Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-30 17:53:52.397 00:06:00.391 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 17:59:09.109 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43444 10 6452 1 2025-10-30 18:00:17.075 00:00:00.053 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 18:00:16.991 00:00:00.044 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 18:00:16.985 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 18:00:17.347 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 18:00:16.991 00:00:00.054 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 18:00:09.512 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40214 10 6452 1 2025-10-30 17:55:52.400 00:06:00.386 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 18:01:09.874 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42952 10 6452 1 2025-10-30 18:02:10.280 00:00:10.945 TCP 1.101.0.1:3000 -> 23.104.0.1:39558 10 6452 1 2025-10-30 18:03:11.261 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:59972 10 6452 1 2025-10-30 18:04:11.626 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57564 10 6452 1 2025-10-30 18:05:17.171 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 18:05:17.171 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 18:05:17.162 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 18:05:16.917 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 18:05:17.000 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 18:05:12.029 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38822 10 6452 1 2025-10-30 18:00:52.401 00:06:00.391 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 18:06:12.429 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34080 10 6452 1 2025-10-30 18:07:12.834 00:00:10.352 TCP 1.101.0.1:3000 -> 23.104.0.1:50728 10 6452 1 2025-10-30 18:02:52.404 00:06:00.385 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 18:08:13.218 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50746 10 6452 1 2025-10-30 18:09:13.624 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53736 10 6452 1 2025-10-30 18:10:17.443 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 18:10:17.410 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 18:10:17.532 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 18:10:17.137 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 18:10:17.361 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 18:10:14.024 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45084 10 6452 1 2025-10-30 18:11:14.426 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55470 10 6452 1 2025-10-30 18:12:14.834 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38238 10 6452 1 2025-10-30 18:07:52.403 00:06:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 18:13:15.241 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42364 10 6452 1 2025-10-30 18:14:15.647 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54334 10 6452 1 2025-10-30 18:09:52.406 00:06:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 18:15:17.583 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 18:15:17.604 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 18:15:17.554 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 18:15:17.443 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 18:15:17.500 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 18:15:16.065 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54612 10 6452 1 2025-10-30 18:16:16.462 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33152 10 6452 1 2025-10-30 18:17:16.864 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56292 10 6452 1 2025-10-30 18:18:17.274 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50050 10 6452 1 2025-10-30 18:19:17.679 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45986 10 6452 1 2025-10-30 18:14:52.406 00:06:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 18:20:17.523 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 18:20:17.448 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 18:20:17.464 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 18:20:17.187 00:00:00.029 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 18:20:17.270 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 18:20:18.109 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33480 12 6556 1 2025-10-30 18:21:18.514 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49244 10 6452 1 2025-10-30 18:16:52.409 00:06:00.382 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 18:22:18.879 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59510 10 6452 1 2025-10-30 18:23:19.283 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40292 10 6452 1 2025-10-30 18:24:19.684 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49424 10 6452 1 2025-10-30 18:25:17.770 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 18:25:17.501 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 18:25:17.491 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 18:25:17.382 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 18:25:17.686 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 18:25:20.105 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57548 10 6452 1 2025-10-30 18:26:20.506 00:00:10.908 TCP 1.101.0.1:3000 -> 23.104.0.1:55962 10 6452 1 2025-10-30 18:21:52.406 00:06:00.391 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 18:27:21.462 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33390 10 6452 1 2025-10-30 18:28:21.825 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41674 10 6452 1 2025-10-30 18:23:52.409 00:06:00.386 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 18:29:22.227 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49100 10 6452 1 2025-10-30 18:30:17.683 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 18:30:17.732 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 18:30:17.571 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 18:30:17.805 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 18:30:17.888 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 18:30:22.631 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58196 10 6452 1 2025-10-30 18:31:23.039 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35764 10 6452 1 2025-10-30 18:32:23.443 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:41582 10 6452 1 2025-10-30 18:33:23.799 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34064 10 6452 1 2025-10-30 18:28:52.407 00:06:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 18:34:24.205 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:51154 10 6452 1 2025-10-30 18:35:17.806 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 18:35:17.804 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 18:35:17.825 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 18:35:17.737 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 18:35:17.819 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 18:35:24.569 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43122 10 6452 1 2025-10-30 18:30:52.410 00:06:00.386 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 18:36:24.970 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:33998 10 6452 1 2025-10-30 18:37:25.381 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:48968 10 6452 1 2025-10-30 18:38:25.743 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:47574 12 10369 1 2025-10-30 18:39:26.222 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54208 10 6452 1 2025-10-30 18:40:18.288 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 18:40:18.240 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 18:40:18.245 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 18:40:17.930 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 18:40:18.370 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 18:40:26.626 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54960 10 6452 1 2025-10-30 18:35:52.409 00:06:00.391 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 18:41:27.031 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57540 10 6452 1 2025-10-30 18:42:27.425 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33174 10 6452 1 2025-10-30 18:37:52.411 00:06:00.386 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 18:43:27.831 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38964 10 6452 1 2025-10-30 18:44:28.237 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:43500 10 6452 1 2025-10-30 18:45:18.020 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 18:45:17.936 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 18:45:17.794 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 18:45:18.003 00:00:00.047 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 18:45:17.954 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 18:45:28.715 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38330 10 6452 1 2025-10-30 18:46:29.116 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38922 10 6452 1 2025-10-30 18:47:29.478 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49140 10 6452 1 2025-10-30 18:42:52.409 00:06:00.393 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 18:48:29.881 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36892 10 6452 1 2025-10-30 18:49:30.281 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60842 10 6452 1 2025-10-30 18:44:52.414 00:06:00.386 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 18:50:18.114 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 18:50:18.167 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 18:50:17.946 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 18:50:17.968 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 18:50:18.051 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 18:50:30.689 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52316 10 6452 1 2025-10-30 18:51:31.109 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51582 10 6452 1 2025-10-30 18:52:31.507 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44964 10 6452 1 2025-10-30 18:53:31.911 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36464 10 6452 1 2025-10-30 18:54:32.315 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45840 10 6452 1 2025-10-30 18:49:52.414 00:06:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 18:55:18.598 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 18:55:18.923 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 18:55:18.495 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 18:55:18.736 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 18:55:18.819 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 18:55:32.722 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34206 10 6452 1 2025-10-30 18:56:33.136 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34116 10 6452 1 2025-10-30 18:51:52.418 00:06:00.384 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 18:57:33.539 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37410 10 6452 1 2025-10-30 18:58:33.938 00:00:10.461 TCP 1.101.0.1:3000 -> 23.104.0.1:37366 12 10375 1 Summary: total flows: 138, total bytes: 425682, total packets: 1038, avg bps: 874, avg pps: 0, avg bpp: 410 Time window: 2025-10-30 17:53:52 - 2025-10-30 18:58:44 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0047s User: 0.0009s Wall: 0.0022s flows/second: 63802.2 Runtime: 0.0022s