Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-29 11:58:48.527 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:37142 10 6452 1 2025-10-29 11:59:41.069 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 11:59:40.867 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 11:59:40.929 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 11:59:40.797 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 11:59:41.154 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 11:59:48.897 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:46166 12 6556 1 2025-10-29 11:56:51.812 00:05:00.379 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 12:00:49.322 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45710 10 6452 1 2025-10-29 11:57:51.809 00:05:00.385 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 12:01:49.724 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49628 10 6452 1 2025-10-29 12:02:50.138 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41424 10 6452 1 2025-10-29 12:03:50.535 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55016 10 6452 1 2025-10-29 12:04:41.058 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 12:04:40.993 00:00:00.050 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 12:04:41.059 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 12:04:41.101 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 12:04:41.142 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 12:04:50.937 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:43672 10 6452 1 2025-10-29 12:05:51.357 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60982 10 6452 1 2025-10-29 12:02:51.814 00:05:00.378 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 12:06:51.764 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44178 10 6452 1 2025-10-29 12:03:51.812 00:05:00.383 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 12:07:52.175 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:43642 10 6452 1 2025-10-29 12:08:52.544 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46852 10 6452 1 2025-10-29 12:09:41.191 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 12:09:40.992 00:00:00.042 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 12:09:40.835 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 12:09:40.986 00:00:00.038 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 12:09:41.086 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 12:09:52.954 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:41784 11 6504 1 2025-10-29 12:10:53.376 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41590 10 6452 1 2025-10-29 12:11:53.779 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52210 10 6452 1 2025-10-29 12:08:51.816 00:05:00.377 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 12:12:54.184 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42186 10 6452 1 2025-10-29 12:09:51.813 00:05:00.382 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 12:13:54.590 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56778 10 6452 1 2025-10-29 12:14:41.369 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 12:14:41.341 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 12:14:41.295 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 12:14:41.145 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 12:14:41.285 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 12:14:54.990 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37796 10 6452 1 2025-10-29 12:15:55.393 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52872 10 6452 1 2025-10-29 12:16:55.799 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52080 10 6452 1 2025-10-29 12:17:56.207 00:00:10.462 TCP 1.101.0.1:3000 -> 23.104.0.1:45460 12 10375 1 2025-10-29 12:14:51.818 00:05:00.376 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 12:18:56.705 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55166 10 6452 1 2025-10-29 12:19:41.432 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 12:19:41.483 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 12:19:41.456 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 12:19:41.428 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 12:19:41.512 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 12:15:51.818 00:05:00.378 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 12:19:57.114 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59076 10 6452 1 2025-10-29 12:20:57.526 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:47784 10 6452 1 2025-10-29 12:21:57.957 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33964 10 6452 1 2025-10-29 12:22:58.374 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52742 10 6452 1 2025-10-29 12:23:58.772 00:00:10.838 TCP 1.101.0.1:3000 -> 23.104.0.1:52972 10 6452 1 2025-10-29 12:24:41.635 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 12:24:41.547 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 12:24:41.335 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 12:24:41.554 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 12:24:41.425 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 12:20:51.821 00:05:00.373 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 12:24:59.643 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40990 10 6452 1 2025-10-29 12:21:51.820 00:05:00.378 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 12:26:00.054 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:52262 10 6452 1 2025-10-29 12:27:00.416 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54730 10 6452 1 2025-10-29 12:28:00.826 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:49426 10 6452 1 2025-10-29 12:29:01.224 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50484 10 6452 1 2025-10-29 12:29:41.772 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 12:29:41.786 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 12:29:41.787 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 12:29:41.791 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 12:29:41.869 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 12:30:01.627 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38544 10 6452 1 2025-10-29 12:26:51.825 00:05:00.372 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 12:31:02.045 00:00:10.733 TCP 1.101.0.1:3000 -> 23.104.0.1:59638 10 6452 1 2025-10-29 12:27:51.822 00:05:00.378 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 12:32:02.815 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59026 10 6452 1 2025-10-29 12:33:03.225 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34684 10 6452 1 2025-10-29 12:34:03.638 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43160 10 6452 1 2025-10-29 12:34:41.714 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 12:34:41.688 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 12:34:41.745 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 12:34:41.817 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 12:34:41.771 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 12:35:04.040 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41938 10 6452 1 2025-10-29 12:36:04.444 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37684 10 6452 1 2025-10-29 12:32:51.825 00:05:00.373 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 12:37:04.844 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36248 10 6452 1 2025-10-29 12:33:51.824 00:05:00.378 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 12:38:05.253 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46864 10 6452 1 2025-10-29 12:39:05.656 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59042 10 6452 1 2025-10-29 12:39:41.815 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 12:39:41.924 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 12:39:41.787 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 12:39:41.815 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 12:39:41.898 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 12:40:06.067 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:49874 10 6452 1 2025-10-29 12:41:06.435 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:35234 10 6452 1 2025-10-29 12:42:06.803 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40666 12 6556 1 2025-10-29 12:38:51.829 00:05:00.373 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 12:43:07.213 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34764 10 6452 1 2025-10-29 12:39:51.828 00:05:00.377 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 12:44:07.580 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34162 10 6452 1 2025-10-29 12:44:41.843 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 12:44:41.763 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 12:44:41.782 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 12:44:41.835 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 12:44:41.917 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 12:45:07.982 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56476 10 6452 1 2025-10-29 12:46:08.389 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38680 10 6452 1 2025-10-29 12:47:08.791 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47828 10 6452 1 2025-10-29 12:48:09.195 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42438 10 6452 1 2025-10-29 12:44:51.830 00:05:00.374 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 12:49:09.601 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39744 10 6452 1 2025-10-29 12:49:41.904 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 12:49:42.005 00:00:00.035 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 12:49:41.838 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 12:49:41.921 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 12:49:42.006 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 12:45:51.829 00:05:00.378 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 12:50:10.008 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49558 10 6452 1 2025-10-29 12:51:10.417 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34828 10 6452 1 2025-10-29 12:52:10.826 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59602 10 6452 1 2025-10-29 12:53:11.243 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:46662 12 10369 1 2025-10-29 12:54:11.724 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47932 10 6452 1 2025-10-29 12:54:42.264 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 12:54:41.938 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 12:54:42.285 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 12:54:42.261 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 12:54:42.343 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 12:50:51.833 00:05:00.375 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 12:55:12.131 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59830 10 6452 1 2025-10-29 12:51:51.830 00:05:00.380 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 12:56:12.540 00:00:10.884 TCP 1.101.0.1:3000 -> 23.104.0.1:55450 10 6452 1 2025-10-29 12:57:13.458 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54706 10 6452 1 2025-10-29 12:58:13.864 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:50690 10 6452 1 Summary: total flows: 140, total bytes: 425100, total packets: 1029, avg bps: 921, avg pps: 0, avg bpp: 413 Time window: 2025-10-29 11:56:51 - 2025-10-29 12:58:24 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0042s User: 0.0017s Wall: 0.0019s flows/second: 73955.0 Runtime: 0.0019s