Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-30 04:59:12.017 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36130 10 6452 1 2025-10-30 05:00:01.463 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 05:00:01.425 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:00:01.397 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:00:01.402 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 05:00:01.480 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 05:00:12.417 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:51766 10 6452 1 2025-10-30 05:01:12.792 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:47380 10 6452 1 2025-10-30 04:56:52.142 00:06:00.405 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 05:02:13.210 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56052 10 6452 1 2025-10-30 05:03:13.583 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45822 10 6452 1 2025-10-30 04:58:52.144 00:06:00.399 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 05:04:13.986 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33490 10 6452 1 2025-10-30 05:05:01.657 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 05:05:01.554 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 05:05:01.431 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:05:01.607 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:05:01.690 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 05:05:14.354 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:60356 10 6452 1 2025-10-30 05:06:14.768 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:47674 10 6452 1 2025-10-30 05:07:15.138 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55204 10 6452 1 2025-10-30 05:08:15.544 00:00:11.172 TCP 1.101.0.1:3000 -> 23.104.0.1:33902 10 6452 1 2025-10-30 05:03:52.142 00:06:00.405 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 05:09:16.756 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:37390 10 6452 1 2025-10-30 05:10:01.821 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 05:10:01.809 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 05:10:01.651 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 05:10:01.688 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:10:01.738 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:10:17.154 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37876 10 6452 1 2025-10-30 05:05:52.147 00:06:00.399 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 05:11:17.558 00:00:10.433 TCP 1.101.0.1:3000 -> 23.104.0.1:48216 10 6452 1 2025-10-30 05:12:18.032 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35442 10 6452 1 2025-10-30 05:13:18.438 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39692 10 6452 1 2025-10-30 05:14:18.843 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:57248 10 6452 1 2025-10-30 05:15:02.027 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 05:15:01.826 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 05:15:01.852 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:15:01.944 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:15:01.945 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 05:15:19.221 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56700 10 6452 1 2025-10-30 05:10:52.145 00:06:00.406 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 05:16:19.622 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57814 10 6452 1 2025-10-30 05:17:20.035 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59206 10 6452 1 2025-10-30 05:12:52.148 00:06:00.400 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 05:18:20.436 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58016 10 6452 1 2025-10-30 05:19:20.834 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:36024 10 6452 1 2025-10-30 05:20:01.283 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 05:20:01.135 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 05:20:01.174 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 05:20:01.098 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:20:01.201 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:20:21.241 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38194 10 6452 1 2025-10-30 05:21:21.652 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:41054 10 6452 1 2025-10-30 05:22:22.067 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:49134 10 6452 1 2025-10-30 05:17:52.148 00:06:00.405 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 05:23:22.495 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40880 10 6452 1 2025-10-30 05:24:22.899 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:36380 10 6452 1 2025-10-30 05:19:52.150 00:06:00.400 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 05:25:01.950 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 05:25:01.959 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 05:25:01.971 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:25:01.965 00:00:00.020 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:25:02.048 00:00:00.019 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 05:25:23.268 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32886 10 6452 1 2025-10-30 05:26:23.673 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58122 10 6452 1 2025-10-30 05:27:24.099 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33546 10 6452 1 2025-10-30 05:28:24.499 00:00:11.280 TCP 1.101.0.1:3000 -> 23.104.0.1:33710 10 6452 1 2025-10-30 05:29:25.819 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:49776 10 6452 1 2025-10-30 05:24:52.148 00:06:00.406 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 05:30:02.218 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:30:02.216 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 05:30:02.287 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 05:30:02.289 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:30:02.300 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 05:30:26.186 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50896 10 6452 1 2025-10-30 05:31:26.595 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50970 10 6452 1 2025-10-30 05:26:52.150 00:06:00.402 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 05:32:26.995 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:36796 10 6452 1 2025-10-30 05:33:27.395 00:00:10.449 TCP 1.101.0.1:3000 -> 23.104.0.1:43478 12 10369 1 2025-10-30 05:34:27.884 00:00:10.672 TCP 1.101.0.1:3000 -> 23.104.0.1:55508 10 6452 1 2025-10-30 05:35:02.259 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 05:35:02.106 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 05:35:01.889 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:35:02.177 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:35:02.227 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 05:35:28.590 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:36236 10 6452 1 2025-10-30 05:36:28.998 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52608 10 6452 1 2025-10-30 05:31:52.150 00:06:00.404 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 05:37:29.401 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43166 10 6452 1 2025-10-30 05:38:29.802 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45226 10 6452 1 2025-10-30 05:33:52.152 00:06:00.401 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 05:39:30.204 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43236 10 6452 1 2025-10-30 05:40:02.476 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 05:40:02.325 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 05:40:02.327 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 05:40:02.342 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:40:02.395 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:40:30.579 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60766 10 6452 1 2025-10-30 05:41:30.984 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:45136 10 6452 1 2025-10-30 05:42:31.364 00:00:10.860 TCP 1.101.0.1:3000 -> 23.104.0.1:33248 12 10369 1 2025-10-30 05:43:32.261 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:60164 10 6452 1 2025-10-30 05:38:52.151 00:06:00.406 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 05:44:32.648 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58518 10 6452 1 2025-10-30 05:45:02.494 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:45:02.292 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 05:45:02.375 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 05:45:02.328 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:45:02.576 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 05:45:33.006 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:54416 10 6452 1 2025-10-30 05:40:52.154 00:06:00.401 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 05:46:33.404 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51978 10 6452 1 2025-10-30 05:47:33.812 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50788 10 6452 1 2025-10-30 05:48:34.215 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55460 10 6452 1 2025-10-30 05:49:34.617 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46468 10 6452 1 2025-10-30 05:50:03.285 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 05:50:03.353 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 05:50:03.202 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:50:03.165 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:50:03.247 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 05:50:35.027 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:35718 10 6452 1 2025-10-30 05:45:52.159 00:06:00.400 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 05:51:35.444 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43716 10 6452 1 2025-10-30 05:52:35.850 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:40496 10 6452 1 2025-10-30 05:47:52.163 00:06:00.393 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 05:53:36.282 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51992 12 6556 1 2025-10-30 05:54:36.695 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60656 10 6452 1 2025-10-30 05:55:02.721 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 05:55:02.664 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 05:55:02.582 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:55:02.483 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:55:02.566 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 05:55:37.070 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:55294 10 6452 1 2025-10-30 05:56:37.434 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38992 10 6452 1 2025-10-30 05:57:37.837 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56384 10 6452 1 2025-10-30 05:52:52.165 00:06:00.394 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 05:58:38.248 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56504 10 6452 1 Summary: total flows: 137, total bytes: 424815, total packets: 1024, avg bps: 913, avg pps: 0, avg bpp: 414 Time window: 2025-10-30 04:56:52 - 2025-10-30 05:58:52 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0038s User: 0.0009s Wall: 0.0018s flows/second: 75439.1 Runtime: 0.0018s