Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-04 01:55:38.828 00:05:00.382 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 01:59:38.110 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44138 10 6452 1 2025-10-04 02:00:38.524 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44736 10 6452 1 2025-10-04 02:01:38.929 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:60772 10 6452 1 2025-10-04 02:02:27.029 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 02:02:27.002 00:00:00.037 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 02:02:26.897 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:02:26.946 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:02:26.995 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 02:02:39.295 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49560 10 6452 1 2025-10-04 01:59:38.831 00:05:00.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 02:03:39.696 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58372 10 6452 1 2025-10-04 02:04:40.114 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46986 10 6452 1 2025-10-04 02:01:38.829 00:05:00.383 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 02:05:40.516 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55610 10 6452 1 2025-10-04 02:06:40.922 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35390 10 6452 1 2025-10-04 02:07:26.928 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 02:07:26.680 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 02:07:26.611 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:07:26.845 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:07:26.682 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 02:07:41.337 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:47048 11 6504 1 2025-10-04 02:08:41.790 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58490 10 6452 1 2025-10-04 02:05:38.831 00:05:00.381 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 02:09:42.200 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60562 10 6452 1 2025-10-04 02:10:42.565 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58390 10 6452 1 2025-10-04 02:07:38.829 00:05:00.385 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 02:11:42.969 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45842 10 6452 1 2025-10-04 02:12:27.275 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 02:12:27.321 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 02:12:27.143 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:12:27.193 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:12:27.183 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 02:12:43.333 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41640 10 6452 1 2025-10-04 02:13:43.731 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57090 10 6452 1 2025-10-04 02:14:44.144 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47608 10 6452 1 2025-10-04 02:11:38.834 00:05:00.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 02:15:44.546 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:51390 10 6452 1 2025-10-04 02:16:44.904 00:00:12.067 TCP 1.101.0.1:3000 -> 23.104.0.1:57206 10 6452 1 2025-10-04 02:17:27.049 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 02:17:26.762 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:17:26.705 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:17:26.956 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 02:17:26.788 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 02:13:38.839 00:05:00.377 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 02:17:47.030 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:57788 10 6452 1 2025-10-04 02:18:47.435 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49854 10 6452 1 2025-10-04 02:19:47.847 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:38998 10 6452 1 2025-10-04 02:20:48.271 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37982 10 6452 1 2025-10-04 02:17:38.843 00:05:00.372 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 02:21:48.675 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57246 10 6452 1 2025-10-04 02:22:26.995 00:00:00.043 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 02:22:27.063 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:22:27.137 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:22:27.088 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 02:22:27.220 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 02:22:49.109 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41522 10 6452 1 2025-10-04 02:19:38.842 00:05:00.376 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 02:23:49.512 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39368 10 6452 1 2025-10-04 02:24:49.915 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53328 10 6452 1 2025-10-04 02:25:50.317 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:54640 10 6452 1 2025-10-04 02:26:50.682 00:00:15.265 TCP 1.101.0.1:3000 -> 23.104.0.1:38374 10 6452 1 2025-10-04 02:27:28.324 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 02:27:28.242 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 02:27:28.443 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:27:28.242 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:27:28.329 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 02:23:38.844 00:05:00.371 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 02:27:56.018 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46130 10 6452 1 2025-10-04 02:28:56.383 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:45030 10 6452 1 2025-10-04 02:25:38.842 00:05:00.377 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 02:29:56.792 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46076 10 6452 1 2025-10-04 02:30:57.197 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:55466 10 6452 1 2025-10-04 02:31:57.568 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:48022 10 6452 1 2025-10-04 02:32:27.383 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 02:32:27.397 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 02:32:27.245 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:32:27.298 00:00:00.029 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:32:27.288 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 02:32:57.979 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:54924 10 6452 1 2025-10-04 02:29:38.844 00:05:00.374 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 02:33:58.352 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:41320 10 6452 1 2025-10-04 02:34:58.762 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:38704 10 6452 1 2025-10-04 02:31:38.844 00:05:00.377 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 02:35:59.130 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56656 10 6452 1 2025-10-04 02:36:59.546 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52984 10 6452 1 2025-10-04 02:37:27.379 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 02:37:27.437 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:37:27.464 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:37:27.553 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 02:37:27.548 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 02:37:59.956 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33518 10 6452 1 2025-10-04 02:39:00.357 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53162 10 6452 1 2025-10-04 02:35:38.847 00:05:00.372 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 02:40:00.761 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:37936 10 6452 1 2025-10-04 02:41:01.179 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50864 10 6452 1 2025-10-04 02:37:38.845 00:05:00.376 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 02:42:01.587 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38164 10 6452 1 2025-10-04 02:42:27.757 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 02:42:27.838 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 02:42:27.327 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:42:27.675 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:42:27.965 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 02:43:01.988 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59428 10 6452 1 2025-10-04 02:44:02.392 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33746 10 6452 1 2025-10-04 02:45:02.792 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57000 10 6452 1 2025-10-04 02:41:38.851 00:05:00.371 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 02:46:03.199 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49062 10 6452 1 2025-10-04 02:47:03.608 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:45480 10 6452 1 2025-10-04 02:47:27.823 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 02:47:27.734 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:47:27.743 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:47:27.817 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 02:47:27.827 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 02:43:38.849 00:05:00.376 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 02:48:04.027 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43204 10 6452 1 2025-10-04 02:49:04.439 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43414 10 6452 1 2025-10-04 02:50:04.842 00:00:10.435 TCP 1.101.0.1:3000 -> 23.104.0.1:48920 11 6504 1 2025-10-04 02:51:05.316 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:44134 10 6452 1 2025-10-04 02:47:38.851 00:05:00.371 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 02:52:05.711 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54096 10 6452 1 2025-10-04 02:52:27.899 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 02:52:27.818 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 02:52:27.766 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:52:27.815 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:52:27.637 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 02:53:06.114 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53678 10 6452 1 2025-10-04 02:49:38.849 00:05:00.394 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 02:54:06.523 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41352 10 6452 1 2025-10-04 02:55:06.931 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:41826 10 6452 1 2025-10-04 02:56:07.352 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57320 10 6452 1 2025-10-04 02:57:07.764 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:48834 10 6452 1 2025-10-04 02:57:27.853 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 02:57:27.826 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 02:57:27.793 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:57:27.770 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 02:57:27.669 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 02:53:38.854 00:05:00.388 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 02:58:08.203 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33514 10 6452 1 Summary: total flows: 139, total bytes: 410652, total packets: 1012, avg bps: 869, avg pps: 0, avg bpp: 405 Time window: 2025-10-04 01:55:38 - 2025-10-04 02:58:39 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0044s User: 0.0009s Wall: 0.0024s flows/second: 58824.4 Runtime: 0.0024s