Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-30 16:58:42.849 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:51638 10 6452 1 2025-10-30 16:59:43.277 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56052 10 6452 1 2025-10-30 16:54:52.375 00:06:00.397 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 17:00:16.485 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 17:00:16.411 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 17:00:16.207 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 17:00:16.402 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 17:00:16.375 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 17:00:43.679 00:00:10.563 TCP 1.101.0.1:3000 -> 23.104.0.1:44528 10 6452 1 2025-10-30 16:55:52.372 00:06:00.402 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 17:01:44.292 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39114 10 6452 1 2025-10-30 17:02:44.692 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37230 10 6452 1 2025-10-30 17:03:45.062 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:32966 10 6452 1 2025-10-30 17:04:45.423 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54014 10 6452 1 2025-10-30 17:05:15.934 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 17:05:15.948 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 17:05:15.956 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 17:05:16.031 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 17:05:16.120 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 17:05:45.826 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42056 10 6452 1 2025-10-30 17:01:52.374 00:06:00.397 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 17:06:46.233 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55898 10 6452 1 2025-10-30 17:02:52.372 00:06:00.402 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 17:07:46.637 00:00:10.910 TCP 1.101.0.1:3000 -> 23.104.0.1:40438 10 6452 1 2025-10-30 17:08:47.589 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:49264 10 6452 1 2025-10-30 17:09:47.959 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53490 10 6452 1 2025-10-30 17:10:16.154 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 17:10:16.163 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 17:10:16.081 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 17:10:16.072 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 17:10:16.113 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 17:10:48.364 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56216 10 6452 1 2025-10-30 17:11:48.769 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:37238 10 6452 1 2025-10-30 17:12:49.181 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:43504 10 6452 1 2025-10-30 17:08:52.376 00:06:00.398 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 17:13:49.545 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:60850 12 10375 1 2025-10-30 17:09:52.376 00:06:00.402 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 17:14:50.021 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42508 10 6452 1 2025-10-30 17:15:16.619 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 17:15:16.500 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 17:15:16.501 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 17:15:16.592 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 17:15:16.583 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 17:15:50.420 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42432 10 6452 1 2025-10-30 17:16:50.786 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54234 10 6452 1 2025-10-30 17:17:51.192 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35124 10 6452 1 2025-10-30 17:18:51.587 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43580 10 6452 1 2025-10-30 17:19:51.995 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33876 10 6452 1 2025-10-30 17:20:16.459 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 17:20:16.304 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 17:20:16.317 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 17:20:16.378 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 17:20:16.381 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 17:15:52.381 00:06:00.395 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 17:20:52.358 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45720 10 6452 1 2025-10-30 17:16:52.379 00:06:00.400 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 17:21:52.719 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40100 10 6452 1 2025-10-30 17:22:53.134 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:46224 10 6452 1 2025-10-30 17:23:53.515 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:53938 10 6452 1 2025-10-30 17:24:53.878 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58858 10 6452 1 2025-10-30 17:25:16.292 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 17:25:16.317 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 17:25:16.364 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 17:25:16.359 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 17:25:16.448 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 17:25:54.288 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:50976 10 6452 1 2025-10-30 17:26:54.660 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49906 10 6452 1 2025-10-30 17:22:52.382 00:06:00.397 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 17:27:55.067 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38540 10 6452 1 2025-10-30 17:23:52.381 00:06:00.402 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 17:28:55.476 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42456 10 6452 1 2025-10-30 17:29:55.881 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55352 10 6452 1 2025-10-30 17:30:16.642 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 17:30:16.470 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 17:30:16.486 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 17:30:16.560 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 17:30:16.295 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 17:30:56.283 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:48556 10 6452 1 2025-10-30 17:31:56.647 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36138 10 6452 1 2025-10-30 17:32:57.069 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36320 10 6452 1 2025-10-30 17:33:57.474 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:38466 10 6452 1 2025-10-30 17:29:52.392 00:06:00.392 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 17:34:57.841 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:59894 10 6452 1 2025-10-30 17:35:16.556 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 17:35:16.586 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 17:35:16.259 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 17:35:16.474 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 17:35:16.544 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 17:30:52.388 00:06:00.397 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 17:35:58.227 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:58504 10 6452 1 2025-10-30 17:36:58.593 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55958 10 6452 1 2025-10-30 17:37:58.996 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41302 10 6452 1 2025-10-30 17:38:59.406 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:46742 12 10375 1 2025-10-30 17:39:59.880 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51224 10 6452 1 2025-10-30 17:40:17.092 00:00:00.030 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 17:40:16.845 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 17:40:16.666 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 17:40:17.013 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 17:40:16.731 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 17:41:00.291 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:38620 10 6452 1 2025-10-30 17:36:52.393 00:06:00.390 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 17:42:00.648 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48652 10 6452 1 2025-10-30 17:37:52.391 00:06:00.396 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 17:43:01.061 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60846 10 6452 1 2025-10-30 17:44:01.465 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:48654 12 10375 1 2025-10-30 17:45:16.996 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 17:45:01.945 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34698 10 6452 1 2025-10-30 17:45:16.616 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 17:45:16.777 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 17:45:16.909 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 17:45:16.903 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 17:46:02.352 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60878 10 6452 1 2025-10-30 17:47:02.754 00:00:11.448 TCP 1.101.0.1:3000 -> 23.104.0.1:45548 10 6452 1 2025-10-30 17:48:04.240 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:55504 10 6452 1 2025-10-30 17:43:52.396 00:06:00.389 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 17:49:04.645 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:52648 10 6452 1 2025-10-30 17:44:52.392 00:06:00.396 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 17:50:05.022 00:00:10.674 TCP 1.101.0.1:3000 -> 23.104.0.1:46080 10 6452 1 2025-10-30 17:50:16.933 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 17:50:16.717 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 17:50:16.792 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 17:50:16.939 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 17:50:16.874 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 17:51:05.731 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:58346 10 6452 1 2025-10-30 17:52:06.143 00:00:10.556 TCP 1.101.0.1:3000 -> 23.104.0.1:58782 10 6452 1 2025-10-30 17:53:06.738 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47442 10 6452 1 2025-10-30 17:54:07.143 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:50630 10 6452 1 2025-10-30 17:55:16.973 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 17:55:07.533 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48420 10 6452 1 2025-10-30 17:55:17.052 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 17:55:16.847 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 17:55:16.889 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 17:55:17.048 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 17:50:52.397 00:06:00.389 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 17:56:07.934 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:53760 10 6452 1 2025-10-30 17:51:52.394 00:06:00.394 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 17:57:08.320 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36440 10 6452 1 2025-10-30 17:58:08.722 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:38168 10 6452 1 Summary: total flows: 138, total bytes: 429507, total packets: 1038, avg bps: 902, avg pps: 0, avg bpp: 413 Time window: 2025-10-30 16:54:52 - 2025-10-30 17:58:19 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0021s User: 0.0031s Wall: 0.0022s flows/second: 63127.3 Runtime: 0.0022s