Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-31 07:59:25.364 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54282 10 6452 1 2025-10-31 07:55:52.739 00:05:00.438 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 08:00:34.030 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 08:00:33.946 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 08:00:33.996 00:00:00.045 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 08:00:33.993 00:00:00.048 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 08:00:34.006 00:00:00.039 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 08:00:25.761 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:60546 10 6452 1 2025-10-31 08:01:26.179 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47426 10 6452 1 2025-10-31 07:57:52.741 00:05:00.434 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 08:02:26.581 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46814 10 6452 1 2025-10-31 08:03:26.987 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:43902 12 10375 1 2025-10-31 08:04:27.469 00:00:10.768 TCP 1.101.0.1:3000 -> 23.104.0.1:46502 10 6452 1 2025-10-31 08:05:33.949 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 08:05:33.949 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 08:05:33.856 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 08:05:33.890 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 08:05:34.033 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 08:05:28.277 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54774 10 6452 1 2025-10-31 08:01:52.740 00:05:00.445 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 08:06:28.680 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56616 10 6452 1 2025-10-31 08:07:29.106 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50066 10 6452 1 2025-10-31 08:03:52.743 00:05:00.439 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 08:08:29.512 00:00:11.236 TCP 1.101.0.1:3000 -> 23.104.0.1:36558 10 6452 1 2025-10-31 08:09:30.809 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38132 10 6452 1 2025-10-31 08:10:34.201 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 08:10:34.112 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 08:10:34.052 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 08:10:34.205 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 08:10:34.289 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 08:10:31.207 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59694 10 6452 1 2025-10-31 08:11:31.610 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56198 10 6452 1 2025-10-31 08:07:52.742 00:05:00.444 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 08:12:32.017 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42274 10 6452 1 2025-10-31 08:13:32.418 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:50336 10 6452 1 2025-10-31 08:09:52.743 00:05:00.439 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 08:14:32.780 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39678 10 6452 1 2025-10-31 08:15:34.278 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 08:15:34.366 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 08:15:34.214 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 08:15:34.207 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 08:15:34.290 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 08:15:33.193 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57272 10 6452 1 2025-10-31 08:16:33.592 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60874 10 6452 1 2025-10-31 08:17:33.994 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:58918 10 6452 1 2025-10-31 08:13:52.744 00:05:00.442 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 08:18:34.362 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:60562 12 10369 1 2025-10-31 08:19:34.838 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:42378 10 6452 1 2025-10-31 08:15:52.747 00:05:00.437 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 08:20:34.451 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 08:20:34.496 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 08:20:34.368 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 08:20:34.412 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 08:20:34.495 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 08:20:35.255 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49304 10 6452 1 2025-10-31 08:21:35.661 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50560 10 6452 1 2025-10-31 08:22:36.080 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59262 10 6452 1 2025-10-31 08:23:36.487 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39018 10 6452 1 2025-10-31 08:19:52.746 00:05:00.443 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 08:24:36.892 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60828 12 6556 1 2025-10-31 08:25:34.352 00:00:00.016 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 08:25:34.548 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 08:25:34.311 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 08:25:34.418 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 08:25:34.501 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 08:25:37.307 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47066 10 6452 1 2025-10-31 08:21:52.748 00:05:00.438 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 08:26:37.707 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35330 10 6452 1 2025-10-31 08:27:38.115 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38902 10 6452 1 2025-10-31 08:28:38.515 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43426 10 6452 1 2025-10-31 08:29:38.918 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33458 10 6452 1 2025-10-31 08:25:52.747 00:05:00.442 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 08:30:34.750 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 08:30:34.747 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 08:30:34.498 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 08:30:34.749 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 08:30:34.832 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 08:30:39.322 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39600 10 6452 1 2025-10-31 08:27:52.750 00:05:00.436 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 08:31:39.725 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42556 10 6452 1 2025-10-31 08:32:40.144 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:59988 10 6452 1 2025-10-31 08:33:40.561 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:42074 10 6452 1 2025-10-31 08:34:40.934 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:51358 10 6452 1 2025-10-31 08:35:34.673 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 08:35:34.403 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 08:35:34.503 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 08:35:34.761 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 08:35:34.585 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 08:35:41.329 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43948 10 6452 1 2025-10-31 08:31:52.749 00:05:00.442 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 08:36:41.736 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:56868 10 6452 1 2025-10-31 08:33:52.752 00:05:00.436 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 08:37:42.172 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46318 10 6452 1 2025-10-31 08:38:42.582 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37040 10 6452 1 2025-10-31 08:39:42.985 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39298 10 6452 1 2025-10-31 08:40:34.789 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 08:40:34.726 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 08:40:34.653 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 08:40:34.793 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 08:40:34.875 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 08:40:43.383 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49998 10 6452 1 2025-10-31 08:37:52.750 00:05:00.441 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 08:41:43.790 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53446 10 6452 1 2025-10-31 08:42:44.197 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38174 10 6452 1 2025-10-31 08:39:52.753 00:05:00.436 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 08:43:44.596 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:33030 12 10375 1 2025-10-31 08:44:45.103 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49562 10 6452 1 2025-10-31 08:45:34.880 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 08:45:34.685 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 08:45:34.738 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 08:45:34.872 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 08:45:34.955 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 08:45:45.507 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33740 10 6452 1 2025-10-31 08:46:45.916 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39626 10 6452 1 2025-10-31 08:43:52.751 00:05:00.441 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 08:47:46.317 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58206 10 6452 1 2025-10-31 08:48:46.722 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:46318 10 6452 1 2025-10-31 08:45:52.754 00:05:00.437 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 08:49:47.109 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51932 10 6452 1 2025-10-31 08:50:34.906 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 08:50:34.743 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 08:50:34.894 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 08:50:34.797 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 08:50:34.989 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 08:50:47.511 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:41646 11 6504 1 2025-10-31 08:51:47.970 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:52764 10 6452 1 2025-10-31 08:52:48.394 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45128 10 6452 1 2025-10-31 08:49:52.752 00:05:00.443 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 08:53:48.814 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34360 10 6452 1 2025-10-31 08:54:49.225 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:37148 10 6452 1 2025-10-31 08:55:34.903 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 08:55:34.972 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 08:55:34.972 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 08:55:35.057 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 08:55:35.134 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 08:51:52.755 00:05:00.441 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 08:55:49.648 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40456 10 6452 1 2025-10-31 08:56:50.091 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35990 10 6452 1 2025-10-31 08:57:50.493 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40850 10 6452 1 Summary: total flows: 139, total bytes: 422467, total packets: 1019, avg bps: 906, avg pps: 0, avg bpp: 414 Time window: 2025-10-31 07:55:52 - 2025-10-31 08:58:00 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0033s User: 0.0033s Wall: 0.0027s flows/second: 50582.0 Runtime: 0.0028s