Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-29 01:59:02.460 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:46148 10 6452 1 2025-10-29 01:59:28.854 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 01:59:28.978 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 01:59:28.799 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 01:59:28.770 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 01:59:28.980 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 02:00:02.820 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:46894 10 6452 1 2025-10-29 02:01:03.189 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50444 10 6452 1 2025-10-29 02:02:03.546 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55206 10 6452 1 2025-10-29 01:57:51.620 00:06:00.361 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 02:03:03.948 00:00:10.942 TCP 1.101.0.1:3000 -> 23.104.0.1:59872 10 6452 1 2025-10-29 01:58:51.623 00:06:00.356 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 02:04:04.932 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:40878 11 6504 1 2025-10-29 02:04:29.082 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 02:04:29.092 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:04:29.233 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:04:29.087 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 02:04:29.316 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 02:05:05.374 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53964 10 6452 1 2025-10-29 02:06:05.778 00:00:10.520 TCP 1.101.0.1:3000 -> 23.104.0.1:54272 10 6452 1 2025-10-29 02:07:06.354 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55742 10 6452 1 2025-10-29 02:08:06.762 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:35798 10 6452 1 2025-10-29 02:09:07.188 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44510 10 6452 1 2025-10-29 02:09:29.221 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 02:09:29.180 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:09:29.218 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:09:29.261 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 02:09:29.301 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 02:04:51.621 00:06:00.361 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 02:10:07.596 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40208 10 6452 1 2025-10-29 02:05:51.627 00:06:00.355 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 02:11:07.961 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55752 10 6452 1 2025-10-29 02:12:08.361 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47626 10 6452 1 2025-10-29 02:13:08.769 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48708 10 6452 1 2025-10-29 02:14:09.180 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42556 10 6452 1 2025-10-29 02:14:29.384 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 02:14:29.238 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 02:14:29.164 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:14:29.301 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:14:29.338 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 02:15:09.584 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38822 10 6452 1 2025-10-29 02:16:09.990 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:53074 10 6452 1 2025-10-29 02:11:51.625 00:06:00.361 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 02:17:10.392 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56884 10 6452 1 2025-10-29 02:12:51.627 00:06:00.356 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 02:18:10.802 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48772 10 6452 1 2025-10-29 02:19:11.205 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:46710 10 6452 1 2025-10-29 02:19:29.424 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 02:19:29.366 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:19:29.294 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:19:29.294 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 02:19:29.377 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 02:20:11.567 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58704 10 6452 1 2025-10-29 02:21:11.973 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50358 10 6452 1 2025-10-29 02:22:12.377 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47862 10 6452 1 2025-10-29 02:23:12.775 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39256 10 6452 1 2025-10-29 02:18:51.630 00:06:00.357 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 02:24:13.184 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:32846 10 6452 1 2025-10-29 02:24:29.471 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 02:24:29.446 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 02:24:29.402 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:24:29.388 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:24:29.377 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 02:19:51.633 00:06:00.352 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 02:25:13.580 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46490 10 6452 1 2025-10-29 02:26:13.948 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:46840 10 6452 1 2025-10-29 02:27:14.318 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60746 10 6452 1 2025-10-29 02:28:14.720 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:46944 10 6452 1 2025-10-29 02:29:15.123 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:54512 10 6452 1 2025-10-29 02:29:29.619 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 02:29:29.503 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:29:29.536 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:29:29.544 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 02:29:29.540 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 02:30:15.543 00:00:10.710 TCP 1.101.0.1:3000 -> 23.104.0.1:42168 10 6452 1 2025-10-29 02:25:51.632 00:06:00.357 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 02:31:16.305 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57434 10 6452 1 2025-10-29 02:26:51.635 00:06:00.352 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 02:32:16.714 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:49948 12 10369 1 2025-10-29 02:33:17.191 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:58672 10 6452 1 2025-10-29 02:34:29.747 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 02:34:17.601 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35364 10 6452 1 2025-10-29 02:34:29.710 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 02:34:29.757 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:34:29.664 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:34:29.486 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 02:35:18.019 00:00:16.459 TCP 1.101.0.1:3000 -> 23.104.0.1:59310 10 6452 1 2025-10-29 02:36:24.516 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:48140 10 6452 1 2025-10-29 02:37:24.875 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52612 10 6452 1 2025-10-29 02:32:51.632 00:06:00.360 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 02:38:25.282 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60964 10 6452 1 2025-10-29 02:33:51.636 00:06:00.354 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 02:39:29.694 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 02:39:29.726 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:39:29.893 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:39:29.832 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 02:39:29.976 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 02:39:25.684 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50130 10 6452 1 2025-10-29 02:40:26.103 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54810 10 6452 1 2025-10-29 02:41:26.508 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36486 10 6452 1 2025-10-29 02:42:26.909 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:37496 12 10375 1 2025-10-29 02:43:27.390 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:34938 10 6452 1 2025-10-29 02:44:29.891 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 02:44:29.802 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:44:29.770 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:44:29.764 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 02:44:29.852 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 02:44:27.753 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:41848 10 6452 1 2025-10-29 02:39:51.634 00:06:00.359 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 02:45:28.173 00:00:10.434 TCP 1.101.0.1:3000 -> 23.104.0.1:44710 10 6452 1 2025-10-29 02:40:51.637 00:06:00.354 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 02:46:28.646 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45434 10 6452 1 2025-10-29 02:47:29.051 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:34688 12 10369 1 2025-10-29 02:48:29.525 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:44938 10 6452 1 2025-10-29 02:49:29.748 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 02:49:29.736 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:49:29.741 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:49:29.848 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 02:49:29.823 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 02:49:29.886 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:54650 12 6556 1 2025-10-29 02:50:30.303 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57372 10 6452 1 2025-10-29 02:51:30.705 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58450 10 6452 1 2025-10-29 02:46:51.637 00:06:00.358 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-29 02:52:31.113 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51870 10 6452 1 2025-10-29 02:47:51.640 00:06:00.353 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-29 02:53:31.518 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52180 10 6452 1 2025-10-29 02:54:30.197 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 02:54:29.913 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:54:30.135 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 02:54:29.986 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 02:54:30.217 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 02:54:31.924 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:32876 10 6452 1 2025-10-29 02:55:32.345 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:38824 10 6452 1 2025-10-29 02:56:32.707 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60936 10 6452 1 2025-10-29 02:57:33.122 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39920 10 6452 1 2025-10-29 02:58:33.526 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:60238 10 6452 1 Summary: total flows: 136, total bytes: 427929, total packets: 1013, avg bps: 937, avg pps: 0, avg bpp: 422 Time window: 2025-10-29 01:57:51 - 2025-10-29 02:58:43 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0043s User: 0.0009s Wall: 0.0021s flows/second: 65831.0 Runtime: 0.0021s