Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-30 00:53:52.080 00:06:00.382 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 00:58:45.720 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50156 10 6452 1 2025-10-30 00:59:56.705 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 00:59:56.695 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 00:59:46.135 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56306 10 6452 1 2025-10-30 00:59:56.710 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 00:59:56.363 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 00:59:56.622 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:00:46.546 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48786 10 6452 1 2025-10-30 01:01:46.950 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44980 10 6452 1 2025-10-30 01:02:47.367 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49148 10 6452 1 2025-10-30 00:58:52.079 00:06:00.385 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 01:03:47.773 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:53022 10 6452 1 2025-10-30 01:04:56.742 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 01:04:56.557 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 01:04:56.817 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:04:56.642 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:04:48.186 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47246 10 6452 1 2025-10-30 01:04:56.726 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 01:00:52.082 00:06:00.379 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 01:05:48.594 00:00:18.377 TCP 1.101.0.1:3000 -> 23.104.0.1:35414 10 6452 1 2025-10-30 01:06:57.012 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35798 10 6452 1 2025-10-30 01:07:57.416 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54620 10 6452 1 2025-10-30 01:08:57.817 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50994 10 6452 1 2025-10-30 01:09:56.664 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 01:09:56.788 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 01:09:56.812 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:09:56.855 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:09:56.938 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 01:09:58.223 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:43320 10 6452 1 2025-10-30 01:05:52.081 00:06:00.385 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 01:10:58.579 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38794 10 6452 1 2025-10-30 01:11:58.985 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:56746 10 6452 1 2025-10-30 01:07:52.085 00:06:00.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 01:12:59.393 00:00:10.406 TCP 1.101.0.1:3000 -> 23.104.0.1:53198 12 10375 1 2025-10-30 01:13:59.836 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:38288 10 6452 1 2025-10-30 01:14:56.877 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 01:14:56.916 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 01:14:57.061 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 01:14:56.927 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:14:56.796 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:15:00.258 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33738 10 6452 1 2025-10-30 01:16:00.668 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43002 10 6452 1 2025-10-30 01:17:01.104 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:49300 10 6452 1 2025-10-30 01:12:52.084 00:06:00.385 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 01:18:01.476 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40050 10 6452 1 2025-10-30 01:19:01.883 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:53216 10 6452 1 2025-10-30 01:14:52.087 00:06:00.379 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 01:19:57.092 00:00:00.044 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 01:19:56.946 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 01:19:57.088 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 01:19:56.970 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:19:57.010 00:00:00.042 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:20:02.259 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51006 10 6452 1 2025-10-30 01:21:02.661 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:44898 10 6452 1 2025-10-30 01:22:03.109 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34986 10 6452 1 2025-10-30 01:23:03.471 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47518 10 6452 1 2025-10-30 01:24:03.830 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56168 10 6452 1 2025-10-30 01:19:52.085 00:06:00.384 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 01:24:57.255 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 01:24:57.130 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 01:24:57.179 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 01:24:56.977 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:24:57.173 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:25:04.237 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54082 10 6452 1 2025-10-30 01:26:04.649 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:47760 10 6452 1 2025-10-30 01:21:52.088 00:06:00.378 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 01:27:05.011 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:48292 10 6452 1 2025-10-30 01:28:05.403 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:42406 12 10369 1 2025-10-30 01:29:05.877 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37752 10 6452 1 2025-10-30 01:29:57.299 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 01:29:57.186 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 01:29:57.259 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:29:57.178 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:29:57.261 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 01:30:06.280 00:00:10.654 TCP 1.101.0.1:3000 -> 23.104.0.1:32874 10 6452 1 2025-10-30 01:31:06.961 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54904 10 6452 1 2025-10-30 01:26:52.087 00:06:00.385 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 01:32:07.366 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36020 10 6452 1 2025-10-30 01:33:07.767 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56800 12 6556 1 2025-10-30 01:28:52.089 00:06:00.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 01:34:08.177 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40074 10 6452 1 2025-10-30 01:34:57.541 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 01:34:57.540 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 01:34:56.942 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:34:57.424 00:00:00.016 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:34:57.506 00:00:00.017 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 01:35:08.590 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49950 10 6452 1 2025-10-30 01:36:08.993 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60704 10 6452 1 2025-10-30 01:37:09.409 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33634 10 6452 1 2025-10-30 01:38:09.810 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47248 10 6452 1 2025-10-30 01:33:52.086 00:06:00.386 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 01:39:10.211 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50016 10 6452 1 2025-10-30 01:39:57.452 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:39:57.459 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 01:39:57.612 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 01:39:57.137 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:39:57.534 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 01:40:10.608 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51560 10 6452 1 2025-10-30 01:35:52.090 00:06:00.381 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 01:41:11.010 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:60586 10 6452 1 2025-10-30 01:42:11.380 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41518 10 6452 1 2025-10-30 01:43:11.792 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45894 10 6452 1 2025-10-30 01:44:12.196 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38768 10 6452 1 2025-10-30 01:44:57.652 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 01:44:57.350 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 01:44:57.444 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 01:44:57.367 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:44:57.569 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:45:12.604 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:40354 10 6452 1 2025-10-30 01:40:52.089 00:06:00.385 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 01:46:12.978 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50590 10 6452 1 2025-10-30 01:47:13.385 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34342 10 6452 1 2025-10-30 01:42:52.092 00:06:00.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 01:48:13.797 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:47078 10 6452 1 2025-10-30 01:49:14.178 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57192 10 6452 1 2025-10-30 01:49:58.001 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 01:49:57.877 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 01:49:57.877 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 01:49:57.728 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:49:57.918 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:50:14.581 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49556 10 6452 1 2025-10-30 01:51:14.985 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:52654 10 6452 1 2025-10-30 01:52:15.351 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56814 10 6452 1 2025-10-30 01:47:52.091 00:06:00.386 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 01:53:15.749 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37462 10 6452 1 2025-10-30 01:54:16.148 00:00:14.786 TCP 1.101.0.1:3000 -> 23.104.0.1:38540 10 6452 1 2025-10-30 01:49:52.093 00:06:00.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 01:54:57.803 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 01:54:57.647 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:54:57.796 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:54:57.714 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 01:54:57.879 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 01:55:20.984 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54190 10 6452 1 2025-10-30 01:56:21.396 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56986 10 6452 1 2025-10-30 01:57:21.801 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33142 10 6452 1 2025-10-30 01:58:22.207 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58654 10 6452 1 Summary: total flows: 137, total bytes: 424821, total packets: 1024, avg bps: 875, avg pps: 0, avg bpp: 414 Time window: 2025-10-30 00:53:52 - 2025-10-30 01:58:32 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0046s User: 0.0009s Wall: 0.0017s flows/second: 79642.4 Runtime: 0.0017s