Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-01 16:59:23.510 00:00:10.450 TCP 1.101.0.1:3000 -> 23.104.0.1:52612 12 10369 1 2025-11-01 17:00:24.000 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57382 10 6452 1 2025-11-01 16:55:53.653 00:06:00.282 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 17:01:13.541 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 17:01:13.860 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 17:01:13.659 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:01:13.459 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:01:13.851 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 17:01:24.405 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49770 10 6452 1 2025-11-01 16:56:53.656 00:06:00.276 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 17:02:24.761 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:35852 10 6452 1 2025-11-01 17:03:25.173 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36038 10 6452 1 2025-11-01 17:04:25.583 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:38738 10 6452 1 2025-11-01 17:05:25.949 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50598 10 6452 1 2025-11-01 17:06:13.935 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 17:06:13.756 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 17:06:13.841 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:06:13.852 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:06:13.847 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 17:06:26.369 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42564 10 6452 1 2025-11-01 17:07:26.728 00:00:10.506 TCP 1.101.0.1:3000 -> 23.104.0.1:38622 10 6452 1 2025-11-01 17:02:53.655 00:06:00.282 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 17:08:27.271 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38558 10 6452 1 2025-11-01 17:03:53.657 00:06:00.276 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 17:09:27.676 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38186 10 6452 1 2025-11-01 17:10:28.113 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56334 10 6452 1 2025-11-01 17:11:13.856 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 17:11:14.046 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 17:11:13.621 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:11:13.774 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:11:13.917 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 17:11:28.519 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44648 12 6556 1 2025-11-01 17:12:28.923 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:42994 10 6452 1 2025-11-01 17:13:29.343 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48374 10 6452 1 2025-11-01 17:14:29.748 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39936 10 6452 1 2025-11-01 17:09:53.656 00:06:00.283 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 17:15:30.113 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60952 10 6452 1 2025-11-01 17:10:53.660 00:06:00.278 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 17:16:13.847 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 17:16:13.871 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 17:16:13.710 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:16:13.765 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:16:14.008 00:00:00.030 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 17:16:30.518 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41212 10 6452 1 2025-11-01 17:17:30.886 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:43550 12 6556 1 2025-11-01 17:18:31.309 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58678 10 6452 1 2025-11-01 17:19:31.714 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:57464 10 6452 1 2025-11-01 17:20:32.134 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49814 10 6452 1 2025-11-01 17:21:14.326 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 17:21:14.250 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:21:14.382 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:21:14.325 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 17:21:14.466 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 17:21:32.535 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:60376 10 6452 1 2025-11-01 17:16:53.657 00:06:00.283 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 17:22:32.933 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:49548 10 6452 1 2025-11-01 17:17:53.661 00:06:00.278 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 17:23:33.360 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54670 10 6452 1 2025-11-01 17:24:33.765 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:42654 10 6452 1 2025-11-01 17:25:34.190 00:00:11.785 TCP 1.101.0.1:3000 -> 23.104.0.1:45036 10 6452 1 2025-11-01 17:26:14.279 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 17:26:14.124 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 17:26:14.011 00:00:00.042 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:26:14.196 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:26:14.234 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 17:26:36.021 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46218 10 6452 1 2025-11-01 17:27:36.383 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59154 10 6452 1 2025-11-01 17:28:36.792 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:52232 10 6452 1 2025-11-01 17:23:53.660 00:06:00.283 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 17:29:37.173 00:00:14.517 TCP 1.101.0.1:3000 -> 23.104.0.1:41938 10 6452 1 2025-11-01 17:24:53.663 00:06:00.277 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 17:30:41.724 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:52710 10 6452 1 2025-11-01 17:31:14.712 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 17:31:14.457 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:31:14.289 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:31:14.462 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 17:31:14.373 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 17:31:42.139 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36232 10 6452 1 2025-11-01 17:32:42.542 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54810 10 6452 1 2025-11-01 17:33:42.940 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:47502 10 6452 1 2025-11-01 17:34:43.352 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50632 10 6452 1 2025-11-01 17:30:53.661 00:06:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 17:35:43.746 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41004 10 6452 1 2025-11-01 17:36:14.480 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 17:36:14.469 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:36:14.432 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:36:14.425 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 17:36:14.515 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 17:36:44.113 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55416 10 6452 1 2025-11-01 17:31:53.665 00:06:00.278 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 17:37:44.473 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35596 10 6452 1 2025-11-01 17:38:44.874 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34028 10 6452 1 2025-11-01 17:39:45.279 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:58834 12 10375 1 2025-11-01 17:40:45.769 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50624 10 6452 1 2025-11-01 17:41:14.635 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 17:41:14.543 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 17:41:14.284 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:41:14.554 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:41:14.550 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 17:41:46.196 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59118 10 6452 1 2025-11-01 17:37:53.663 00:06:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 17:42:46.601 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54570 10 6452 1 2025-11-01 17:38:53.666 00:06:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 17:43:47.009 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:47248 10 6452 1 2025-11-01 17:44:47.405 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41834 10 6452 1 2025-11-01 17:45:47.808 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45212 10 6452 1 2025-11-01 17:46:14.591 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 17:46:14.469 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:46:14.528 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:46:14.521 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 17:46:14.611 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 17:46:48.213 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35178 10 6452 1 2025-11-01 17:47:48.616 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45944 10 6452 1 2025-11-01 17:48:49.025 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58402 10 6452 1 2025-11-01 17:44:53.664 00:06:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 17:49:49.386 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59616 10 6452 1 2025-11-01 17:45:53.666 00:06:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 17:50:49.786 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60540 10 6452 1 2025-11-01 17:51:14.734 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 17:51:14.845 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:51:14.813 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:51:14.631 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 17:51:14.897 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 17:51:50.195 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:58994 10 6452 1 2025-11-01 17:52:50.600 00:00:19.347 TCP 1.101.0.1:3000 -> 23.104.0.1:50522 10 6452 1 2025-11-01 17:54:00.014 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47044 10 6452 1 2025-11-01 17:55:00.416 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41152 10 6452 1 2025-11-01 17:56:15.065 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-01 17:56:14.978 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-01 17:56:14.925 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:56:14.982 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-01 17:56:14.982 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-01 17:56:00.773 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:47626 10 6452 1 2025-11-01 17:51:53.665 00:06:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-01 17:57:01.146 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35256 10 6452 1 2025-11-01 17:52:53.667 00:06:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-01 17:58:01.552 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55586 10 6452 1 Summary: total flows: 137, total bytes: 419334, total packets: 1030, avg bps: 887, avg pps: 0, avg bpp: 407 Time window: 2025-11-01 16:55:53 - 2025-11-01 17:58:53 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0052s User: 0.0009s Wall: 0.0021s flows/second: 66376.3 Runtime: 0.0021s