Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-03 20:58:43.395 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:36340 10 6452 1 2025-11-03 20:59:43.751 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47526 10 6452 1 2025-11-03 21:00:44.153 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56378 10 6452 1 2025-11-03 20:56:54.732 00:05:00.383 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-03 21:01:44.556 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53312 10 6452 1 2025-11-03 21:02:16.330 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 21:02:16.307 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 21:02:16.315 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 21:02:16.023 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 21:02:16.391 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 20:58:54.744 00:05:00.367 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-03 21:02:44.962 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57062 10 6452 1 2025-11-03 21:03:45.361 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56502 10 6452 1 2025-11-03 21:04:45.766 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:54288 10 6452 1 2025-11-03 21:05:46.132 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51416 10 6452 1 2025-11-03 21:02:54.746 00:05:00.371 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-03 21:06:46.506 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45116 10 6452 1 2025-11-03 21:07:16.404 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 21:07:16.354 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 21:07:16.319 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 21:07:16.328 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 21:07:16.403 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 21:07:46.908 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59520 12 6556 1 2025-11-03 21:04:54.746 00:05:00.367 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-03 21:08:47.314 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48048 10 6452 1 2025-11-03 21:09:47.748 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:48762 10 6452 1 2025-11-03 21:10:48.185 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33778 10 6452 1 2025-11-03 21:11:48.583 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46500 10 6452 1 2025-11-03 21:12:16.439 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 21:12:16.368 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 21:12:16.437 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 21:12:16.595 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 21:12:16.521 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 21:12:48.987 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59856 10 6452 1 2025-11-03 21:08:54.745 00:05:00.371 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-03 21:13:49.395 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40658 10 6452 1 2025-11-03 21:10:54.749 00:05:00.366 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-03 21:14:49.791 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44830 10 6452 1 2025-11-03 21:15:50.192 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:38018 12 10369 1 2025-11-03 21:16:50.667 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:37742 10 6452 1 2025-11-03 21:17:16.669 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 21:17:16.587 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 21:17:16.593 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 21:17:16.593 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 21:17:16.560 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 21:17:51.091 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:53612 10 6452 1 2025-11-03 21:14:54.747 00:05:00.370 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-03 21:18:51.507 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42784 10 6452 1 2025-11-03 21:19:51.872 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35852 10 6452 1 2025-11-03 21:16:54.750 00:05:00.366 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-03 21:20:52.279 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52516 10 6452 1 2025-11-03 21:21:52.684 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50280 10 6452 1 2025-11-03 21:22:16.986 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 21:22:16.836 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 21:22:16.985 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 21:22:16.809 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 21:22:17.067 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 21:22:53.120 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51770 10 6452 1 2025-11-03 21:23:53.529 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55640 10 6452 1 2025-11-03 21:20:54.748 00:05:00.374 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-03 21:24:53.937 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41424 10 6452 1 2025-11-03 21:25:54.345 00:00:10.752 TCP 1.101.0.1:3000 -> 23.104.0.1:48950 10 6452 1 2025-11-03 21:22:54.751 00:05:00.368 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-03 21:26:55.137 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36266 10 6452 1 2025-11-03 21:27:16.791 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 21:27:16.600 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 21:27:16.795 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 21:27:16.496 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 21:27:16.878 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 21:27:55.540 00:00:10.578 TCP 1.101.0.1:3000 -> 23.104.0.1:50718 10 6452 1 2025-11-03 21:28:56.155 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:60658 10 6452 1 2025-11-03 21:29:56.520 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45512 10 6452 1 2025-11-03 21:26:54.751 00:05:00.373 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-03 21:30:56.938 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:56152 10 6452 1 2025-11-03 21:31:57.360 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52270 10 6452 1 2025-11-03 21:32:17.001 00:00:00.040 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 21:32:16.949 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 21:32:16.938 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 21:32:17.003 00:00:00.034 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 21:32:17.021 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 21:28:54.754 00:05:00.369 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-03 21:32:57.763 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:47882 10 6452 1 2025-11-03 21:33:58.129 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45240 10 6452 1 2025-11-03 21:34:58.531 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48572 10 6452 1 2025-11-03 21:35:58.935 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:44534 10 6452 1 2025-11-03 21:32:54.754 00:05:00.373 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-03 21:36:59.354 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56614 10 6452 1 2025-11-03 21:37:16.977 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 21:37:16.984 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 21:37:17.065 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 21:37:16.970 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 21:37:17.148 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 21:37:59.757 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:48342 10 6452 1 2025-11-03 21:34:54.755 00:05:00.371 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-03 21:39:00.179 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:50246 10 6452 1 2025-11-03 21:40:00.544 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42952 10 6452 1 2025-11-03 21:41:00.950 00:00:10.449 TCP 1.101.0.1:3000 -> 23.104.0.1:56058 12 10375 1 2025-11-03 21:42:01.436 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39732 10 6452 1 2025-11-03 21:42:17.696 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 21:42:17.702 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 21:42:17.803 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 21:42:17.703 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 21:42:17.886 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 21:38:54.755 00:05:00.373 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-03 21:43:01.840 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:52480 10 6452 1 2025-11-03 21:44:02.259 00:00:12.661 TCP 1.101.0.1:3000 -> 23.104.0.1:50120 10 6452 1 2025-11-03 21:40:54.758 00:05:00.368 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-03 21:45:04.956 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34864 10 6452 1 2025-11-03 21:46:05.363 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37362 10 6452 1 2025-11-03 21:47:05.775 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44770 10 6452 1 2025-11-03 21:47:17.234 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 21:47:17.179 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 21:47:16.920 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 21:47:16.916 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 21:47:17.004 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 21:48:06.180 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60756 10 6452 1 2025-11-03 21:44:54.760 00:05:00.370 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-03 21:49:06.588 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:57102 10 6452 1 2025-11-03 21:50:06.947 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55938 10 6452 1 2025-11-03 21:46:54.762 00:05:00.366 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-03 21:51:07.363 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51072 10 6452 1 2025-11-03 21:52:17.386 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 21:52:17.242 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 21:52:17.241 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 21:52:07.771 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38190 10 6452 1 2025-11-03 21:52:17.305 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 21:52:17.160 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 21:53:08.181 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40512 10 6452 1 2025-11-03 21:54:08.588 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:54630 10 6452 1 2025-11-03 21:50:54.761 00:05:00.372 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-03 21:55:08.955 00:00:10.588 TCP 1.101.0.1:3000 -> 23.104.0.1:52784 10 6452 1 2025-11-03 21:56:09.595 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53720 10 6452 1 2025-11-03 21:52:54.764 00:05:00.368 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-03 21:57:17.420 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-03 21:57:17.323 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-03 21:57:17.276 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 21:57:17.337 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-03 21:57:17.542 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-03 21:57:10.000 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55614 10 6452 1 2025-11-03 21:58:10.407 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56894 10 6452 1 Summary: total flows: 140, total bytes: 424944, total packets: 1026, avg bps: 922, avg pps: 0, avg bpp: 414 Time window: 2025-11-03 20:56:54 - 2025-11-03 21:58:20 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0038s User: 0.0019s Wall: 0.0020s flows/second: 70849.7 Runtime: 0.0020s