Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-29 00:53:51.602 00:06:00.355 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 00:59:28.532 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 00:59:28.429 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 00:59:28.098 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 00:59:28.198 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 00:59:28.281 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 00:59:37.812 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55280 10 6452 1 2025-10-29 01:00:38.216 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46162 10 6452 1 2025-10-29 01:01:38.623 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:51478 10 6452 1 2025-10-29 00:56:51.602 00:06:00.360 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 01:02:38.985 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36790 10 6452 1 2025-10-29 01:03:39.387 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58194 10 6452 1 2025-10-29 01:04:27.765 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 01:04:27.687 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 01:04:27.755 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 01:04:27.762 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 01:04:27.837 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 01:04:39.794 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35040 10 6452 1 2025-10-29 01:05:40.192 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56820 10 6452 1 2025-10-29 01:00:51.608 00:06:00.352 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 01:06:40.590 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47144 10 6452 1 2025-10-29 01:07:40.993 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50022 10 6452 1 2025-10-29 01:03:51.606 00:06:00.357 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 01:08:41.404 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:37628 10 6452 1 2025-10-29 01:09:28.004 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 01:09:27.923 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 01:09:27.922 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 01:09:27.920 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 01:09:27.845 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 01:09:41.818 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42186 10 6452 1 2025-10-29 01:10:42.224 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43806 10 6452 1 2025-10-29 01:11:42.630 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36488 10 6452 1 2025-10-29 01:12:42.996 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:54348 10 6452 1 2025-10-29 01:07:51.612 00:06:00.349 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 01:13:43.442 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:43958 10 6452 1 2025-10-29 01:14:27.934 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 01:14:28.173 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 01:14:27.671 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 01:14:28.143 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 01:14:28.226 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 01:14:43.840 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:44880 10 6452 1 2025-10-29 01:15:44.271 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59598 10 6452 1 2025-10-29 01:10:51.610 00:06:00.353 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 01:16:44.676 00:00:10.663 TCP 1.101.0.1:3000 -> 23.104.0.1:44886 10 6452 1 2025-10-29 01:17:45.377 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51296 10 6452 1 2025-10-29 01:18:45.783 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49512 10 6452 1 2025-10-29 01:19:28.063 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 01:19:27.823 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 01:19:27.824 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 01:19:27.980 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 01:19:28.148 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 01:14:51.613 00:06:00.349 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 01:19:46.188 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58540 10 6452 1 2025-10-29 01:20:46.585 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36586 10 6452 1 2025-10-29 01:21:46.988 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40654 10 6452 1 2025-10-29 01:17:51.611 00:06:00.354 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 01:22:47.396 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:32798 10 6452 1 2025-10-29 01:23:47.806 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39890 10 6452 1 2025-10-29 01:24:28.205 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 01:24:28.093 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 01:24:28.129 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 01:24:28.274 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 01:24:28.358 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 01:24:48.211 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49324 10 6452 1 2025-10-29 01:25:48.571 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:37292 10 6452 1 2025-10-29 01:21:51.614 00:06:00.352 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 01:26:48.941 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:35838 10 6452 1 2025-10-29 01:27:49.358 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:40388 10 6452 1 2025-10-29 01:28:49.721 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37304 10 6452 1 2025-10-29 01:29:28.376 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 01:29:28.376 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 01:29:28.216 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 01:29:28.317 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 01:29:28.400 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 01:24:51.613 00:06:00.357 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 01:29:50.125 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59038 10 6452 1 2025-10-29 01:30:50.541 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59470 10 6452 1 2025-10-29 01:31:50.945 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:52510 10 6452 1 2025-10-29 01:32:51.355 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:38990 12 10375 1 2025-10-29 01:28:51.615 00:06:00.352 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 01:33:51.832 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:50360 10 6452 1 2025-10-29 01:34:28.572 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 01:34:28.628 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 01:34:28.399 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 01:34:28.538 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 01:34:28.489 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 01:34:52.222 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56144 10 6452 1 2025-10-29 01:35:52.626 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:43436 10 6452 1 2025-10-29 01:31:51.613 00:06:00.362 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 01:36:53.005 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:52118 10 6452 1 2025-10-29 01:37:53.433 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:49036 10 6452 1 2025-10-29 01:38:53.813 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44902 10 6452 1 2025-10-29 01:39:29.171 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 01:39:29.172 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 01:39:28.940 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 01:39:29.089 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 01:39:29.220 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 01:39:54.220 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59630 10 6452 1 2025-10-29 01:35:51.616 00:06:00.357 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 01:40:54.641 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36214 10 6452 1 2025-10-29 01:41:55.007 00:00:10.493 TCP 1.101.0.1:3000 -> 23.104.0.1:51012 14 10479 1 2025-10-29 01:42:55.541 00:00:10.908 TCP 1.101.0.1:3000 -> 23.104.0.1:37170 10 6452 1 2025-10-29 01:38:51.615 00:06:00.363 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 01:43:56.483 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33096 10 6452 1 2025-10-29 01:44:28.741 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 01:44:28.716 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 01:44:28.661 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 01:44:28.663 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 01:44:28.659 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 01:44:56.885 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46950 10 6452 1 2025-10-29 01:45:57.297 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48002 10 6452 1 2025-10-29 01:46:57.701 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40810 10 6452 1 2025-10-29 01:42:51.617 00:06:00.358 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 01:47:58.069 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54450 10 6452 1 2025-10-29 01:48:58.477 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59372 10 6452 1 2025-10-29 01:49:28.826 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 01:49:28.975 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 01:49:28.746 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 01:49:28.683 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 01:49:28.743 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 01:49:58.877 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42628 10 6452 1 2025-10-29 01:45:51.614 00:06:00.363 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 01:50:59.282 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54908 10 6452 1 2025-10-29 01:51:59.688 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41008 10 6452 1 2025-10-29 01:53:00.114 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36252 10 6452 1 2025-10-29 01:54:00.476 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58618 10 6452 1 2025-10-29 01:54:29.014 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 01:54:29.103 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 01:54:28.888 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 01:54:28.933 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 01:54:29.016 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 01:49:51.618 00:06:00.358 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 01:55:00.882 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:46376 10 6452 1 2025-10-29 01:56:01.281 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:54424 10 6452 1 2025-10-29 01:57:01.647 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58826 10 6452 1 2025-10-29 01:52:51.618 00:06:00.362 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 01:58:02.058 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48468 10 6452 1 Summary: total flows: 137, total bytes: 419236, total packets: 1028, avg bps: 859, avg pps: 0, avg bpp: 407 Time window: 2025-10-29 00:53:51 - 2025-10-29 01:58:51 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0037s User: 0.0018s Wall: 0.0024s flows/second: 57227.3 Runtime: 0.0024s