Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-30 10:59:34.328 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59372 10 6452 1 2025-10-30 11:00:08.814 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 11:00:08.631 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 11:00:08.708 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 11:00:08.642 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 11:00:08.791 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 11:00:34.731 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60214 10 6452 1 2025-10-30 11:01:35.143 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59712 10 6452 1 2025-10-30 11:02:35.548 00:00:11.200 TCP 1.101.0.1:3000 -> 23.104.0.1:39092 11 6504 1 2025-10-30 10:57:52.265 00:06:00.399 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 11:03:36.791 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57540 10 6452 1 2025-10-30 10:58:52.262 00:06:00.405 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 11:04:37.193 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55682 10 6452 1 2025-10-30 11:05:08.730 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 11:05:08.721 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 11:05:08.730 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 11:05:08.806 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 11:05:08.816 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 11:05:37.598 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:44280 10 6452 1 2025-10-30 11:06:37.956 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43124 10 6452 1 2025-10-30 11:07:38.362 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:39976 10 6452 1 2025-10-30 11:08:38.724 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50788 10 6452 1 2025-10-30 11:09:39.139 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37918 10 6452 1 2025-10-30 11:04:52.266 00:06:00.400 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 11:10:08.846 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 11:10:08.828 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 11:10:08.690 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 11:10:08.762 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 11:10:08.939 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 11:10:39.507 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54630 10 6452 1 2025-10-30 11:05:52.263 00:06:00.405 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 11:11:39.915 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34566 10 6452 1 2025-10-30 11:12:40.316 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60512 10 6452 1 2025-10-30 11:13:40.720 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:43114 10 6452 1 2025-10-30 11:14:41.140 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38260 10 6452 1 2025-10-30 11:15:09.427 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 11:15:09.362 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 11:15:09.208 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 11:15:09.346 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 11:15:09.350 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 11:15:41.548 00:00:11.067 TCP 1.101.0.1:3000 -> 23.104.0.1:53714 10 6452 1 2025-10-30 11:11:52.267 00:06:00.402 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 11:16:42.650 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38258 10 6452 1 2025-10-30 11:12:52.265 00:06:00.408 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 11:17:43.078 00:00:17.187 TCP 1.101.0.1:3000 -> 23.104.0.1:53500 10 6452 1 2025-10-30 11:18:50.306 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33382 10 6452 1 2025-10-30 11:19:50.715 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48792 10 6452 1 2025-10-30 11:20:09.117 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 11:20:09.118 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 11:20:08.959 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 11:20:08.909 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 11:20:09.199 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 11:20:51.129 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54860 10 6452 1 2025-10-30 11:21:51.538 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40488 10 6452 1 2025-10-30 11:22:51.938 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:34098 10 6452 1 2025-10-30 11:18:52.268 00:06:00.403 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 11:23:52.317 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47574 10 6452 1 2025-10-30 11:19:52.265 00:06:00.408 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 11:24:52.719 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44840 10 6452 1 2025-10-30 11:25:09.074 00:00:00.050 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 11:25:09.272 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 11:25:09.253 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 11:25:08.992 00:00:00.051 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 11:25:09.267 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 11:25:53.131 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:34040 10 6452 1 2025-10-30 11:26:53.494 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47794 10 6452 1 2025-10-30 11:27:53.898 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42872 10 6452 1 2025-10-30 11:28:54.306 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:35986 10 6452 1 2025-10-30 11:29:54.667 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48078 10 6452 1 2025-10-30 11:30:09.602 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 11:30:09.541 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 11:30:09.535 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 11:30:09.538 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 11:30:09.619 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 11:25:52.269 00:06:00.404 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 11:30:55.094 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49982 10 6452 1 2025-10-30 11:26:52.267 00:06:00.408 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 11:31:55.461 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:54922 10 6452 1 2025-10-30 11:32:55.829 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:46488 10 6452 1 2025-10-30 11:33:56.245 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48334 10 6452 1 2025-10-30 11:35:09.491 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 11:35:09.505 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 11:35:09.365 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 11:35:09.406 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 11:34:56.652 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33250 10 6452 1 2025-10-30 11:35:09.540 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 11:35:57.065 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:38840 10 6452 1 2025-10-30 11:36:57.428 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36740 10 6452 1 2025-10-30 11:32:52.270 00:06:00.404 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 11:37:57.830 00:00:10.431 TCP 1.101.0.1:3000 -> 23.104.0.1:48134 10 6452 1 2025-10-30 11:33:52.267 00:06:00.410 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 11:38:58.272 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39256 10 6452 1 2025-10-30 11:40:09.633 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 11:40:09.497 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 11:40:09.398 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 11:40:09.550 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 11:40:09.597 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 11:39:58.678 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56116 10 6452 1 2025-10-30 11:40:59.042 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:40606 10 6452 1 2025-10-30 11:41:59.414 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:36662 10 6452 1 2025-10-30 11:42:59.843 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:48914 10 6452 1 2025-10-30 11:44:00.257 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46606 10 6452 1 2025-10-30 11:39:52.271 00:06:00.405 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 11:45:09.720 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 11:45:00.663 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:60482 10 6452 1 2025-10-30 11:45:09.688 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 11:45:09.512 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 11:45:09.638 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 11:45:09.641 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 11:40:52.268 00:06:00.410 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 11:46:01.048 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:42906 10 6452 1 2025-10-30 11:47:01.417 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:34910 10 6452 1 2025-10-30 11:48:01.859 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:60918 10 6452 1 2025-10-30 11:49:02.237 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41400 10 6452 1 2025-10-30 11:50:10.583 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 11:50:10.430 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 11:50:10.793 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 11:50:10.577 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 11:50:10.876 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 11:50:02.643 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35244 10 6452 1 2025-10-30 11:51:03.054 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54048 10 6452 1 2025-10-30 11:46:52.272 00:06:00.406 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 11:52:03.459 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51064 10 6452 1 2025-10-30 11:47:52.270 00:06:00.411 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 11:53:03.859 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:51610 10 6452 1 2025-10-30 11:54:04.274 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57152 10 6452 1 2025-10-30 11:55:09.862 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 11:55:09.535 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 11:55:09.697 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 11:55:09.698 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 11:55:09.779 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 11:55:04.638 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58650 10 6452 1 2025-10-30 11:56:05.064 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57704 10 6452 1 2025-10-30 11:57:05.467 00:00:10.650 TCP 1.101.0.1:3000 -> 23.104.0.1:58758 10 6452 1 2025-10-30 11:58:06.155 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33884 10 6452 1 Summary: total flows: 135, total bytes: 409616, total packets: 995, avg bps: 904, avg pps: 0, avg bpp: 411 Time window: 2025-10-30 10:57:52 - 2025-10-30 11:58:16 Total flows processed: 135, passed: 135, Blocks skipped: 0, Bytes read: 14104 Sys: 0.0046s User: 0.0018s Wall: 0.0018s flows/second: 75881.9 Runtime: 0.0018s