Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-30 08:59:30.796 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:33556 10 6452 1 2025-10-30 08:54:52.227 00:06:00.403 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 09:00:06.074 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 09:00:06.142 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 09:00:05.989 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 09:00:06.078 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 09:00:06.160 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 09:00:31.214 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:43590 10 6452 1 2025-10-30 09:01:31.574 00:00:10.502 TCP 1.101.0.1:3000 -> 23.104.0.1:55392 10 6452 1 2025-10-30 08:56:52.230 00:06:00.399 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 09:02:32.114 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49648 10 6452 1 2025-10-30 09:03:32.520 00:00:11.435 TCP 1.101.0.1:3000 -> 23.104.0.1:43042 10 6452 1 2025-10-30 09:04:33.992 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:32978 10 6452 1 2025-10-30 09:05:06.541 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 09:05:06.592 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 09:05:06.250 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 09:05:06.252 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 09:05:06.458 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 09:05:34.401 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44832 10 6452 1 2025-10-30 09:06:34.807 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:56002 10 6452 1 2025-10-30 09:01:52.228 00:06:00.404 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 09:07:35.180 00:00:10.423 TCP 1.101.0.1:3000 -> 23.104.0.1:41482 10 6452 1 2025-10-30 09:08:35.646 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:34718 10 6452 1 2025-10-30 09:03:52.232 00:06:00.398 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 09:09:36.013 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:58570 10 6452 1 2025-10-30 09:10:06.473 00:00:00.033 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 09:10:06.552 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 09:10:06.216 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 09:10:06.464 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 09:10:06.548 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 09:10:36.365 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58254 10 6452 1 2025-10-30 09:11:36.769 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47900 10 6452 1 2025-10-30 09:12:37.173 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:42504 10 6452 1 2025-10-30 09:13:37.537 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46988 10 6452 1 2025-10-30 09:08:52.230 00:06:00.403 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 09:14:37.943 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:42290 12 6556 1 2025-10-30 09:15:07.189 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 09:15:07.316 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 09:15:06.690 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 09:15:06.867 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 09:15:06.949 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 09:15:38.364 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48978 10 6452 1 2025-10-30 09:10:52.232 00:06:00.399 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 09:16:38.772 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:57026 10 6452 1 2025-10-30 09:17:39.184 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37486 10 6452 1 2025-10-30 09:18:39.583 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43334 10 6452 1 2025-10-30 09:19:39.986 00:00:10.709 TCP 1.101.0.1:3000 -> 23.104.0.1:58094 10 6452 1 2025-10-30 09:20:06.887 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 09:20:06.691 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 09:20:06.922 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 09:20:06.592 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 09:20:06.806 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 09:20:40.739 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48214 10 6452 1 2025-10-30 09:15:52.231 00:06:00.404 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 09:21:41.150 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34466 10 6452 1 2025-10-30 09:17:52.236 00:06:00.397 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 09:22:41.555 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38516 10 6452 1 2025-10-30 09:23:41.961 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51038 10 6452 1 2025-10-30 09:24:42.368 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58488 10 6452 1 2025-10-30 09:25:06.661 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 09:25:06.661 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 09:25:06.653 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 09:25:06.665 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 09:25:06.748 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 09:25:42.769 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:42788 12 6556 1 2025-10-30 09:26:43.186 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42690 10 6452 1 2025-10-30 09:27:43.592 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44052 10 6452 1 2025-10-30 09:22:52.235 00:06:00.406 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 09:28:43.954 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53630 10 6452 1 2025-10-30 09:29:44.316 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37348 10 6452 1 2025-10-30 09:24:52.240 00:06:00.398 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 09:30:06.791 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 09:30:06.935 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 09:30:06.684 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 09:30:06.802 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 09:30:06.886 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 09:30:44.721 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56680 10 6452 1 2025-10-30 09:31:45.128 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54532 10 6452 1 2025-10-30 09:32:45.530 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47584 10 6452 1 2025-10-30 09:33:45.890 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36766 10 6452 1 2025-10-30 09:29:52.237 00:06:00.404 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 09:34:46.254 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43420 10 6452 1 2025-10-30 09:35:07.081 00:00:00.037 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 09:35:07.139 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 09:35:07.210 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 09:35:06.999 00:00:00.037 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 09:35:07.001 00:00:00.032 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 09:35:46.618 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43742 10 6452 1 2025-10-30 09:31:52.240 00:06:00.399 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 09:36:46.980 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58362 10 6452 1 2025-10-30 09:37:47.394 00:00:10.354 TCP 1.101.0.1:3000 -> 23.104.0.1:57426 10 6452 1 2025-10-30 09:38:47.761 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:44930 10 6452 1 2025-10-30 09:39:48.127 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55536 10 6452 1 2025-10-30 09:40:06.952 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 09:40:07.220 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 09:40:07.230 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 09:40:06.963 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 09:40:07.046 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 09:40:48.529 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54780 10 6452 1 2025-10-30 09:36:52.237 00:06:00.405 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 09:41:48.929 00:00:10.732 TCP 1.101.0.1:3000 -> 23.104.0.1:37488 10 6452 1 2025-10-30 09:42:49.706 00:00:10.452 TCP 1.101.0.1:3000 -> 23.104.0.1:37136 13 13095 1 2025-10-30 09:38:52.243 00:06:00.397 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 09:43:50.198 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:49434 10 6452 1 2025-10-30 09:44:50.556 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34046 10 6452 1 2025-10-30 09:45:07.157 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 09:45:07.173 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 09:45:06.910 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 09:45:07.153 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 09:45:07.238 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 09:45:50.957 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36258 10 6452 1 2025-10-30 09:46:51.362 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50316 10 6452 1 2025-10-30 09:47:51.728 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58708 10 6452 1 2025-10-30 09:43:52.242 00:06:00.402 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 09:48:52.135 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55230 10 6452 1 2025-10-30 09:49:52.500 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34724 10 6452 1 2025-10-30 09:50:07.602 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 09:50:07.516 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 09:50:07.530 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 09:50:07.248 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 09:50:07.519 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 09:45:52.244 00:06:00.397 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 09:50:52.905 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41672 10 6452 1 2025-10-30 09:51:53.314 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42974 10 6452 1 2025-10-30 09:52:53.677 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47458 10 6452 1 2025-10-30 09:53:54.040 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52420 10 6452 1 2025-10-30 09:55:07.546 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 09:55:07.468 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 09:55:07.211 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 09:55:07.513 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 09:54:54.450 00:00:10.764 TCP 1.101.0.1:3000 -> 23.104.0.1:53114 10 6452 1 2025-10-30 09:55:07.595 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 09:50:52.244 00:06:00.402 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 09:55:55.264 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53696 10 6452 1 2025-10-30 09:56:55.667 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41580 10 6452 1 2025-10-30 09:52:52.249 00:06:00.395 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 09:57:56.094 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38576 10 6452 1 Summary: total flows: 137, total bytes: 418137, total packets: 1029, avg bps: 871, avg pps: 0, avg bpp: 406 Time window: 2025-10-30 08:54:52 - 2025-10-30 09:58:52 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0050s User: 0.0000s Wall: 0.0024s flows/second: 57878.7 Runtime: 0.0024s