Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-03 14:54:38.597 00:06:00.330 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 14:59:32.590 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49526 10 6452 1 2025-10-03 15:00:32.995 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56876 10 6452 1 2025-10-03 15:01:33.403 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56920 10 6452 1 2025-10-03 15:02:13.582 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 15:02:13.503 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 15:02:13.414 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:02:13.499 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:02:13.509 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 15:02:33.804 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46536 12 6556 1 2025-10-03 14:58:38.596 00:06:00.341 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 15:03:34.210 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42134 10 6452 1 2025-10-03 15:04:34.616 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:36850 10 6452 1 2025-10-03 15:05:34.974 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60218 10 6452 1 2025-10-03 15:01:38.597 00:06:00.337 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 15:06:35.380 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41488 10 6452 1 2025-10-03 15:07:13.754 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 15:07:13.582 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 15:07:13.476 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:07:13.671 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:07:13.663 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 15:07:35.789 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:56700 10 6452 1 2025-10-03 15:08:36.149 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:39604 10 6452 1 2025-10-03 15:09:36.507 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45526 10 6452 1 2025-10-03 15:05:38.595 00:06:00.342 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 15:10:36.915 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45968 10 6452 1 2025-10-03 15:11:37.313 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58822 10 6452 1 2025-10-03 15:12:13.771 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 15:12:13.769 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:12:13.836 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:12:13.686 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 15:12:13.918 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 15:12:37.714 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:44348 10 6452 1 2025-10-03 15:08:38.600 00:06:00.335 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 15:13:38.129 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59314 10 6452 1 2025-10-03 15:14:38.532 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36292 10 6452 1 2025-10-03 15:15:38.938 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:50956 10 6452 1 2025-10-03 15:16:39.359 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58804 10 6452 1 2025-10-03 15:17:13.865 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 15:17:13.830 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:17:13.744 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:17:13.811 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 15:17:13.827 00:00:00.030 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 15:12:38.599 00:06:00.341 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 15:17:39.762 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:33000 10 6452 1 2025-10-03 15:18:40.170 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59798 10 6452 1 2025-10-03 15:19:40.575 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60102 10 6452 1 2025-10-03 15:15:38.603 00:06:00.333 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 15:20:40.980 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36830 10 6452 1 2025-10-03 15:21:41.398 00:00:11.180 TCP 1.101.0.1:3000 -> 23.104.0.1:38898 10 6452 1 2025-10-03 15:22:14.043 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 15:22:13.956 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 15:22:13.961 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:22:13.960 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:22:13.786 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 15:22:42.629 00:00:10.405 TCP 1.101.0.1:3000 -> 23.104.0.1:49154 10 6452 1 2025-10-03 15:23:43.099 00:00:10.909 TCP 1.101.0.1:3000 -> 23.104.0.1:38840 10 6452 1 2025-10-03 15:19:38.600 00:06:00.339 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 15:24:44.048 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46880 10 6452 1 2025-10-03 15:25:44.448 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39826 10 6452 1 2025-10-03 15:26:44.856 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:50458 10 6452 1 2025-10-03 15:27:14.708 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 15:27:14.533 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:27:14.539 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:27:14.514 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 15:27:14.621 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 15:22:38.605 00:06:00.332 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 15:27:45.268 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58532 10 6452 1 2025-10-03 15:28:45.671 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54706 10 6452 1 2025-10-03 15:29:46.033 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55474 10 6452 1 2025-10-03 15:30:46.438 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40324 10 6452 1 2025-10-03 15:26:38.603 00:06:00.338 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 15:31:46.844 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:44888 10 6452 1 2025-10-03 15:32:13.920 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 15:32:13.939 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:32:13.926 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:32:13.917 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 15:32:14.009 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 15:32:47.232 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53372 10 6452 1 2025-10-03 15:33:47.639 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59078 10 6452 1 2025-10-03 15:29:38.606 00:06:00.333 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 15:34:48.075 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33526 10 6452 1 2025-10-03 15:35:48.477 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48422 10 6452 1 2025-10-03 15:36:48.874 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59280 10 6452 1 2025-10-03 15:37:14.270 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 15:37:14.078 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:37:14.213 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:37:14.212 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 15:37:14.297 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 15:37:49.279 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52914 10 6452 1 2025-10-03 15:33:38.604 00:06:00.340 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 15:38:49.682 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58250 10 6452 1 2025-10-03 15:39:50.040 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60312 10 6452 1 2025-10-03 15:40:50.445 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37872 10 6452 1 2025-10-03 15:36:38.608 00:06:00.333 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 15:41:50.806 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46948 10 6452 1 2025-10-03 15:42:14.431 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 15:42:14.043 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:42:14.434 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:42:14.277 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 15:42:14.515 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 15:42:51.209 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34224 10 6452 1 2025-10-03 15:43:51.612 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:40872 10 6452 1 2025-10-03 15:44:51.994 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36912 10 6452 1 2025-10-03 15:40:38.606 00:06:00.339 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 15:45:52.398 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49240 10 6452 1 2025-10-03 15:46:52.797 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:52244 10 6452 1 2025-10-03 15:47:14.222 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 15:47:14.142 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:47:14.305 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:47:14.296 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 15:47:14.389 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 15:47:53.176 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45796 10 6452 1 2025-10-03 15:43:38.611 00:06:00.334 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 15:48:53.582 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49938 10 6452 1 2025-10-03 15:49:53.988 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:54028 10 6452 1 2025-10-03 15:50:54.402 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36880 10 6452 1 2025-10-03 15:51:54.821 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54790 10 6452 1 2025-10-03 15:52:14.786 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 15:52:14.641 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 15:52:14.286 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:52:14.705 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:52:14.442 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 15:47:38.608 00:06:00.344 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 15:52:55.224 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:39496 10 6452 1 2025-10-03 15:53:55.588 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46846 10 6452 1 2025-10-03 15:54:55.995 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52776 10 6452 1 2025-10-03 15:50:38.610 00:06:00.341 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 15:55:56.404 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44096 10 6452 1 2025-10-03 15:56:56.806 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57006 10 6452 1 2025-10-03 15:57:14.769 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 15:57:14.576 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 15:57:14.621 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:57:14.688 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:57:14.638 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 15:57:57.217 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:38316 13 13955 1 Summary: total flows: 136, total bytes: 418032, total packets: 1013, avg bps: 877, avg pps: 0, avg bpp: 412 Time window: 2025-10-03 14:54:38 - 2025-10-03 15:58:07 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0024s User: 0.0012s Wall: 0.0020s flows/second: 67521.9 Runtime: 0.0020s