Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-12 06:55:42.908 00:05:00.485 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 06:59:35.604 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49058 10 6452 1 2025-10-12 07:00:36.007 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54838 10 6452 1 2025-10-12 07:01:23.908 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 07:01:23.827 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 07:01:23.653 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 07:01:23.650 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 07:01:23.577 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 07:01:36.407 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58708 10 6452 1 2025-10-12 07:02:36.809 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45866 10 6452 1 2025-10-12 07:03:37.220 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45662 10 6452 1 2025-10-12 07:00:42.912 00:05:00.481 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 07:04:37.622 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:41570 10 6452 1 2025-10-12 07:01:42.910 00:05:00.486 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 07:05:37.978 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:33248 12 10369 1 2025-10-12 07:06:23.843 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 07:06:23.776 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 07:06:23.765 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 07:06:23.774 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 07:06:23.762 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 07:06:38.422 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35320 10 6452 1 2025-10-12 07:07:38.826 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43604 10 6452 1 2025-10-12 07:08:39.238 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36400 10 6452 1 2025-10-12 07:09:39.644 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:54466 10 6452 1 2025-10-12 07:06:42.913 00:05:00.480 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 07:10:40.097 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60020 10 6452 1 2025-10-12 07:11:23.857 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 07:11:23.917 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 07:11:23.557 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 07:11:23.858 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 07:11:23.941 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 07:07:42.911 00:05:00.488 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 07:11:40.499 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56014 10 6452 1 2025-10-12 07:12:40.905 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:53322 12 6556 1 2025-10-12 07:13:41.320 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:58200 10 6452 1 2025-10-12 07:14:41.688 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60202 10 6452 1 2025-10-12 07:15:42.114 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43704 10 6452 1 2025-10-12 07:16:23.950 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 07:16:23.952 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 07:16:23.977 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 07:16:23.951 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 07:16:24.033 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 07:12:42.913 00:05:00.488 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 07:16:42.519 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:33122 10 6452 1 2025-10-12 07:13:42.911 00:05:00.493 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 07:17:42.937 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40048 10 6452 1 2025-10-12 07:18:43.344 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:53414 10 6452 1 2025-10-12 07:19:43.744 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41584 10 6452 1 2025-10-12 07:20:44.152 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:51572 10 6452 1 2025-10-12 07:21:24.098 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 07:21:24.102 00:00:00.043 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 07:21:23.650 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 07:21:24.101 00:00:00.044 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 07:21:24.197 00:00:00.040 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 07:21:44.555 00:00:11.068 TCP 1.101.0.1:3000 -> 23.104.0.1:34570 10 6452 1 2025-10-12 07:18:42.915 00:05:00.488 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 07:22:45.669 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43788 10 6452 1 2025-10-12 07:19:42.913 00:05:00.494 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 07:23:46.101 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52990 10 6452 1 2025-10-12 07:24:46.506 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50106 10 6452 1 2025-10-12 07:25:46.914 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45482 12 6556 1 2025-10-12 07:26:24.202 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 07:26:24.204 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 07:26:24.204 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 07:26:24.154 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 07:26:24.120 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 07:26:47.315 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54992 10 6452 1 2025-10-12 07:27:47.721 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:58762 10 6452 1 2025-10-12 07:24:42.916 00:05:00.490 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 07:28:48.139 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:58386 10 6452 1 2025-10-12 07:25:42.913 00:05:00.495 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 07:29:48.531 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47110 10 6452 1 2025-10-12 07:30:48.954 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:40204 10 6452 1 2025-10-12 07:31:24.958 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 07:31:24.459 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 07:31:24.962 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 07:31:24.959 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 07:31:25.046 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 07:31:49.330 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52002 10 6452 1 2025-10-12 07:32:49.736 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:36970 10 6452 1 2025-10-12 07:33:50.113 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59432 10 6452 1 2025-10-12 07:30:42.917 00:05:00.492 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 07:34:50.515 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54312 10 6452 1 2025-10-12 07:31:42.916 00:05:00.497 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 07:35:50.879 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:41318 12 10369 1 2025-10-12 07:36:24.306 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 07:36:24.307 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 07:36:24.422 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 07:36:24.306 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 07:36:24.389 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 07:36:51.361 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:37524 10 6452 1 2025-10-12 07:37:51.763 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:59998 10 6452 1 2025-10-12 07:38:52.134 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45162 10 6452 1 2025-10-12 07:39:52.547 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46834 10 6452 1 2025-10-12 07:36:42.920 00:05:00.490 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 07:40:52.961 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:43670 11 6504 1 2025-10-12 07:41:24.551 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 07:41:24.528 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 07:41:24.660 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 07:41:24.492 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 07:41:24.468 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 07:37:42.916 00:05:00.496 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 07:41:53.421 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36550 10 6452 1 2025-10-12 07:42:53.824 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51538 10 6452 1 2025-10-12 07:43:54.222 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46150 10 6452 1 2025-10-12 07:44:54.627 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39952 10 6452 1 2025-10-12 07:45:55.032 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38630 10 6452 1 2025-10-12 07:46:24.619 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 07:46:24.384 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 07:46:24.274 00:00:00.018 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 07:46:24.325 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 07:46:24.535 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 07:42:42.921 00:05:00.490 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 07:46:55.434 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38788 10 6452 1 2025-10-12 07:43:42.919 00:05:00.496 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 07:47:55.835 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:45308 10 6452 1 2025-10-12 07:48:56.222 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42708 10 6452 1 2025-10-12 07:49:56.622 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55426 10 6452 1 2025-10-12 07:50:57.026 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:33350 12 10369 1 2025-10-12 07:51:24.516 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 07:51:24.421 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 07:51:24.643 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 07:51:24.515 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 07:51:24.598 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 07:51:57.503 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:44974 10 6452 1 2025-10-12 07:48:42.922 00:05:00.492 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 07:52:57.863 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:58854 10 6452 1 2025-10-12 07:49:42.920 00:05:00.497 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 07:53:58.279 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56260 10 6452 1 2025-10-12 07:54:58.680 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40904 10 6452 1 2025-10-12 07:55:59.113 00:00:10.509 TCP 1.101.0.1:3000 -> 23.104.0.1:41860 10 6452 1 2025-10-12 07:56:25.437 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 07:56:25.356 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 07:56:25.424 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 07:56:25.481 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 07:56:25.355 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 07:56:59.661 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53898 10 6452 1 2025-10-12 07:58:00.068 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52808 10 6452 1 2025-10-12 07:54:42.922 00:05:00.494 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 Summary: total flows: 139, total bytes: 422559, total packets: 1021, avg bps: 880, avg pps: 0, avg bpp: 413 Time window: 2025-10-12 06:55:42 - 2025-10-12 07:59:43 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0040s User: 0.0020s Wall: 0.0020s flows/second: 67902.2 Runtime: 0.0021s