Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-29 01:59:02.462 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:46148 10 6452 1 2025-10-29 01:59:28.853 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 01:59:28.799 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 01:59:28.770 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 01:59:28.978 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 01:59:28.979 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 02:00:02.820 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:46894 10 6452 1 2025-10-29 02:01:03.190 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:50444 10 6452 1 2025-10-29 01:56:51.624 00:06:00.355 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 02:02:03.547 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55206 10 6452 1 2025-10-29 02:03:03.949 00:00:10.942 TCP 1.101.0.1:3000 -> 23.104.0.1:59872 10 6452 1 2025-10-29 02:04:04.932 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:40878 11 6504 1 2025-10-29 02:04:29.082 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 02:04:29.087 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 02:04:29.092 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:04:29.233 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:04:29.316 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 01:59:51.621 00:06:00.361 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 02:05:05.373 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53964 10 6452 1 2025-10-29 02:06:05.777 00:00:10.521 TCP 1.101.0.1:3000 -> 23.104.0.1:54272 10 6452 1 2025-10-29 02:07:06.354 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55742 10 6452 1 2025-10-29 02:08:06.762 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:35798 10 6452 1 2025-10-29 02:03:51.624 00:06:00.355 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 02:09:07.187 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44510 10 6452 1 2025-10-29 02:09:29.221 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 02:09:29.262 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 02:09:29.180 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:09:29.218 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:09:29.301 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 02:10:07.597 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40208 10 6452 1 2025-10-29 02:11:07.960 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55752 10 6452 1 2025-10-29 02:06:51.624 00:06:00.361 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 02:12:08.360 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47626 10 6452 1 2025-10-29 02:13:08.769 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48708 10 6452 1 2025-10-29 02:14:09.180 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42556 10 6452 1 2025-10-29 02:14:29.238 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 02:14:29.337 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 02:14:29.163 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:14:29.300 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:14:29.383 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 02:15:09.584 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38822 10 6452 1 2025-10-29 02:10:51.627 00:06:00.356 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 02:16:09.988 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:53074 10 6452 1 2025-10-29 02:17:10.393 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56884 10 6452 1 2025-10-29 02:18:10.800 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48772 10 6452 1 2025-10-29 02:13:51.626 00:06:00.361 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 02:19:11.206 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46710 10 6452 1 2025-10-29 02:19:29.292 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 02:19:29.365 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:19:29.293 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:19:29.423 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 02:19:29.378 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 02:20:11.566 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58704 10 6452 1 2025-10-29 02:21:11.972 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50358 10 6452 1 2025-10-29 02:22:12.377 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47862 10 6452 1 2025-10-29 02:17:51.631 00:06:00.353 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 02:23:12.776 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39256 10 6452 1 2025-10-29 02:24:13.184 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:32846 10 6452 1 2025-10-29 02:24:29.471 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 02:24:29.445 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 02:24:29.377 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 02:24:29.401 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:24:29.388 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:25:13.580 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46490 10 6452 1 2025-10-29 02:20:51.631 00:06:00.357 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 02:26:13.946 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:46840 10 6452 1 2025-10-29 02:27:14.318 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60746 10 6452 1 2025-10-29 02:28:14.720 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:46944 10 6452 1 2025-10-29 02:29:29.540 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 02:29:29.545 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 02:29:29.504 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:29:29.537 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:29:15.122 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:54512 10 6452 1 2025-10-29 02:29:29.619 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 02:24:51.634 00:06:00.351 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 02:30:15.542 00:00:10.710 TCP 1.101.0.1:3000 -> 23.104.0.1:42168 10 6452 1 2025-10-29 02:31:16.305 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57434 10 6452 1 2025-10-29 02:32:16.714 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:49948 12 10369 1 2025-10-29 02:27:51.632 00:06:00.357 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 02:33:17.192 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:58672 10 6452 1 2025-10-29 02:34:29.747 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 02:34:29.711 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 02:34:17.602 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35364 10 6452 1 2025-10-29 02:34:29.487 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 02:34:29.758 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:34:29.665 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:35:18.018 00:00:16.459 TCP 1.101.0.1:3000 -> 23.104.0.1:59310 10 6452 1 2025-10-29 02:36:24.517 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:48140 10 6452 1 2025-10-29 02:31:51.636 00:06:00.352 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 02:37:24.874 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52612 10 6452 1 2025-10-29 02:38:25.281 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60964 10 6452 1 2025-10-29 02:39:29.834 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 02:39:29.727 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:39:29.895 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:39:29.695 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 02:39:29.977 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 02:39:25.685 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50130 10 6452 1 2025-10-29 02:34:51.633 00:06:00.359 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 02:40:26.103 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54810 10 6452 1 2025-10-29 02:41:26.509 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36486 10 6452 1 2025-10-29 02:42:26.908 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:37496 12 10375 1 2025-10-29 02:43:27.390 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:34938 10 6452 1 2025-10-29 02:38:51.637 00:06:00.354 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 02:44:29.891 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 02:44:29.764 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 02:44:29.802 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:44:29.770 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:44:29.852 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 02:44:27.752 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:41848 10 6452 1 2025-10-29 02:45:28.173 00:00:10.435 TCP 1.101.0.1:3000 -> 23.104.0.1:44710 10 6452 1 2025-10-29 02:46:28.647 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45434 10 6452 1 2025-10-29 02:41:51.635 00:06:00.359 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 02:47:29.051 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:34688 12 10369 1 2025-10-29 02:48:29.525 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:44938 10 6452 1 2025-10-29 02:49:29.749 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 02:49:29.848 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 02:49:29.736 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:49:29.741 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:49:29.822 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 02:49:29.885 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:54650 12 6556 1 2025-10-29 02:50:30.303 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57372 10 6452 1 2025-10-29 02:45:51.639 00:06:00.354 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 02:51:30.705 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58450 10 6452 1 2025-10-29 02:52:31.112 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51870 10 6452 1 2025-10-29 02:53:31.518 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52180 10 6452 1 2025-10-29 02:48:51.637 00:06:00.360 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 02:54:29.913 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:54:30.218 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 02:54:29.986 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 02:54:30.135 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:54:30.197 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 02:54:31.923 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:32876 10 6452 1 2025-10-29 02:55:32.345 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:38824 10 6452 1 2025-10-29 02:56:32.707 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60936 10 6452 1 2025-10-29 02:57:33.123 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39920 10 6452 1 2025-10-29 02:52:51.645 00:06:00.350 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 02:58:33.527 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:60238 10 6452 1 Summary: total flows: 137, total bytes: 428790, total packets: 1027, avg bps: 922, avg pps: 0, avg bpp: 417 Time window: 2025-10-29 01:56:51 - 2025-10-29 02:58:51 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0051s User: 0.0010s Wall: 0.0022s flows/second: 61155.8 Runtime: 0.0023s