Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-12 02:55:42.836 00:05:00.484 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 02:59:36.473 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50310 10 6452 1 2025-10-12 03:00:36.879 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:32968 10 6452 1 2025-10-12 03:01:18.900 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 03:01:18.898 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 03:01:18.600 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:01:18.817 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:01:18.901 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 03:01:37.281 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:55690 10 6452 1 2025-10-12 03:02:37.642 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57078 10 6452 1 2025-10-12 03:03:38.051 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:58756 10 6452 1 2025-10-12 03:00:42.839 00:05:00.478 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 03:04:38.456 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38620 10 6452 1 2025-10-12 03:01:42.838 00:05:00.482 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 03:05:38.821 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59770 10 6452 1 2025-10-12 03:06:19.054 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 03:06:18.976 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 03:06:18.886 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:06:18.917 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:06:19.000 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 03:06:39.227 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46278 10 6452 1 2025-10-12 03:07:39.635 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55518 10 6452 1 2025-10-12 03:08:40.042 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57674 10 6452 1 2025-10-12 03:09:40.444 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49352 10 6452 1 2025-10-12 03:06:42.840 00:05:00.479 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 03:10:40.846 00:00:10.409 TCP 1.101.0.1:3000 -> 23.104.0.1:41652 12 10375 1 2025-10-12 03:11:19.077 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 03:11:19.073 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 03:11:18.897 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 03:11:19.014 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:11:18.994 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:07:42.837 00:05:00.484 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 03:11:41.298 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60988 10 6452 1 2025-10-12 03:12:41.700 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:55746 10 6452 1 2025-10-12 03:13:42.109 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42910 10 6452 1 2025-10-12 03:14:42.515 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:55476 10 6452 1 2025-10-12 03:15:42.934 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:40034 10 6452 1 2025-10-12 03:16:18.941 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:16:18.940 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 03:16:19.122 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 03:16:19.161 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:16:19.026 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 03:12:42.842 00:05:00.477 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 03:16:43.299 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:41976 10 6452 1 2025-10-12 03:13:42.841 00:05:00.482 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 03:17:43.660 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:48656 10 6452 1 2025-10-12 03:18:44.029 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41090 10 6452 1 2025-10-12 03:19:44.437 00:00:10.459 TCP 1.101.0.1:3000 -> 23.104.0.1:52890 10 6452 1 2025-10-12 03:20:44.934 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:50632 10 6452 1 2025-10-12 03:21:19.372 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 03:21:19.338 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 03:21:19.225 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 03:21:19.166 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:21:19.289 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:21:45.354 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38244 10 6452 1 2025-10-12 03:18:42.844 00:05:00.478 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 03:22:45.714 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60574 10 6452 1 2025-10-12 03:19:42.841 00:05:00.483 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 03:23:46.105 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:56088 10 6452 1 2025-10-12 03:24:46.468 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35638 10 6452 1 2025-10-12 03:25:46.879 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:43344 10 6452 1 2025-10-12 03:26:19.472 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 03:26:19.539 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 03:26:19.418 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:26:19.541 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:26:19.625 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 03:26:47.277 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39192 10 6452 1 2025-10-12 03:27:47.678 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45754 10 6452 1 2025-10-12 03:24:42.844 00:05:00.481 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 03:28:48.106 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36734 10 6452 1 2025-10-12 03:25:42.842 00:05:00.486 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 03:29:48.508 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39802 10 6452 1 2025-10-12 03:30:48.919 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41686 10 6452 1 2025-10-12 03:31:19.500 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 03:31:19.503 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 03:31:19.321 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:31:19.496 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:31:19.578 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 03:31:49.321 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54036 10 6452 1 2025-10-12 03:32:49.736 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52260 10 6452 1 2025-10-12 03:33:50.143 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:50792 10 6452 1 2025-10-12 03:30:42.845 00:05:00.481 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 03:34:50.513 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54906 10 6452 1 2025-10-12 03:31:42.844 00:05:00.486 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 03:35:50.915 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44276 10 6452 1 2025-10-12 03:36:19.931 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 03:36:19.881 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 03:36:19.796 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 03:36:19.674 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:36:19.849 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:36:51.320 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56288 10 6452 1 2025-10-12 03:37:51.727 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:47580 10 6452 1 2025-10-12 03:38:52.136 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43796 10 6452 1 2025-10-12 03:39:52.536 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38668 10 6452 1 2025-10-12 03:36:42.847 00:05:00.482 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 03:40:52.951 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:56554 10 6452 1 2025-10-12 03:41:19.804 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 03:41:19.813 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 03:41:19.589 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 03:41:19.393 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:41:19.721 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:37:42.844 00:05:00.488 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 03:41:53.354 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36498 10 6452 1 2025-10-12 03:42:53.769 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:33308 10 6452 1 2025-10-12 03:43:54.195 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57526 10 6452 1 2025-10-12 03:44:54.558 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45564 10 6452 1 2025-10-12 03:45:54.966 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48784 10 6452 1 2025-10-12 03:46:19.650 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 03:46:19.749 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 03:46:19.701 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:46:19.652 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:46:19.737 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 03:42:42.849 00:05:00.482 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 03:46:55.370 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40544 10 6452 1 2025-10-12 03:43:42.846 00:05:00.487 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 03:47:55.773 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55982 10 6452 1 2025-10-12 03:48:56.138 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50946 10 6452 1 2025-10-12 03:49:56.538 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52244 10 6452 1 2025-10-12 03:50:56.942 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:34424 10 6452 1 2025-10-12 03:51:19.793 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 03:51:19.695 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:51:19.838 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:51:19.793 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 03:51:19.921 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 03:51:57.318 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36466 10 6452 1 2025-10-12 03:48:42.850 00:05:00.483 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 03:52:57.689 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58744 10 6452 1 2025-10-12 03:49:42.848 00:05:00.488 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 03:53:58.104 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51690 10 6452 1 2025-10-12 03:54:58.507 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46398 10 6452 1 2025-10-12 03:55:58.937 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57624 10 6452 1 2025-10-12 03:56:19.795 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:56:19.988 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 03:56:19.992 00:00:00.039 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 03:56:20.083 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 03:56:20.166 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 03:56:59.353 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40306 10 6452 1 2025-10-12 03:57:59.758 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:47436 10 6452 1 2025-10-12 03:54:42.851 00:05:00.483 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 Summary: total flows: 139, total bytes: 414471, total packets: 1012, avg bps: 863, avg pps: 0, avg bpp: 409 Time window: 2025-10-12 02:55:42 - 2025-10-12 03:59:43 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0037s User: 0.0015s Wall: 0.0023s flows/second: 60042.0 Runtime: 0.0023s