Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-29 22:59:38.732 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55898 10 6452 1 2025-10-29 22:59:54.207 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 22:59:54.144 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 22:54:52.048 00:06:00.373 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 22:59:54.219 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 22:59:53.958 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 22:59:54.126 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 23:00:39.134 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:39080 10 6452 1 2025-10-29 23:01:39.496 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34992 10 6452 1 2025-10-29 23:02:39.898 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:45250 10 6452 1 2025-10-29 23:03:40.316 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44304 10 6452 1 2025-10-29 23:04:54.374 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 22:59:52.045 00:06:00.379 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 23:04:54.792 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 23:04:54.638 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 23:04:40.720 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:52372 10 6452 1 2025-10-29 23:04:54.431 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 23:04:54.292 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 23:05:41.111 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56498 10 6452 1 2025-10-29 23:01:52.049 00:06:00.375 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 23:06:41.513 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60788 10 6452 1 2025-10-29 23:07:41.910 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36062 10 6452 1 2025-10-29 23:08:42.314 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:51912 10 6452 1 2025-10-29 23:09:54.622 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 23:09:54.202 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 23:09:54.299 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 23:09:54.326 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 23:09:42.671 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53334 10 6452 1 2025-10-29 23:09:54.539 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 23:10:43.099 00:00:10.627 TCP 1.101.0.1:3000 -> 23.104.0.1:50188 10 6452 1 2025-10-29 23:11:43.764 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48484 10 6452 1 2025-10-29 23:06:52.049 00:06:00.379 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 23:12:44.131 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:35794 10 6452 1 2025-10-29 23:08:52.053 00:06:00.373 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 23:13:44.560 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43010 10 6452 1 2025-10-29 23:14:54.611 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 23:14:54.608 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 23:14:54.561 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 23:14:54.529 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 23:14:54.669 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 23:14:44.967 00:00:10.577 TCP 1.101.0.1:3000 -> 23.104.0.1:47846 10 6452 1 2025-10-29 23:15:45.579 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:44884 10 6452 1 2025-10-29 23:16:45.998 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:32838 10 6452 1 2025-10-29 23:17:46.399 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50436 10 6452 1 2025-10-29 23:13:52.050 00:06:00.381 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 23:18:46.800 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50566 10 6452 1 2025-10-29 23:19:54.631 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 23:19:54.540 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 23:19:54.627 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 23:19:54.489 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 23:19:54.548 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 23:19:47.209 00:00:11.301 TCP 1.101.0.1:3000 -> 23.104.0.1:53112 10 6452 1 2025-10-29 23:15:52.053 00:06:00.378 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 23:20:48.549 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40024 10 6452 1 2025-10-29 23:21:48.959 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59188 10 6452 1 2025-10-29 23:22:49.371 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:44846 12 10375 1 2025-10-29 23:23:49.846 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:44842 10 6452 1 2025-10-29 23:24:54.630 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 23:24:54.712 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 23:24:54.645 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 23:24:54.683 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 23:24:54.548 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 23:24:50.276 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56750 10 6452 1 2025-10-29 23:20:52.051 00:06:00.386 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 23:25:50.682 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:47452 10 6452 1 2025-10-29 23:26:51.070 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53446 10 6452 1 2025-10-29 23:22:52.053 00:06:00.381 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 23:27:51.474 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40974 10 6452 1 2025-10-29 23:28:51.875 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33616 10 6452 1 2025-10-29 23:29:54.909 00:00:00.029 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 23:29:54.907 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 23:29:54.565 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 23:29:54.781 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 23:29:54.864 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 23:29:52.282 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59620 10 6452 1 2025-10-29 23:30:52.691 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54488 10 6452 1 2025-10-29 23:31:53.112 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44406 10 6452 1 2025-10-29 23:27:52.052 00:06:00.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 23:32:53.521 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:42604 10 6452 1 2025-10-29 23:33:53.890 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:49718 10 6452 1 2025-10-29 23:29:52.054 00:06:00.382 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 23:34:55.330 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 23:34:55.331 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 23:34:55.098 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 23:34:55.124 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 23:34:55.207 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 23:34:54.323 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41792 10 6452 1 2025-10-29 23:35:54.732 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:39280 10 6452 1 2025-10-29 23:36:55.144 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:47394 10 6452 1 2025-10-29 23:37:55.530 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44470 10 6452 1 2025-10-29 23:38:55.932 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:36446 10 6452 1 2025-10-29 23:34:52.054 00:06:00.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 23:39:55.033 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 23:39:54.854 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 23:39:54.873 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 23:39:54.951 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 23:39:55.058 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 23:39:56.333 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56868 10 6452 1 2025-10-29 23:40:56.739 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43672 10 6452 1 2025-10-29 23:36:52.057 00:06:00.382 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 23:41:57.149 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57888 10 6452 1 2025-10-29 23:42:57.551 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:39962 12 10375 1 2025-10-29 23:43:58.036 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49094 10 6452 1 2025-10-29 23:44:55.237 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 23:44:55.157 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 23:44:55.159 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 23:44:55.168 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 23:44:55.154 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 23:44:58.395 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41584 10 6452 1 2025-10-29 23:45:58.794 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:35972 10 6452 1 2025-10-29 23:41:52.057 00:06:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 23:46:59.194 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:46274 10 6452 1 2025-10-29 23:47:59.591 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46152 10 6452 1 2025-10-29 23:43:52.058 00:06:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 23:48:59.995 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48540 10 6452 1 2025-10-29 23:49:55.225 00:00:00.036 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 23:49:55.156 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 23:49:55.004 00:00:00.048 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 23:49:55.356 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 23:49:55.438 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 23:50:00.409 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:33722 10 6452 1 2025-10-29 23:51:00.834 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:35380 10 6452 1 2025-10-29 23:52:01.255 00:00:10.498 TCP 1.101.0.1:3000 -> 23.104.0.1:38352 10 6452 1 2025-10-29 23:53:01.790 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39002 10 6452 1 2025-10-29 23:48:52.056 00:06:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 23:54:02.156 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34182 10 6452 1 2025-10-29 23:54:55.277 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 23:54:54.974 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 23:54:55.370 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 23:54:55.257 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 23:54:55.195 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 23:55:02.562 00:00:10.649 TCP 1.101.0.1:3000 -> 23.104.0.1:33446 10 6452 1 2025-10-29 23:50:52.060 00:06:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 23:56:03.244 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60000 10 6452 1 2025-10-29 23:57:03.643 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35640 10 6452 1 2025-10-29 23:58:04.050 00:00:10.353 TCP 1.101.0.1:3000 -> 23.104.0.1:44062 10 6452 1 Summary: total flows: 136, total bytes: 418271, total packets: 1012, avg bps: 880, avg pps: 0, avg bpp: 413 Time window: 2025-10-29 22:54:52 - 2025-10-29 23:58:14 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0050s User: 0.0013s Wall: 0.0020s flows/second: 67932.0 Runtime: 0.0020s