Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-30 14:53:52.330 00:06:00.401 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 14:59:36.234 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60200 10 6452 1 2025-10-30 15:00:13.433 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 15:00:13.418 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 15:00:13.434 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 15:00:13.607 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 15:00:13.689 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 15:00:36.638 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58476 10 6452 1 2025-10-30 15:01:37.042 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:48742 10 6452 1 2025-10-30 15:02:37.408 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39932 10 6452 1 2025-10-30 15:03:37.774 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:44520 10 6452 1 2025-10-30 14:58:52.329 00:06:00.406 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 15:04:38.143 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45150 10 6452 1 2025-10-30 15:05:13.551 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 15:05:13.656 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 15:05:13.650 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 15:05:13.657 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 15:05:13.739 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 15:05:38.545 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46938 10 6452 1 2025-10-30 15:00:52.333 00:06:00.405 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 15:06:38.953 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:43534 10 6452 1 2025-10-30 15:07:39.361 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41686 10 6452 1 2025-10-30 15:08:39.767 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60350 10 6452 1 2025-10-30 15:09:40.182 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59184 10 6452 1 2025-10-30 15:10:13.736 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 15:10:13.797 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 15:10:13.743 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 15:10:13.700 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 15:10:13.653 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 15:10:40.583 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35480 10 6452 1 2025-10-30 15:05:52.333 00:06:00.409 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 15:11:40.982 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38642 10 6452 1 2025-10-30 15:12:41.390 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:59652 10 6452 1 2025-10-30 15:07:52.338 00:06:00.403 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 15:13:41.740 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52688 10 6452 1 2025-10-30 15:14:42.144 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59624 10 6452 1 2025-10-30 15:15:13.825 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 15:15:13.919 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 15:15:13.652 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 15:15:13.829 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 15:15:13.909 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 15:15:42.551 00:00:10.406 TCP 1.101.0.1:3000 -> 23.104.0.1:55978 10 6452 1 2025-10-30 15:16:42.964 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:32866 10 6452 1 2025-10-30 15:12:52.335 00:06:00.409 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 15:17:43.370 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45244 10 6452 1 2025-10-30 15:18:43.773 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:59090 10 6452 1 2025-10-30 15:19:44.139 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:57458 10 6452 1 2025-10-30 15:14:52.338 00:06:00.405 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 15:20:14.066 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 15:20:14.134 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 15:20:13.817 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 15:20:14.194 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 15:20:14.278 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 15:20:44.509 00:00:10.424 TCP 1.101.0.1:3000 -> 23.104.0.1:45696 10 6452 1 2025-10-30 15:21:44.981 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53550 10 6452 1 2025-10-30 15:22:45.389 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:43008 10 6452 1 2025-10-30 15:23:45.800 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:48516 13 13949 1 2025-10-30 15:19:52.337 00:06:00.411 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 15:24:46.267 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60782 10 6452 1 2025-10-30 15:25:14.031 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 15:25:13.940 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 15:25:13.872 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 15:25:13.943 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 15:25:14.027 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 15:25:46.630 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60160 10 6452 1 2025-10-30 15:21:52.339 00:06:00.406 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 15:26:46.991 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53700 10 6452 1 2025-10-30 15:27:47.352 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57480 10 6452 1 2025-10-30 15:28:47.714 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:33636 10 6452 1 2025-10-30 15:29:48.107 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41908 10 6452 1 2025-10-30 15:30:14.094 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 15:30:14.091 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 15:30:14.006 00:00:00.053 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 15:30:14.137 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 15:30:14.221 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 15:30:48.506 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58142 10 6452 1 2025-10-30 15:26:52.341 00:06:00.416 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 15:31:48.913 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58120 10 6452 1 2025-10-30 15:32:49.317 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42420 10 6452 1 2025-10-30 15:28:52.342 00:06:00.404 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 15:33:49.722 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38462 10 6452 1 2025-10-30 15:34:50.134 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58540 10 6452 1 2025-10-30 15:35:14.236 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 15:35:14.206 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 15:35:14.206 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 15:35:14.192 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 15:35:14.153 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 15:35:50.539 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39410 10 6452 1 2025-10-30 15:36:50.940 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:58888 10 6452 1 2025-10-30 15:37:51.309 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:36526 10 6452 1 2025-10-30 15:33:52.341 00:06:00.408 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 15:38:51.709 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49266 10 6452 1 2025-10-30 15:39:52.116 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50196 10 6452 1 2025-10-30 15:40:14.277 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 15:40:14.181 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 15:40:14.159 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 15:40:14.195 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 15:40:14.264 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 15:35:52.345 00:06:00.403 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 15:40:52.524 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52372 10 6452 1 2025-10-30 15:41:52.923 00:00:17.287 TCP 1.101.0.1:3000 -> 23.104.0.1:52122 10 6452 1 2025-10-30 15:43:00.285 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51682 10 6452 1 2025-10-30 15:44:00.690 00:00:10.453 TCP 1.101.0.1:3000 -> 23.104.0.1:43444 12 10369 1 2025-10-30 15:45:14.184 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 15:45:14.180 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 15:45:14.216 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 15:45:14.318 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 15:45:14.402 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 15:45:01.184 00:00:15.269 TCP 1.101.0.1:3000 -> 23.104.0.1:39668 10 6452 1 2025-10-30 15:40:52.342 00:06:00.409 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 15:46:06.508 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33036 10 6452 1 2025-10-30 15:47:06.872 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60582 10 6452 1 2025-10-30 15:42:52.346 00:06:00.403 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 15:48:07.276 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:52462 10 6452 1 2025-10-30 15:49:07.637 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47136 10 6452 1 2025-10-30 15:50:14.582 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 15:50:14.645 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 15:50:14.583 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 15:50:14.863 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 15:50:14.670 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 15:50:08.001 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59316 10 6452 1 2025-10-30 15:51:08.409 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49226 10 6452 1 2025-10-30 15:52:08.813 00:00:10.718 TCP 1.101.0.1:3000 -> 23.104.0.1:35404 10 6452 1 2025-10-30 15:47:52.345 00:06:00.408 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 15:53:09.569 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:44828 10 6452 1 2025-10-30 15:54:09.932 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:38606 10 6452 1 2025-10-30 15:49:52.347 00:06:00.403 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 15:55:14.638 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 15:55:14.689 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 15:55:14.686 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 15:55:14.566 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 15:55:14.648 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 15:55:10.353 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:58302 10 6452 1 2025-10-30 15:56:10.718 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35152 10 6452 1 2025-10-30 15:57:11.128 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:41762 10 6452 1 2025-10-30 15:58:11.539 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60022 10 6452 1 Summary: total flows: 136, total bytes: 421839, total packets: 1013, avg bps: 872, avg pps: 0, avg bpp: 416 Time window: 2025-10-30 14:53:52 - 2025-10-30 15:58:21 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0031s User: 0.0021s Wall: 0.0023s flows/second: 59258.8 Runtime: 0.0023s