Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-30 03:58:43.133 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42506 10 6452 1 2025-10-30 03:59:43.532 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40008 10 6452 1 2025-10-30 04:00:00.928 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:00:01.012 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 04:00:01.105 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 04:00:01.211 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:00:01.210 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 04:00:43.937 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:38412 10 6452 1 2025-10-30 04:01:44.363 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:53646 10 6452 1 2025-10-30 04:02:44.724 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:45178 10 6452 1 2025-10-30 03:57:52.129 00:06:00.392 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 04:03:45.131 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54532 10 6452 1 2025-10-30 03:58:52.128 00:06:00.396 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 04:04:45.533 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35334 10 6452 1 2025-10-30 04:05:00.340 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 04:05:00.287 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:05:00.408 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:05:00.404 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 04:05:00.491 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 04:05:45.939 00:00:10.405 TCP 1.101.0.1:3000 -> 23.104.0.1:60178 10 6452 1 2025-10-30 04:06:46.357 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:48980 10 6452 1 2025-10-30 04:07:46.761 00:00:10.454 TCP 1.101.0.1:3000 -> 23.104.0.1:40414 12 10375 1 2025-10-30 04:08:47.253 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59394 10 6452 1 2025-10-30 04:04:52.132 00:06:00.392 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 04:10:00.642 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 04:10:00.398 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 04:10:00.405 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:10:00.561 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:10:00.476 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 04:09:47.666 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50292 10 6452 1 2025-10-30 04:05:52.129 00:06:00.397 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 04:10:48.110 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49484 10 6452 1 2025-10-30 04:11:48.514 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45930 10 6452 1 2025-10-30 04:12:48.923 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:40874 10 6452 1 2025-10-30 04:13:49.283 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59082 10 6452 1 2025-10-30 04:14:49.689 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60164 10 6452 1 2025-10-30 04:15:00.468 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 04:15:00.432 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:15:00.577 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:15:00.533 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 04:15:00.661 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 04:15:50.116 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53884 10 6452 1 2025-10-30 04:11:52.132 00:06:00.394 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 04:16:50.523 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59352 10 6452 1 2025-10-30 04:12:52.129 00:06:00.399 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 04:17:50.922 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:48274 10 6452 1 2025-10-30 04:18:51.334 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57484 10 6452 1 2025-10-30 04:20:00.716 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 04:20:00.643 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:20:00.633 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:20:00.706 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 04:20:00.759 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 04:19:51.739 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:46080 10 6452 1 2025-10-30 04:20:52.150 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60436 10 6452 1 2025-10-30 04:21:52.547 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46632 10 6452 1 2025-10-30 04:22:52.952 00:00:10.839 TCP 1.101.0.1:3000 -> 23.104.0.1:59674 10 6452 1 2025-10-30 04:18:52.133 00:06:00.396 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 04:23:53.828 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56258 10 6452 1 2025-10-30 04:19:52.132 00:06:00.400 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 04:25:00.777 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 04:25:00.806 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 04:25:00.647 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:25:00.693 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:25:00.597 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 04:24:54.194 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38690 10 6452 1 2025-10-30 04:25:54.598 00:00:10.956 TCP 1.101.0.1:3000 -> 23.104.0.1:41798 10 6452 1 2025-10-30 04:26:55.595 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58738 10 6452 1 2025-10-30 04:27:55.997 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43500 10 6452 1 2025-10-30 04:28:56.405 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51052 10 6452 1 2025-10-30 04:30:00.910 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 04:30:00.683 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:30:00.961 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:30:00.908 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 04:30:01.045 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 04:29:56.805 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:50744 10 6452 1 2025-10-30 04:25:52.135 00:06:00.395 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 04:30:57.184 00:00:12.306 TCP 1.101.0.1:3000 -> 23.104.0.1:40074 10 6452 1 2025-10-30 04:26:52.134 00:06:00.400 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 04:31:59.531 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58172 10 6452 1 2025-10-30 04:32:59.933 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:45696 10 6452 1 2025-10-30 04:34:00.318 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60052 10 6452 1 2025-10-30 04:35:00.723 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:35:00.660 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:35:00.872 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 04:35:00.743 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 04:35:00.991 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 04:35:00.722 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55336 10 6452 1 2025-10-30 04:36:01.123 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51070 10 6452 1 2025-10-30 04:37:01.525 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48146 10 6452 1 2025-10-30 04:32:52.137 00:06:00.401 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 04:38:01.928 00:00:10.430 TCP 1.101.0.1:3000 -> 23.104.0.1:39370 10 6452 1 2025-10-30 04:33:52.135 00:06:00.406 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 04:39:02.396 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:55720 10 6452 1 2025-10-30 04:40:01.631 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 04:40:00.916 00:00:00.042 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:40:01.283 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 04:40:01.548 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:40:01.288 00:00:00.029 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 04:40:02.795 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53726 10 6452 1 2025-10-30 04:41:03.204 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56776 10 6452 1 2025-10-30 04:42:03.605 00:00:11.248 TCP 1.101.0.1:3000 -> 23.104.0.1:43532 10 6452 1 2025-10-30 04:43:04.926 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:39558 10 6452 1 2025-10-30 04:44:05.337 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55496 10 6452 1 2025-10-30 04:39:52.140 00:06:00.400 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 04:45:01.348 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 04:45:01.150 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 04:45:01.200 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:45:01.266 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:45:01.211 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 04:45:05.741 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34664 10 6452 1 2025-10-30 04:40:52.137 00:06:00.406 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 04:46:06.110 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39718 10 6452 1 2025-10-30 04:47:06.529 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34130 10 6452 1 2025-10-30 04:48:06.940 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:51426 10 6452 1 2025-10-30 04:49:07.358 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:57286 10 6452 1 2025-10-30 04:50:01.402 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 04:50:01.261 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:50:01.320 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:50:01.237 00:00:00.030 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 04:50:01.315 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 04:50:07.758 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:47450 10 6452 1 2025-10-30 04:51:08.175 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34880 10 6452 1 2025-10-30 04:46:52.142 00:06:00.399 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 04:52:08.576 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:34350 10 6452 1 2025-10-30 04:47:52.141 00:06:00.403 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 04:53:08.945 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:46124 10 6452 1 2025-10-30 04:54:09.362 00:00:11.042 TCP 1.101.0.1:3000 -> 23.104.0.1:54924 10 6452 1 2025-10-30 04:55:01.312 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 04:55:01.447 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:55:01.425 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 04:55:01.421 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 04:55:01.507 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 04:55:10.444 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:53680 10 6452 1 2025-10-30 04:56:10.803 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37034 10 6452 1 2025-10-30 04:57:11.212 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32838 10 6452 1 2025-10-30 04:58:11.613 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48234 10 6452 1 Summary: total flows: 136, total bytes: 419939, total packets: 1006, avg bps: 925, avg pps: 0, avg bpp: 417 Time window: 2025-10-30 03:57:52 - 2025-10-30 04:58:21 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0030s User: 0.0030s Wall: 0.0024s flows/second: 57071.1 Runtime: 0.0024s