Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-30 20:59:25.535 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:40960 10 6452 1 2025-10-30 21:00:20.815 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 21:00:20.720 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 21:00:20.563 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:00:20.711 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:00:20.793 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 21:00:25.983 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59034 10 6452 1 2025-10-30 20:55:52.456 00:06:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 21:01:26.392 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:39270 10 6452 1 2025-10-30 21:02:26.769 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:49782 10 6452 1 2025-10-30 20:57:52.462 00:06:00.382 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 21:03:27.177 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33910 10 6452 1 2025-10-30 21:04:27.575 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38198 10 6452 1 2025-10-30 21:05:20.714 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 21:05:20.789 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 21:05:20.654 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:05:20.940 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:05:21.023 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 21:05:27.979 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53478 10 6452 1 2025-10-30 21:06:28.393 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:48530 10 6452 1 2025-10-30 21:07:28.753 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51646 10 6452 1 2025-10-30 21:02:52.462 00:06:00.385 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 21:08:29.156 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60348 10 6452 1 2025-10-30 21:09:29.564 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52458 10 6452 1 2025-10-30 21:04:52.464 00:06:00.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 21:10:20.939 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 21:10:20.949 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 21:10:20.910 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:10:20.952 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:10:21.035 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 21:10:29.969 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:60160 10 6452 1 2025-10-30 21:11:30.386 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42088 10 6452 1 2025-10-30 21:12:30.785 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57798 10 6452 1 2025-10-30 21:13:31.188 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:59894 10 6452 1 2025-10-30 21:14:31.549 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33950 10 6452 1 2025-10-30 21:09:52.463 00:06:00.386 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 21:15:21.390 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 21:15:21.286 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 21:15:20.880 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:15:21.283 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:15:21.366 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 21:15:31.911 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39786 10 6452 1 2025-10-30 21:16:32.274 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57674 10 6452 1 2025-10-30 21:11:52.468 00:06:00.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 21:17:32.684 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36152 10 6452 1 2025-10-30 21:18:33.107 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52782 10 6452 1 2025-10-30 21:19:33.509 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45466 10 6452 1 2025-10-30 21:20:21.221 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 21:20:21.150 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 21:20:21.141 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 21:20:20.880 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:20:21.140 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:20:33.911 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44698 10 6452 1 2025-10-30 21:21:34.316 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58608 10 6452 1 2025-10-30 21:16:52.467 00:06:00.385 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 21:22:34.725 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54620 10 6452 1 2025-10-30 21:23:35.140 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:57128 12 10375 1 2025-10-30 21:18:52.470 00:06:00.384 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 21:24:35.577 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47528 10 6452 1 2025-10-30 21:25:21.411 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 21:25:21.274 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:25:21.128 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:25:21.328 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 21:25:21.210 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 21:25:35.984 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:49810 10 6452 1 2025-10-30 21:26:36.400 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54870 10 6452 1 2025-10-30 21:27:36.805 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41690 10 6452 1 2025-10-30 21:28:37.213 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51824 10 6452 1 2025-10-30 21:23:52.469 00:06:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 21:29:37.625 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38020 10 6452 1 2025-10-30 21:30:21.405 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 21:30:21.322 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 21:30:21.368 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 21:30:21.173 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:30:21.322 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:30:38.028 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43296 10 6452 1 2025-10-30 21:25:52.473 00:06:00.384 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 21:31:38.432 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34720 10 6452 1 2025-10-30 21:32:38.831 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51824 10 6452 1 2025-10-30 21:33:39.232 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:35160 12 10375 1 2025-10-30 21:34:39.713 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47352 10 6452 1 2025-10-30 21:35:21.840 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 21:35:21.744 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 21:35:21.787 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:35:21.758 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:35:21.739 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 21:35:40.117 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56036 10 6452 1 2025-10-30 21:30:52.472 00:06:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 21:36:40.520 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40052 10 6452 1 2025-10-30 21:32:52.475 00:06:00.385 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 21:37:40.925 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57030 10 6452 1 2025-10-30 21:38:41.333 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41306 10 6452 1 2025-10-30 21:39:41.698 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48406 10 6452 1 2025-10-30 21:40:21.963 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 21:40:21.882 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:40:21.871 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 21:40:21.580 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 21:40:21.573 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:40:42.108 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58682 10 6452 1 2025-10-30 21:41:42.513 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:37508 10 6452 1 2025-10-30 21:42:42.914 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41030 10 6452 1 2025-10-30 21:37:52.475 00:06:00.392 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 21:43:43.315 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56834 10 6452 1 2025-10-30 21:39:52.480 00:06:00.386 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 21:44:43.683 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47678 10 6452 1 2025-10-30 21:45:21.463 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 21:45:21.606 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 21:45:21.501 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:45:21.609 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:45:21.692 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 21:45:44.115 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49084 10 6452 1 2025-10-30 21:46:44.521 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59148 10 6452 1 2025-10-30 21:47:44.925 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40926 10 6452 1 2025-10-30 21:48:45.337 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37712 10 6452 1 2025-10-30 21:44:52.478 00:06:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 21:49:45.744 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36516 10 6452 1 2025-10-30 21:50:21.899 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 21:50:21.736 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 21:50:21.812 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 21:50:21.684 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:50:21.817 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:50:46.108 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45508 10 6452 1 2025-10-30 21:46:52.480 00:06:00.386 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 21:51:46.515 00:00:10.949 TCP 1.101.0.1:3000 -> 23.104.0.1:55556 10 6452 1 2025-10-30 21:52:47.505 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34442 10 6452 1 2025-10-30 21:53:47.913 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44434 12 6556 1 2025-10-30 21:54:48.317 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53588 10 6452 1 2025-10-30 21:55:21.633 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 21:55:21.516 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 21:55:21.583 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:55:21.846 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:55:21.929 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 21:55:48.718 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:50192 10 6452 1 2025-10-30 21:51:52.479 00:06:00.391 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 21:56:49.115 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:37846 10 6452 1 2025-10-30 21:57:49.527 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57260 10 6452 1 Summary: total flows: 136, total bytes: 418375, total packets: 1014, avg bps: 897, avg pps: 0, avg bpp: 412 Time window: 2025-10-30 20:55:52 - 2025-10-30 21:57:59 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0049s User: 0.0010s Wall: 0.0026s flows/second: 52773.2 Runtime: 0.0026s