Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-12 04:55:42.872 00:05:00.483 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 04:59:38.616 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58882 10 6452 1 2025-10-12 05:00:39.019 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:57384 10 6452 1 2025-10-12 05:01:21.009 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 05:01:20.926 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:01:21.309 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 05:01:21.154 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 05:01:20.966 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:01:39.383 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59736 10 6452 1 2025-10-12 05:02:39.781 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:60410 10 6452 1 2025-10-12 05:03:40.201 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40162 10 6452 1 2025-10-12 05:00:42.876 00:05:00.477 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 05:04:40.601 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42064 10 6452 1 2025-10-12 05:01:42.875 00:05:00.483 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 05:05:41.005 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57022 10 6452 1 2025-10-12 05:06:21.371 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 05:06:21.347 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 05:06:21.360 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 05:06:21.116 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:06:21.287 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:06:41.418 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42760 10 6452 1 2025-10-12 05:07:41.826 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:46578 10 6452 1 2025-10-12 05:08:42.231 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44476 10 6452 1 2025-10-12 05:09:42.639 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:40274 10 6452 1 2025-10-12 05:06:42.878 00:05:00.477 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 05:10:43.069 00:00:10.615 TCP 1.101.0.1:3000 -> 23.104.0.1:57360 12 10369 1 2025-10-12 05:11:21.348 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 05:11:21.448 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 05:11:21.361 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 05:11:21.324 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:11:21.265 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:07:42.877 00:05:00.481 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 05:11:43.723 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40978 10 6452 1 2025-10-12 05:12:44.132 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39604 10 6452 1 2025-10-12 05:13:44.536 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:43892 10 6452 1 2025-10-12 05:14:44.903 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34872 10 6452 1 2025-10-12 05:15:45.313 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33214 10 6452 1 2025-10-12 05:16:21.545 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 05:16:21.805 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:16:21.540 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:16:21.549 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 05:16:21.624 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 05:12:42.879 00:05:00.479 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 05:16:45.736 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34226 10 6452 1 2025-10-12 05:13:42.876 00:05:00.484 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 05:17:46.140 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:35080 10 6452 1 2025-10-12 05:18:46.497 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:52528 10 6452 1 2025-10-12 05:19:46.911 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43290 10 6452 1 2025-10-12 05:20:47.317 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35876 10 6452 1 2025-10-12 05:21:21.540 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 05:21:21.538 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 05:21:21.443 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:21:21.623 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:21:21.707 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 05:21:47.723 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47294 10 6452 1 2025-10-12 05:18:42.882 00:05:00.477 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 05:22:48.129 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43102 10 6452 1 2025-10-12 05:19:42.880 00:05:00.481 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 05:23:48.536 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45508 10 6452 1 2025-10-12 05:24:48.898 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:46076 10 6452 1 2025-10-12 05:25:49.319 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42948 10 6452 1 2025-10-12 05:26:21.798 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 05:26:21.806 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 05:26:21.761 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:26:21.565 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:26:21.649 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 05:26:49.728 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36982 10 6452 1 2025-10-12 05:27:50.146 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:43990 10 6452 1 2025-10-12 05:24:42.886 00:05:00.475 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 05:28:50.570 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44912 10 6452 1 2025-10-12 05:25:42.883 00:05:00.483 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 05:29:50.975 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33178 10 6452 1 2025-10-12 05:30:51.383 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:53238 12 10375 1 2025-10-12 05:31:21.724 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:31:21.802 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 05:31:21.852 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 05:31:21.870 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:31:21.806 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 05:31:51.864 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37614 10 6452 1 2025-10-12 05:32:52.278 00:00:10.796 TCP 1.101.0.1:3000 -> 23.104.0.1:50964 10 6452 1 2025-10-12 05:33:53.122 00:00:13.166 TCP 1.101.0.1:3000 -> 23.104.0.1:49700 10 6452 1 2025-10-12 05:30:42.890 00:05:00.474 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 05:34:56.429 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:33034 10 6452 1 2025-10-12 05:31:42.885 00:05:00.481 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 05:35:56.793 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49724 10 6452 1 2025-10-12 05:36:21.964 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 05:36:21.752 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:36:21.846 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:36:21.978 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 05:36:21.930 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 05:36:57.202 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37930 10 6452 1 2025-10-12 05:37:57.608 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49492 10 6452 1 2025-10-12 05:38:58.018 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:36312 10 6452 1 2025-10-12 05:39:58.373 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58482 10 6452 1 2025-10-12 05:36:42.890 00:05:00.477 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 05:40:58.779 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:50252 10 6452 1 2025-10-12 05:41:22.079 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 05:41:21.977 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 05:41:22.075 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:41:22.118 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:41:22.202 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 05:37:42.887 00:05:00.482 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 05:41:59.191 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:39200 10 6452 1 2025-10-12 05:42:59.611 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60870 10 6452 1 2025-10-12 05:44:00.016 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44056 10 6452 1 2025-10-12 05:45:00.419 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49778 10 6452 1 2025-10-12 05:46:00.784 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56024 10 6452 1 2025-10-12 05:46:22.384 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 05:46:22.201 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 05:46:22.300 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 05:46:21.976 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:46:22.302 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:42:42.890 00:05:00.478 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 05:47:01.187 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41094 10 6452 1 2025-10-12 05:43:42.887 00:05:00.484 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 05:48:01.586 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:58568 10 6452 1 2025-10-12 05:49:01.947 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52188 10 6452 1 2025-10-12 05:50:02.354 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:53216 10 6452 1 2025-10-12 05:51:02.726 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:60158 10 6452 1 2025-10-12 05:51:22.428 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 05:51:22.437 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 05:51:22.203 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:51:22.034 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:51:22.116 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 05:52:03.139 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:47630 10 6452 1 2025-10-12 05:48:42.891 00:05:00.478 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 05:53:03.506 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44382 10 6452 1 2025-10-12 05:49:42.892 00:05:00.483 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 05:54:03.869 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53142 10 6452 1 2025-10-12 05:55:04.281 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45812 10 6452 1 2025-10-12 05:56:22.582 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 05:56:04.682 00:00:10.714 TCP 1.101.0.1:3000 -> 23.104.0.1:60224 10 6452 1 2025-10-12 05:56:22.303 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 05:56:22.491 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 05:56:22.240 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:56:22.500 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:57:05.433 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:46600 10 6452 1 2025-10-12 05:58:05.806 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37696 10 6452 1 2025-10-12 05:54:42.894 00:05:00.479 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 Summary: total flows: 139, total bytes: 418388, total packets: 1014, avg bps: 871, avg pps: 0, avg bpp: 412 Time window: 2025-10-12 04:55:42 - 2025-10-12 05:59:43 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0043s User: 0.0009s Wall: 0.0025s flows/second: 54897.2 Runtime: 0.0026s