Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-30 13:53:52.307 00:06:00.408 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 13:59:07.842 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:43410 10 6452 1 2025-10-30 14:00:12.194 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 14:00:12.116 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 14:00:12.317 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 14:00:12.327 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 14:00:12.400 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 14:00:08.265 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44604 10 6452 1 2025-10-30 14:01:08.676 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:56256 10 6452 1 2025-10-30 14:02:09.069 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46952 10 6452 1 2025-10-30 14:03:09.469 00:00:10.429 TCP 1.101.0.1:3000 -> 23.104.0.1:50254 11 6504 1 2025-10-30 14:04:09.941 00:00:10.466 TCP 1.101.0.1:3000 -> 23.104.0.1:41486 10 6452 1 2025-10-30 13:59:52.313 00:06:00.402 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 14:05:12.449 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 14:05:12.276 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 14:05:12.321 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 14:05:12.454 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 14:05:12.406 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 14:05:10.436 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53856 10 6452 1 2025-10-30 14:00:52.311 00:06:00.407 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 14:06:10.843 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:43850 10 6452 1 2025-10-30 14:07:11.232 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53878 10 6452 1 2025-10-30 14:08:11.630 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44244 10 6452 1 2025-10-30 14:09:11.995 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35354 10 6452 1 2025-10-30 14:10:12.564 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 14:10:12.346 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 14:10:12.561 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 14:10:12.593 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 14:10:12.643 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 14:10:12.402 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:51642 10 6452 1 2025-10-30 14:11:12.762 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:48008 10 6452 1 2025-10-30 14:06:52.314 00:06:00.402 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 14:12:13.132 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60220 10 6452 1 2025-10-30 14:07:52.311 00:06:00.407 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 14:13:13.532 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:33356 10 6452 1 2025-10-30 14:14:13.947 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:57370 10 6452 1 2025-10-30 14:15:12.582 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 14:15:12.687 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 14:15:12.458 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 14:15:12.499 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 14:15:12.505 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 14:15:14.366 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:55192 10 6452 1 2025-10-30 14:16:14.726 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:51272 10 6452 1 2025-10-30 14:17:15.141 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:46240 10 6452 1 2025-10-30 14:18:15.623 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:51324 12 10375 1 2025-10-30 14:13:52.315 00:06:00.402 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 14:19:16.112 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58490 10 6452 1 2025-10-30 14:14:52.312 00:06:00.407 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 14:20:12.652 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 14:20:12.598 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 14:20:12.649 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 14:20:12.795 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 14:20:12.732 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 14:20:16.512 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44560 10 6452 1 2025-10-30 14:21:16.916 00:00:10.411 TCP 1.101.0.1:3000 -> 23.104.0.1:57696 10 6452 1 2025-10-30 14:22:17.366 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51092 10 6452 1 2025-10-30 14:23:17.731 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:54288 10 6452 1 2025-10-30 14:24:18.109 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35190 10 6452 1 2025-10-30 14:25:12.818 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 14:25:12.865 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 14:25:12.691 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 14:25:12.734 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 14:25:12.534 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 14:25:18.512 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41782 10 6452 1 2025-10-30 14:20:52.316 00:06:00.405 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 14:26:18.916 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57710 10 6452 1 2025-10-30 14:21:52.313 00:06:00.411 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 14:27:19.318 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:55880 10 6452 1 2025-10-30 14:28:19.732 00:00:10.450 TCP 1.101.0.1:3000 -> 23.104.0.1:37624 12 10375 1 2025-10-30 14:29:20.224 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57286 10 6452 1 2025-10-30 14:30:13.058 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 14:30:12.881 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 14:30:12.572 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 14:30:12.975 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 14:30:12.883 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 14:30:20.629 00:00:13.879 TCP 1.101.0.1:3000 -> 23.104.0.1:41894 10 6452 1 2025-10-30 14:31:24.546 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34620 10 6452 1 2025-10-30 14:32:24.910 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56782 10 6452 1 2025-10-30 14:27:52.319 00:06:00.404 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 14:33:25.312 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43840 10 6452 1 2025-10-30 14:28:52.316 00:06:00.409 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 14:34:25.718 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43768 10 6452 1 2025-10-30 14:35:13.177 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 14:35:13.006 00:00:00.050 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 14:35:13.104 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 14:35:13.094 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 14:35:13.173 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 14:35:26.118 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:56816 10 6452 1 2025-10-30 14:36:26.576 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49484 10 6452 1 2025-10-30 14:37:26.976 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50620 10 6452 1 2025-10-30 14:38:27.381 00:00:10.768 TCP 1.101.0.1:3000 -> 23.104.0.1:40340 10 6452 1 2025-10-30 14:39:28.189 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54108 10 6452 1 2025-10-30 14:34:52.322 00:06:00.405 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 14:40:13.272 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 14:40:13.191 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 14:40:13.006 00:00:00.045 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 14:40:13.190 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 14:40:13.193 00:00:00.029 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 14:40:28.601 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:44282 10 6452 1 2025-10-30 14:35:52.319 00:06:00.411 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 14:41:28.995 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:44208 10 6452 1 2025-10-30 14:42:29.393 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:32824 10 6452 1 2025-10-30 14:43:29.800 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:43092 10 6452 1 2025-10-30 14:44:30.174 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:51426 10 6452 1 2025-10-30 14:45:13.214 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 14:45:13.066 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 14:45:13.214 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 14:45:13.293 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 14:45:13.296 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 14:45:30.532 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51902 10 6452 1 2025-10-30 14:46:30.938 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:52382 10 6452 1 2025-10-30 14:41:52.324 00:06:00.404 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 14:47:31.358 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:37966 10 6452 1 2025-10-30 14:42:52.325 00:06:00.406 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 14:48:31.767 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45762 10 6452 1 2025-10-30 14:49:32.173 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50006 10 6452 1 2025-10-30 14:50:13.373 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 14:50:13.055 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 14:50:13.319 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 14:50:13.311 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 14:50:13.402 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 14:50:32.573 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45270 10 6452 1 2025-10-30 14:51:32.985 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:51934 10 6452 1 2025-10-30 14:52:33.364 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36220 10 6452 1 2025-10-30 14:53:33.766 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:35420 12 10375 1 2025-10-30 14:48:52.328 00:06:00.402 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 14:54:34.250 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33828 10 6452 1 2025-10-30 14:49:52.325 00:06:00.407 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 14:55:13.894 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 14:55:13.783 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 14:55:13.337 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 14:55:13.811 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 14:55:13.814 00:00:00.032 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 14:55:34.612 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54290 10 6452 1 2025-10-30 14:56:35.019 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37404 10 6452 1 2025-10-30 14:57:35.420 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58932 10 6452 1 2025-10-30 14:58:35.825 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33372 10 6452 1 Summary: total flows: 137, total bytes: 428698, total packets: 1025, avg bps: 880, avg pps: 0, avg bpp: 418 Time window: 2025-10-30 13:53:52 - 2025-10-30 14:58:46 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0042s User: 0.0021s Wall: 0.0027s flows/second: 50680.9 Runtime: 0.0027s