Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-02 14:54:38.093 00:06:00.295 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 14:59:35.024 00:00:10.315 TCP 1.101.0.1:3000 -> 23.104.0.1:59906 10 6452 1 2025-10-02 15:00:35.382 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43484 10 6452 1 2025-10-02 15:01:44.535 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 15:01:44.372 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 15:01:44.595 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 15:01:44.360 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 15:01:44.618 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 15:01:35.787 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41256 10 6452 1 2025-10-02 15:02:36.196 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49738 10 6452 1 2025-10-02 14:58:38.095 00:06:00.297 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 15:03:36.593 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41576 10 6452 1 2025-10-02 15:04:36.954 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45644 10 6452 1 2025-10-02 15:05:37.356 00:00:10.478 TCP 1.101.0.1:3000 -> 23.104.0.1:47770 10 6452 1 2025-10-02 15:01:38.094 00:06:00.294 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 15:06:44.693 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 15:06:44.522 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 15:06:44.366 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 15:06:44.425 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 15:06:44.508 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 15:06:37.873 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55356 10 6452 1 2025-10-02 15:07:38.280 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:37214 10 6452 1 2025-10-02 15:08:38.633 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:34660 10 6452 1 2025-10-02 15:09:38.994 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58826 10 6452 1 2025-10-02 15:05:38.092 00:06:00.299 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 15:10:39.405 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44230 10 6452 1 2025-10-02 15:11:44.856 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 15:11:44.859 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 15:11:44.545 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 15:11:44.732 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 15:11:44.814 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 15:11:39.816 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35708 10 6452 1 2025-10-02 15:12:40.219 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49394 10 6452 1 2025-10-02 15:08:38.095 00:06:00.294 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 15:13:40.621 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:48142 10 6452 1 2025-10-02 15:14:40.990 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43228 10 6452 1 2025-10-02 15:15:41.394 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34454 10 6452 1 2025-10-02 15:16:44.675 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 15:16:44.706 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 15:16:44.825 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 15:16:44.527 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 15:16:44.593 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 15:16:41.799 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39402 10 6452 1 2025-10-02 15:12:38.092 00:06:00.299 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 15:17:42.211 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:52978 12 10369 1 2025-10-02 15:18:42.688 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60170 10 6452 1 2025-10-02 15:19:43.111 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59488 10 6452 1 2025-10-02 15:15:38.113 00:06:00.278 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 15:20:43.514 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38202 10 6452 1 2025-10-02 15:21:44.966 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 15:21:44.883 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 15:21:44.872 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 15:21:44.705 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 15:21:44.955 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 15:21:43.921 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40498 10 6452 1 2025-10-02 15:22:44.327 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:46792 10 6452 1 2025-10-02 15:23:44.688 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60936 10 6452 1 2025-10-02 15:19:38.112 00:06:00.283 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 15:24:45.108 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56054 10 6452 1 2025-10-02 15:25:45.524 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58932 10 6452 1 2025-10-02 15:26:44.869 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 15:26:44.819 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 15:26:44.760 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 15:26:44.844 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 15:26:44.979 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 15:26:45.933 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:35774 10 6452 1 2025-10-02 15:22:38.115 00:06:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 15:27:46.316 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45476 10 6452 1 2025-10-02 15:28:46.714 00:00:10.434 TCP 1.101.0.1:3000 -> 23.104.0.1:45840 10 6452 1 2025-10-02 15:29:47.189 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51222 10 6452 1 2025-10-02 15:30:47.591 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59148 10 6452 1 2025-10-02 15:26:38.114 00:06:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 15:31:45.216 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 15:31:45.241 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 15:31:45.134 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 15:31:45.065 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 15:31:45.133 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 15:31:47.995 00:00:11.777 TCP 1.101.0.1:3000 -> 23.104.0.1:43862 10 6452 1 2025-10-02 15:32:49.808 00:00:10.504 TCP 1.101.0.1:3000 -> 23.104.0.1:33842 10 6452 1 2025-10-02 15:33:50.349 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58722 10 6452 1 2025-10-02 15:29:38.118 00:06:00.277 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 15:34:50.752 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:38750 10 6452 1 2025-10-02 15:35:51.186 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48748 10 6452 1 2025-10-02 15:36:45.200 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 15:36:44.975 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 15:36:45.197 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 15:36:45.248 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 15:36:45.118 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 15:36:51.591 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58468 10 6452 1 2025-10-02 15:37:51.993 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43304 10 6452 1 2025-10-02 15:33:38.115 00:06:00.283 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 15:38:52.401 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41876 10 6452 1 2025-10-02 15:39:52.769 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:35336 10 6452 1 2025-10-02 15:40:53.185 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:44518 10 6452 1 2025-10-02 15:36:38.119 00:06:00.278 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 15:41:45.365 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 15:41:44.989 00:00:00.036 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 15:41:45.268 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 15:41:45.058 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 15:41:45.282 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 15:41:53.548 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48796 10 6452 1 2025-10-02 15:42:53.947 00:00:10.408 TCP 1.101.0.1:3000 -> 23.104.0.1:49216 12 10375 1 2025-10-02 15:43:54.391 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54632 10 6452 1 2025-10-02 15:44:54.790 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47590 10 6452 1 2025-10-02 15:40:38.119 00:06:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 15:45:55.188 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41932 10 6452 1 2025-10-02 15:46:45.496 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 15:46:45.306 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 15:46:45.494 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 15:46:45.623 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 15:46:45.705 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 15:46:55.592 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34938 10 6452 1 2025-10-02 15:47:55.999 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60888 10 6452 1 2025-10-02 15:43:38.121 00:06:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 15:48:56.407 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40560 10 6452 1 2025-10-02 15:49:56.803 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60464 10 6452 1 2025-10-02 15:50:57.204 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:53072 10 6452 1 2025-10-02 15:51:45.598 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 15:51:45.424 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 15:51:45.583 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 15:51:45.367 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 15:51:45.515 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 15:51:57.621 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:39292 10 6452 1 2025-10-02 15:47:38.121 00:06:00.283 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 15:52:57.985 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46642 10 6452 1 2025-10-02 15:53:58.398 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54844 10 6452 1 2025-10-02 15:54:58.802 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48658 10 6452 1 2025-10-02 15:50:38.123 00:06:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 15:55:59.209 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34438 10 6452 1 2025-10-02 15:56:45.610 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 15:56:45.437 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 15:56:45.584 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 15:56:45.166 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 15:56:45.526 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 15:56:59.616 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:42518 10 6452 1 2025-10-02 15:57:59.982 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34426 10 6452 1 Summary: total flows: 136, total bytes: 418265, total packets: 1012, avg bps: 877, avg pps: 0, avg bpp: 413 Time window: 2025-10-02 14:54:38 - 2025-10-02 15:58:10 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0017s User: 0.0026s Wall: 0.0017s flows/second: 79159.8 Runtime: 0.0017s