Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-28 08:58:54.116 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51658 10 6452 1 2025-10-28 08:59:08.459 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 08:59:08.397 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 08:59:08.525 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 08:59:08.454 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 08:59:08.609 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 08:59:54.521 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44528 10 6452 1 2025-10-28 08:55:51.316 00:06:00.321 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 09:00:54.927 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:39942 10 6452 1 2025-10-28 08:56:51.321 00:06:00.316 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 09:01:55.345 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48358 10 6452 1 2025-10-28 09:02:55.749 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45432 10 6452 1 2025-10-28 09:04:08.765 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 09:03:56.152 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40600 10 6452 1 2025-10-28 09:04:08.748 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 09:04:08.619 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 09:04:08.683 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 09:04:08.593 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 09:04:56.563 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34640 10 6452 1 2025-10-28 09:05:56.971 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:56988 10 6452 1 2025-10-28 09:06:57.345 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:34266 10 6452 1 2025-10-28 09:02:51.323 00:06:00.316 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 09:07:57.774 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43142 10 6452 1 2025-10-28 09:03:51.327 00:06:00.310 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 09:09:08.769 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 09:09:08.687 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 09:09:08.556 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 09:09:08.686 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 09:09:08.615 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 09:08:58.182 00:00:15.879 TCP 1.101.0.1:3000 -> 23.104.0.1:34186 10 6452 1 2025-10-28 09:10:04.118 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58498 10 6452 1 2025-10-28 09:11:04.530 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57720 10 6452 1 2025-10-28 09:12:04.931 00:00:10.771 TCP 1.101.0.1:3000 -> 23.104.0.1:32920 12 10369 1 2025-10-28 09:13:05.738 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60526 10 6452 1 2025-10-28 09:14:08.899 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 09:14:08.759 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 09:14:08.792 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 09:14:08.792 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 09:14:08.874 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 09:14:06.139 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:49784 10 6452 1 2025-10-28 09:09:51.330 00:06:00.313 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 09:15:06.496 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41176 10 6452 1 2025-10-28 09:10:51.329 00:06:00.311 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 09:16:06.893 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:38568 10 6452 1 2025-10-28 09:17:07.309 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36108 10 6452 1 2025-10-28 09:18:07.712 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38550 10 6452 1 2025-10-28 09:19:08.845 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 09:19:08.915 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 09:19:08.909 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 09:19:08.762 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 09:19:08.912 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 09:19:08.120 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:44134 10 6452 1 2025-10-28 09:20:08.520 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43216 10 6452 1 2025-10-28 09:21:08.928 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:50894 10 6452 1 2025-10-28 09:16:51.328 00:06:00.316 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 09:22:09.353 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:36840 10 6452 1 2025-10-28 09:17:51.331 00:06:00.311 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 09:23:09.765 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:43876 11 6492 1 2025-10-28 09:24:08.762 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 09:24:08.793 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 09:24:08.966 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 09:24:08.967 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 09:24:09.049 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 09:24:10.176 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54610 10 6452 1 2025-10-28 09:25:10.580 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40024 10 6452 1 2025-10-28 09:26:10.986 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56464 10 6452 1 2025-10-28 09:27:11.388 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:53042 12 10375 1 2025-10-28 09:28:11.873 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:57042 12 6556 1 2025-10-28 09:23:51.329 00:06:00.317 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 09:29:09.162 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 09:29:08.967 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 09:29:08.913 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 09:29:09.078 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 09:29:09.090 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 09:29:12.318 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33580 10 6452 1 2025-10-28 09:24:51.332 00:06:00.312 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 09:30:12.728 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60020 10 6452 1 2025-10-28 09:31:13.138 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34366 10 6452 1 2025-10-28 09:32:13.545 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59190 10 6452 1 2025-10-28 09:33:13.946 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51952 10 6452 1 2025-10-28 09:34:09.363 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 09:34:09.279 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 09:34:09.188 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 09:34:09.281 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 09:34:09.225 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 09:34:14.355 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39020 10 6452 1 2025-10-28 09:35:14.764 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:50306 10 6452 1 2025-10-28 09:30:51.331 00:06:00.319 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 09:36:15.137 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54336 10 6452 1 2025-10-28 09:31:51.332 00:06:00.313 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 09:37:15.545 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:35084 10 6452 1 2025-10-28 09:38:15.973 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:52846 10 6452 1 2025-10-28 09:39:09.208 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 09:39:09.337 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 09:39:09.209 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 09:39:09.327 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 09:39:09.292 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 09:39:16.392 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41916 10 6452 1 2025-10-28 09:40:16.801 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:58380 12 6556 1 2025-10-28 09:41:17.212 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39332 10 6452 1 2025-10-28 09:42:17.617 00:00:10.562 TCP 1.101.0.1:3000 -> 23.104.0.1:51598 12 10369 1 2025-10-28 09:37:51.330 00:06:00.319 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 09:43:18.231 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44016 10 6452 1 2025-10-28 09:38:51.333 00:06:00.315 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 09:44:09.384 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 09:44:09.293 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 09:44:09.341 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 09:44:09.297 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 09:44:09.364 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 09:44:18.598 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:56294 10 6452 1 2025-10-28 09:45:18.963 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40476 10 6452 1 2025-10-28 09:46:19.367 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:56648 10 6452 1 2025-10-28 09:47:19.725 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40036 10 6452 1 2025-10-28 09:48:20.131 00:00:16.098 TCP 1.101.0.1:3000 -> 23.104.0.1:36190 10 6452 1 2025-10-28 09:49:09.681 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 09:49:09.524 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 09:49:09.456 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 09:49:09.599 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 09:49:09.592 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 09:49:26.297 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59982 10 6452 1 2025-10-28 09:44:51.338 00:06:00.315 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 09:50:26.692 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:49280 10 6452 1 2025-10-28 09:45:51.340 00:06:00.311 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 09:51:27.079 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58724 10 6452 1 2025-10-28 09:52:27.443 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59796 10 6452 1 2025-10-28 09:53:27.847 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:60418 10 6452 1 2025-10-28 09:54:09.391 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 09:54:09.630 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 09:54:09.512 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 09:54:09.389 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 09:54:09.594 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 09:54:28.277 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50488 10 6452 1 2025-10-28 09:55:28.679 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:35638 10 6452 1 2025-10-28 09:56:29.111 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:45572 10 6452 1 2025-10-28 09:51:51.338 00:06:00.316 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 09:57:29.526 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58852 10 6452 1 2025-10-28 09:52:51.342 00:06:00.310 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 09:58:29.930 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:36142 10 6452 1 Summary: total flows: 138, total bytes: 429743, total packets: 1043, avg bps: 909, avg pps: 0, avg bpp: 412 Time window: 2025-10-28 08:55:51 - 2025-10-28 09:58:51 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0031s User: 0.0015s Wall: 0.0020s flows/second: 68216.1 Runtime: 0.0020s