Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-29 10:59:01.010 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48820 10 6452 1 2025-09-29 11:00:13.055 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 11:00:13.198 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 11:00:13.156 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:00:13.060 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:00:01.412 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54108 10 6452 1 2025-09-29 11:00:13.142 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 11:01:01.809 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37450 10 6452 1 2025-09-29 11:02:02.217 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53460 10 6452 1 2025-09-29 11:03:02.580 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53580 10 6452 1 2025-09-29 10:58:36.576 00:06:00.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 11:04:02.986 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56298 10 6452 1 2025-09-29 10:59:36.574 00:06:00.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 11:05:13.346 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 11:05:13.262 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 11:05:13.290 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:05:13.402 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:05:03.388 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:45470 10 6452 1 2025-09-29 11:05:13.485 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 11:06:03.757 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54408 10 6452 1 2025-09-29 11:07:04.154 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37542 10 6452 1 2025-09-29 11:08:04.518 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:32872 10 6452 1 2025-09-29 11:09:04.934 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:47552 10 6452 1 2025-09-29 11:10:13.124 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 11:10:13.252 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 11:10:13.127 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:10:13.130 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:10:13.213 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 11:10:05.356 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50514 10 6452 1 2025-09-29 11:05:36.578 00:06:00.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 11:11:05.762 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:57398 10 6452 1 2025-09-29 11:06:36.575 00:06:00.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 11:12:06.142 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42436 10 6452 1 2025-09-29 11:13:06.546 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48712 10 6452 1 2025-09-29 11:14:06.951 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49190 10 6452 1 2025-09-29 11:15:13.370 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 11:15:13.402 00:00:00.029 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 11:15:13.285 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 11:15:13.238 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:15:13.288 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:15:07.362 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60112 10 6452 1 2025-09-29 11:16:07.765 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:35494 10 6452 1 2025-09-29 11:17:08.186 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51468 10 6452 1 2025-09-29 11:12:36.579 00:06:00.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 11:18:08.589 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41310 10 6452 1 2025-09-29 11:13:36.575 00:06:00.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 11:19:09.005 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39972 10 6452 1 2025-09-29 11:20:13.472 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 11:20:13.386 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 11:20:13.389 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 11:20:13.278 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:20:13.389 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:20:09.405 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42050 10 6452 1 2025-09-29 11:21:09.811 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60746 10 6452 1 2025-09-29 11:22:10.216 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37046 10 6452 1 2025-09-29 11:23:10.631 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38722 10 6452 1 2025-09-29 11:24:11.038 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55346 10 6452 1 2025-09-29 11:19:36.582 00:06:00.166 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 11:25:13.674 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 11:25:13.606 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 11:25:13.540 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:25:13.605 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:25:13.688 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 11:25:11.438 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:33518 10 6452 1 2025-09-29 11:20:36.577 00:06:00.173 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 11:26:11.805 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36742 10 6452 1 2025-09-29 11:27:12.208 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:59326 10 6452 1 2025-09-29 11:28:12.614 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56950 10 6452 1 2025-09-29 11:29:13.014 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:35644 10 6452 1 2025-09-29 11:30:13.726 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 11:30:13.597 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 11:30:13.551 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:30:13.477 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:30:13.559 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 11:30:13.391 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56948 10 6452 1 2025-09-29 11:31:13.785 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53042 10 6452 1 2025-09-29 11:26:36.580 00:06:00.172 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 11:32:14.190 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38370 10 6452 1 2025-09-29 11:27:36.579 00:06:00.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 11:33:14.590 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47106 10 6452 1 2025-09-29 11:34:14.949 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35458 10 6452 1 2025-09-29 11:35:13.657 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 11:35:13.754 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 11:35:13.862 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 11:35:13.576 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:35:13.576 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:35:15.358 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59258 10 6452 1 2025-09-29 11:36:15.761 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36298 10 6452 1 2025-09-29 11:37:16.169 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39140 10 6452 1 2025-09-29 11:38:16.576 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57798 10 6452 1 2025-09-29 11:33:36.583 00:06:00.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 11:39:16.978 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:34502 10 6452 1 2025-09-29 11:34:36.581 00:06:00.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 11:40:13.749 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 11:40:13.833 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 11:40:13.600 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:40:13.832 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:40:13.916 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 11:40:17.349 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44552 10 6452 1 2025-09-29 11:41:17.748 00:00:11.052 TCP 1.101.0.1:3000 -> 23.104.0.1:38078 10 6452 1 2025-09-29 11:42:18.838 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34350 10 6452 1 2025-09-29 11:43:19.243 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45048 10 6452 1 2025-09-29 11:44:19.648 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49104 10 6452 1 2025-09-29 11:45:14.217 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 11:45:14.332 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 11:45:14.225 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 11:45:13.767 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:45:14.135 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:45:20.063 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:55038 10 6452 1 2025-09-29 11:40:36.585 00:06:00.173 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 11:46:20.429 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:48340 10 6452 1 2025-09-29 11:41:36.583 00:06:00.179 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 11:47:20.795 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:55688 12 10369 1 2025-09-29 11:48:21.282 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53164 10 6452 1 2025-09-29 11:49:21.681 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50844 10 6452 1 2025-09-29 11:50:14.285 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 11:50:14.252 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 11:50:14.043 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:50:14.186 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:50:14.269 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 11:50:22.106 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48138 10 6452 1 2025-09-29 11:51:22.510 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34354 10 6452 1 2025-09-29 11:52:22.917 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:44670 10 6452 1 2025-09-29 11:47:36.589 00:06:00.173 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 11:53:23.297 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57558 10 6452 1 2025-09-29 11:48:36.584 00:06:00.179 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 11:54:23.705 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57614 10 6452 1 2025-09-29 11:55:14.325 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 11:55:13.994 00:00:00.048 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 11:55:14.111 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 11:55:14.006 00:00:00.036 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:55:14.243 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:55:24.113 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43852 10 6452 1 2025-09-29 11:56:24.515 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51790 10 6452 1 2025-09-29 11:57:24.919 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:33926 10 6452 1 2025-09-29 11:58:25.342 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48786 10 6452 1 Summary: total flows: 136, total bytes: 419933, total packets: 1006, avg bps: 933, avg pps: 0, avg bpp: 417 Time window: 2025-09-29 10:58:36 - 2025-09-29 11:58:35 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0025s User: 0.0025s Wall: 0.0026s flows/second: 52856.3 Runtime: 0.0026s