Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-29 19:59:02.602 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52114 10 6452 1 2025-10-29 19:59:51.028 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 19:59:50.792 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 19:59:50.873 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 19:59:50.563 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 19:59:50.944 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:00:03.006 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:49010 10 6452 1 2025-10-29 19:56:51.950 00:05:00.403 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 20:01:03.373 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36710 10 6452 1 2025-10-29 19:57:51.946 00:05:00.409 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 20:02:03.782 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38132 10 6452 1 2025-10-29 20:03:04.184 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60358 10 6452 1 2025-10-29 20:04:04.596 00:00:22.988 TCP 1.101.0.1:3000 -> 23.104.0.1:39072 10 6452 1 2025-10-29 20:04:50.896 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 20:04:50.760 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 20:04:50.602 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 20:04:50.812 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:04:50.813 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:05:17.622 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:34606 10 6452 1 2025-10-29 20:06:17.982 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38714 10 6452 1 2025-10-29 20:02:51.950 00:05:00.405 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 20:07:18.388 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38758 10 6452 1 2025-10-29 20:03:51.948 00:05:00.409 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 20:08:18.802 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58368 10 6452 1 2025-10-29 20:09:19.214 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35870 10 6452 1 2025-10-29 20:09:50.725 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 20:09:50.854 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 20:09:50.661 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:09:50.861 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:09:50.944 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 20:10:19.625 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55370 11 6492 1 2025-10-29 20:11:20.032 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55448 10 6452 1 2025-10-29 20:12:20.432 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58368 10 6452 1 2025-10-29 20:08:51.954 00:05:00.402 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 20:13:20.835 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:52218 10 6452 1 2025-10-29 20:09:51.951 00:05:00.408 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 20:14:21.256 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48932 10 6452 1 2025-10-29 20:14:50.984 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 20:14:50.896 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 20:14:50.639 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:14:50.882 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:14:50.966 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 20:15:21.658 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34402 10 6452 1 2025-10-29 20:16:22.061 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48276 10 6452 1 2025-10-29 20:17:22.465 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35562 10 6452 1 2025-10-29 20:18:22.873 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49270 10 6452 1 2025-10-29 20:14:51.955 00:05:00.402 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 20:19:23.234 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:50098 10 6452 1 2025-10-29 20:19:51.037 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 20:15:51.953 00:05:00.407 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 20:19:50.967 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 20:19:50.786 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 20:19:50.847 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:19:50.955 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:20:23.643 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52008 10 6452 1 2025-10-29 20:21:24.052 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38270 10 6452 1 2025-10-29 20:22:24.414 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38880 10 6452 1 2025-10-29 20:23:24.817 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41888 10 6452 1 2025-10-29 20:24:25.220 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55800 10 6452 1 2025-10-29 20:24:51.088 00:00:00.035 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 20:24:50.922 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 20:20:51.960 00:05:00.399 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 20:24:50.921 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 20:24:51.064 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:24:51.007 00:00:00.034 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:25:25.579 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40182 10 6452 1 2025-10-29 20:21:51.960 00:05:00.402 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 20:26:25.983 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47880 10 6452 1 2025-10-29 20:27:26.386 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58614 10 6452 1 2025-10-29 20:28:26.793 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43390 10 6452 1 2025-10-29 20:29:27.205 00:00:10.559 TCP 1.101.0.1:3000 -> 23.104.0.1:41406 10 6452 1 2025-10-29 20:29:51.313 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 20:29:51.176 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 20:29:50.996 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 20:29:51.134 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:29:51.232 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:30:27.807 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55272 10 6452 1 2025-10-29 20:26:51.965 00:05:00.398 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 20:31:28.209 00:00:15.515 TCP 1.101.0.1:3000 -> 23.104.0.1:51436 10 6452 1 2025-10-29 20:27:51.962 00:05:00.403 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 20:32:33.770 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38586 10 6452 1 2025-10-29 20:33:34.174 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55654 10 6452 1 2025-10-29 20:34:34.578 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:46022 10 6452 1 2025-10-29 20:34:51.488 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 20:34:51.405 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 20:34:51.356 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 20:34:51.300 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:34:51.405 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:35:34.978 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42260 10 6452 1 2025-10-29 20:36:35.381 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:54190 10 6452 1 2025-10-29 20:32:51.965 00:05:00.399 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 20:37:35.744 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47296 10 6452 1 2025-10-29 20:33:51.963 00:05:00.404 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 20:38:36.154 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49578 10 6452 1 2025-10-29 20:39:36.564 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37474 10 6452 1 2025-10-29 20:39:51.476 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 20:39:51.449 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 20:39:51.392 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 20:39:51.423 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:39:51.393 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:40:36.968 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50400 10 6452 1 2025-10-29 20:41:37.339 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38248 10 6452 1 2025-10-29 20:42:37.701 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:36638 10 6452 1 2025-10-29 20:38:51.966 00:05:00.400 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 20:43:38.072 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60024 10 6452 1 2025-10-29 20:39:51.965 00:05:00.405 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 20:44:38.482 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39206 10 6452 1 2025-10-29 20:44:51.567 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 20:44:51.534 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 20:44:51.241 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:44:51.432 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:44:51.515 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 20:45:38.893 00:00:10.354 TCP 1.101.0.1:3000 -> 23.104.0.1:37276 10 6452 1 2025-10-29 20:46:39.305 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:39068 10 6452 1 2025-10-29 20:47:39.661 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34920 10 6452 1 2025-10-29 20:44:51.967 00:05:00.400 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 20:48:40.027 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55270 10 6452 1 2025-10-29 20:49:51.600 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 20:45:51.964 00:05:00.406 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 20:49:51.670 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 20:49:51.516 00:00:00.029 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 20:49:51.350 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:49:40.426 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47486 10 6452 1 2025-10-29 20:49:51.516 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:50:40.831 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:60060 10 6452 1 2025-10-29 20:51:41.209 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42832 10 6452 1 2025-10-29 20:52:41.614 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38288 10 6452 1 2025-10-29 20:53:42.016 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36946 10 6452 1 2025-10-29 20:54:51.722 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 20:54:51.645 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 20:50:51.969 00:05:00.400 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 20:54:51.592 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 20:54:42.421 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:51416 10 6452 1 2025-10-29 20:54:51.382 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:54:51.639 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:51:51.967 00:05:00.407 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 20:55:42.790 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43892 10 6452 1 2025-10-29 20:56:43.188 00:00:12.928 TCP 1.101.0.1:3000 -> 23.104.0.1:45318 10 6452 1 2025-10-29 20:57:46.160 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43772 10 6452 1 Summary: total flows: 139, total bytes: 410588, total packets: 1011, avg bps: 896, avg pps: 0, avg bpp: 406 Time window: 2025-10-29 19:56:51 - 2025-10-29 20:57:56 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0054s User: 0.0011s Wall: 0.0028s flows/second: 50056.5 Runtime: 0.0028s