Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-29 14:59:02.810 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51426 10 6452 1 2025-10-29 14:59:44.569 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 14:59:44.224 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 14:59:44.572 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 14:59:44.571 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 14:59:44.656 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 14:55:51.862 00:05:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 15:00:03.215 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51544 10 6452 1 2025-10-29 15:01:03.622 00:00:10.831 TCP 1.101.0.1:3000 -> 23.104.0.1:36214 10 6452 1 2025-10-29 15:02:04.493 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46064 10 6452 1 2025-10-29 14:58:51.864 00:05:00.386 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 15:03:04.900 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39962 12 6556 1 2025-10-29 15:04:05.313 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:46576 10 6452 1 2025-10-29 15:04:44.902 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 15:04:44.760 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 15:04:44.688 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 15:04:44.820 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 15:04:44.816 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 15:05:05.769 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:48766 10 6452 1 2025-10-29 15:01:51.864 00:05:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 15:06:06.187 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40986 10 6452 1 2025-10-29 15:07:06.550 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48050 10 6452 1 2025-10-29 15:08:06.958 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50362 10 6452 1 2025-10-29 15:04:51.869 00:05:00.382 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 15:09:07.365 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54942 10 6452 1 2025-10-29 15:09:44.875 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 15:09:44.926 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 15:09:44.785 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 15:09:44.792 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 15:09:44.851 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 15:10:07.768 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:50626 10 6452 1 2025-10-29 15:11:08.185 00:00:24.065 TCP 1.101.0.1:3000 -> 23.104.0.1:35086 10 6452 1 2025-10-29 15:07:51.867 00:05:00.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 15:12:22.314 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35002 10 6452 1 2025-10-29 15:13:22.723 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48638 10 6452 1 2025-10-29 15:14:23.130 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:39380 10 6452 1 2025-10-29 15:14:45.066 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 15:14:44.856 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 15:14:44.759 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 15:14:44.984 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 15:14:44.981 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 15:10:51.870 00:05:00.381 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 15:15:23.497 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56448 10 6452 1 2025-10-29 15:16:23.898 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:38860 10 6452 1 2025-10-29 15:17:24.317 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:50340 10 6452 1 2025-10-29 15:13:51.869 00:05:00.386 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 15:18:24.720 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53016 10 6452 1 2025-10-29 15:19:25.130 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55944 12 6556 1 2025-10-29 15:19:44.978 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 15:19:44.986 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 15:19:44.818 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 15:19:44.812 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 15:19:44.900 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 15:20:25.538 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49914 10 6452 1 2025-10-29 15:16:51.871 00:05:00.381 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 15:21:25.941 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42020 10 6452 1 2025-10-29 15:22:26.351 00:00:10.984 TCP 1.101.0.1:3000 -> 23.104.0.1:51412 10 6452 1 2025-10-29 15:23:27.373 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47872 10 6452 1 2025-10-29 15:19:51.870 00:05:00.386 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 15:24:27.778 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53324 10 6452 1 2025-10-29 15:24:45.071 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 15:24:45.273 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 15:24:44.986 00:00:00.064 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 15:24:44.987 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 15:24:45.475 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 15:25:28.186 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54548 10 6452 1 2025-10-29 15:26:28.599 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:43948 10 6452 1 2025-10-29 15:22:51.873 00:05:00.381 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 15:27:28.974 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33880 10 6452 1 2025-10-29 15:28:29.388 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:36108 10 6452 1 2025-10-29 15:29:29.749 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52780 10 6452 1 2025-10-29 15:29:45.348 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 15:29:45.007 00:00:00.029 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 15:29:45.158 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 15:29:45.267 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 15:29:45.006 00:00:00.043 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 15:25:51.871 00:05:00.386 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 15:30:30.156 00:00:10.422 TCP 1.101.0.1:3000 -> 23.104.0.1:34168 11 6504 1 2025-10-29 15:31:30.617 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55180 10 6452 1 2025-10-29 15:32:31.023 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45678 10 6452 1 2025-10-29 15:28:51.875 00:05:00.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 15:33:31.442 00:00:10.354 TCP 1.101.0.1:3000 -> 23.104.0.1:44656 10 6452 1 2025-10-29 15:34:45.274 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 15:34:45.141 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 15:34:31.850 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:49150 10 6452 1 2025-10-29 15:34:45.185 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 15:34:45.186 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 15:34:45.269 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 15:35:32.270 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:35680 10 6452 1 2025-10-29 15:31:51.873 00:05:00.385 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 15:36:32.685 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52098 10 6452 1 2025-10-29 15:37:33.107 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36984 10 6452 1 2025-10-29 15:38:33.510 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36306 10 6452 1 2025-10-29 15:34:51.877 00:05:00.378 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 15:39:45.509 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 15:39:45.463 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 15:39:45.394 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 15:39:45.426 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 15:39:45.461 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 15:39:33.912 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60072 10 6452 1 2025-10-29 15:40:34.319 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46304 10 6452 1 2025-10-29 15:41:34.726 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42616 10 6452 1 2025-10-29 15:37:51.876 00:05:00.383 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 15:42:35.139 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:57160 12 10375 1 2025-10-29 15:43:35.574 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54460 10 6452 1 2025-10-29 15:44:45.635 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 15:44:45.457 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 15:44:45.519 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 15:44:45.551 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 15:44:45.551 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 15:44:35.981 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:51976 10 6452 1 2025-10-29 15:40:51.879 00:05:00.378 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 15:45:36.356 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34310 10 6452 1 2025-10-29 15:46:36.762 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:46280 10 6452 1 2025-10-29 15:47:37.184 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51268 10 6452 1 2025-10-29 15:43:51.877 00:05:00.381 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 15:48:37.592 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35330 10 6452 1 2025-10-29 15:49:45.583 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 15:49:45.719 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 15:49:45.359 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 15:49:45.501 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 15:49:45.622 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 15:49:37.959 00:00:10.353 TCP 1.101.0.1:3000 -> 23.104.0.1:34748 10 6452 1 2025-10-29 15:50:38.402 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45170 10 6452 1 2025-10-29 15:46:51.880 00:05:00.376 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 15:51:38.769 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:57920 10 6452 1 2025-10-29 15:52:39.151 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51372 10 6452 1 2025-10-29 15:53:39.557 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37142 10 6452 1 2025-10-29 15:49:51.878 00:05:00.383 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 15:54:45.933 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 15:54:45.851 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 15:54:45.756 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 15:54:45.850 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 15:54:45.384 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 15:54:39.957 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45352 10 6452 1 2025-10-29 15:55:40.361 00:00:10.824 TCP 1.101.0.1:3000 -> 23.104.0.1:43952 10 6452 1 2025-10-29 15:56:41.229 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:43548 10 6452 1 2025-10-29 15:52:51.881 00:05:00.378 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 15:57:41.589 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43502 10 6452 1 Summary: total flows: 139, total bytes: 414731, total packets: 1017, avg bps: 891, avg pps: 0, avg bpp: 407 Time window: 2025-10-29 14:55:51 - 2025-10-29 15:57:52 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0010s User: 0.0041s Wall: 0.0030s flows/second: 46425.2 Runtime: 0.0030s