Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-09 14:59:37.352 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42420 10 6452 1 2025-10-09 15:00:06.814 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 15:00:06.714 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 15:00:06.549 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 15:00:06.732 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 15:00:06.657 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 15:00:37.755 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:58110 10 6452 1 2025-10-09 14:57:41.711 00:05:00.369 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 15:01:38.169 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57350 10 6452 1 2025-10-09 15:02:38.569 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49306 10 6452 1 2025-10-09 15:03:38.976 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35716 10 6452 1 2025-10-09 15:00:41.713 00:05:00.366 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 15:04:39.383 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37540 10 6452 1 2025-10-09 15:05:07.233 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 15:05:07.236 00:00:00.056 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 15:05:06.895 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 15:05:07.259 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 15:05:07.341 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 15:05:39.785 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37916 10 6452 1 2025-10-09 15:06:40.188 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33768 10 6452 1 2025-10-09 15:03:41.710 00:05:00.372 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 15:07:40.590 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:52048 10 6452 1 2025-10-09 15:08:40.987 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60002 10 6452 1 2025-10-09 15:09:41.397 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55610 10 6452 1 2025-10-09 15:10:06.848 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 15:10:06.849 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 15:10:06.747 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 15:10:06.896 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 15:10:06.765 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 15:06:41.714 00:05:00.367 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 15:10:41.794 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43214 10 6452 1 2025-10-09 15:11:42.197 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:56308 10 6452 1 2025-10-09 15:12:42.609 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49678 10 6452 1 2025-10-09 15:09:41.711 00:05:00.373 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 15:13:43.011 00:00:10.972 TCP 1.101.0.1:3000 -> 23.104.0.1:55568 12 6556 1 2025-10-09 15:14:44.023 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37984 10 6452 1 2025-10-09 15:15:07.064 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 15:15:06.972 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 15:15:06.701 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 15:15:06.904 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 15:15:06.986 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 15:15:44.427 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:32892 10 6452 1 2025-10-09 15:12:41.716 00:05:00.367 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 15:16:44.835 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:57716 10 6452 1 2025-10-09 15:17:45.256 00:00:10.783 TCP 1.101.0.1:3000 -> 23.104.0.1:46686 10 6452 1 2025-10-09 15:18:46.093 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:32968 10 6452 1 2025-10-09 15:15:41.713 00:05:00.372 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 15:19:46.497 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33844 10 6452 1 2025-10-09 15:20:07.114 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 15:20:07.204 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 15:20:07.071 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 15:20:06.981 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 15:20:07.063 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 15:20:46.904 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60014 12 6556 1 2025-10-09 15:21:47.317 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53016 10 6452 1 2025-10-09 15:18:41.716 00:05:00.367 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 15:22:47.722 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60326 10 6452 1 2025-10-09 15:23:48.138 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:41882 10 6452 1 2025-10-09 15:24:48.494 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48442 10 6452 1 2025-10-09 15:25:07.290 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 15:25:07.411 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 15:25:07.411 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 15:25:06.931 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 15:25:07.208 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 15:21:41.714 00:05:00.373 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 15:25:48.899 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52508 12 6556 1 2025-10-09 15:26:49.309 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:41222 10 6452 1 2025-10-09 15:27:49.670 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34190 10 6452 1 2025-10-09 15:24:41.717 00:05:00.368 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 15:28:50.101 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56194 10 6452 1 2025-10-09 15:29:50.503 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40016 10 6452 1 2025-10-09 15:30:07.409 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 15:30:07.334 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 15:30:07.092 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 15:30:07.244 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 15:30:07.327 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 15:30:50.868 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42322 10 6452 1 2025-10-09 15:27:41.715 00:05:00.374 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 15:31:51.234 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:55276 10 6452 1 2025-10-09 15:32:51.636 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49744 10 6452 1 2025-10-09 15:33:52.039 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60276 10 6452 1 2025-10-09 15:30:41.719 00:05:00.368 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 15:34:52.441 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:52764 12 10375 1 2025-10-09 15:35:07.288 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 15:35:07.352 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 15:35:07.439 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 15:35:07.415 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 15:35:07.498 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 15:35:52.919 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57636 10 6452 1 2025-10-09 15:36:53.343 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46194 10 6452 1 2025-10-09 15:33:41.716 00:05:00.374 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 15:37:53.743 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33242 10 6452 1 2025-10-09 15:38:54.158 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:46198 12 6556 1 2025-10-09 15:39:54.583 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59826 10 6452 1 2025-10-09 15:40:07.469 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 15:40:07.528 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 15:40:07.562 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 15:40:07.427 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 15:40:07.551 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 15:36:41.720 00:05:00.368 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 15:40:54.982 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:58906 10 6452 1 2025-10-09 15:41:55.408 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60428 10 6452 1 2025-10-09 15:42:55.814 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35962 10 6452 1 2025-10-09 15:39:41.717 00:05:00.375 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 15:43:56.219 00:00:10.475 TCP 1.101.0.1:3000 -> 23.104.0.1:45940 10 6452 1 2025-10-09 15:44:56.736 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47638 10 6452 1 2025-10-09 15:45:07.476 00:00:00.020 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 15:45:07.476 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 15:45:07.389 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 15:45:07.719 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 15:45:07.801 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 15:45:57.148 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35654 10 6452 1 2025-10-09 15:42:41.721 00:05:00.377 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 15:46:57.553 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35570 10 6452 1 2025-10-09 15:47:57.957 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:46666 10 6452 1 2025-10-09 15:48:58.327 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48182 10 6452 1 2025-10-09 15:45:41.719 00:05:00.374 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 15:50:07.812 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 15:50:07.406 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 15:50:07.725 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 15:50:07.677 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 15:50:07.730 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 15:49:58.725 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:57950 10 6452 1 2025-10-09 15:50:59.138 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52858 10 6452 1 2025-10-09 15:51:59.540 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49710 10 6452 1 2025-10-09 15:48:41.721 00:05:00.369 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 15:52:59.943 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45530 10 6452 1 2025-10-09 15:54:00.355 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:50580 10 6452 1 2025-10-09 15:55:07.744 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 15:55:07.839 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 15:55:07.697 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 15:55:07.838 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 15:55:07.920 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 15:55:00.717 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:50572 10 6452 1 2025-10-09 15:51:41.721 00:05:00.374 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 15:56:01.124 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:56766 10 6452 1 2025-10-09 15:57:01.524 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50824 10 6452 1 2025-10-09 15:58:01.927 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:52462 10 6452 1 2025-10-09 15:54:41.723 00:05:00.368 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 Summary: total flows: 139, total bytes: 414887, total packets: 1020, avg bps: 892, avg pps: 0, avg bpp: 406 Time window: 2025-10-09 14:57:41 - 2025-10-09 15:59:42 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0047s User: 0.0000s Wall: 0.0020s flows/second: 67902.2 Runtime: 0.0021s