Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-30 00:58:45.719 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50156 10 6452 1 2025-10-30 00:59:56.704 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 00:59:56.695 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 00:59:56.363 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 00:59:56.622 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 00:59:56.710 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 00:59:46.135 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56306 10 6452 1 2025-10-30 00:55:52.081 00:06:00.379 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 01:00:46.546 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48786 10 6452 1 2025-10-30 00:56:52.078 00:06:00.385 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 01:01:46.952 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44980 10 6452 1 2025-10-30 01:02:47.367 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49148 10 6452 1 2025-10-30 01:03:47.772 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:53022 10 6452 1 2025-10-30 01:04:56.725 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 01:04:56.742 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 01:04:56.818 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:04:56.643 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:04:56.557 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 01:04:48.187 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47246 10 6452 1 2025-10-30 01:05:48.594 00:00:18.377 TCP 1.101.0.1:3000 -> 23.104.0.1:35414 10 6452 1 2025-10-30 01:06:57.012 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35798 10 6452 1 2025-10-30 01:02:52.083 00:06:00.379 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 01:07:57.417 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54620 10 6452 1 2025-10-30 01:03:52.080 00:06:00.384 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 01:08:57.819 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50994 10 6452 1 2025-10-30 01:09:56.665 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 01:09:56.813 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:09:56.855 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:09:56.789 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 01:09:56.938 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 01:09:58.224 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:43320 10 6452 1 2025-10-30 01:10:58.579 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38794 10 6452 1 2025-10-30 01:11:58.983 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:56746 10 6452 1 2025-10-30 01:12:59.393 00:00:10.406 TCP 1.101.0.1:3000 -> 23.104.0.1:53198 12 10375 1 2025-10-30 01:13:59.836 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:38288 10 6452 1 2025-10-30 01:09:52.085 00:06:00.381 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 01:14:56.914 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 01:14:56.926 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:14:56.794 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:14:57.059 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 01:14:56.877 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 01:15:00.258 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33738 10 6452 1 2025-10-30 01:10:52.083 00:06:00.385 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 01:16:00.668 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43002 10 6452 1 2025-10-30 01:17:01.104 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:49300 10 6452 1 2025-10-30 01:18:01.475 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40050 10 6452 1 2025-10-30 01:19:01.883 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:53216 10 6452 1 2025-10-30 01:19:56.946 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 01:19:56.970 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:19:57.010 00:00:00.042 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:19:57.088 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 01:19:57.093 00:00:00.043 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 01:20:02.258 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51006 10 6452 1 2025-10-30 01:21:02.662 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:44898 10 6452 1 2025-10-30 01:16:52.087 00:06:00.381 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 01:22:03.109 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34986 10 6452 1 2025-10-30 01:17:52.086 00:06:00.384 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 01:23:03.470 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47518 10 6452 1 2025-10-30 01:24:03.830 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56168 10 6452 1 2025-10-30 01:24:57.129 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 01:24:56.976 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:24:57.172 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:24:57.179 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 01:24:57.255 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 01:25:04.237 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54082 10 6452 1 2025-10-30 01:26:04.648 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:47760 10 6452 1 2025-10-30 01:27:05.009 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:48292 10 6452 1 2025-10-30 01:28:05.403 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:42406 12 10369 1 2025-10-30 01:23:52.088 00:06:00.379 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 01:29:05.877 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37752 10 6452 1 2025-10-30 01:24:52.086 00:06:00.385 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 01:29:57.260 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 01:29:57.298 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 01:29:57.259 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:29:57.178 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:29:57.185 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 01:30:06.279 00:00:10.654 TCP 1.101.0.1:3000 -> 23.104.0.1:32874 10 6452 1 2025-10-30 01:31:06.960 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54904 10 6452 1 2025-10-30 01:32:07.366 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36020 10 6452 1 2025-10-30 01:33:07.768 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56800 12 6556 1 2025-10-30 01:34:08.179 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40074 10 6452 1 2025-10-30 01:34:57.541 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 01:34:56.942 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:34:57.424 00:00:00.016 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:34:57.540 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 01:34:57.507 00:00:00.016 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 01:35:08.590 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49950 10 6452 1 2025-10-30 01:30:52.089 00:06:00.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 01:36:08.992 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60704 10 6452 1 2025-10-30 01:31:52.086 00:06:00.386 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 01:37:09.411 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33634 10 6452 1 2025-10-30 01:38:09.810 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47248 10 6452 1 2025-10-30 01:39:10.210 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50016 10 6452 1 2025-10-30 01:39:57.461 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 01:39:57.139 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:39:57.454 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:39:57.613 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 01:39:57.535 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 01:40:10.607 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51560 10 6452 1 2025-10-30 01:41:11.010 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:60586 10 6452 1 2025-10-30 01:42:11.380 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41518 10 6452 1 2025-10-30 01:37:52.091 00:06:00.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 01:43:11.792 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45894 10 6452 1 2025-10-30 01:38:52.089 00:06:00.385 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 01:44:12.196 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38768 10 6452 1 2025-10-30 01:44:57.351 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 01:44:57.368 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:44:57.569 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:44:57.445 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 01:44:57.653 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 01:45:12.602 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:40354 10 6452 1 2025-10-30 01:46:12.977 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50590 10 6452 1 2025-10-30 01:47:13.383 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34342 10 6452 1 2025-10-30 01:48:13.796 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:47078 10 6452 1 2025-10-30 01:49:14.177 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57192 10 6452 1 2025-10-30 01:44:52.094 00:06:00.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 01:49:58.002 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 01:49:57.877 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 01:49:57.728 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:49:57.918 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:49:57.877 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 01:50:14.581 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49556 10 6452 1 2025-10-30 01:45:52.090 00:06:00.386 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 01:51:14.986 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:52654 10 6452 1 2025-10-30 01:52:15.351 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56814 10 6452 1 2025-10-30 01:53:15.749 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37462 10 6452 1 2025-10-30 01:54:16.147 00:00:14.787 TCP 1.101.0.1:3000 -> 23.104.0.1:38540 10 6452 1 2025-10-30 01:54:57.879 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 01:54:57.715 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 01:54:57.648 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:54:57.797 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 01:54:57.804 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 01:55:20.986 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54190 10 6452 1 2025-10-30 01:56:21.396 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56986 10 6452 1 2025-10-30 01:51:52.094 00:06:00.381 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 01:57:21.801 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33142 10 6452 1 2025-10-30 01:52:52.093 00:06:00.385 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 01:58:22.206 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58654 10 6452 1 Summary: total flows: 138, total bytes: 425682, total packets: 1038, avg bps: 900, avg pps: 0, avg bpp: 410 Time window: 2025-10-30 00:55:52 - 2025-10-30 01:58:52 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0035s User: 0.0012s Wall: 0.0024s flows/second: 56398.1 Runtime: 0.0025s