Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-30 12:58:42.789 00:00:11.448 TCP 1.101.0.1:3000 -> 23.104.0.1:52536 10 6452 1 2025-10-30 12:59:44.288 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58794 10 6452 1 2025-10-30 13:00:11.344 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 13:00:11.221 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:00:11.191 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:00:10.993 00:00:00.042 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 13:00:11.274 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 13:00:44.692 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38148 10 6452 1 2025-10-30 13:01:45.071 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:39808 10 6452 1 2025-10-30 12:56:52.296 00:06:00.401 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 12:57:52.291 00:06:00.406 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 13:02:45.518 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58206 10 6452 1 2025-10-30 13:03:45.920 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:40994 10 6452 1 2025-10-30 13:04:46.305 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33132 10 6452 1 2025-10-30 13:05:11.086 00:00:00.051 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 13:05:11.123 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 13:05:11.054 00:00:00.018 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:05:11.004 00:00:00.050 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:05:11.176 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 13:05:46.708 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33508 10 6452 1 2025-10-30 13:06:47.112 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49460 10 6452 1 2025-10-30 13:07:47.523 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41660 10 6452 1 2025-10-30 13:03:52.295 00:06:00.402 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 13:08:47.931 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37856 13 6608 1 2025-10-30 13:04:52.293 00:06:00.408 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 13:09:48.330 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59092 10 6452 1 2025-10-30 13:10:11.290 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 13:10:11.309 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:10:11.288 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:10:11.418 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 13:10:11.372 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 13:10:48.694 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35666 10 6452 1 2025-10-30 13:11:49.070 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60416 10 6452 1 2025-10-30 13:12:49.477 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42750 10 6452 1 2025-10-30 13:13:49.881 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34682 10 6452 1 2025-10-30 13:14:50.245 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:38042 10 6452 1 2025-10-30 13:15:11.395 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 13:15:11.111 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:15:11.404 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:15:11.328 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 13:15:11.488 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 13:10:52.296 00:06:00.403 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 13:15:50.616 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53168 10 6452 1 2025-10-30 13:11:52.295 00:06:00.410 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 13:16:51.019 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45756 10 6452 1 2025-10-30 13:17:51.421 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:38416 10 6452 1 2025-10-30 13:18:51.776 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38054 10 6452 1 2025-10-30 13:19:52.182 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56928 10 6452 1 2025-10-30 13:20:11.636 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 13:20:11.399 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:20:11.732 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:20:11.640 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 13:20:11.813 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 13:20:52.586 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41920 10 6452 1 2025-10-30 13:21:52.985 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:52920 10 6452 1 2025-10-30 13:17:52.297 00:06:00.406 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 13:22:53.406 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:35932 10 6452 1 2025-10-30 13:18:52.296 00:06:00.411 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 13:23:53.827 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39562 10 6452 1 2025-10-30 13:24:54.232 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:51228 10 6452 1 2025-10-30 13:25:11.847 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 13:25:11.540 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 13:25:11.358 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:25:11.765 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:25:11.832 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 13:25:54.638 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55236 10 6452 1 2025-10-30 13:26:55.048 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57670 10 6452 1 2025-10-30 13:27:55.453 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60926 10 6452 1 2025-10-30 13:28:55.857 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:54952 10 6452 1 2025-10-30 13:24:52.299 00:06:00.406 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 13:29:56.267 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35052 10 6452 1 2025-10-30 13:30:11.698 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 13:30:11.495 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:30:11.871 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:30:11.641 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 13:30:11.953 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 13:25:52.298 00:06:00.410 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 13:30:56.667 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:53254 10 6452 1 2025-10-30 13:31:57.035 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33478 10 6452 1 2025-10-30 13:32:57.401 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52148 10 6452 1 2025-10-30 13:33:57.801 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45562 10 6452 1 2025-10-30 13:34:58.208 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50502 10 6452 1 2025-10-30 13:35:11.637 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 13:35:11.582 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:35:11.822 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:35:11.830 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 13:35:11.906 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 13:35:58.612 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58322 10 6452 1 2025-10-30 13:31:52.302 00:06:00.405 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 13:36:59.021 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60580 10 6452 1 2025-10-30 13:32:52.300 00:06:00.411 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 13:37:59.424 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50554 10 6452 1 2025-10-30 13:38:59.780 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:60734 10 6452 1 2025-10-30 13:40:00.152 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44650 10 6452 1 2025-10-30 13:40:11.960 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 13:40:11.853 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:40:11.908 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:40:11.959 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 13:40:11.991 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 13:41:00.558 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58660 10 6452 1 2025-10-30 13:42:00.958 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:42674 10 6452 1 2025-10-30 13:43:01.324 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:45268 10 6452 1 2025-10-30 13:38:52.304 00:06:00.405 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 13:44:01.686 00:00:10.458 TCP 1.101.0.1:3000 -> 23.104.0.1:39510 12 10369 1 2025-10-30 13:39:52.301 00:06:00.410 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 13:45:12.058 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 13:45:11.982 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:45:12.058 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:45:02.185 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60044 10 6452 1 2025-10-30 13:45:12.045 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 13:45:12.140 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 13:46:02.587 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50350 10 6452 1 2025-10-30 13:47:02.992 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49776 10 6452 1 2025-10-30 13:48:03.409 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40268 10 6452 1 2025-10-30 13:49:03.816 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44828 10 6452 1 2025-10-30 13:50:12.133 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 13:50:12.253 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:50:12.186 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:50:12.253 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 13:50:04.227 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:43792 10 6452 1 2025-10-30 13:50:12.270 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 13:45:52.307 00:06:00.404 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 13:51:04.653 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39980 10 6452 1 2025-10-30 13:46:52.304 00:06:00.411 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 13:52:05.064 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59078 10 6452 1 2025-10-30 13:53:05.442 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37456 10 6452 1 2025-10-30 13:54:05.812 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54062 10 6452 1 2025-10-30 13:55:12.443 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 13:55:12.621 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:55:12.330 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:55:12.325 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 13:55:12.413 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 13:55:06.215 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43504 10 6452 1 2025-10-30 13:56:06.622 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60002 10 6452 1 2025-10-30 13:57:07.018 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59934 10 6452 1 2025-10-30 13:52:52.309 00:06:00.403 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 13:58:07.441 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42292 10 6452 1 Summary: total flows: 137, total bytes: 420950, total packets: 1023, avg bps: 905, avg pps: 0, avg bpp: 411 Time window: 2025-10-30 12:56:52 - 2025-10-30 13:58:52 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0025s User: 0.0025s Wall: 0.0017s flows/second: 78823.0 Runtime: 0.0018s