Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-30 06:53:52.192 00:06:00.397 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 06:59:06.141 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59888 10 6452 1 2025-10-30 07:00:03.675 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 07:00:03.752 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 07:00:03.918 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 07:00:03.864 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 07:00:04.001 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 07:00:06.546 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:39748 10 6452 1 2025-10-30 07:01:06.957 00:00:25.682 TCP 1.101.0.1:3000 -> 23.104.0.1:36362 10 6452 1 2025-10-30 07:02:22.721 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:48254 10 6452 1 2025-10-30 07:03:23.141 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41230 10 6452 1 2025-10-30 07:04:23.545 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43122 12 6556 1 2025-10-30 06:59:52.195 00:06:00.392 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 07:05:04.019 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 07:05:03.922 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 07:05:03.947 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 07:05:03.936 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 07:05:04.068 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 07:05:23.941 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:55480 10 6452 1 2025-10-30 07:00:52.193 00:06:00.396 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 07:06:24.360 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51934 10 6452 1 2025-10-30 07:07:24.765 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46648 10 6452 1 2025-10-30 07:08:25.171 00:00:10.678 TCP 1.101.0.1:3000 -> 23.104.0.1:33750 10 6452 1 2025-10-30 07:09:25.886 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44396 12 6556 1 2025-10-30 07:10:04.148 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 07:10:04.179 00:00:00.015 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 07:10:04.093 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 07:10:04.090 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 07:10:04.176 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 07:10:26.292 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33598 10 6452 1 2025-10-30 07:11:26.658 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:34350 10 6452 1 2025-10-30 07:06:52.196 00:06:00.396 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 07:12:27.029 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60586 10 6452 1 2025-10-30 07:07:52.194 00:06:00.401 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 07:13:27.391 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59658 10 6452 1 2025-10-30 07:14:27.793 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37542 10 6452 1 2025-10-30 07:15:04.747 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 07:15:04.666 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 07:15:04.440 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 07:15:04.664 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 07:15:04.491 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 07:15:28.200 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54510 10 6452 1 2025-10-30 07:16:28.563 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49984 10 6452 1 2025-10-30 07:17:28.966 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34656 10 6452 1 2025-10-30 07:18:29.365 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60382 10 6452 1 2025-10-30 07:13:52.198 00:06:00.397 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 07:19:29.767 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45570 10 6452 1 2025-10-30 07:14:52.195 00:06:00.402 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 07:20:04.187 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 07:20:04.105 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 07:20:04.342 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 07:20:04.111 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 07:20:04.010 00:00:00.036 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 07:20:30.181 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49718 10 6452 1 2025-10-30 07:21:30.549 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59042 10 6452 1 2025-10-30 07:22:30.962 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39872 10 6452 1 2025-10-30 07:23:31.372 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52666 10 6452 1 2025-10-30 07:24:31.775 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59508 10 6452 1 2025-10-30 07:25:04.665 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 07:25:04.447 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 07:25:04.311 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 07:25:04.584 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 07:25:04.304 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 07:25:32.185 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43284 10 6452 1 2025-10-30 07:20:52.199 00:06:00.396 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 07:26:32.589 00:00:10.460 TCP 1.101.0.1:3000 -> 23.104.0.1:35558 10 6452 1 2025-10-30 07:21:52.198 00:06:00.401 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 07:27:33.113 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49414 10 6452 1 2025-10-30 07:28:33.518 00:00:17.408 TCP 1.101.0.1:3000 -> 23.104.0.1:50474 10 6452 1 2025-10-30 07:29:40.992 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43126 10 6452 1 2025-10-30 07:30:04.626 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 07:30:04.625 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 07:30:04.506 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 07:30:04.544 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 07:30:04.625 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 07:30:41.400 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49274 10 6452 1 2025-10-30 07:31:41.801 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49640 10 6452 1 2025-10-30 07:32:42.207 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42532 10 6452 1 2025-10-30 07:27:52.202 00:06:00.396 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 07:28:52.200 00:06:00.400 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 07:33:42.609 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38174 10 6452 1 2025-10-30 07:34:43.015 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60944 10 6452 1 2025-10-30 07:35:04.610 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 07:35:04.255 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 07:35:04.736 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 07:35:04.459 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 07:35:04.819 00:00:00.033 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 07:35:43.418 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58730 10 6452 1 2025-10-30 07:36:43.826 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35890 10 6452 1 2025-10-30 07:37:44.230 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56992 10 6452 1 2025-10-30 07:38:44.631 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46154 10 6452 1 2025-10-30 07:34:52.204 00:06:00.394 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 07:39:45.040 00:00:11.260 TCP 1.101.0.1:3000 -> 23.104.0.1:59296 10 6452 1 2025-10-30 07:40:04.685 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 07:40:04.615 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 07:40:04.574 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 07:40:04.603 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 07:40:04.597 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 07:35:52.202 00:06:00.399 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 07:40:46.342 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56042 10 6452 1 2025-10-30 07:41:46.746 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:32790 10 6452 1 2025-10-30 07:42:47.145 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52572 10 6452 1 2025-10-30 07:43:47.546 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:55172 10 6452 1 2025-10-30 07:45:05.359 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 07:44:47.919 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60378 10 6452 1 2025-10-30 07:45:05.111 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 07:45:04.710 00:00:00.034 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 07:45:05.277 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 07:45:05.189 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 07:45:48.323 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35818 10 6452 1 2025-10-30 07:41:52.205 00:06:00.393 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 07:46:48.724 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:50582 10 6452 1 2025-10-30 07:42:52.203 00:06:00.400 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 07:47:49.148 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:50140 12 10369 1 2025-10-30 07:48:49.628 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52066 10 6452 1 2025-10-30 07:49:50.029 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:33642 10 6452 1 2025-10-30 07:50:04.978 00:00:00.012 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 07:50:04.976 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 07:50:04.630 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 07:50:04.886 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 07:50:04.811 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 07:50:50.384 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56936 10 6452 1 2025-10-30 07:51:50.781 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46144 10 6452 1 2025-10-30 07:52:51.186 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:48826 10 6452 1 2025-10-30 07:48:52.212 00:06:00.388 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 07:53:51.597 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43430 10 6452 1 2025-10-30 07:49:52.210 00:06:00.397 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 07:55:05.027 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 07:55:05.060 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 07:55:04.905 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 07:54:52.003 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38136 10 6452 1 2025-10-30 07:55:04.945 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 07:55:05.098 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 07:55:52.411 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:43986 10 6452 1 2025-10-30 07:56:52.828 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:58080 10 6452 1 2025-10-30 07:57:53.193 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50648 10 6452 1 Summary: total flows: 136, total bytes: 414550, total packets: 1014, avg bps: 861, avg pps: 0, avg bpp: 408 Time window: 2025-10-30 06:53:52 - 2025-10-30 07:58:03 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0054s User: 0.0000s Wall: 0.0014s flows/second: 97358.8 Runtime: 0.0014s