Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-30 22:59:26.801 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34304 10 6452 1 2025-10-30 22:54:52.516 00:06:00.378 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 23:00:23.218 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 23:00:23.262 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 23:00:23.179 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 23:00:22.963 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 23:00:23.136 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 23:00:27.206 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42590 10 6452 1 2025-10-30 23:01:27.610 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:38426 10 6452 1 2025-10-30 22:56:52.517 00:06:00.373 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 23:02:28.021 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49042 10 6452 1 2025-10-30 23:03:28.423 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55886 10 6452 1 2025-10-30 23:04:28.827 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52876 10 6452 1 2025-10-30 23:05:23.186 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 23:05:23.334 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 23:05:22.908 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 23:05:23.106 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 23:05:23.189 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 23:05:29.231 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52316 10 6452 1 2025-10-30 23:06:29.634 00:00:10.316 TCP 1.101.0.1:3000 -> 23.104.0.1:57296 10 6452 1 2025-10-30 23:01:52.515 00:06:00.378 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 23:07:29.987 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46340 10 6452 1 2025-10-30 23:08:30.390 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42030 10 6452 1 2025-10-30 23:03:52.518 00:06:00.373 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 23:09:30.795 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51568 10 6452 1 2025-10-30 23:10:23.283 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 23:10:23.066 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 23:10:23.197 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 23:10:23.337 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 23:10:23.421 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 23:10:31.206 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47828 10 6452 1 2025-10-30 23:11:31.568 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53668 10 6452 1 2025-10-30 23:12:31.973 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:33636 10 6452 1 2025-10-30 23:13:32.353 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57896 10 6452 1 2025-10-30 23:08:52.517 00:06:00.378 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 23:14:32.757 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:41926 10 6452 1 2025-10-30 23:15:23.382 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 23:15:23.381 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 23:15:23.424 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 23:15:23.322 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 23:15:23.405 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 23:15:33.170 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42118 10 6452 1 2025-10-30 23:10:52.520 00:06:00.373 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 23:16:33.577 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49790 10 6452 1 2025-10-30 23:17:33.947 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:44170 10 6452 1 2025-10-30 23:18:34.370 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55178 10 6452 1 2025-10-30 23:19:34.773 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54522 10 6452 1 2025-10-30 23:20:23.546 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 23:20:23.644 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 23:20:23.467 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 23:20:23.499 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 23:20:23.464 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 23:20:35.187 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35668 10 6452 1 2025-10-30 23:15:52.520 00:06:00.377 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 23:21:35.589 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41794 10 6452 1 2025-10-30 23:22:35.997 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:37390 10 6452 1 2025-10-30 23:17:52.523 00:06:00.372 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 23:23:36.427 00:00:11.005 TCP 1.101.0.1:3000 -> 23.104.0.1:60936 10 6452 1 2025-10-30 23:24:37.476 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40232 10 6452 1 2025-10-30 23:25:23.714 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 23:25:23.598 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 23:25:23.732 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 23:25:23.612 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 23:25:23.694 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 23:25:37.878 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55316 10 6452 1 2025-10-30 23:26:38.280 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:35060 10 6452 1 2025-10-30 23:27:38.674 00:00:11.177 TCP 1.101.0.1:3000 -> 23.104.0.1:54962 10 6452 1 2025-10-30 23:22:52.522 00:06:00.376 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 23:28:39.893 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:34326 10 6452 1 2025-10-30 23:24:52.525 00:06:00.370 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 23:29:40.315 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46468 10 6452 1 2025-10-30 23:30:23.920 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 23:30:23.837 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 23:30:23.931 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 23:30:23.688 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 23:30:23.838 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 23:30:40.727 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:50434 10 6452 1 2025-10-30 23:31:41.105 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60544 10 6452 1 2025-10-30 23:32:41.501 00:00:11.060 TCP 1.101.0.1:3000 -> 23.104.0.1:53976 10 6452 1 2025-10-30 23:33:42.598 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:44064 10 6452 1 2025-10-30 23:34:42.962 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46774 10 6452 1 2025-10-30 23:29:52.525 00:06:00.373 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 23:35:23.877 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 23:35:23.891 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 23:35:23.879 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 23:35:23.915 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 23:35:23.961 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 23:35:43.327 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55150 10 6452 1 2025-10-30 23:36:43.727 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40782 10 6452 1 2025-10-30 23:31:52.528 00:06:00.370 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 23:37:44.138 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40380 10 6452 1 2025-10-30 23:38:44.542 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54080 10 6452 1 2025-10-30 23:39:44.945 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:57702 10 6452 1 2025-10-30 23:40:23.939 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 23:40:23.860 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 23:40:23.859 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 23:40:23.650 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 23:40:23.856 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 23:40:45.371 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47866 10 6452 1 2025-10-30 23:36:52.526 00:06:00.378 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 23:41:45.771 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57474 10 6452 1 2025-10-30 23:42:46.181 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39316 10 6452 1 2025-10-30 23:38:52.532 00:06:00.371 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 23:43:46.592 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:45756 10 6452 1 2025-10-30 23:44:46.968 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57624 10 6452 1 2025-10-30 23:45:23.946 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 23:45:24.198 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 23:45:23.766 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 23:45:23.829 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 23:45:23.912 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 23:45:47.365 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35408 10 6452 1 2025-10-30 23:46:47.768 00:00:10.781 TCP 1.101.0.1:3000 -> 23.104.0.1:32838 10 6452 1 2025-10-30 23:47:48.588 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43056 10 6452 1 2025-10-30 23:43:52.531 00:06:00.378 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 23:48:48.991 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57220 10 6452 1 2025-10-30 23:49:49.355 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46616 10 6452 1 2025-10-30 23:50:23.975 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 23:50:24.380 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 23:50:23.996 00:00:00.035 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 23:50:24.087 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 23:50:24.171 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 23:45:52.539 00:06:00.367 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 23:50:49.765 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:49210 10 6452 1 2025-10-30 23:51:50.139 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:49736 10 6452 1 2025-10-30 23:52:50.515 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58066 10 6452 1 2025-10-30 23:53:50.918 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39392 10 6452 1 2025-10-30 23:54:51.323 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:58990 10 6452 1 2025-10-30 23:55:24.270 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 23:55:24.156 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 23:55:24.070 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 23:55:24.273 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 23:55:24.357 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 23:50:52.543 00:06:00.369 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 23:55:51.719 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44000 10 6452 1 2025-10-30 23:56:52.119 00:00:10.491 TCP 1.101.0.1:3000 -> 23.104.0.1:55170 10 6452 1 2025-10-30 23:52:52.549 00:06:00.362 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 23:57:52.652 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:42344 10 6452 1 Summary: total flows: 137, total bytes: 411286, total packets: 1022, avg bps: 856, avg pps: 0, avg bpp: 402 Time window: 2025-10-30 22:54:52 - 2025-10-30 23:58:52 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0033s User: 0.0016s Wall: 0.0020s flows/second: 69264.7 Runtime: 0.0020s