Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-29 12:59:14.236 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59976 10 6452 1 2025-10-29 12:59:42.346 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 12:59:42.140 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 12:59:41.976 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 12:59:42.263 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 12:59:42.140 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 12:55:51.830 00:05:00.382 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 13:00:14.642 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42100 10 6452 1 2025-10-29 13:01:15.072 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52112 10 6452 1 2025-10-29 13:02:15.473 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34692 10 6452 1 2025-10-29 12:58:51.834 00:05:00.376 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 13:03:15.877 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51844 10 6452 1 2025-10-29 13:04:16.278 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55878 10 6452 1 2025-10-29 13:04:42.636 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 13:04:42.644 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 13:04:42.503 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 13:04:42.553 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 13:04:42.708 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 13:05:16.676 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:38564 10 6452 1 2025-10-29 13:01:51.835 00:05:00.379 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 13:06:17.040 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57464 10 6452 1 2025-10-29 13:07:17.399 00:00:10.451 TCP 1.101.0.1:3000 -> 23.104.0.1:41582 12 10375 1 2025-10-29 13:08:17.889 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:42036 12 6556 1 2025-10-29 13:04:51.838 00:05:00.374 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 13:09:18.311 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:36424 10 6452 1 2025-10-29 13:09:42.218 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 13:09:42.456 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 13:09:42.475 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 13:09:42.135 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 13:09:42.331 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 13:10:18.725 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:45274 10 6452 1 2025-10-29 13:11:19.143 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:60746 10 6452 1 2025-10-29 13:07:51.836 00:05:00.379 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 13:12:19.532 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37932 10 6452 1 2025-10-29 13:13:19.895 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:43634 12 6556 1 2025-10-29 13:14:20.324 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53936 10 6452 1 2025-10-29 13:14:42.428 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 13:14:42.379 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 13:14:42.521 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 13:14:42.526 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 13:14:42.603 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 13:10:51.840 00:05:00.375 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 13:15:20.724 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36514 10 6452 1 2025-10-29 13:16:21.132 00:00:10.454 TCP 1.101.0.1:3000 -> 23.104.0.1:46666 10 6452 1 2025-10-29 13:17:21.626 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:58198 10 6452 1 2025-10-29 13:13:51.836 00:05:00.381 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 13:18:22.114 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56494 10 6452 1 2025-10-29 13:19:22.475 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:53510 10 6452 1 2025-10-29 13:19:42.684 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 13:19:42.481 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 13:19:42.759 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 13:19:42.591 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 13:19:42.842 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 13:20:22.838 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:33988 10 6452 1 2025-10-29 13:16:51.840 00:05:00.375 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 13:21:23.265 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47784 10 6452 1 2025-10-29 13:22:23.679 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46984 10 6452 1 2025-10-29 13:23:24.112 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58584 10 6452 1 2025-10-29 13:19:51.838 00:05:00.380 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 13:24:24.512 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54344 10 6452 1 2025-10-29 13:24:42.610 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 13:24:42.839 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 13:24:42.496 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 13:24:42.823 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 13:24:42.580 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 13:25:24.914 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45674 10 6452 1 2025-10-29 13:26:25.317 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58572 10 6452 1 2025-10-29 13:22:51.842 00:05:00.375 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 13:27:25.744 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39150 10 6452 1 2025-10-29 13:28:26.149 00:00:10.469 TCP 1.101.0.1:3000 -> 23.104.0.1:41096 10 6452 1 2025-10-29 13:29:26.663 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37172 10 6452 1 2025-10-29 13:29:43.541 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 13:29:43.192 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 13:29:43.540 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 13:29:43.437 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 13:29:43.622 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 13:25:51.839 00:05:00.381 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 13:30:27.090 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60686 10 6452 1 2025-10-29 13:31:27.493 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43062 10 6452 1 2025-10-29 13:32:27.892 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:52778 12 6556 1 2025-10-29 13:28:51.842 00:05:00.376 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 13:33:28.314 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42000 10 6452 1 2025-10-29 13:34:28.716 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49154 10 6452 1 2025-10-29 13:34:42.681 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 13:34:42.602 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 13:34:42.756 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 13:34:42.598 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 13:34:42.953 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 13:35:29.115 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57392 10 6452 1 2025-10-29 13:31:51.839 00:05:00.381 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 13:36:29.474 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46148 10 6452 1 2025-10-29 13:37:29.876 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:49048 10 6452 1 2025-10-29 13:38:30.288 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55230 10 6452 1 2025-10-29 13:34:51.845 00:05:00.375 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 13:39:43.267 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 13:39:43.183 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 13:39:43.126 00:00:00.035 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 13:39:30.696 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57412 10 6452 1 2025-10-29 13:39:43.185 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 13:39:42.713 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 13:40:31.113 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58256 10 6452 1 2025-10-29 13:41:31.481 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55426 10 6452 1 2025-10-29 13:37:51.841 00:05:00.381 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 13:42:31.881 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:51338 12 10369 1 2025-10-29 13:43:32.318 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39938 10 6452 1 2025-10-29 13:44:42.953 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 13:44:42.740 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 13:44:43.243 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 13:44:43.144 00:00:00.029 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 13:44:32.726 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50148 10 6452 1 2025-10-29 13:44:43.327 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 13:40:51.846 00:05:00.374 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 13:45:33.141 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:43274 10 6452 1 2025-10-29 13:46:33.505 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:56914 10 6452 1 2025-10-29 13:47:33.870 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44154 10 6452 1 2025-10-29 13:43:51.844 00:05:00.379 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 13:48:34.279 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38230 10 6452 1 2025-10-29 13:49:43.215 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 13:49:34.678 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39458 10 6452 1 2025-10-29 13:49:43.228 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 13:49:43.249 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 13:49:43.124 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 13:49:43.215 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 13:50:35.097 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45466 10 6452 1 2025-10-29 13:46:51.846 00:05:00.375 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 13:51:35.499 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55160 10 6452 1 2025-10-29 13:52:35.861 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56966 10 6452 1 2025-10-29 13:53:36.269 00:00:10.942 TCP 1.101.0.1:3000 -> 23.104.0.1:59702 10 6452 1 2025-10-29 13:49:51.844 00:05:00.380 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 13:54:43.464 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 13:54:43.127 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 13:54:43.295 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 13:54:43.378 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 13:54:43.378 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 13:54:37.252 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50716 10 6452 1 2025-10-29 13:55:37.661 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:54532 10 6452 1 2025-10-29 13:56:38.120 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43164 12 6556 1 2025-10-29 13:52:51.847 00:05:00.375 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 13:57:38.530 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34996 10 6452 1 2025-10-29 13:58:38.940 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:49860 10 6452 1 Summary: total flows: 140, total bytes: 425256, total packets: 1032, avg bps: 900, avg pps: 0, avg bpp: 412 Time window: 2025-10-29 12:55:51 - 2025-10-29 13:58:49 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0019s User: 0.0029s Wall: 0.0025s flows/second: 55053.7 Runtime: 0.0026s