Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-25 21:53:50.052 00:06:00.239 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 21:59:02.869 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53260 10 6452 1 2025-10-25 22:00:03.277 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44216 10 6452 1 2025-10-25 22:01:03.686 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:49148 10 6452 1 2025-10-25 22:02:04.112 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:46842 10 6452 1 2025-10-25 22:02:57.599 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 22:02:57.666 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 22:02:57.669 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 22:02:57.527 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 22:02:57.516 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 22:03:04.520 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43136 10 6452 1 2025-10-25 21:58:50.054 00:06:00.242 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 22:04:04.888 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37078 10 6452 1 2025-10-25 22:05:05.293 00:00:10.851 TCP 1.101.0.1:3000 -> 23.104.0.1:36048 10 6452 1 2025-10-25 22:00:50.056 00:06:00.237 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 22:06:06.184 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:56650 12 10375 1 2025-10-25 22:07:06.662 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:50168 10 6452 1 2025-10-25 22:07:57.879 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 22:07:57.945 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 22:07:57.805 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 22:07:57.624 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 22:07:57.796 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 22:08:07.025 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55220 10 6452 1 2025-10-25 22:09:07.428 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51086 10 6452 1 2025-10-25 22:10:07.832 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:47006 10 6452 1 2025-10-25 22:05:50.056 00:06:00.243 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 22:11:08.230 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57690 10 6452 1 2025-10-25 22:12:08.640 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53946 10 6452 1 2025-10-25 22:07:50.058 00:06:00.239 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 22:12:58.030 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 22:12:57.948 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 22:12:57.886 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 22:12:57.862 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 22:12:57.944 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 22:13:09.054 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41760 10 6452 1 2025-10-25 22:14:09.418 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47048 10 6452 1 2025-10-25 22:15:09.819 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54016 10 6452 1 2025-10-25 22:16:10.218 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:35234 10 6452 1 2025-10-25 22:17:10.589 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47392 10 6452 1 2025-10-25 22:12:50.057 00:06:00.242 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 22:17:57.887 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 22:17:57.800 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 22:17:57.915 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 22:17:57.981 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 22:17:58.065 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 22:18:11.004 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35658 10 6452 1 2025-10-25 22:19:11.412 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:58252 10 6452 1 2025-10-25 22:14:50.060 00:06:00.237 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 22:20:11.826 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35108 10 6452 1 2025-10-25 22:21:12.224 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41166 10 6452 1 2025-10-25 22:22:12.646 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34152 10 6452 1 2025-10-25 22:22:58.195 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 22:22:57.996 00:00:00.034 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 22:22:58.116 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 22:22:57.830 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 22:22:58.114 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 22:23:13.063 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58422 10 6452 1 2025-10-25 22:24:13.469 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:53816 10 6452 1 2025-10-25 22:19:50.059 00:06:00.243 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 22:25:13.868 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:32872 10 6452 1 2025-10-25 22:26:14.281 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38910 10 6452 1 2025-10-25 22:21:50.063 00:06:00.239 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 22:27:14.682 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:43712 10 6452 1 2025-10-25 22:27:58.157 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 22:27:57.858 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 22:27:58.165 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 22:27:58.208 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 22:27:58.290 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 22:28:15.113 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:36444 10 6452 1 2025-10-25 22:29:15.467 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47226 10 6452 1 2025-10-25 22:30:15.864 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47860 10 6452 1 2025-10-25 22:31:16.270 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51596 10 6452 1 2025-10-25 22:26:50.064 00:06:00.241 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 22:32:16.668 00:00:15.912 TCP 1.101.0.1:3000 -> 23.104.0.1:38484 11 6504 1 2025-10-25 22:32:59.476 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 22:32:59.533 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 22:32:59.449 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 22:32:59.306 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 22:32:59.389 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 22:33:22.621 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45942 10 6452 1 2025-10-25 22:28:50.065 00:06:00.238 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 22:34:23.024 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42670 10 6452 1 2025-10-25 22:35:23.389 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:33492 11 6504 1 2025-10-25 22:36:23.848 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:36618 10 6452 1 2025-10-25 22:37:24.279 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51140 10 6452 1 2025-10-25 22:37:58.204 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 22:37:57.987 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 22:37:58.226 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 22:37:58.200 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 22:37:58.284 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 22:38:24.678 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38116 10 6452 1 2025-10-25 22:33:50.064 00:06:00.243 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 22:39:25.119 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:49386 10 6452 1 2025-10-25 22:40:25.553 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42904 10 6452 1 2025-10-25 22:35:50.070 00:06:00.236 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 22:41:25.961 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41734 10 6452 1 2025-10-25 22:42:26.324 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43034 10 6452 1 2025-10-25 22:42:58.601 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 22:42:58.525 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 22:42:58.281 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 22:42:58.407 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 22:42:58.516 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 22:43:26.685 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59942 10 6452 1 2025-10-25 22:44:27.104 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43770 10 6452 1 2025-10-25 22:45:27.507 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44532 10 6452 1 2025-10-25 22:40:50.065 00:06:00.243 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 22:46:27.906 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:33980 10 6452 1 2025-10-25 22:47:28.310 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58214 10 6452 1 2025-10-25 22:42:50.068 00:06:00.238 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 22:47:58.614 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 22:47:58.411 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 22:47:58.412 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 22:47:58.407 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 22:47:58.531 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 22:48:28.668 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38776 10 6452 1 2025-10-25 22:49:29.095 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39826 10 6452 1 2025-10-25 22:50:29.495 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41688 10 6452 1 2025-10-25 22:51:29.898 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58090 10 6452 1 2025-10-25 22:52:30.309 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46434 10 6452 1 2025-10-25 22:47:50.073 00:06:00.238 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 22:52:58.645 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 22:52:58.641 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 22:52:58.846 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 22:52:59.262 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 22:52:59.344 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 22:53:30.718 00:00:13.827 TCP 1.101.0.1:3000 -> 23.104.0.1:45080 10 6452 1 2025-10-25 22:54:34.612 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40128 10 6452 1 2025-10-25 22:49:50.075 00:06:00.232 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 22:55:35.014 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:53386 10 6452 1 2025-10-25 22:56:35.374 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44042 10 6452 1 2025-10-25 22:57:35.778 00:00:11.845 TCP 1.101.0.1:3000 -> 23.104.0.1:44562 10 6452 1 2025-10-25 22:57:58.600 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 22:57:58.618 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 22:57:58.618 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 22:57:58.628 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 22:57:58.517 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 22:58:37.661 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40188 10 6452 1 Summary: total flows: 137, total bytes: 420904, total packets: 1022, avg bps: 863, avg pps: 0, avg bpp: 411 Time window: 2025-10-25 21:53:50 - 2025-10-25 22:58:48 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0035s User: 0.0017s Wall: 0.0020s flows/second: 67817.7 Runtime: 0.0020s