Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-20 03:59:38.874 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60220 10 6452 1 2025-10-20 04:00:11.309 00:00:00.040 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 04:00:11.588 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:00:11.248 00:00:00.063 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:00:11.482 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 04:00:11.331 00:00:00.063 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 04:00:39.282 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33676 10 6452 1 2025-10-20 04:01:39.684 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:37028 10 6452 1 2025-10-20 04:02:40.111 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38864 10 6452 1 2025-10-20 04:03:40.518 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41742 10 6452 1 2025-10-20 03:58:47.047 00:06:00.210 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 04:04:40.926 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:37548 10 6452 1 2025-10-20 04:05:11.308 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 04:05:11.261 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:05:11.110 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:05:11.227 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 04:05:11.195 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 04:00:47.043 00:06:00.216 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 04:05:41.340 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33158 10 6452 1 2025-10-20 04:06:41.750 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50100 10 6452 1 2025-10-20 04:07:42.151 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41236 10 6452 1 2025-10-20 04:08:42.555 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39478 10 6452 1 2025-10-20 04:09:42.962 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39234 10 6452 1 2025-10-20 04:10:11.080 00:00:00.041 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 04:10:11.276 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 04:10:11.215 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:10:10.998 00:00:00.041 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:10:11.277 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 04:05:47.050 00:06:00.209 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 04:10:43.372 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:34618 10 6452 1 2025-10-20 04:11:43.725 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48762 10 6452 1 2025-10-20 04:07:47.046 00:06:00.216 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 04:12:44.136 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:48848 10 6452 1 2025-10-20 04:13:44.498 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40606 10 6452 1 2025-10-20 04:14:44.898 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:48858 10 6452 1 2025-10-20 04:15:11.580 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 04:15:11.155 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 04:15:11.311 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:15:11.499 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:15:11.455 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 04:15:45.276 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:53586 10 6452 1 2025-10-20 04:16:45.635 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59262 10 6452 1 2025-10-20 04:12:47.051 00:06:00.212 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 04:17:46.068 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:50022 10 6452 1 2025-10-20 04:18:46.474 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53832 10 6452 1 2025-10-20 04:14:47.047 00:06:00.218 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 04:19:46.871 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55690 10 6452 1 2025-10-20 04:20:11.812 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 04:20:11.806 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:20:11.891 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:20:11.639 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 04:20:11.974 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 04:20:47.271 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37910 10 6452 1 2025-10-20 04:21:47.638 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:40270 10 6452 1 2025-10-20 04:22:48.064 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53194 10 6452 1 2025-10-20 04:23:48.467 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40902 10 6452 1 2025-10-20 04:19:47.052 00:06:00.213 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 04:24:48.866 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49060 10 6452 1 2025-10-20 04:25:11.560 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 04:25:11.724 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 04:25:11.480 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:25:11.476 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:25:11.590 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 04:25:49.281 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:40762 10 6452 1 2025-10-20 04:21:47.050 00:06:00.217 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 04:26:49.663 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44924 10 6452 1 2025-10-20 04:27:50.080 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56394 10 6452 1 2025-10-20 04:28:50.509 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34200 10 6452 1 2025-10-20 04:29:50.915 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50014 10 6452 1 2025-10-20 04:30:11.766 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 04:30:11.757 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 04:30:11.724 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:30:11.682 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:30:11.757 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 04:30:51.324 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36590 10 6452 1 2025-10-20 04:26:47.062 00:06:00.204 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 04:31:51.728 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:50038 10 6452 1 2025-10-20 04:32:52.144 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:52192 10 6452 1 2025-10-20 04:28:47.052 00:06:00.217 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 04:33:52.566 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38090 10 6452 1 2025-10-20 04:34:52.973 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51434 10 6452 1 2025-10-20 04:35:11.668 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 04:35:11.611 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:35:11.830 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:35:11.767 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 04:35:11.912 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 04:35:53.382 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56110 10 6452 1 2025-10-20 04:36:53.782 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49910 10 6452 1 2025-10-20 04:37:54.192 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40200 10 6452 1 2025-10-20 04:33:47.056 00:06:00.211 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 04:38:54.593 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60492 10 6452 1 2025-10-20 04:39:55.008 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50708 10 6452 1 2025-10-20 04:40:11.952 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 04:40:11.585 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:40:11.932 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:40:11.859 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 04:40:12.014 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 04:35:47.054 00:06:00.216 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 04:40:55.407 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40844 10 6452 1 2025-10-20 04:41:55.811 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:37002 10 6452 1 2025-10-20 04:42:56.187 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55860 10 6452 1 2025-10-20 04:43:56.591 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42826 10 6452 1 2025-10-20 04:44:56.989 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33450 10 6452 1 2025-10-20 04:45:12.075 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 04:45:12.071 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 04:45:12.069 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:45:12.072 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:45:12.155 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 04:40:47.059 00:06:00.211 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 04:45:57.394 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:47490 11 6504 1 2025-10-20 04:46:57.811 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47894 10 6452 1 2025-10-20 04:42:47.066 00:06:00.208 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 04:47:58.212 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37950 10 6452 1 2025-10-20 04:48:58.615 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54916 10 6452 1 2025-10-20 04:49:59.017 00:00:10.427 TCP 1.101.0.1:3000 -> 23.104.0.1:49208 10 6452 1 2025-10-20 04:50:12.201 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 04:50:12.118 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 04:50:12.069 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:50:12.119 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:50:12.126 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 04:50:59.480 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39880 10 6452 1 2025-10-20 04:51:59.895 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:57552 10 6452 1 2025-10-20 04:47:47.067 00:06:00.210 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 04:53:00.320 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45906 10 6452 1 2025-10-20 04:54:00.732 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:42474 10 6452 1 2025-10-20 04:49:47.066 00:06:00.214 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 04:55:12.253 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 04:55:11.917 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 04:55:12.299 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:55:12.171 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:55:12.171 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 04:55:01.148 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:39198 10 6452 1 2025-10-20 04:56:01.560 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36840 10 6452 1 2025-10-20 04:57:01.967 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:43420 10 6452 1 2025-10-20 04:58:02.342 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52180 10 6452 1 Summary: total flows: 135, total bytes: 409616, total packets: 995, avg bps: 919, avg pps: 0, avg bpp: 411 Time window: 2025-10-20 03:58:47 - 2025-10-20 04:58:12 Total flows processed: 135, passed: 135, Blocks skipped: 0, Bytes read: 14104 Sys: 0.0036s User: 0.0018s Wall: 0.0016s flows/second: 84423.9 Runtime: 0.0016s