Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-29 19:59:02.603 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52114 10 6452 1 2025-10-29 19:59:50.793 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 19:59:50.563 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 19:59:50.945 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 19:59:50.874 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 19:55:51.947 00:05:00.408 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 19:59:51.027 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 20:00:03.007 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:49010 10 6452 1 2025-10-29 20:01:03.373 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36710 10 6452 1 2025-10-29 20:02:03.782 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38132 10 6452 1 2025-10-29 19:58:51.949 00:05:00.404 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 20:03:04.184 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60358 10 6452 1 2025-10-29 20:04:04.595 00:00:22.988 TCP 1.101.0.1:3000 -> 23.104.0.1:39072 10 6452 1 2025-10-29 20:04:50.759 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 20:04:50.811 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:04:50.812 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:04:50.601 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 20:04:50.895 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 20:05:17.621 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:34606 10 6452 1 2025-10-29 20:01:51.948 00:05:00.409 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 20:06:17.982 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38714 10 6452 1 2025-10-29 20:07:18.389 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38758 10 6452 1 2025-10-29 20:08:18.801 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58368 10 6452 1 2025-10-29 20:04:51.952 00:05:00.402 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 20:09:19.215 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:35870 10 6452 1 2025-10-29 20:09:50.943 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 20:09:50.861 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:09:50.854 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 20:09:50.725 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 20:09:50.661 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:10:19.625 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55370 11 6492 1 2025-10-29 20:11:20.032 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55448 10 6452 1 2025-10-29 20:07:51.953 00:05:00.406 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 20:12:20.432 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58368 10 6452 1 2025-10-29 20:13:20.835 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:52218 10 6452 1 2025-10-29 20:14:21.256 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48932 10 6452 1 2025-10-29 20:14:50.964 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 20:14:50.639 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:14:50.882 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:14:50.896 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 20:14:50.983 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 20:10:51.954 00:05:00.402 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 20:15:21.657 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34402 10 6452 1 2025-10-29 20:16:22.061 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48276 10 6452 1 2025-10-29 20:17:22.465 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35562 10 6452 1 2025-10-29 20:13:51.953 00:05:00.407 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 20:18:22.871 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49270 10 6452 1 2025-10-29 20:19:23.233 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50098 10 6452 1 2025-10-29 20:19:50.967 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 20:19:50.846 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:19:50.954 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:19:50.786 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 20:19:51.038 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 20:20:23.642 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52008 10 6452 1 2025-10-29 20:16:51.957 00:05:00.401 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 20:21:24.052 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38270 10 6452 1 2025-10-29 20:22:24.415 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38880 10 6452 1 2025-10-29 20:23:24.817 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41888 10 6452 1 2025-10-29 20:19:51.954 00:05:00.412 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 20:24:25.220 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55800 10 6452 1 2025-10-29 20:24:50.922 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 20:24:50.920 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 20:24:51.064 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:24:51.006 00:00:00.035 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:24:51.089 00:00:00.035 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 20:25:25.580 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40182 10 6452 1 2025-10-29 20:26:25.983 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47880 10 6452 1 2025-10-29 20:22:51.963 00:05:00.397 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 20:27:26.387 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58614 10 6452 1 2025-10-29 20:28:26.794 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43390 10 6452 1 2025-10-29 20:29:27.206 00:00:10.559 TCP 1.101.0.1:3000 -> 23.104.0.1:41406 10 6452 1 2025-10-29 20:29:51.175 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 20:29:51.133 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:29:51.231 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:29:50.995 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 20:29:51.314 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 20:25:51.963 00:05:00.402 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 20:30:27.806 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55272 10 6452 1 2025-10-29 20:31:28.209 00:00:15.515 TCP 1.101.0.1:3000 -> 23.104.0.1:51436 10 6452 1 2025-10-29 20:32:33.769 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38586 10 6452 1 2025-10-29 20:28:51.965 00:05:00.399 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 20:33:34.175 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55654 10 6452 1 2025-10-29 20:34:34.578 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:46022 10 6452 1 2025-10-29 20:34:51.405 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 20:34:51.300 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:34:51.405 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:34:51.356 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 20:34:51.488 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 20:35:34.978 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42260 10 6452 1 2025-10-29 20:31:51.962 00:05:00.405 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 20:36:35.381 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54190 10 6452 1 2025-10-29 20:37:35.744 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47296 10 6452 1 2025-10-29 20:38:36.153 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49578 10 6452 1 2025-10-29 20:34:51.965 00:05:00.399 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 20:39:36.564 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37474 10 6452 1 2025-10-29 20:39:51.476 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 20:39:51.449 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 20:39:51.423 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:39:51.393 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:39:51.392 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 20:40:36.968 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50400 10 6452 1 2025-10-29 20:41:37.340 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38248 10 6452 1 2025-10-29 20:37:51.962 00:05:00.406 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 20:42:37.700 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:36638 10 6452 1 2025-10-29 20:43:38.071 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60024 10 6452 1 2025-10-29 20:44:38.482 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39206 10 6452 1 2025-10-29 20:44:51.514 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 20:44:51.566 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 20:44:51.241 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:44:51.431 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:44:51.533 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 20:40:51.966 00:05:00.401 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 20:45:38.895 00:00:10.353 TCP 1.101.0.1:3000 -> 23.104.0.1:37276 10 6452 1 2025-10-29 20:46:39.304 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:39068 10 6452 1 2025-10-29 20:47:39.660 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34920 10 6452 1 2025-10-29 20:43:51.964 00:05:00.405 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 20:48:40.027 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55270 10 6452 1 2025-10-29 20:49:40.429 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47486 10 6452 1 2025-10-29 20:49:51.352 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:49:51.518 00:00:00.029 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:49:51.518 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 20:49:51.671 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 20:49:51.601 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 20:50:40.831 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:60060 10 6452 1 2025-10-29 20:46:51.968 00:05:00.399 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 20:51:41.209 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42832 10 6452 1 2025-10-29 20:52:41.614 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38288 10 6452 1 2025-10-29 20:49:51.966 00:05:00.404 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 20:53:42.016 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36946 10 6452 1 2025-10-29 20:54:51.721 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 20:54:51.645 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 20:54:51.382 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:54:42.420 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:51416 10 6452 1 2025-10-29 20:54:51.639 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 20:54:51.592 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 20:55:42.791 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43892 10 6452 1 2025-10-29 20:52:51.969 00:05:00.402 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 20:56:43.190 00:00:12.928 TCP 1.101.0.1:3000 -> 23.104.0.1:45318 10 6452 1 2025-10-29 20:57:46.159 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43772 10 6452 1 Summary: total flows: 139, total bytes: 410588, total packets: 1011, avg bps: 881, avg pps: 0, avg bpp: 406 Time window: 2025-10-29 19:55:51 - 2025-10-29 20:57:56 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0040s User: 0.0013s Wall: 0.0025s flows/second: 54660.4 Runtime: 0.0026s