Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-30 05:59:38.664 00:00:11.052 TCP 1.101.0.1:3000 -> 23.104.0.1:50218 10 6452 1 2025-10-30 06:00:02.662 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 06:00:02.667 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:00:02.737 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:00:02.736 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 06:00:02.820 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 06:00:39.759 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:42252 10 6452 1 2025-10-30 06:01:40.197 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46860 10 6452 1 2025-10-30 05:56:52.169 00:06:00.390 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 06:02:40.599 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43578 10 6452 1 2025-10-30 05:57:52.167 00:06:00.395 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 06:03:41.007 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48518 10 6452 1 2025-10-30 06:04:41.411 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41472 10 6452 1 2025-10-30 06:05:02.722 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 06:05:02.677 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:05:02.729 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:05:02.810 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 06:05:02.811 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 06:05:41.818 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33210 10 6452 1 2025-10-30 06:06:42.228 00:00:12.663 TCP 1.101.0.1:3000 -> 23.104.0.1:39494 10 6452 1 2025-10-30 06:07:44.932 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:53890 10 6452 1 2025-10-30 06:08:45.317 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41098 10 6452 1 2025-10-30 06:03:52.169 00:06:00.393 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 06:04:52.167 00:06:00.399 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 06:09:45.720 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52314 10 6452 1 2025-10-30 06:10:02.737 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 06:10:02.764 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:10:02.909 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:10:02.740 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 06:10:02.991 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 06:10:46.132 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42614 10 6452 1 2025-10-30 06:11:46.536 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36862 10 6452 1 2025-10-30 06:12:46.942 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:36246 10 6452 1 2025-10-30 06:13:47.354 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33176 10 6452 1 2025-10-30 06:14:47.759 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:49008 10 6452 1 2025-10-30 06:15:02.698 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 06:15:02.758 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:15:03.048 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:15:02.929 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 06:15:03.131 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 06:10:52.171 00:06:00.395 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 06:15:48.195 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33372 10 6452 1 2025-10-30 06:11:52.168 00:06:00.399 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 06:16:48.602 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55754 10 6452 1 2025-10-30 06:17:49.012 00:00:10.512 TCP 1.101.0.1:3000 -> 23.104.0.1:44824 14 14292 1 2025-10-30 06:18:49.560 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40512 10 6452 1 2025-10-30 06:19:49.921 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49114 10 6452 1 2025-10-30 06:20:03.131 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 06:20:02.845 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:20:02.929 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:20:03.063 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 06:20:03.013 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 06:20:50.340 00:00:10.846 TCP 1.101.0.1:3000 -> 23.104.0.1:59012 10 6452 1 2025-10-30 06:21:51.231 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:43010 10 6452 1 2025-10-30 06:17:52.173 00:06:00.402 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 06:22:51.703 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45404 10 6452 1 2025-10-30 06:18:52.176 00:06:00.403 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 06:23:52.114 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37840 10 6452 1 2025-10-30 06:25:03.166 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 06:25:03.160 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 06:25:02.882 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:25:03.082 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:25:03.091 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 06:24:52.519 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37286 10 6452 1 2025-10-30 06:25:52.880 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55836 10 6452 1 2025-10-30 06:26:53.281 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:52742 10 6452 1 2025-10-30 06:27:53.645 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56486 10 6452 1 2025-10-30 06:28:54.057 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59682 10 6452 1 2025-10-30 06:24:52.186 00:06:00.391 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 06:30:03.623 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 06:30:03.610 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 06:29:54.460 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54558 10 6452 1 2025-10-30 06:30:03.491 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:30:03.542 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:30:03.580 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 06:25:52.185 00:06:00.396 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 06:30:54.860 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:52878 10 6452 1 2025-10-30 06:31:55.277 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45622 10 6452 1 2025-10-30 06:32:55.681 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:48798 10 6452 1 2025-10-30 06:33:56.113 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50180 10 6452 1 2025-10-30 06:35:03.318 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 06:35:03.063 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:35:03.452 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:35:03.331 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 06:35:03.535 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 06:34:56.520 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33362 10 6452 1 2025-10-30 06:35:56.919 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41178 10 6452 1 2025-10-30 06:31:52.187 00:06:00.391 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 06:36:57.324 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:53974 10 6452 1 2025-10-30 06:32:52.184 00:06:00.397 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 06:37:57.737 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36974 10 6452 1 2025-10-30 06:38:58.151 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58474 10 6452 1 2025-10-30 06:40:03.550 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 06:40:03.386 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:40:03.502 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:40:03.507 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 06:40:03.586 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 06:39:58.554 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43538 10 6452 1 2025-10-30 06:40:58.957 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58138 10 6452 1 2025-10-30 06:41:59.365 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45400 10 6452 1 2025-10-30 06:42:59.765 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58500 10 6452 1 2025-10-30 06:38:52.189 00:06:00.392 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 06:44:00.177 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49012 10 6452 1 2025-10-30 06:39:52.187 00:06:00.397 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 06:45:03.677 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 06:45:03.676 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 06:45:03.676 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:45:03.593 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:45:03.681 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 06:45:00.581 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:52466 10 6452 1 2025-10-30 06:46:00.979 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:54238 10 6452 1 2025-10-30 06:47:01.358 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:51612 10 6452 1 2025-10-30 06:48:01.749 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45408 10 6452 1 2025-10-30 06:49:02.152 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58024 10 6452 1 2025-10-30 06:50:03.885 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 06:50:03.969 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 06:50:03.831 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:50:04.092 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:50:04.174 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 06:50:02.522 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43060 10 6452 1 2025-10-30 06:45:52.192 00:06:00.390 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 06:51:02.928 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:43562 10 6452 1 2025-10-30 06:46:52.191 00:06:00.395 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 06:52:03.372 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59662 10 6452 1 2025-10-30 06:53:03.772 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52476 10 6452 1 2025-10-30 06:54:04.181 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58906 10 6452 1 2025-10-30 06:55:03.849 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 06:55:03.671 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 06:55:03.952 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:55:03.766 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 06:55:03.770 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 06:55:04.549 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46996 11 6492 1 2025-10-30 06:56:04.915 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44834 10 6452 1 2025-10-30 06:57:05.316 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48964 10 6452 1 2025-10-30 06:52:52.194 00:06:00.392 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 06:58:05.721 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:42654 10 6452 1 Summary: total flows: 136, total bytes: 418305, total packets: 1013, avg bps: 899, avg pps: 0, avg bpp: 412 Time window: 2025-10-30 05:56:52 - 2025-10-30 06:58:52 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0041s User: 0.0010s Wall: 0.0015s flows/second: 90615.6 Runtime: 0.0015s