Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-30 12:58:42.789 00:00:11.448 TCP 1.101.0.1:3000 -> 23.104.0.1:52536 10 6452 1 2025-10-30 12:59:44.290 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58794 10 6452 1 2025-10-30 12:54:52.295 00:06:00.400 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 13:00:11.344 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 13:00:10.993 00:00:00.042 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 13:00:11.221 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:00:11.191 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:00:11.274 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 13:00:44.694 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38148 10 6452 1 2025-10-30 13:01:45.069 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:39808 10 6452 1 2025-10-30 13:02:45.516 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58206 10 6452 1 2025-10-30 13:03:45.921 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:40994 10 6452 1 2025-10-30 12:59:52.292 00:06:00.406 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 13:04:46.304 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33132 10 6452 1 2025-10-30 13:05:11.176 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 13:05:11.054 00:00:00.018 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:05:11.003 00:00:00.051 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:05:11.122 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 13:05:11.085 00:00:00.051 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 13:05:46.707 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33508 10 6452 1 2025-10-30 13:01:52.295 00:06:00.401 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 13:06:47.113 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49460 10 6452 1 2025-10-30 13:07:47.522 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41660 10 6452 1 2025-10-30 13:08:47.930 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37856 13 6608 1 2025-10-30 13:09:48.330 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59092 10 6452 1 2025-10-30 13:10:11.371 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 13:10:11.288 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:10:11.291 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 13:10:11.418 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 13:10:11.309 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:10:48.693 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35666 10 6452 1 2025-10-30 13:06:52.294 00:06:00.407 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 13:11:49.070 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60416 10 6452 1 2025-10-30 13:12:49.478 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42750 10 6452 1 2025-10-30 13:08:52.296 00:06:00.403 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 13:13:49.880 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34682 10 6452 1 2025-10-30 13:14:50.244 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:38042 10 6452 1 2025-10-30 13:15:11.486 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 13:15:11.395 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 13:15:11.328 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 13:15:11.110 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:15:11.403 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:15:50.614 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53168 10 6452 1 2025-10-30 13:16:51.020 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45756 10 6452 1 2025-10-30 13:17:51.421 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:38416 10 6452 1 2025-10-30 13:13:52.294 00:06:00.411 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 13:18:51.777 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38054 10 6452 1 2025-10-30 13:19:52.181 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56928 10 6452 1 2025-10-30 13:20:11.635 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 13:20:11.640 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 13:20:11.398 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:20:11.731 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:20:11.815 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 13:15:52.298 00:06:00.406 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 13:20:52.586 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41920 10 6452 1 2025-10-30 13:21:52.985 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52920 10 6452 1 2025-10-30 13:22:53.405 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:35932 10 6452 1 2025-10-30 13:23:53.827 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39562 10 6452 1 2025-10-30 13:24:54.233 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:51228 10 6452 1 2025-10-30 13:25:11.848 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 13:25:11.541 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 13:25:11.833 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 13:25:11.359 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:25:11.765 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:20:52.297 00:06:00.411 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 13:25:54.638 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55236 10 6452 1 2025-10-30 13:26:55.049 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57670 10 6452 1 2025-10-30 13:22:52.299 00:06:00.405 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 13:27:55.453 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60926 10 6452 1 2025-10-30 13:28:55.858 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:54952 10 6452 1 2025-10-30 13:29:56.266 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35052 10 6452 1 2025-10-30 13:30:11.698 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 13:30:11.641 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 13:30:11.495 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:30:11.871 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:30:11.953 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 13:30:56.667 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:53254 10 6452 1 2025-10-30 13:31:57.033 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:33478 10 6452 1 2025-10-30 13:27:52.299 00:06:00.410 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 13:32:57.400 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52148 10 6452 1 2025-10-30 13:33:57.800 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45562 10 6452 1 2025-10-30 13:29:52.301 00:06:00.405 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 13:34:58.209 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50502 10 6452 1 2025-10-30 13:35:11.904 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 13:35:11.638 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 13:35:11.831 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 13:35:11.584 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:35:11.823 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:35:58.611 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58322 10 6452 1 2025-10-30 13:36:59.021 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60580 10 6452 1 2025-10-30 13:37:59.423 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50554 10 6452 1 2025-10-30 13:38:59.780 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:60734 10 6452 1 2025-10-30 13:34:52.300 00:06:00.410 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 13:40:11.991 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 13:40:11.908 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:40:11.961 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 13:40:11.959 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 13:40:11.854 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:40:00.151 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44650 10 6452 1 2025-10-30 13:41:00.557 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58660 10 6452 1 2025-10-30 13:36:52.303 00:06:00.405 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 13:42:00.957 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:42674 10 6452 1 2025-10-30 13:43:01.325 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:45268 10 6452 1 2025-10-30 13:44:01.686 00:00:10.459 TCP 1.101.0.1:3000 -> 23.104.0.1:39510 12 10369 1 2025-10-30 13:45:12.057 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 13:45:02.185 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60044 10 6452 1 2025-10-30 13:45:12.044 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 13:45:11.981 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:45:12.058 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:45:12.140 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 13:46:02.586 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50350 10 6452 1 2025-10-30 13:41:52.303 00:06:00.408 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 13:47:02.992 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49776 10 6452 1 2025-10-30 13:48:03.409 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40268 10 6452 1 2025-10-30 13:43:52.306 00:06:00.402 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 13:49:03.816 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44828 10 6452 1 2025-10-30 13:50:12.253 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 13:50:12.253 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:50:04.227 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:43792 10 6452 1 2025-10-30 13:50:12.187 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:50:12.133 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 13:50:12.269 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 13:51:04.652 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39980 10 6452 1 2025-10-30 13:52:05.064 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59078 10 6452 1 2025-10-30 13:53:05.443 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37456 10 6452 1 2025-10-30 13:48:52.305 00:06:00.409 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 13:54:05.811 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54062 10 6452 1 2025-10-30 13:55:12.444 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 13:55:12.326 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 13:55:12.622 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:55:12.331 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 13:55:12.413 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 13:55:06.214 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43504 10 6452 1 2025-10-30 13:50:52.308 00:06:00.404 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 13:56:06.622 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60002 10 6452 1 2025-10-30 13:57:07.017 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59934 10 6452 1 2025-10-30 13:58:07.441 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42292 10 6452 1 Summary: total flows: 137, total bytes: 420950, total packets: 1023, avg bps: 884, avg pps: 0, avg bpp: 411 Time window: 2025-10-30 12:54:52 - 2025-10-30 13:58:17 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0038s User: 0.0010s Wall: 0.0020s flows/second: 68091.0 Runtime: 0.0020s