Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-30 05:59:38.664 00:00:11.052 TCP 1.101.0.1:3000 -> 23.104.0.1:50218 10 6452 1 2025-10-30 05:54:52.168 00:06:00.390 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 06:00:02.735 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 06:00:02.666 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:00:02.736 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:00:02.660 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 06:00:02.818 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 06:00:39.759 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:42252 10 6452 1 2025-10-30 06:01:40.197 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46860 10 6452 1 2025-10-30 06:02:40.599 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43578 10 6452 1 2025-10-30 06:03:41.008 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48518 10 6452 1 2025-10-30 05:59:52.167 00:06:00.398 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 06:04:41.410 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41472 10 6452 1 2025-10-30 06:05:02.724 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 06:05:02.811 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 06:05:02.679 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:05:02.731 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:05:02.813 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 06:05:41.817 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33210 10 6452 1 2025-10-30 06:01:52.170 00:06:00.393 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 06:06:42.228 00:00:12.663 TCP 1.101.0.1:3000 -> 23.104.0.1:39494 10 6452 1 2025-10-30 06:07:44.932 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:53890 10 6452 1 2025-10-30 06:08:45.318 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41098 10 6452 1 2025-10-30 06:09:45.720 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52314 10 6452 1 2025-10-30 06:10:02.992 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 06:10:02.736 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 06:10:02.739 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 06:10:02.764 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:10:02.908 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:10:46.133 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42614 10 6452 1 2025-10-30 06:06:52.169 00:06:00.397 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 06:11:46.536 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36862 10 6452 1 2025-10-30 06:12:46.943 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:36246 10 6452 1 2025-10-30 06:08:52.171 00:06:00.393 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 06:13:47.354 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33176 10 6452 1 2025-10-30 06:14:47.760 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:49008 10 6452 1 2025-10-30 06:15:02.699 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 06:15:02.930 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 06:15:02.759 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:15:03.048 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:15:03.130 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 06:15:48.194 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33372 10 6452 1 2025-10-30 06:16:48.603 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55754 10 6452 1 2025-10-30 06:17:49.013 00:00:10.511 TCP 1.101.0.1:3000 -> 23.104.0.1:44824 14 14292 1 2025-10-30 06:13:52.170 00:06:00.398 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 06:18:49.558 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40512 10 6452 1 2025-10-30 06:20:03.012 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 06:20:03.132 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 06:20:03.064 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 06:20:02.845 00:00:00.031 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:19:49.921 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:49114 10 6452 1 2025-10-30 06:20:02.930 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:15:52.172 00:06:00.402 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 06:20:50.339 00:00:10.846 TCP 1.101.0.1:3000 -> 23.104.0.1:59012 10 6452 1 2025-10-30 06:21:51.229 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:43010 10 6452 1 2025-10-30 06:22:51.705 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45404 10 6452 1 2025-10-30 06:23:52.115 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37840 10 6452 1 2025-10-30 06:25:03.166 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 06:25:03.163 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 06:25:03.093 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 06:24:52.521 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37286 10 6452 1 2025-10-30 06:25:02.885 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:25:03.085 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:20:52.172 00:06:00.408 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 06:25:52.880 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55836 10 6452 1 2025-10-30 06:26:53.283 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:52742 10 6452 1 2025-10-30 06:22:52.185 00:06:00.392 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 06:27:53.645 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56486 10 6452 1 2025-10-30 06:28:54.055 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59682 10 6452 1 2025-10-30 06:30:03.609 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 06:29:54.460 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54558 10 6452 1 2025-10-30 06:30:03.579 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 06:30:03.490 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:30:03.541 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:30:03.623 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 06:30:54.860 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:52878 10 6452 1 2025-10-30 06:31:55.278 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:45622 10 6452 1 2025-10-30 06:27:52.183 00:06:00.397 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 06:32:55.681 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:48798 10 6452 1 2025-10-30 06:33:56.114 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50180 10 6452 1 2025-10-30 06:29:52.187 00:06:00.391 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 06:35:03.317 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 06:35:03.330 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 06:35:03.063 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:35:03.452 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:35:03.534 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 06:34:56.519 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33362 10 6452 1 2025-10-30 06:35:56.919 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41178 10 6452 1 2025-10-30 06:36:57.323 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:53974 10 6452 1 2025-10-30 06:37:57.739 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36974 10 6452 1 2025-10-30 06:38:58.152 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58474 10 6452 1 2025-10-30 06:34:52.184 00:06:00.397 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 06:40:03.584 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 06:40:03.550 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 06:40:03.508 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 06:40:03.387 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:40:03.502 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:39:58.553 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43538 10 6452 1 2025-10-30 06:40:58.957 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58138 10 6452 1 2025-10-30 06:36:52.188 00:06:00.392 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 06:41:59.366 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45400 10 6452 1 2025-10-30 06:42:59.765 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58500 10 6452 1 2025-10-30 06:44:00.178 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49012 10 6452 1 2025-10-30 06:45:03.677 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 06:45:03.676 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 06:45:03.681 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 06:45:03.676 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:45:03.593 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:45:00.583 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:52466 10 6452 1 2025-10-30 06:46:00.981 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:54238 10 6452 1 2025-10-30 06:41:52.186 00:06:00.397 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 06:47:01.358 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:51612 10 6452 1 2025-10-30 06:48:01.747 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45408 10 6452 1 2025-10-30 06:43:52.193 00:06:00.390 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 06:49:02.152 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58024 10 6452 1 2025-10-30 06:50:03.969 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 06:50:03.885 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 06:50:03.831 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:50:04.092 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:50:04.175 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 06:50:02.521 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43060 10 6452 1 2025-10-30 06:51:02.927 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:43562 10 6452 1 2025-10-30 06:52:03.372 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59662 10 6452 1 2025-10-30 06:53:03.772 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52476 10 6452 1 2025-10-30 06:48:52.191 00:06:00.396 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 06:54:04.181 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58906 10 6452 1 2025-10-30 06:55:03.671 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 06:55:03.770 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 06:55:03.952 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:55:03.766 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:55:03.848 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 06:55:04.549 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46996 11 6492 1 2025-10-30 06:50:52.193 00:06:00.392 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 06:56:04.913 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44834 10 6452 1 2025-10-30 06:57:05.317 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48964 10 6452 1 2025-10-30 06:58:05.720 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:42654 10 6452 1 Summary: total flows: 136, total bytes: 418305, total packets: 1013, avg bps: 879, avg pps: 0, avg bpp: 412 Time window: 2025-10-30 05:54:52 - 2025-10-30 06:58:16 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0019s User: 0.0019s Wall: 0.0015s flows/second: 90904.4 Runtime: 0.0015s