Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-30 15:59:11.944 00:00:11.005 TCP 1.101.0.1:3000 -> 23.104.0.1:41496 10 6452 1 2025-10-30 16:00:14.698 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 16:00:14.567 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 16:00:14.707 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 16:00:14.702 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 16:00:14.789 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 16:00:12.986 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36726 10 6452 1 2025-10-30 16:01:13.351 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39428 10 6452 1 2025-10-30 16:02:13.755 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:51426 10 6452 1 2025-10-30 16:03:14.174 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55216 10 6452 1 2025-10-30 15:58:52.352 00:06:00.401 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 16:04:14.583 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49398 10 6452 1 2025-10-30 15:59:52.350 00:06:00.405 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 16:05:14.934 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 16:05:14.854 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 16:05:14.688 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 16:05:14.851 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 16:05:14.923 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 16:05:14.979 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51638 10 6452 1 2025-10-30 16:06:15.393 00:00:10.409 TCP 1.101.0.1:3000 -> 23.104.0.1:44522 10 6452 1 2025-10-30 16:07:15.860 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:41640 10 6452 1 2025-10-30 16:08:16.313 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43026 10 6452 1 2025-10-30 16:09:16.728 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:46048 10 6452 1 2025-10-30 16:10:14.859 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 16:10:14.622 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 16:10:14.863 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 16:10:14.857 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 16:10:14.946 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 16:10:17.143 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40808 10 6452 1 2025-10-30 16:05:52.353 00:06:00.401 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 16:11:17.550 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45094 10 6452 1 2025-10-30 16:06:52.350 00:06:00.407 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 16:12:17.951 00:00:10.617 TCP 1.101.0.1:3000 -> 23.104.0.1:36306 10 6452 1 2025-10-30 16:13:18.614 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:48258 10 6452 1 2025-10-30 16:14:18.979 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33730 10 6452 1 2025-10-30 16:15:15.156 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 16:15:14.901 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 16:15:14.834 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 16:15:15.073 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 16:15:14.904 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 16:15:19.398 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57398 10 6452 1 2025-10-30 16:16:19.796 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54246 10 6452 1 2025-10-30 16:17:20.204 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43562 10 6452 1 2025-10-30 16:12:52.355 00:06:00.401 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 16:18:20.617 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52924 10 6452 1 2025-10-30 16:13:52.352 00:06:00.407 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 16:19:21.020 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39446 10 6452 1 2025-10-30 16:20:14.941 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 16:20:14.863 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 16:20:14.937 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 16:20:15.142 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 16:20:15.020 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 16:20:21.418 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55546 10 6452 1 2025-10-30 16:21:21.823 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38840 10 6452 1 2025-10-30 16:22:22.222 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53396 10 6452 1 2025-10-30 16:23:22.628 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39576 10 6452 1 2025-10-30 16:24:23.032 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37968 10 6452 1 2025-10-30 16:19:52.355 00:06:00.403 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 16:25:15.827 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 16:25:15.702 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 16:25:15.933 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 16:25:15.819 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 16:25:16.018 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 16:25:23.393 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50602 10 6452 1 2025-10-30 16:20:52.353 00:06:00.408 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 16:26:23.799 00:00:10.593 TCP 1.101.0.1:3000 -> 23.104.0.1:60976 10 6452 1 2025-10-30 16:27:24.439 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42654 10 6452 1 2025-10-30 16:28:24.801 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34238 10 6452 1 2025-10-30 16:29:25.213 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51674 10 6452 1 2025-10-30 16:30:15.426 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 16:30:15.181 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 16:30:15.113 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 16:30:15.344 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 16:30:15.513 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 16:30:25.621 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60024 10 6452 1 2025-10-30 16:31:26.027 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55258 10 6452 1 2025-10-30 16:26:52.358 00:06:00.403 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 16:32:26.434 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:37218 10 6452 1 2025-10-30 16:27:52.355 00:06:00.408 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 16:33:26.840 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:43182 10 6452 1 2025-10-30 16:34:27.269 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43138 10 6452 1 2025-10-30 16:35:15.601 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 16:35:15.518 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 16:35:15.472 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 16:35:15.262 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 16:35:15.284 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 16:35:27.678 00:00:15.922 TCP 1.101.0.1:3000 -> 23.104.0.1:59338 10 6452 1 2025-10-30 16:36:33.646 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60364 10 6452 1 2025-10-30 16:37:34.062 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54644 10 6452 1 2025-10-30 16:38:34.464 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50360 10 6452 1 2025-10-30 16:33:52.361 00:06:00.401 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 16:39:34.872 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42676 10 6452 1 2025-10-30 16:34:52.359 00:06:00.409 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 16:40:15.920 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 16:40:15.611 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 16:40:15.921 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 16:40:16.005 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 16:40:15.990 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 16:40:35.279 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42506 10 6452 1 2025-10-30 16:41:35.644 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40886 10 6452 1 2025-10-30 16:42:36.052 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51506 11 6504 1 2025-10-30 16:43:36.465 00:00:10.749 TCP 1.101.0.1:3000 -> 23.104.0.1:35426 10 6452 1 2025-10-30 16:44:37.257 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55238 10 6452 1 2025-10-30 16:45:15.584 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 16:45:15.631 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 16:45:15.535 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 16:45:15.502 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 16:45:15.584 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 16:45:37.657 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49030 10 6452 1 2025-10-30 16:40:52.367 00:06:00.400 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 16:46:38.066 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53650 10 6452 1 2025-10-30 16:41:52.361 00:06:00.410 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 16:47:38.468 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45010 10 6452 1 2025-10-30 16:48:38.869 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56726 10 6452 1 2025-10-30 16:49:39.276 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:56790 10 6452 1 2025-10-30 16:50:15.791 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 16:50:15.630 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 16:50:15.533 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 16:50:15.709 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 16:50:15.754 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 16:50:39.634 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50676 10 6452 1 2025-10-30 16:51:40.037 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40786 10 6452 1 2025-10-30 16:52:40.430 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50166 10 6452 1 2025-10-30 16:47:52.371 00:06:00.398 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 16:48:52.370 00:06:00.402 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 16:53:40.833 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50916 10 6452 1 2025-10-30 16:54:41.235 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49958 10 6452 1 2025-10-30 16:55:15.873 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 16:55:15.875 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 16:55:15.643 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 16:55:15.790 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 16:55:15.867 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 16:55:41.636 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41904 10 6452 1 2025-10-30 16:56:42.042 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53516 10 6452 1 2025-10-30 16:57:42.451 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57594 10 6452 1 Summary: total flows: 135, total bytes: 409616, total packets: 995, avg bps: 925, avg pps: 0, avg bpp: 411 Time window: 2025-10-30 15:58:52 - 2025-10-30 16:57:52 Total flows processed: 135, passed: 135, Blocks skipped: 0, Bytes read: 14104 Sys: 0.0051s User: 0.0020s Wall: 0.0023s flows/second: 59210.6 Runtime: 0.0023s