Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-30 07:53:52.212 00:06:00.390 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 07:58:53.600 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:47484 10 6452 1 2025-10-30 07:59:53.964 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36818 10 6452 1 2025-10-30 08:00:05.112 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 08:00:05.013 00:00:00.029 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 08:00:05.067 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 08:00:05.111 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 08:00:05.193 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 08:00:54.367 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60512 10 6452 1 2025-10-30 08:01:54.776 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:47438 10 6452 1 2025-10-30 08:02:55.151 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33948 10 6452 1 2025-10-30 07:58:52.215 00:06:00.391 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 08:03:55.553 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60818 10 6452 1 2025-10-30 08:05:05.111 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 08:05:05.113 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 08:05:05.076 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 08:05:05.109 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 08:04:55.957 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50508 10 6452 1 2025-10-30 08:05:05.194 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 08:00:52.218 00:06:00.385 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 08:05:56.361 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:41320 10 6452 1 2025-10-30 08:06:56.725 00:00:10.430 TCP 1.101.0.1:3000 -> 23.104.0.1:55452 11 6504 1 2025-10-30 08:07:57.195 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58880 10 6452 1 2025-10-30 08:08:57.598 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43616 10 6452 1 2025-10-30 08:10:04.932 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 08:10:05.048 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 08:10:05.092 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 08:10:05.161 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 08:09:58.053 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:49822 10 6452 1 2025-10-30 08:10:05.244 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 08:05:52.219 00:06:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 08:10:58.497 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:52026 10 6452 1 2025-10-30 08:11:58.867 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47120 10 6452 1 2025-10-30 08:07:52.222 00:06:00.385 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 08:12:59.274 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:39110 10 6452 1 2025-10-30 08:13:59.646 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37032 10 6452 1 2025-10-30 08:15:05.265 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 08:15:05.312 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 08:15:05.256 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 08:15:05.253 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 08:15:05.339 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 08:15:00.074 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57206 10 6452 1 2025-10-30 08:16:00.479 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43732 10 6452 1 2025-10-30 08:17:00.883 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:38922 12 6556 1 2025-10-30 08:12:52.220 00:06:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 08:18:01.314 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51454 10 6452 1 2025-10-30 08:19:01.717 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37252 10 6452 1 2025-10-30 08:14:52.223 00:06:00.385 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 08:20:05.529 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 08:20:05.454 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 08:20:05.372 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 08:20:05.189 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 08:20:05.446 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 08:20:02.120 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35780 10 6452 1 2025-10-30 08:21:02.519 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36582 10 6452 1 2025-10-30 08:22:02.926 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:45810 10 6452 1 2025-10-30 08:23:03.358 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:42812 10 6452 1 2025-10-30 08:24:03.717 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34662 10 6452 1 2025-10-30 08:19:52.222 00:06:00.391 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 08:25:05.451 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 08:25:05.679 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 08:25:05.557 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 08:25:05.451 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 08:25:05.533 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 08:25:04.123 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58864 10 6452 1 2025-10-30 08:26:04.486 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:43780 10 6452 1 2025-10-30 08:21:52.225 00:06:00.388 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 08:27:04.850 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:57086 10 6452 1 2025-10-30 08:28:05.283 00:00:10.923 TCP 1.101.0.1:3000 -> 23.104.0.1:38054 10 6452 1 2025-10-30 08:29:06.244 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49850 10 6452 1 2025-10-30 08:30:05.740 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 08:30:05.472 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 08:30:05.546 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 08:30:05.645 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 08:30:05.729 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 08:30:06.654 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48664 10 6452 1 2025-10-30 08:31:07.068 00:00:21.299 TCP 1.101.0.1:3000 -> 23.104.0.1:48236 10 6452 1 2025-10-30 08:26:52.223 00:06:00.394 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 08:32:18.409 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46046 10 6452 1 2025-10-30 08:33:18.813 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:45958 10 6452 1 2025-10-30 08:28:52.225 00:06:00.390 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 08:34:19.178 00:00:10.971 TCP 1.101.0.1:3000 -> 23.104.0.1:49370 10 6452 1 2025-10-30 08:35:06.020 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 08:35:06.048 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 08:35:05.986 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 08:35:06.220 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 08:35:06.303 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 08:35:20.193 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59120 10 6452 1 2025-10-30 08:36:20.595 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49028 10 6452 1 2025-10-30 08:37:20.995 00:00:10.669 TCP 1.101.0.1:3000 -> 23.104.0.1:44678 10 6452 1 2025-10-30 08:38:21.705 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:59604 10 6452 1 2025-10-30 08:33:52.223 00:06:00.397 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 08:39:22.098 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60028 10 6452 1 2025-10-30 08:40:05.971 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 08:40:05.888 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 08:40:05.884 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 08:40:05.888 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 08:40:05.667 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 08:40:22.507 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56814 10 6452 1 2025-10-30 08:35:52.226 00:06:00.392 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 08:41:22.906 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42578 10 6452 1 2025-10-30 08:42:23.310 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57358 10 6452 1 2025-10-30 08:43:23.713 00:00:11.029 TCP 1.101.0.1:3000 -> 23.104.0.1:47214 12 10375 1 2025-10-30 08:44:24.813 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:56120 10 6452 1 2025-10-30 08:45:06.274 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 08:45:05.796 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 08:45:05.963 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 08:45:05.811 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 08:45:06.192 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 08:45:25.182 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52126 10 6452 1 2025-10-30 08:40:52.225 00:06:00.397 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 08:46:25.581 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40856 10 6452 1 2025-10-30 08:47:25.944 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:51000 10 6452 1 2025-10-30 08:42:52.229 00:06:00.390 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 08:48:26.322 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37902 10 6452 1 2025-10-30 08:49:26.685 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37054 10 6452 1 2025-10-30 08:50:06.195 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 08:50:06.028 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 08:50:06.110 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 08:50:05.902 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 08:50:06.113 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 08:50:27.111 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41044 10 6452 1 2025-10-30 08:51:27.525 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44838 10 6452 1 2025-10-30 08:52:27.929 00:00:10.409 TCP 1.101.0.1:3000 -> 23.104.0.1:50698 10 6452 1 2025-10-30 08:47:52.226 00:06:00.400 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 08:53:28.368 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46246 10 6452 1 2025-10-30 08:54:28.774 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:49688 10 6452 1 2025-10-30 08:49:52.229 00:06:00.395 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 08:55:06.224 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 08:55:06.220 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 08:55:05.905 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 08:55:06.178 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 08:55:06.261 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 08:55:29.190 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45176 10 6452 1 2025-10-30 08:56:29.551 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:49710 10 6452 1 2025-10-30 08:57:29.970 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:60674 10 6452 1 2025-10-30 08:58:30.384 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37920 10 6452 1 Summary: total flows: 137, total bytes: 420956, total packets: 1023, avg bps: 866, avg pps: 0, avg bpp: 411 Time window: 2025-10-30 07:53:52 - 2025-10-30 08:58:40 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0041s User: 0.0020s Wall: 0.0019s flows/second: 72061.7 Runtime: 0.0019s