Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-25 13:59:01.191 00:00:10.450 TCP 1.101.0.1:3000 -> 23.104.0.1:59978 10 6870 1 2025-10-25 14:00:01.677 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58552 10 6870 1 2025-10-25 14:01:02.112 00:00:10.929 TCP 1.101.0.1:3000 -> 23.104.0.1:33766 10 6870 1 2025-10-25 13:57:49.851 00:05:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 14:02:03.104 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37916 10 6870 1 2025-10-25 13:58:49.849 00:05:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 14:02:48.065 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 14:02:47.789 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 14:02:47.651 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:02:47.983 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:02:47.798 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 14:03:03.511 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39350 10 6870 1 2025-10-25 14:04:03.912 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35870 10 6870 1 2025-10-25 14:05:04.283 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33162 10 6870 1 2025-10-25 14:06:04.684 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34088 10 6870 1 2025-10-25 14:07:05.112 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55110 10 6870 1 2025-10-25 14:07:48.172 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 14:07:47.959 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 14:07:47.921 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:07:48.089 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:07:48.205 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 14:03:49.853 00:05:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 14:08:05.473 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42956 10 6870 1 2025-10-25 14:04:49.851 00:05:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 14:09:05.878 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58396 10 6870 1 2025-10-25 14:10:06.283 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51320 10 6870 1 2025-10-25 14:11:06.697 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:53198 10 6870 1 2025-10-25 14:12:07.109 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50030 10 6870 1 2025-10-25 14:12:48.319 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 14:12:48.059 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 14:12:48.260 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:12:48.236 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:12:48.146 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 14:13:07.511 00:00:10.702 TCP 1.101.0.1:3000 -> 23.104.0.1:53418 10 6870 1 2025-10-25 14:09:49.855 00:05:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 14:14:08.250 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45736 10 6870 1 2025-10-25 14:10:49.854 00:05:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 14:15:08.655 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:36400 10 6870 1 2025-10-25 14:16:09.083 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35304 10 6870 1 2025-10-25 14:17:09.486 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39344 10 6870 1 2025-10-25 14:17:48.020 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:17:48.149 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 14:17:48.415 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 14:17:48.375 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:17:48.102 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 14:18:09.892 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:49322 10 6870 1 2025-10-25 14:19:10.259 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:45622 10 6870 1 2025-10-25 14:15:49.856 00:05:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 14:20:10.676 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33922 10 6870 1 2025-10-25 14:16:49.854 00:05:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 14:21:11.113 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43664 10 6870 1 2025-10-25 14:22:11.474 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44834 10 6870 1 2025-10-25 14:22:48.611 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 14:22:48.546 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:22:48.551 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:22:48.551 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 14:22:48.633 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 14:23:11.834 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:47132 10 6870 1 2025-10-25 14:24:12.194 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33986 10 6870 1 2025-10-25 14:25:12.597 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:50968 11 6922 1 2025-10-25 14:21:49.858 00:05:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 14:26:13.064 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47418 10 6870 1 2025-10-25 14:22:49.854 00:05:00.287 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 14:27:13.462 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50082 10 6870 1 2025-10-25 14:27:48.422 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 14:27:48.336 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 14:27:48.375 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:27:48.339 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:27:48.436 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 14:28:13.866 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:40272 10 6870 1 2025-10-25 14:29:14.236 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:54842 10 6870 1 2025-10-25 14:30:14.597 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:34752 10 6870 1 2025-10-25 14:31:14.972 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:41138 10 6870 1 2025-10-25 14:27:49.859 00:05:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 14:32:15.342 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:58064 10 6870 1 2025-10-25 14:28:49.856 00:05:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 14:32:48.891 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 14:32:48.819 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 14:32:48.717 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:32:48.810 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:32:49.078 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 14:33:15.709 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60394 10 6870 1 2025-10-25 14:34:16.119 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39064 10 6870 1 2025-10-25 14:35:16.523 00:00:11.004 TCP 1.101.0.1:3000 -> 23.104.0.1:53038 10 6870 1 2025-10-25 14:36:17.564 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56710 10 6870 1 2025-10-25 14:37:17.967 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45240 10 6870 1 2025-10-25 14:37:48.789 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 14:37:48.702 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 14:37:48.748 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:37:48.705 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:37:48.842 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 14:33:49.859 00:05:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 14:38:18.371 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47304 10 6870 1 2025-10-25 14:34:49.857 00:05:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 14:39:18.777 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56528 10 6870 1 2025-10-25 14:40:19.141 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45908 10 6870 1 2025-10-25 14:41:19.548 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37584 10 6870 1 2025-10-25 14:42:19.955 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:44848 10 6870 1 2025-10-25 14:42:48.820 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 14:42:48.820 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 14:42:48.741 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:42:48.737 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:42:48.819 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 14:43:20.318 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38554 10 6870 1 2025-10-25 14:39:49.861 00:05:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 14:44:20.719 00:00:10.481 TCP 1.101.0.1:3000 -> 23.104.0.1:54536 10 6870 1 2025-10-25 14:40:49.859 00:05:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 14:45:21.237 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49210 10 6870 1 2025-10-25 14:46:21.641 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35590 10 6870 1 2025-10-25 14:47:22.042 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59014 10 6870 1 2025-10-25 14:47:48.679 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 14:47:48.733 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:47:49.030 00:00:00.035 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:47:49.049 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 14:47:49.112 00:00:00.035 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 14:48:22.451 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53150 10 6870 1 2025-10-25 14:49:22.857 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:50806 10 6870 1 2025-10-25 14:45:49.863 00:05:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 14:50:23.230 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39242 10 6870 1 2025-10-25 14:46:49.860 00:05:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 14:51:23.634 00:00:10.527 TCP 1.101.0.1:3000 -> 23.104.0.1:33396 14 14716 1 2025-10-25 14:52:24.204 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35196 10 6870 1 2025-10-25 14:52:49.028 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 14:52:48.951 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 14:52:49.026 00:00:00.036 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:52:48.943 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:52:49.066 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 14:53:24.603 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:51960 10 6870 1 2025-10-25 14:54:24.970 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57586 10 6870 1 2025-10-25 14:55:25.382 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:40298 10 6870 1 2025-10-25 14:51:49.865 00:05:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 14:56:25.794 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42348 10 6870 1 2025-10-25 14:52:49.861 00:05:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 14:57:26.197 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36252 10 6870 1 2025-10-25 14:57:48.996 00:00:00.045 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 14:57:49.192 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:57:48.987 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:57:49.191 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 14:57:49.071 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 14:58:26.600 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41144 10 6870 1 Summary: total flows: 140, total bytes: 449978, total packets: 1025, avg bps: 987, avg pps: 0, avg bpp: 439 Time window: 2025-10-25 13:57:49 - 2025-10-25 14:58:36 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0031s User: 0.0021s Wall: 0.0020s flows/second: 69098.9 Runtime: 0.0020s