Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-25 10:59:13.972 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48754 10 6452 1 2025-10-25 11:00:14.378 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52910 10 6452 1 2025-10-25 11:01:14.745 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34278 10 6452 1 2025-10-25 10:57:49.777 00:05:00.289 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 11:02:15.112 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56106 10 6452 1 2025-10-25 11:02:44.290 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 11:02:44.204 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 11:02:44.072 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 11:02:44.208 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 11:02:44.341 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 10:58:49.774 00:05:00.294 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 11:03:15.509 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58946 10 6452 1 2025-10-25 11:04:15.917 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58892 10 6452 1 2025-10-25 11:05:16.319 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58134 10 6452 1 2025-10-25 11:06:16.725 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54246 10 6452 1 2025-10-25 11:07:17.136 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55366 10 6452 1 2025-10-25 11:07:44.618 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 11:07:44.276 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 11:07:44.284 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 11:07:44.507 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 11:07:44.367 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 11:03:49.783 00:05:00.284 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 11:08:17.538 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56346 10 6452 1 2025-10-25 11:04:49.779 00:05:00.290 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 11:09:17.940 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:50484 10 6452 1 2025-10-25 11:10:18.353 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50416 10 6452 1 2025-10-25 11:11:18.758 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:41188 10 6452 1 2025-10-25 11:12:19.185 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43856 10 6452 1 2025-10-25 11:12:44.556 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 11:12:44.305 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 11:12:44.475 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 11:12:44.462 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 11:12:44.558 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 11:13:19.591 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45998 10 6452 1 2025-10-25 11:09:49.782 00:05:00.288 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 11:14:19.989 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33144 10 6452 1 2025-10-25 11:10:49.780 00:05:00.293 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 11:15:20.415 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34440 10 6452 1 2025-10-25 11:16:20.817 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45812 10 6452 1 2025-10-25 11:17:21.233 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43046 10 6452 1 2025-10-25 11:17:44.641 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 11:17:44.473 00:00:00.016 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 11:17:44.582 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 11:17:44.561 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 11:17:44.695 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 11:18:21.635 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55060 10 6452 1 2025-10-25 11:19:22.038 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50968 10 6452 1 2025-10-25 11:15:49.788 00:05:00.282 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 11:20:22.402 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:41548 10 6452 1 2025-10-25 11:16:49.786 00:05:00.287 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 11:21:22.763 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60982 10 6452 1 2025-10-25 11:22:23.174 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41346 10 6452 1 2025-10-25 11:22:44.929 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 11:22:44.839 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 11:22:44.717 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 11:22:44.847 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 11:22:44.670 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 11:23:23.535 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42942 10 6452 1 2025-10-25 11:24:23.948 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:49226 10 6452 1 2025-10-25 11:25:24.315 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34856 10 6452 1 2025-10-25 11:21:49.790 00:05:00.282 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 11:26:24.727 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46004 10 6452 1 2025-10-25 11:22:49.787 00:05:00.287 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 11:27:25.119 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42594 10 6452 1 2025-10-25 11:27:44.735 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 11:27:44.826 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 11:27:44.821 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 11:27:44.811 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 11:27:44.904 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 11:28:25.482 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47154 10 6452 1 2025-10-25 11:29:25.886 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:39552 10 6452 1 2025-10-25 11:30:26.311 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57926 10 6452 1 2025-10-25 11:31:26.680 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48106 10 6452 1 2025-10-25 11:27:49.795 00:05:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 11:32:27.109 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59540 10 6452 1 2025-10-25 11:32:45.047 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 11:32:44.967 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 11:32:44.781 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 11:32:44.964 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 11:32:44.859 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 11:28:49.792 00:05:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 11:33:27.519 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39658 10 6452 1 2025-10-25 11:34:27.884 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:37274 12 6556 1 2025-10-25 11:35:28.298 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39456 10 6452 1 2025-10-25 11:36:28.702 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58806 10 6452 1 2025-10-25 11:37:29.111 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:52782 10 6452 1 2025-10-25 11:37:45.279 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 11:37:44.904 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 11:37:45.112 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 11:37:45.196 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 11:37:45.227 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 11:33:49.795 00:05:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 11:38:29.517 00:00:10.554 TCP 1.101.0.1:3000 -> 23.104.0.1:49294 10 6452 1 2025-10-25 11:34:49.794 00:05:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 11:39:30.119 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:46540 10 6452 1 2025-10-25 11:40:30.478 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34528 10 6452 1 2025-10-25 11:41:30.880 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49696 10 6452 1 2025-10-25 11:42:45.232 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 11:42:31.285 00:00:11.117 TCP 1.101.0.1:3000 -> 23.104.0.1:36806 10 6452 1 2025-10-25 11:42:45.258 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 11:42:45.153 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 11:42:45.150 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 11:42:45.150 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 11:43:32.442 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:36932 10 6452 1 2025-10-25 11:39:49.796 00:05:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 11:44:32.840 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:60154 10 6452 1 2025-10-25 11:40:49.794 00:05:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 11:45:33.223 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34562 10 6452 1 2025-10-25 11:46:33.630 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47664 10 6452 1 2025-10-25 11:47:45.053 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 11:47:45.285 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 11:47:34.034 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:37560 10 6452 1 2025-10-25 11:47:45.348 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 11:47:44.971 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 11:47:45.196 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 11:48:34.401 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39270 10 6452 1 2025-10-25 11:49:34.802 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:45848 10 6452 1 2025-10-25 11:45:49.797 00:05:00.283 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 11:50:35.177 00:00:10.731 TCP 1.101.0.1:3000 -> 23.104.0.1:46996 12 10375 1 2025-10-25 11:46:49.796 00:05:00.289 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 11:51:35.949 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42874 10 6452 1 2025-10-25 11:52:45.248 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 11:52:45.332 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 11:52:45.079 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 11:52:45.165 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 11:52:45.394 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 11:52:36.356 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33340 10 6452 1 2025-10-25 11:53:36.757 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58886 10 6452 1 2025-10-25 11:54:37.164 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39746 10 6452 1 2025-10-25 11:55:37.583 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:59224 10 6452 1 2025-10-25 11:51:49.800 00:05:00.282 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 11:56:37.959 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42560 10 6452 1 2025-10-25 11:52:49.798 00:05:00.287 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 11:57:45.244 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 11:57:45.391 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 11:57:45.421 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 11:57:45.348 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 11:57:45.504 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 11:57:38.370 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:44896 10 6452 1 2025-10-25 11:58:38.785 00:00:10.660 TCP 1.101.0.1:3000 -> 23.104.0.1:55062 10 6452 1 Summary: total flows: 140, total bytes: 421027, total packets: 1024, avg bps: 920, avg pps: 0, avg bpp: 411 Time window: 2025-10-25 10:57:49 - 2025-10-25 11:58:49 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0017s User: 0.0035s Wall: 0.0023s flows/second: 60925.8 Runtime: 0.0023s