Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-30 03:58:43.133 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42506 10 6452 1 2025-10-30 03:53:52.124 00:06:00.399 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 03:59:43.533 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40008 10 6452 1 2025-10-30 04:00:01.013 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 04:00:01.105 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 04:00:01.210 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 04:00:01.212 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:00:00.930 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 03:55:52.129 00:06:00.393 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 04:00:43.936 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:38412 10 6452 1 2025-10-30 04:01:44.363 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:53646 10 6452 1 2025-10-30 04:02:44.724 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:45178 10 6452 1 2025-10-30 04:03:45.131 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54532 10 6452 1 2025-10-30 04:04:45.535 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35334 10 6452 1 2025-10-30 04:05:00.340 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 04:05:00.404 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 04:05:00.287 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:05:00.407 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:05:00.490 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 04:00:52.127 00:06:00.397 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 04:05:45.938 00:00:10.406 TCP 1.101.0.1:3000 -> 23.104.0.1:60178 10 6452 1 2025-10-30 04:06:46.358 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:48980 10 6452 1 2025-10-30 04:02:52.131 00:06:00.391 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 04:07:46.759 00:00:10.454 TCP 1.101.0.1:3000 -> 23.104.0.1:40414 12 10375 1 2025-10-30 04:08:47.253 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59394 10 6452 1 2025-10-30 04:09:47.666 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50292 10 6452 1 2025-10-30 04:10:00.642 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 04:10:00.397 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 04:10:00.475 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 04:10:00.404 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:10:00.560 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:10:48.109 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49484 10 6452 1 2025-10-30 04:11:48.514 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45930 10 6452 1 2025-10-30 04:07:52.130 00:06:00.397 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 04:12:48.923 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:40874 10 6452 1 2025-10-30 04:13:49.282 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59082 10 6452 1 2025-10-30 04:09:52.132 00:06:00.393 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 04:15:00.469 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 04:14:49.690 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60164 10 6452 1 2025-10-30 04:15:00.534 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 04:15:00.433 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:15:00.578 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:15:00.661 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 04:15:50.116 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53884 10 6452 1 2025-10-30 04:16:50.521 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59352 10 6452 1 2025-10-30 04:17:50.921 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:48274 10 6452 1 2025-10-30 04:18:51.334 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57484 10 6452 1 2025-10-30 04:14:52.130 00:06:00.399 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 04:20:00.760 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 04:20:00.707 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 04:20:00.644 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:19:51.740 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:46080 10 6452 1 2025-10-30 04:20:00.634 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:20:00.717 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 04:20:52.150 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60436 10 6452 1 2025-10-30 04:16:52.133 00:06:00.395 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 04:21:52.546 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46632 10 6452 1 2025-10-30 04:22:52.952 00:00:10.839 TCP 1.101.0.1:3000 -> 23.104.0.1:59674 10 6452 1 2025-10-30 04:23:53.829 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56258 10 6452 1 2025-10-30 04:25:00.807 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 04:25:00.598 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 04:25:00.648 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:25:00.694 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:24:54.195 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38690 10 6452 1 2025-10-30 04:25:00.776 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 04:25:54.599 00:00:10.956 TCP 1.101.0.1:3000 -> 23.104.0.1:41798 10 6452 1 2025-10-30 04:21:52.133 00:06:00.399 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 04:26:55.595 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58738 10 6452 1 2025-10-30 04:27:55.998 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43500 10 6452 1 2025-10-30 04:23:52.135 00:06:00.395 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 04:28:56.406 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51052 10 6452 1 2025-10-30 04:30:01.044 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 04:30:00.910 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 04:30:00.908 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 04:30:00.682 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:30:00.961 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:29:56.804 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:50744 10 6452 1 2025-10-30 04:30:57.183 00:00:12.306 TCP 1.101.0.1:3000 -> 23.104.0.1:40074 10 6452 1 2025-10-30 04:31:59.531 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58172 10 6452 1 2025-10-30 04:32:59.933 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:45696 10 6452 1 2025-10-30 04:28:52.134 00:06:00.406 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 04:34:00.317 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60052 10 6452 1 2025-10-30 04:35:00.992 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 04:35:00.873 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 04:35:00.724 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:35:00.661 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:35:00.745 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 04:35:00.721 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55336 10 6452 1 2025-10-30 04:30:52.138 00:06:00.400 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 04:36:01.122 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51070 10 6452 1 2025-10-30 04:37:01.524 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48146 10 6452 1 2025-10-30 04:38:01.927 00:00:10.430 TCP 1.101.0.1:3000 -> 23.104.0.1:39370 10 6452 1 2025-10-30 04:39:02.394 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55720 10 6452 1 2025-10-30 04:40:01.283 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 04:40:01.288 00:00:00.029 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 04:40:00.916 00:00:00.042 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:40:01.548 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:40:01.630 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 04:40:02.795 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53726 10 6452 1 2025-10-30 04:35:52.136 00:06:00.406 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 04:41:03.204 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56776 10 6452 1 2025-10-30 04:42:03.604 00:00:11.249 TCP 1.101.0.1:3000 -> 23.104.0.1:43532 10 6452 1 2025-10-30 04:37:52.139 00:06:00.400 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 04:43:04.927 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:39558 10 6452 1 2025-10-30 04:44:05.335 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55496 10 6452 1 2025-10-30 04:45:01.149 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 04:45:01.209 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 04:45:01.199 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:45:01.265 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:45:01.348 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 04:45:05.743 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34664 10 6452 1 2025-10-30 04:46:06.111 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39718 10 6452 1 2025-10-30 04:47:06.529 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34130 10 6452 1 2025-10-30 04:42:52.137 00:06:00.405 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 04:48:06.941 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:51426 10 6452 1 2025-10-30 04:49:07.358 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:57286 10 6452 1 2025-10-30 04:44:52.141 00:06:00.400 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 04:50:01.401 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 04:50:01.314 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 04:50:01.236 00:00:00.030 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 04:50:01.261 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:50:01.319 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:50:07.757 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:47450 10 6452 1 2025-10-30 04:51:08.175 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34880 10 6452 1 2025-10-30 04:52:08.577 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:34350 10 6452 1 2025-10-30 04:53:08.944 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:46124 10 6452 1 2025-10-30 04:54:09.360 00:00:11.042 TCP 1.101.0.1:3000 -> 23.104.0.1:54924 10 6452 1 2025-10-30 04:49:52.140 00:06:00.405 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 04:55:01.508 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 04:55:01.312 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 04:55:01.421 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 04:55:01.447 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:55:01.425 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:55:10.446 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:53680 10 6452 1 2025-10-30 04:56:10.804 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37034 10 6452 1 2025-10-30 04:51:52.143 00:06:00.399 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 04:57:11.212 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:32838 10 6452 1 2025-10-30 04:58:11.613 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48234 10 6452 1 Summary: total flows: 138, total bytes: 421661, total packets: 1034, avg bps: 871, avg pps: 0, avg bpp: 407 Time window: 2025-10-30 03:53:52 - 2025-10-30 04:58:21 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0045s User: 0.0022s Wall: 0.0020s flows/second: 68111.8 Runtime: 0.0020s