Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-28 12:53:51.385 00:06:00.335 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 12:58:52.953 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:37306 10 6452 1 2025-10-28 12:59:13.584 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 12:59:13.485 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 12:59:13.388 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 12:59:13.500 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 12:59:13.494 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 12:54:51.388 00:06:00.329 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 12:59:53.328 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35316 10 6452 1 2025-10-28 13:00:53.733 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34760 10 6452 1 2025-10-28 13:01:54.144 00:00:14.253 TCP 1.101.0.1:3000 -> 23.104.0.1:47218 10 6452 1 2025-10-28 13:02:58.441 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40354 10 6452 1 2025-10-28 13:03:58.809 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:33362 10 6452 1 2025-10-28 13:04:13.422 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:04:13.213 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:04:13.487 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:04:13.428 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:04:13.569 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 13:04:59.227 00:00:10.857 TCP 1.101.0.1:3000 -> 23.104.0.1:52762 10 6452 1 2025-10-28 13:00:51.385 00:06:00.335 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 13:06:00.114 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48496 10 6452 1 2025-10-28 13:01:51.387 00:06:00.330 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 13:07:00.521 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38524 10 6452 1 2025-10-28 13:08:00.882 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54948 10 6452 1 2025-10-28 13:09:13.634 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 13:09:13.545 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:09:13.336 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:09:13.552 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:09:13.579 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:09:01.288 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43218 10 6452 1 2025-10-28 13:10:01.696 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40232 10 6452 1 2025-10-28 13:11:02.113 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34846 10 6452 1 2025-10-28 13:12:02.519 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43632 10 6452 1 2025-10-28 13:07:51.386 00:06:00.334 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 13:13:02.920 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:36702 10 6452 1 2025-10-28 13:08:51.390 00:06:00.328 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 13:14:13.646 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:14:13.581 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:14:13.721 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:14:13.646 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:14:03.360 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51946 10 6452 1 2025-10-28 13:14:13.804 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 13:15:03.758 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:39230 10 6452 1 2025-10-28 13:16:04.129 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43766 10 6452 1 2025-10-28 13:17:04.531 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:52284 10 6452 1 2025-10-28 13:18:04.899 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:44494 10 6452 1 2025-10-28 13:19:13.719 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 13:19:13.638 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:19:13.575 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:19:13.638 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:19:13.636 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:19:05.321 00:00:10.719 TCP 1.101.0.1:3000 -> 23.104.0.1:33806 10 6452 1 2025-10-28 13:14:51.391 00:06:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 13:20:06.108 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37390 10 6452 1 2025-10-28 13:15:51.394 00:06:00.326 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 13:21:06.510 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:47314 10 6452 1 2025-10-28 13:22:06.924 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:40602 10 6452 1 2025-10-28 13:23:07.300 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:59998 10 6452 1 2025-10-28 13:24:14.074 00:00:00.049 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 13:24:13.582 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:24:13.826 00:00:00.032 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:24:13.992 00:00:00.050 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:24:13.795 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:24:07.675 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:54042 10 6452 1 2025-10-28 13:25:08.122 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54522 10 6452 1 2025-10-28 13:26:08.535 00:00:18.151 TCP 1.101.0.1:3000 -> 23.104.0.1:38346 10 6452 1 2025-10-28 13:21:51.391 00:06:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 13:27:16.759 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:32848 10 6452 1 2025-10-28 13:22:51.395 00:06:00.326 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 13:28:17.172 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54550 10 6452 1 2025-10-28 13:29:13.998 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 13:29:13.916 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:29:13.862 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:29:13.861 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:29:13.805 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:29:17.576 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60186 10 6452 1 2025-10-28 13:30:17.974 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44846 10 6452 1 2025-10-28 13:31:18.381 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47542 10 6452 1 2025-10-28 13:32:18.788 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:42112 12 10375 1 2025-10-28 13:33:19.267 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54520 10 6452 1 2025-10-28 13:28:51.397 00:06:00.327 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 13:34:13.993 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 13:34:14.143 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:34:13.766 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:34:13.911 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:34:14.062 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:34:19.673 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50912 10 6452 1 2025-10-28 13:29:51.400 00:06:00.323 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 13:35:20.102 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60766 10 6452 1 2025-10-28 13:36:20.506 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47822 10 6452 1 2025-10-28 13:37:20.868 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56286 10 6452 1 2025-10-28 13:38:21.276 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36666 10 6452 1 2025-10-28 13:39:14.254 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 13:39:14.172 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:39:14.071 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:39:14.172 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:39:14.007 00:00:00.046 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:39:21.645 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:40364 10 6452 1 2025-10-28 13:40:22.118 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59688 10 6452 1 2025-10-28 13:35:51.399 00:06:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 13:41:22.524 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55172 10 6452 1 2025-10-28 13:36:51.401 00:06:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 13:42:22.935 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43268 10 6452 1 2025-10-28 13:43:23.342 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49238 10 6452 1 2025-10-28 13:44:14.301 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 13:44:14.147 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:44:13.890 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:44:14.218 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:44:14.145 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:44:23.747 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35840 10 6452 1 2025-10-28 13:45:24.156 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36356 10 6452 1 2025-10-28 13:46:24.559 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33172 10 6452 1 2025-10-28 13:47:24.968 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47788 10 6452 1 2025-10-28 13:42:51.401 00:06:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 13:48:25.375 00:00:10.315 TCP 1.101.0.1:3000 -> 23.104.0.1:46802 10 6452 1 2025-10-28 13:43:51.403 00:06:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 13:49:14.267 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:49:14.292 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:49:14.266 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:49:14.114 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:49:14.349 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 13:49:25.726 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:56362 10 6452 1 2025-10-28 13:50:26.113 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37882 10 6452 1 2025-10-28 13:51:26.512 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44660 10 6452 1 2025-10-28 13:52:26.918 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:44100 12 10375 1 2025-10-28 13:53:27.399 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52334 10 6452 1 2025-10-28 13:54:14.433 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:54:14.224 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:54:14.519 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:54:14.572 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:54:14.602 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 13:54:27.805 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:54882 10 6452 1 2025-10-28 13:49:51.400 00:06:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 13:55:28.189 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39100 10 6452 1 2025-10-28 13:50:51.403 00:06:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 13:56:28.602 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52990 10 6452 1 2025-10-28 13:57:29.000 00:00:10.413 TCP 1.101.0.1:3000 -> 23.104.0.1:57322 11 6504 1 2025-10-28 13:58:29.451 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41986 10 6452 1 Summary: total flows: 138, total bytes: 425636, total packets: 1037, avg bps: 875, avg pps: 0, avg bpp: 410 Time window: 2025-10-28 12:53:51 - 2025-10-28 13:58:39 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0042s User: 0.0017s Wall: 0.0018s flows/second: 78675.3 Runtime: 0.0018s