Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-30 04:53:52.143 00:06:00.399 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 04:59:12.018 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36130 10 6452 1 2025-10-30 04:54:52.141 00:06:00.405 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 05:00:01.480 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 05:00:01.402 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 05:00:01.425 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:00:01.398 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:00:01.464 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 05:00:12.417 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:51766 10 6452 1 2025-10-30 05:01:12.793 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:47380 10 6452 1 2025-10-30 05:02:13.210 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56052 10 6452 1 2025-10-30 05:03:13.583 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45822 10 6452 1 2025-10-30 05:04:13.985 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33490 10 6452 1 2025-10-30 05:05:01.658 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 05:05:01.432 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:05:01.608 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:05:01.554 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 05:05:01.691 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 05:05:14.352 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:60356 10 6452 1 2025-10-30 05:00:52.144 00:06:00.400 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 05:06:14.767 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:47674 10 6452 1 2025-10-30 05:01:52.141 00:06:00.405 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 05:07:15.138 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55204 10 6452 1 2025-10-30 05:08:15.545 00:00:11.172 TCP 1.101.0.1:3000 -> 23.104.0.1:33902 10 6452 1 2025-10-30 05:09:16.757 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:37390 10 6452 1 2025-10-30 05:10:01.820 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 05:10:01.810 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 05:10:01.689 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:10:01.739 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:10:01.652 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 05:10:17.155 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:37876 10 6452 1 2025-10-30 05:11:17.558 00:00:10.433 TCP 1.101.0.1:3000 -> 23.104.0.1:48216 10 6452 1 2025-10-30 05:12:18.032 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35442 10 6452 1 2025-10-30 05:07:52.148 00:06:00.400 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 05:13:18.438 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39692 10 6452 1 2025-10-30 05:08:52.145 00:06:00.406 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 05:14:18.842 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:57248 10 6452 1 2025-10-30 05:15:01.946 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 05:15:01.852 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:15:01.945 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:15:01.826 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 05:15:02.029 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 05:15:19.222 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56700 10 6452 1 2025-10-30 05:16:19.622 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57814 10 6452 1 2025-10-30 05:17:20.034 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59206 10 6452 1 2025-10-30 05:18:20.436 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58016 10 6452 1 2025-10-30 05:19:20.835 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:36024 10 6452 1 2025-10-30 05:14:52.148 00:06:00.401 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 05:20:01.283 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 05:20:01.134 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 05:20:01.097 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:20:01.200 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:20:01.172 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 05:20:21.242 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38194 10 6452 1 2025-10-30 05:15:52.147 00:06:00.405 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 05:21:21.652 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:41054 10 6452 1 2025-10-30 05:22:22.068 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:49134 10 6452 1 2025-10-30 05:23:22.496 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40880 10 6452 1 2025-10-30 05:24:22.899 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:36380 10 6452 1 2025-10-30 05:25:02.048 00:00:00.019 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 05:25:01.949 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 05:25:01.970 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:25:01.964 00:00:00.019 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:25:01.958 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 05:25:23.268 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:32886 10 6452 1 2025-10-30 05:26:23.672 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58122 10 6452 1 2025-10-30 05:21:52.149 00:06:00.402 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 05:27:24.100 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33546 10 6452 1 2025-10-30 05:22:52.150 00:06:00.403 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 05:28:24.500 00:00:11.279 TCP 1.101.0.1:3000 -> 23.104.0.1:33710 10 6452 1 2025-10-30 05:29:25.819 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:49776 10 6452 1 2025-10-30 05:30:02.217 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 05:30:02.289 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:30:02.218 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:30:02.287 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 05:30:02.301 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 05:30:26.186 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50896 10 6452 1 2025-10-30 05:31:26.595 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50970 10 6452 1 2025-10-30 05:32:26.996 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:36796 10 6452 1 2025-10-30 05:33:27.395 00:00:10.449 TCP 1.101.0.1:3000 -> 23.104.0.1:43478 12 10369 1 2025-10-30 05:28:52.152 00:06:00.401 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 05:34:27.884 00:00:10.672 TCP 1.101.0.1:3000 -> 23.104.0.1:55508 10 6452 1 2025-10-30 05:29:52.148 00:06:00.407 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 05:35:02.258 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 05:35:01.886 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:35:02.175 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:35:02.104 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 05:35:02.225 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 05:35:28.591 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:36236 10 6452 1 2025-10-30 05:36:28.997 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52608 10 6452 1 2025-10-30 05:37:29.401 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43166 10 6452 1 2025-10-30 05:38:29.802 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45226 10 6452 1 2025-10-30 05:39:30.204 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43236 10 6452 1 2025-10-30 05:40:02.325 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 05:40:02.342 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:40:02.394 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:40:02.326 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 05:40:02.477 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 05:40:30.578 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60766 10 6452 1 2025-10-30 05:35:52.152 00:06:00.401 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 05:41:30.983 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:45136 10 6452 1 2025-10-30 05:36:52.149 00:06:00.407 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 05:42:31.363 00:00:10.861 TCP 1.101.0.1:3000 -> 23.104.0.1:33248 12 10369 1 2025-10-30 05:43:32.261 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:60164 10 6452 1 2025-10-30 05:44:32.648 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58518 10 6452 1 2025-10-30 05:45:02.576 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 05:45:02.292 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 05:45:02.328 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:45:02.494 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:45:02.375 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 05:45:33.007 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:54416 10 6452 1 2025-10-30 05:46:33.404 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51978 10 6452 1 2025-10-30 05:47:33.810 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50788 10 6452 1 2025-10-30 05:42:52.154 00:06:00.401 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 05:48:34.215 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55460 10 6452 1 2025-10-30 05:43:52.157 00:06:00.400 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 05:49:34.616 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46468 10 6452 1 2025-10-30 05:50:03.284 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 05:50:03.201 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:50:03.164 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:50:03.352 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 05:50:03.247 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 05:50:35.028 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35718 10 6452 1 2025-10-30 05:51:35.444 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43716 10 6452 1 2025-10-30 05:52:35.850 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:40496 10 6452 1 2025-10-30 05:53:36.282 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51992 12 6556 1 2025-10-30 05:54:36.696 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60656 10 6452 1 2025-10-30 05:49:52.165 00:06:00.391 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 05:55:02.722 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 05:55:02.583 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:55:02.484 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 05:55:02.665 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 05:55:02.566 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 05:55:37.069 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:55294 10 6452 1 2025-10-30 05:50:52.165 00:06:00.395 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 05:56:37.433 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38992 10 6452 1 2025-10-30 05:57:37.838 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56384 10 6452 1 2025-10-30 05:58:38.249 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56504 10 6452 1 Summary: total flows: 138, total bytes: 425676, total packets: 1038, avg bps: 873, avg pps: 0, avg bpp: 410 Time window: 2025-10-30 04:53:52 - 2025-10-30 05:58:48 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0042s User: 0.0008s Wall: 0.0021s flows/second: 64729.8 Runtime: 0.0021s