00:06:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 08:36:56.881 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:57408 12 6556 1 2025-10-25 08:37:41.478 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 08:37:41.316 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 08:37:41.345 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 08:37:41.396 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 08:37:41.466 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 08:37:57.304 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47240 10 6452 1 2025-10-25 08:38:57.706 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:33070 10 6452 1 2025-10-25 08:34:49.719 00:06:00.261 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 08:39:58.131 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39350 10 6452 1 2025-10-25 08:40:58.533 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43236 10 6452 1 2025-10-25 08:41:58.894 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:57574 10 6452 1 2025-10-25 08:42:41.500 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 08:42:41.549 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 08:42:41.413 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 08:42:41.417 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 08:42:41.411 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 08:42:59.317 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:43348 10 6452 1 2025-10-25 08:38:49.724 00:06:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 08:43:59.679 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:55836 10 6452 1 2025-10-25 08:45:00.111 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42902 10 6452 1 2025-10-25 08:46:00.521 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36916 10 6452 1 2025-10-25 08:41:49.722 00:06:00.260 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 08:47:00.925 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39540 10 6452 1 2025-10-25 08:47:41.660 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 08:47:41.683 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 08:47:41.592 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 08:47:41.609 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 08:47:41.674 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 08:48:01.332 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57850 10 6452 1 2025-10-25 08:49:01.733 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:58426 10 6452 1 2025-10-25 08:50:02.149 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40402 10 6452 1 2025-10-25 08:45:49.723 00:06:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 08:51:02.557 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38308 10 6452 1 2025-10-25 08:52:02.956 00:00:23.786 TCP 1.101.0.1:3000 -> 23.104.0.1:53322 11 6504 1 2025-10-25 08:52:41.502 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 08:52:41.793 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 08:52:41.696 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 08:52:41.681 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 08:52:41.420 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 08:53:16.813 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46824 10 6452 1 2025-10-25 08:48:49.721 00:06:00.261 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 08:54:17.223 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:34590 10 6452 1 2025-10-25 08:55:17.591 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36764 10 6452 1 2025-10-25 08:56:17.993 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46768 10 6452 1 2025-10-25 08:57:18.405 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:32878 10 6452 1 2025-10-25 08:57:41.794 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 08:57:41.566 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 08:57:41.806 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 08:57:41.719 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 08:57:41.889 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 08:52:49.730 00:06:00.250 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 08:58:18.814 00:00:10.460 TCP 1.101.0.1:3000 -> 23.104.0.1:49914 10 6452 1 Summary: total flows: 136, total bytes: 418525, total packets: 1017, avg bps: 899, avg pps: 0, avg bpp: 411 Time window: 2025-10-25 07:56:49 - 2025-10-25 08:58:49 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0023s User: 0.0035s Wall: 0.0019s flows/second: 70466.4 Runtime: 0.0020s