Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-29 03:58:57.507 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59078 10 6452 1 2025-10-29 03:59:31.556 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 03:59:31.395 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 03:59:31.167 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 03:59:31.473 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 03:59:31.398 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 03:55:51.664 00:05:00.375 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 03:59:57.910 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:42238 10 6452 1 2025-10-29 04:00:58.283 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:35596 10 6452 1 2025-10-29 04:01:58.689 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:52462 10 6452 1 2025-10-29 03:58:51.667 00:05:00.371 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 04:02:59.062 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43346 10 6452 1 2025-10-29 04:03:59.465 00:00:10.996 TCP 1.101.0.1:3000 -> 23.104.0.1:33258 10 6452 1 2025-10-29 04:04:31.201 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 04:04:31.339 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 04:04:31.536 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 04:04:31.325 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 04:04:31.407 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 04:05:00.501 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49106 10 6452 1 2025-10-29 04:01:51.665 00:05:00.381 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 04:06:00.903 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:38872 10 6452 1 2025-10-29 04:07:01.272 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51808 10 6452 1 2025-10-29 04:08:01.671 00:00:10.747 TCP 1.101.0.1:3000 -> 23.104.0.1:40824 10 6452 1 2025-10-29 04:04:51.669 00:05:00.370 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 04:09:02.457 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49432 10 6452 1 2025-10-29 04:09:31.718 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 04:09:31.631 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 04:09:31.327 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 04:09:31.635 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 04:09:31.575 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 04:10:02.822 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50786 10 6452 1 2025-10-29 04:11:03.222 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45782 10 6452 1 2025-10-29 04:07:51.669 00:05:00.380 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 04:12:03.627 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49326 10 6452 1 2025-10-29 04:13:04.023 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36692 10 6452 1 2025-10-29 04:14:04.431 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57896 10 6452 1 2025-10-29 04:14:31.699 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 04:14:31.778 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 04:14:31.741 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 04:14:31.618 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 04:14:31.735 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 04:10:51.673 00:05:00.371 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 04:15:04.839 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:40196 10 6452 1 2025-10-29 04:16:05.260 00:00:11.053 TCP 1.101.0.1:3000 -> 23.104.0.1:50844 10 6452 1 2025-10-29 04:17:06.349 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37020 10 6452 1 2025-10-29 04:13:51.678 00:05:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 04:18:06.752 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47198 10 6452 1 2025-10-29 04:19:07.157 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:60012 10 6452 1 2025-10-29 04:19:31.832 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 04:19:31.883 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 04:19:31.974 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 04:19:31.748 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 04:19:31.723 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 04:20:07.590 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41444 10 6452 1 2025-10-29 04:16:51.681 00:05:00.359 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 04:21:07.991 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37810 10 6452 1 2025-10-29 04:22:08.395 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45208 10 6452 1 2025-10-29 04:23:08.807 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60250 10 6452 1 2025-10-29 04:19:51.679 00:05:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 04:24:09.210 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53248 10 6452 1 2025-10-29 04:24:32.137 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 04:24:31.922 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 04:24:31.805 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 04:24:32.054 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 04:24:31.798 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 04:25:09.615 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44618 10 6452 1 2025-10-29 04:26:10.022 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:49550 10 6452 1 2025-10-29 04:22:51.682 00:05:00.361 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 04:27:10.455 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51172 10 6452 1 2025-10-29 04:28:10.861 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42518 10 6452 1 2025-10-29 04:29:11.277 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39038 10 6452 1 2025-10-29 04:29:31.967 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 04:29:31.736 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 04:29:31.890 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 04:29:31.891 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 04:29:31.973 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 04:25:51.680 00:05:00.366 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 04:30:11.683 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49776 10 6452 1 2025-10-29 04:31:12.112 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41206 10 6452 1 2025-10-29 04:32:12.513 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:53272 10 6452 1 2025-10-29 04:28:51.682 00:05:00.364 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 04:33:12.902 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39562 10 6452 1 2025-10-29 04:34:13.305 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44042 10 6452 1 2025-10-29 04:34:32.155 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 04:34:31.948 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 04:34:32.058 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 04:34:32.072 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 04:34:31.859 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 04:35:13.674 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54364 10 6452 1 2025-10-29 04:31:51.681 00:05:00.370 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 04:36:14.111 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55714 10 6452 1 2025-10-29 04:37:14.514 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47504 10 6452 1 2025-10-29 04:38:14.919 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41182 10 6452 1 2025-10-29 04:34:51.685 00:05:00.364 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 04:39:15.329 00:00:11.713 TCP 1.101.0.1:3000 -> 23.104.0.1:57002 10 6452 1 2025-10-29 04:39:32.268 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 04:39:31.991 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 04:39:32.367 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 04:39:32.464 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 04:39:32.450 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 04:40:17.115 00:00:10.838 TCP 1.101.0.1:3000 -> 23.104.0.1:47754 10 6452 1 2025-10-29 04:41:17.991 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57492 10 6452 1 2025-10-29 04:37:51.683 00:05:00.368 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 04:42:18.395 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39522 10 6452 1 2025-10-29 04:43:18.763 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35678 10 6452 1 2025-10-29 04:44:19.165 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:44280 10 6452 1 2025-10-29 04:44:31.988 00:00:00.053 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 04:44:32.079 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 04:44:32.236 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 04:44:31.993 00:00:00.047 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 04:44:32.320 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 04:40:51.686 00:05:00.365 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 04:45:19.550 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37418 10 6452 1 2025-10-29 04:46:19.958 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44812 10 6452 1 2025-10-29 04:47:20.363 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54488 10 6452 1 2025-10-29 04:43:51.684 00:05:00.370 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 04:48:20.766 00:00:17.625 TCP 1.101.0.1:3000 -> 23.104.0.1:40782 10 6452 1 2025-10-29 04:49:32.839 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 04:49:32.725 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 04:49:32.654 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 04:49:32.803 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 04:49:32.737 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 04:49:28.450 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51768 10 6452 1 2025-10-29 04:50:28.856 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:35422 10 6452 1 2025-10-29 04:46:51.687 00:05:00.368 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 04:51:29.228 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49240 10 6452 1 2025-10-29 04:52:29.629 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:40914 10 6452 1 2025-10-29 04:53:29.989 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:39408 10 6452 1 2025-10-29 04:49:51.685 00:05:00.372 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 04:54:32.325 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 04:54:32.604 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 04:54:32.556 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 04:54:32.328 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 04:54:32.408 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 04:54:30.350 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44210 10 6452 1 2025-10-29 04:55:30.711 00:00:11.073 TCP 1.101.0.1:3000 -> 23.104.0.1:44114 10 6452 1 2025-10-29 04:56:31.820 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59932 10 6452 1 2025-10-29 04:52:51.688 00:05:00.369 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 04:57:32.229 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:48574 12 10369 1 2025-10-29 04:58:32.707 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52314 10 6452 1 Summary: total flows: 140, total bytes: 420917, total packets: 1022, avg bps: 892, avg pps: 0, avg bpp: 411 Time window: 2025-10-29 03:55:51 - 2025-10-29 04:58:43 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0038s User: 0.0019s Wall: 0.0021s flows/second: 65667.9 Runtime: 0.0021s