Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-30 20:53:52.458 00:06:00.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 20:59:25.536 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:40960 10 6452 1 2025-10-30 21:00:20.794 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 21:00:20.815 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 21:00:20.563 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:00:20.711 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:00:20.720 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 21:00:25.983 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59034 10 6452 1 2025-10-30 21:01:26.394 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:39270 10 6452 1 2025-10-30 21:02:26.769 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:49782 10 6452 1 2025-10-30 21:03:27.176 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33910 10 6452 1 2025-10-30 21:04:27.575 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38198 10 6452 1 2025-10-30 20:59:52.464 00:06:00.381 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 21:05:20.713 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 21:05:20.653 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:05:20.939 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:05:20.788 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 21:05:21.023 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 21:05:27.979 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53478 10 6452 1 2025-10-30 21:00:52.463 00:06:00.385 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 21:06:28.393 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:48530 10 6452 1 2025-10-30 21:07:28.754 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51646 10 6452 1 2025-10-30 21:08:29.155 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60348 10 6452 1 2025-10-30 21:09:29.565 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52458 10 6452 1 2025-10-30 21:10:20.940 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 21:10:20.911 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:10:20.952 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:10:20.949 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 21:10:21.035 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 21:10:29.969 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:60160 10 6452 1 2025-10-30 21:11:30.386 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42088 10 6452 1 2025-10-30 21:06:52.465 00:06:00.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 21:12:30.785 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57798 10 6452 1 2025-10-30 21:07:52.462 00:06:00.386 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 21:13:31.188 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:59894 10 6452 1 2025-10-30 21:14:31.549 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33950 10 6452 1 2025-10-30 21:15:20.881 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:15:21.366 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 21:15:21.390 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 21:15:21.283 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:15:21.286 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 21:15:31.911 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39786 10 6452 1 2025-10-30 21:16:32.274 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57674 10 6452 1 2025-10-30 21:17:32.684 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36152 10 6452 1 2025-10-30 21:18:33.107 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52782 10 6452 1 2025-10-30 21:13:52.470 00:06:00.379 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 21:19:33.509 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45466 10 6452 1 2025-10-30 21:14:52.466 00:06:00.385 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 21:20:20.880 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:20:21.222 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 21:20:21.140 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:20:21.141 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 21:20:21.150 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 21:20:33.912 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44698 10 6452 1 2025-10-30 21:21:34.317 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:58608 10 6452 1 2025-10-30 21:22:34.725 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54620 10 6452 1 2025-10-30 21:23:35.140 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:57128 12 10375 1 2025-10-30 21:24:35.579 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47528 10 6452 1 2025-10-30 21:25:21.211 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 21:25:21.328 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 21:25:21.274 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:25:21.128 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:25:21.411 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 21:25:35.985 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:49810 10 6452 1 2025-10-30 21:20:52.472 00:06:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 21:26:36.402 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54870 10 6452 1 2025-10-30 21:21:52.469 00:06:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 21:27:36.806 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41690 10 6452 1 2025-10-30 21:28:37.214 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51824 10 6452 1 2025-10-30 21:29:37.623 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38020 10 6452 1 2025-10-30 21:30:21.405 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 21:30:21.323 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 21:30:21.174 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:30:21.323 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:30:21.369 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 21:30:38.028 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43296 10 6452 1 2025-10-30 21:31:38.432 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34720 10 6452 1 2025-10-30 21:32:38.832 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51824 10 6452 1 2025-10-30 21:27:52.473 00:06:00.384 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 21:33:39.232 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:35160 12 10375 1 2025-10-30 21:28:52.471 00:06:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 21:34:39.713 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47352 10 6452 1 2025-10-30 21:35:21.738 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 21:35:21.786 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:35:21.757 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:35:21.742 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 21:35:21.839 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 21:35:40.117 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56036 10 6452 1 2025-10-30 21:36:40.520 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40052 10 6452 1 2025-10-30 21:37:40.925 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57030 10 6452 1 2025-10-30 21:38:41.333 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41306 10 6452 1 2025-10-30 21:34:52.475 00:06:00.389 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 21:39:41.697 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48406 10 6452 1 2025-10-30 21:40:21.965 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 21:40:21.882 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:40:21.580 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 21:40:21.871 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 21:40:21.572 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:35:52.474 00:06:00.393 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 21:40:42.107 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58682 10 6452 1 2025-10-30 21:41:42.512 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37508 10 6452 1 2025-10-30 21:42:42.913 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41030 10 6452 1 2025-10-30 21:43:43.315 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56834 10 6452 1 2025-10-30 21:44:43.683 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47678 10 6452 1 2025-10-30 21:45:21.693 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 21:45:21.465 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 21:45:21.503 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:45:21.611 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:45:21.608 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 21:45:44.114 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49084 10 6452 1 2025-10-30 21:46:44.520 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59148 10 6452 1 2025-10-30 21:41:52.479 00:06:00.385 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 21:47:44.924 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40926 10 6452 1 2025-10-30 21:42:52.477 00:06:00.391 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 21:48:45.337 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37712 10 6452 1 2025-10-30 21:49:45.742 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36516 10 6452 1 2025-10-30 21:50:21.899 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 21:50:21.736 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 21:50:21.685 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:50:21.817 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:50:21.812 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 21:50:46.109 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45508 10 6452 1 2025-10-30 21:51:46.517 00:00:10.949 TCP 1.101.0.1:3000 -> 23.104.0.1:55556 10 6452 1 2025-10-30 21:52:47.506 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34442 10 6452 1 2025-10-30 21:48:52.484 00:06:00.386 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-30 21:53:47.913 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44434 12 6556 1 2025-10-30 21:49:52.480 00:06:00.391 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-30 21:54:48.317 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53588 10 6452 1 2025-10-30 21:55:21.584 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:55:21.847 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-30 21:55:21.517 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-30 21:55:21.634 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-30 21:55:21.929 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-30 21:55:48.719 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:50192 10 6452 1 2025-10-30 21:56:49.116 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:37846 10 6452 1 2025-10-30 21:57:49.527 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:57260 10 6452 1 Summary: total flows: 136, total bytes: 418375, total packets: 1014, avg bps: 869, avg pps: 0, avg bpp: 412 Time window: 2025-10-30 20:53:52 - 2025-10-30 21:57:59 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0058s User: 0.0012s Wall: 0.0027s flows/second: 50333.1 Runtime: 0.0027s