Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-05 17:59:27.671 00:00:11.474 TCP 1.101.0.1:3000 -> 23.104.0.1:43148 10 6452 1 2025-10-05 18:00:29.179 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53244 10 6452 1 2025-10-05 17:56:39.625 00:05:00.434 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-05 18:01:29.588 00:00:12.702 TCP 1.101.0.1:3000 -> 23.104.0.1:54920 10 6452 1 2025-10-05 17:57:39.623 00:05:00.441 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-05 18:02:32.328 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34446 10 6452 1 2025-10-05 18:03:14.923 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 18:03:14.847 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 18:03:14.845 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 18:03:14.790 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 18:03:14.841 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 18:03:32.728 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34644 10 6452 1 2025-10-05 18:04:33.136 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37632 10 6452 1 2025-10-05 18:05:33.536 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45074 10 6452 1 2025-10-05 18:02:39.630 00:05:00.432 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-05 18:06:33.899 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45762 12 6556 1 2025-10-05 18:07:34.305 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45576 10 6452 1 2025-10-05 18:03:39.625 00:05:00.440 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-05 18:08:14.835 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 18:08:14.723 00:00:00.029 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 18:08:14.921 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 18:08:14.848 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 18:08:15.004 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 18:08:34.668 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:46870 10 6452 1 2025-10-05 18:09:35.029 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54252 10 6452 1 2025-10-05 18:10:35.438 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44886 10 6452 1 2025-10-05 18:11:35.843 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:32856 10 6452 1 2025-10-05 18:08:39.630 00:05:00.440 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-05 18:12:36.265 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37970 10 6452 1 2025-10-05 18:13:14.793 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 18:13:14.812 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 18:13:14.986 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 18:13:15.073 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 18:13:15.156 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 18:09:39.628 00:05:00.445 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-05 18:13:36.672 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35132 10 6452 1 2025-10-05 18:14:37.111 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60290 10 6452 1 2025-10-05 18:15:37.513 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49154 10 6452 1 2025-10-05 18:16:37.917 00:00:10.427 TCP 1.101.0.1:3000 -> 23.104.0.1:46374 11 6504 1 2025-10-05 18:17:38.382 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51980 10 6452 1 2025-10-05 18:18:15.216 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 18:18:15.046 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 18:18:15.051 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 18:18:15.053 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 18:18:15.298 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 18:14:39.630 00:05:00.441 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-05 18:18:38.783 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:55842 12 10369 1 2025-10-05 18:15:39.628 00:05:00.446 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-05 18:19:39.267 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50010 10 6452 1 2025-10-05 18:20:39.666 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55564 10 6452 1 2025-10-05 18:21:40.033 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:60198 10 6452 1 2025-10-05 18:22:40.430 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:48498 10 6452 1 2025-10-05 18:23:15.112 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 18:23:15.179 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 18:23:15.126 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 18:23:15.181 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 18:23:15.264 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 18:23:40.816 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52018 10 6452 1 2025-10-05 18:20:39.632 00:05:00.440 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-05 18:24:41.223 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:33680 10 6452 1 2025-10-05 18:21:39.630 00:05:00.445 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-05 18:25:41.633 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33444 10 6452 1 2025-10-05 18:26:42.038 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:54980 10 6452 1 2025-10-05 18:27:42.405 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38950 10 6452 1 2025-10-05 18:28:14.973 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 18:28:15.214 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 18:28:15.340 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 18:28:15.209 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 18:28:15.292 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 18:28:42.808 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:39214 10 6452 1 2025-10-05 18:29:43.227 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51458 10 6452 1 2025-10-05 18:26:39.635 00:05:00.440 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-05 18:30:43.630 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54304 10 6452 1 2025-10-05 18:27:39.632 00:05:00.463 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-05 18:31:44.038 00:00:25.644 TCP 1.101.0.1:3000 -> 23.104.0.1:46934 10 6452 1 2025-10-05 18:32:59.747 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:45830 10 6452 1 2025-10-05 18:33:15.451 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 18:33:15.301 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 18:33:15.419 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 18:33:15.338 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 18:33:15.367 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 18:34:00.118 00:00:10.316 TCP 1.101.0.1:3000 -> 23.104.0.1:33568 10 6452 1 2025-10-05 18:35:00.473 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60112 10 6452 1 2025-10-05 18:36:00.879 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51164 10 6452 1 2025-10-05 18:32:39.636 00:05:00.441 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-05 18:37:01.285 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39684 10 6452 1 2025-10-05 18:33:39.633 00:05:00.446 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-05 18:38:01.684 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37960 10 6452 1 2025-10-05 18:38:15.573 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 18:38:15.348 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 18:38:15.064 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 18:38:15.491 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 18:38:15.349 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 18:39:02.105 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35812 10 6452 1 2025-10-05 18:40:02.508 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57416 10 6452 1 2025-10-05 18:41:02.916 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39694 10 6452 1 2025-10-05 18:42:03.322 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39534 10 6452 1 2025-10-05 18:38:39.639 00:05:00.439 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-05 18:43:03.727 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36766 12 6556 1 2025-10-05 18:43:15.678 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 18:43:15.545 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 18:43:15.478 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 18:43:15.635 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 18:43:15.717 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 18:39:39.637 00:05:00.443 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-05 18:44:04.140 00:00:10.572 TCP 1.101.0.1:3000 -> 23.104.0.1:44280 10 6452 1 2025-10-05 18:45:04.755 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:49544 10 6452 1 2025-10-05 18:46:05.120 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48352 10 6452 1 2025-10-05 18:47:05.526 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41938 10 6452 1 2025-10-05 18:48:15.835 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 18:48:15.800 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 18:48:15.625 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 18:48:15.652 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 18:48:15.753 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 18:48:05.894 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:42560 10 6452 1 2025-10-05 18:44:39.642 00:05:00.438 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-05 18:49:06.272 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34700 10 6452 1 2025-10-05 18:45:39.639 00:05:00.444 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-05 18:50:06.681 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49916 10 6452 1 2025-10-05 18:51:07.106 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37204 10 6452 1 2025-10-05 18:52:07.510 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59890 10 6452 1 2025-10-05 18:53:15.849 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 18:53:07.873 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49316 10 6452 1 2025-10-05 18:53:15.768 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 18:53:15.775 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 18:53:15.766 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 18:53:15.739 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 18:54:08.279 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47912 10 6452 1 2025-10-05 18:50:39.643 00:05:00.439 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-05 18:55:08.679 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55406 10 6452 1 2025-10-05 18:51:39.640 00:05:00.444 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-05 18:56:09.128 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47964 10 6452 1 2025-10-05 18:57:09.534 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54056 10 6452 1 2025-10-05 18:58:16.533 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 18:58:16.581 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 18:58:16.442 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 18:58:16.464 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 18:58:16.546 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 18:58:09.935 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:59422 10 6452 1 Summary: total flows: 139, total bytes: 414725, total packets: 1017, avg bps: 896, avg pps: 0, avg bpp: 407 Time window: 2025-10-05 17:56:39 - 2025-10-05 18:58:20 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0027s User: 0.0018s Wall: 0.0027s flows/second: 51827.6 Runtime: 0.0027s