Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-04 01:55:38.830 00:05:00.377 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 01:59:38.110 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44138 10 6452 1 2025-10-04 02:00:38.523 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44736 10 6452 1 2025-10-04 01:57:38.828 00:05:00.383 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 02:01:38.928 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:60772 10 6452 1 2025-10-04 02:02:27.001 00:00:00.037 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 02:02:26.994 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 02:02:26.896 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:02:26.945 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:02:27.030 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 02:02:39.294 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49560 10 6452 1 2025-10-04 02:03:39.696 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58372 10 6452 1 2025-10-04 02:04:40.114 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46986 10 6452 1 2025-10-04 02:01:38.832 00:05:00.378 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 02:05:40.516 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55610 10 6452 1 2025-10-04 02:06:40.923 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35390 10 6452 1 2025-10-04 02:07:26.680 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 02:07:26.682 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 02:07:26.611 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:07:26.845 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:07:26.927 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 02:03:38.830 00:05:00.384 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 02:07:41.337 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:47048 11 6504 1 2025-10-04 02:08:41.790 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58490 10 6452 1 2025-10-04 02:09:42.200 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60562 10 6452 1 2025-10-04 02:10:42.565 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58390 10 6452 1 2025-10-04 02:07:38.832 00:05:00.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 02:11:42.968 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:45842 10 6452 1 2025-10-04 02:12:27.321 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 02:12:27.183 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 02:12:27.143 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:12:27.193 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:12:27.276 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 02:12:43.333 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41640 10 6452 1 2025-10-04 02:09:38.829 00:05:00.386 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 02:13:43.731 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57090 10 6452 1 2025-10-04 02:14:44.143 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47608 10 6452 1 2025-10-04 02:15:44.545 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:51390 10 6452 1 2025-10-04 02:16:44.903 00:00:12.067 TCP 1.101.0.1:3000 -> 23.104.0.1:57206 10 6452 1 2025-10-04 02:17:27.049 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 02:17:26.956 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 02:17:26.762 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:17:26.705 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:17:26.788 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 02:13:38.842 00:05:00.372 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 02:17:47.031 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:57788 10 6452 1 2025-10-04 02:18:47.436 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49854 10 6452 1 2025-10-04 02:15:38.840 00:05:00.377 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 02:19:47.846 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:38998 10 6452 1 2025-10-04 02:20:48.271 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37982 10 6452 1 2025-10-04 02:21:48.675 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57246 10 6452 1 2025-10-04 02:22:26.995 00:00:00.043 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 02:22:27.088 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 02:22:27.063 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:22:27.138 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:22:27.221 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 02:22:49.108 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41522 10 6452 1 2025-10-04 02:19:38.842 00:05:00.372 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 02:23:49.514 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39368 10 6452 1 2025-10-04 02:24:49.916 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53328 10 6452 1 2025-10-04 02:21:38.841 00:05:00.377 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 02:25:50.316 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:54640 10 6452 1 2025-10-04 02:26:50.682 00:00:15.266 TCP 1.101.0.1:3000 -> 23.104.0.1:38374 10 6452 1 2025-10-04 02:27:28.241 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 02:27:28.328 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 02:27:28.442 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:27:28.242 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:27:28.325 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 02:27:56.019 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46130 10 6452 1 2025-10-04 02:28:56.383 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:45030 10 6452 1 2025-10-04 02:25:38.844 00:05:00.372 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 02:29:56.791 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46076 10 6452 1 2025-10-04 02:30:57.197 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:55466 10 6452 1 2025-10-04 02:27:38.842 00:05:00.378 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 02:31:57.568 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:48022 10 6452 1 2025-10-04 02:32:27.299 00:00:00.029 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:32:27.398 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 02:32:27.289 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 02:32:27.246 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:32:27.381 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 02:32:57.980 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:54924 10 6452 1 2025-10-04 02:33:58.352 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:41320 10 6452 1 2025-10-04 02:34:58.761 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:38704 10 6452 1 2025-10-04 02:31:38.846 00:05:00.372 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 02:35:59.130 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56656 10 6452 1 2025-10-04 02:36:59.546 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52984 10 6452 1 2025-10-04 02:37:27.379 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 02:37:27.553 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 02:37:27.437 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:37:27.465 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:37:27.549 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 02:33:38.844 00:05:00.377 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 02:37:59.957 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33518 10 6452 1 2025-10-04 02:39:00.357 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53162 10 6452 1 2025-10-04 02:40:00.762 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:37936 10 6452 1 2025-10-04 02:41:01.179 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50864 10 6452 1 2025-10-04 02:37:38.849 00:05:00.370 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 02:42:01.587 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38164 10 6452 1 2025-10-04 02:42:27.838 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 02:42:27.964 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 02:42:27.327 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:42:27.675 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:42:27.757 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 02:43:01.988 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59428 10 6452 1 2025-10-04 02:39:38.846 00:05:00.377 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 02:44:02.392 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33746 10 6452 1 2025-10-04 02:45:02.792 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57000 10 6452 1 2025-10-04 02:46:03.199 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49062 10 6452 1 2025-10-04 02:47:03.609 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:45480 10 6452 1 2025-10-04 02:47:27.826 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 02:47:27.824 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 02:47:27.818 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 02:47:27.735 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:47:27.744 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:43:38.849 00:05:00.372 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 02:48:04.026 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43204 10 6452 1 2025-10-04 02:49:04.441 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43414 10 6452 1 2025-10-04 02:45:38.848 00:05:00.376 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 02:50:04.842 00:00:10.434 TCP 1.101.0.1:3000 -> 23.104.0.1:48920 11 6504 1 2025-10-04 02:51:05.316 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:44134 10 6452 1 2025-10-04 02:52:05.711 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54096 10 6452 1 2025-10-04 02:52:27.899 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 02:52:27.819 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 02:52:27.638 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 02:52:27.767 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:52:27.817 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:53:06.113 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53678 10 6452 1 2025-10-04 02:49:38.851 00:05:00.389 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 02:54:06.523 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41352 10 6452 1 2025-10-04 02:55:06.931 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:41826 10 6452 1 2025-10-04 02:51:38.850 00:05:00.394 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 02:56:07.351 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57320 10 6452 1 2025-10-04 02:57:07.763 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:48834 10 6452 1 2025-10-04 02:57:27.855 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 02:57:27.828 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 02:57:27.671 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 02:57:27.795 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:57:27.772 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:58:08.202 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33514 10 6452 1 Summary: total flows: 139, total bytes: 410652, total packets: 1012, avg bps: 873, avg pps: 0, avg bpp: 405 Time window: 2025-10-04 01:55:38 - 2025-10-04 02:58:18 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0024s User: 0.0024s Wall: 0.0019s flows/second: 72092.0 Runtime: 0.0019s