Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-12 23:59:10.870 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52694 10 6452 1 2025-11-12 23:55:59.769 00:05:00.232 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 00:00:11.275 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35360 10 6452 1 2025-11-13 00:01:11.675 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51504 10 6452 1 2025-11-13 00:01:39.776 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:01:39.915 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 00:01:39.850 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 00:01:39.813 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:01:39.859 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-12 23:57:59.767 00:05:00.238 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 00:02:12.105 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49430 10 6452 1 2025-11-13 00:03:12.467 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57548 10 6452 1 2025-11-13 00:04:12.874 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50878 10 6452 1 2025-11-13 00:05:13.237 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43668 10 6452 1 2025-11-13 00:01:59.772 00:05:00.254 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 00:06:13.644 00:00:21.924 TCP 1.101.0.1:3000 -> 23.104.0.1:59806 10 6452 1 2025-11-13 00:06:39.784 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 00:06:39.734 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:06:39.850 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:06:39.848 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 00:06:39.933 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 00:07:25.604 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:50608 10 6452 1 2025-11-13 00:03:59.770 00:05:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 00:08:25.962 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58382 10 6452 1 2025-11-13 00:09:26.368 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50032 10 6452 1 2025-11-13 00:10:26.766 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:53262 10 6452 1 2025-11-13 00:11:40.199 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:11:40.281 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 00:11:27.180 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33504 10 6452 1 2025-11-13 00:11:40.133 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 00:11:40.221 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:11:40.282 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 00:07:59.773 00:05:00.261 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 00:12:27.582 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53566 10 6452 1 2025-11-13 00:13:27.985 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59986 10 6452 1 2025-11-13 00:09:59.773 00:05:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 00:14:28.393 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35866 10 6452 1 2025-11-13 00:15:28.802 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54376 10 6452 1 2025-11-13 00:16:40.334 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 00:16:40.305 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:16:40.329 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:16:40.099 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 00:16:29.214 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59368 10 6452 1 2025-11-13 00:16:40.412 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 00:17:29.622 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45136 10 6452 1 2025-11-13 00:13:59.776 00:05:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 00:18:30.027 00:00:11.037 TCP 1.101.0.1:3000 -> 23.104.0.1:59046 10 6452 1 2025-11-13 00:19:31.110 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48452 10 6452 1 2025-11-13 00:15:59.774 00:05:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 00:20:31.513 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45296 10 6452 1 2025-11-13 00:21:40.381 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 00:21:40.105 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:21:40.071 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:21:40.322 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 00:21:40.154 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 00:21:31.919 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37050 10 6452 1 2025-11-13 00:22:32.320 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60034 10 6452 1 2025-11-13 00:23:32.721 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:37794 10 6452 1 2025-11-13 00:19:59.779 00:05:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 00:24:33.155 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59534 10 6452 1 2025-11-13 00:25:33.553 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:48044 10 6452 1 2025-11-13 00:21:59.776 00:05:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 00:26:40.374 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:26:40.377 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 00:26:40.372 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 00:26:40.345 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:26:40.457 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 00:26:33.915 00:00:11.970 TCP 1.101.0.1:3000 -> 23.104.0.1:49372 10 6452 1 2025-11-13 00:27:35.920 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42294 10 6452 1 2025-11-13 00:28:36.329 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35812 10 6452 1 2025-11-13 00:29:36.732 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39468 10 6452 1 2025-11-13 00:25:59.779 00:05:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 00:30:37.139 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48232 10 6452 1 2025-11-13 00:31:40.510 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 00:31:40.108 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:31:40.353 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:31:40.436 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 00:31:40.435 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 00:31:37.548 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:37394 10 6452 1 2025-11-13 00:27:59.776 00:05:00.264 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 00:32:37.931 00:00:10.353 TCP 1.101.0.1:3000 -> 23.104.0.1:41354 10 6452 1 2025-11-13 00:33:38.332 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33868 10 6452 1 2025-11-13 00:34:38.738 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40958 10 6452 1 2025-11-13 00:35:39.146 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33752 10 6452 1 2025-11-13 00:31:59.780 00:05:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 00:36:40.577 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 00:36:40.343 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:36:40.667 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:36:40.675 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 00:36:40.750 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 00:36:39.551 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:53190 10 6452 1 2025-11-13 00:37:39.927 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:60558 10 6452 1 2025-11-13 00:33:59.778 00:05:00.264 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 00:38:40.355 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52130 10 6452 1 2025-11-13 00:39:40.755 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:41340 10 6452 1 2025-11-13 00:40:41.189 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58314 10 6452 1 2025-11-13 00:41:40.716 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 00:41:40.576 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 00:41:40.507 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:41:40.633 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:41:40.574 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 00:41:41.552 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33050 10 6452 1 2025-11-13 00:37:59.781 00:05:00.260 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 00:42:41.956 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53100 10 6452 1 2025-11-13 00:43:42.365 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58690 10 6452 1 2025-11-13 00:39:59.779 00:05:00.264 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 00:44:42.771 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:54050 10 6452 1 2025-11-13 00:45:43.138 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59812 10 6452 1 2025-11-13 00:46:40.553 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 00:46:40.858 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 00:46:40.727 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:46:40.471 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:46:40.760 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 00:46:43.544 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58866 10 6452 1 2025-11-13 00:47:43.948 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53716 10 6452 1 2025-11-13 00:43:59.785 00:05:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 00:48:44.359 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56650 10 6452 1 2025-11-13 00:49:44.722 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:58890 10 6452 1 2025-11-13 00:45:59.785 00:05:00.260 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 00:50:45.112 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:35530 10 6452 1 2025-11-13 00:51:40.912 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 00:51:40.951 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 00:51:40.877 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:51:40.829 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:51:40.824 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 00:51:45.486 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35186 10 6452 1 2025-11-13 00:52:45.889 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:33374 12 6556 1 2025-11-13 00:53:46.318 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45096 10 6452 1 2025-11-13 00:49:59.789 00:05:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-13 00:54:46.681 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:58964 10 6452 1 2025-11-13 00:51:59.785 00:05:00.261 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-13 00:55:47.109 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:42142 10 6452 1 2025-11-13 00:56:40.958 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-13 00:56:40.784 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:56:40.912 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-13 00:56:40.913 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-13 00:56:40.995 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-13 00:56:47.473 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42662 10 6452 1 2025-11-13 00:57:47.883 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:51870 12 6556 1 Summary: total flows: 139, total bytes: 410756, total packets: 1014, avg bps: 883, avg pps: 0, avg bpp: 405 Time window: 2025-11-12 23:55:59 - 2025-11-13 00:57:58 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0057s User: 0.0000s Wall: 0.0021s flows/second: 66033.3 Runtime: 0.0021s