Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-09 18:59:35.993 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49848 10 6452 1 2025-10-09 19:00:11.438 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 19:00:11.352 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 19:00:11.421 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 19:00:11.375 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:00:11.354 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:00:36.402 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44024 10 6452 1 2025-10-09 18:57:41.770 00:05:00.396 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 19:01:36.806 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:42124 10 6452 1 2025-10-09 19:02:37.175 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:52890 10 6452 1 2025-10-09 19:03:37.575 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41940 10 6452 1 2025-10-09 19:00:41.773 00:05:00.392 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 19:04:37.984 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44728 10 6452 1 2025-10-09 19:05:11.372 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 19:05:11.633 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 19:05:11.412 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 19:05:11.471 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:05:11.286 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:05:38.389 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52588 10 6452 1 2025-10-09 19:06:38.787 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49832 10 6452 1 2025-10-09 19:03:41.772 00:05:00.398 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 19:07:39.197 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33804 10 6452 1 2025-10-09 19:08:39.565 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53468 10 6452 1 2025-10-09 19:09:39.971 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53672 10 6452 1 2025-10-09 19:10:11.726 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 19:10:11.643 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:10:11.476 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 19:10:11.572 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 19:10:11.429 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:06:41.773 00:05:00.393 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 19:10:40.378 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46112 10 6452 1 2025-10-09 19:11:40.741 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:47420 10 6452 1 2025-10-09 19:12:41.109 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52596 10 6452 1 2025-10-09 19:09:41.775 00:05:00.396 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 19:13:41.518 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38180 10 6452 1 2025-10-09 19:14:41.921 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40220 10 6452 1 2025-10-09 19:15:11.539 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 19:15:11.778 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 19:15:11.820 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 19:15:11.697 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:15:11.455 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:15:42.334 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39934 10 6452 1 2025-10-09 19:12:41.779 00:05:00.391 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 19:16:42.737 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52570 10 6452 1 2025-10-09 19:17:43.143 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:36936 10 6452 1 2025-10-09 19:18:43.502 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:37144 10 6452 1 2025-10-09 19:15:41.777 00:05:00.395 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 19:19:43.926 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:49814 10 6452 1 2025-10-09 19:20:11.747 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 19:20:11.886 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 19:20:11.554 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:20:11.889 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:20:11.973 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 19:20:44.298 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57970 10 6452 1 2025-10-09 19:21:44.663 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55762 10 6452 1 2025-10-09 19:18:41.781 00:05:00.389 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 19:22:45.096 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57292 10 6452 1 2025-10-09 19:23:45.500 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50834 10 6452 1 2025-10-09 19:24:45.904 00:00:10.406 TCP 1.101.0.1:3000 -> 23.104.0.1:39262 12 10375 1 2025-10-09 19:25:12.212 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 19:25:12.137 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 19:25:11.996 00:00:00.044 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:25:12.170 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:25:12.253 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 19:21:41.779 00:05:00.393 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 19:25:46.350 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43676 10 6452 1 2025-10-09 19:26:46.755 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56820 10 6452 1 2025-10-09 19:27:47.161 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:45006 10 6452 1 2025-10-09 19:24:41.781 00:05:00.394 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 19:28:47.576 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35622 10 6452 1 2025-10-09 19:29:47.944 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52040 10 6452 1 2025-10-09 19:30:11.759 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 19:30:11.964 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 19:30:11.743 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:30:12.173 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:30:12.257 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 19:30:48.356 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54262 10 6452 1 2025-10-09 19:27:41.780 00:05:00.398 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 19:31:48.764 00:00:12.873 TCP 1.101.0.1:3000 -> 23.104.0.1:42374 10 6452 1 2025-10-09 19:32:51.651 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44974 10 6452 1 2025-10-09 19:33:52.059 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51732 10 6452 1 2025-10-09 19:30:41.783 00:05:00.392 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 19:34:52.472 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:54030 10 6452 1 2025-10-09 19:35:12.107 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 19:35:12.150 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 19:35:11.938 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 19:35:11.855 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:35:12.026 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:35:52.833 00:00:10.460 TCP 1.101.0.1:3000 -> 23.104.0.1:46400 11 6504 1 2025-10-09 19:36:53.304 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41812 10 6452 1 2025-10-09 19:33:41.781 00:05:00.403 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 19:37:53.709 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60466 10 6452 1 2025-10-09 19:38:54.097 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33058 10 6452 1 2025-10-09 19:39:54.502 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32924 10 6452 1 2025-10-09 19:40:12.371 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 19:40:12.290 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:40:12.518 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 19:40:12.298 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 19:40:12.058 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:36:41.783 00:05:00.393 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 19:40:54.912 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44508 10 6452 1 2025-10-09 19:41:55.316 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40214 10 6452 1 2025-10-09 19:42:55.713 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:58034 10 6452 1 2025-10-09 19:39:41.782 00:05:00.397 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 19:43:56.136 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39232 10 6452 1 2025-10-09 19:44:56.539 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:38020 10 6452 1 2025-10-09 19:45:12.386 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 19:45:12.312 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 19:45:12.464 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:45:12.542 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:45:12.627 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 19:45:56.907 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45276 10 6452 1 2025-10-09 19:42:41.786 00:05:00.392 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 19:46:57.272 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51974 10 6452 1 2025-10-09 19:47:57.678 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53772 10 6452 1 2025-10-09 19:48:58.105 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:44742 10 6452 1 2025-10-09 19:45:41.784 00:05:00.397 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 19:49:58.479 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41844 12 6556 1 2025-10-09 19:50:12.493 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 19:50:12.488 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 19:50:12.311 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:50:12.359 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:50:12.442 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 19:50:58.888 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59202 12 6556 1 2025-10-09 19:51:59.311 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:51242 10 6452 1 2025-10-09 19:48:41.785 00:05:00.393 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 19:52:59.672 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35266 10 6452 1 2025-10-09 19:54:00.109 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:36512 10 6452 1 2025-10-09 19:55:12.537 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 19:55:12.545 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 19:55:12.446 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:55:12.540 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:55:00.522 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37768 10 6452 1 2025-10-09 19:55:12.623 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 19:51:41.784 00:05:00.398 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 19:56:00.885 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:58010 10 6452 1 2025-10-09 19:57:01.265 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51622 10 6452 1 2025-10-09 19:58:01.669 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52176 10 6452 1 2025-10-09 19:54:41.788 00:05:00.393 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 Summary: total flows: 139, total bytes: 414731, total packets: 1017, avg bps: 891, avg pps: 0, avg bpp: 407 Time window: 2025-10-09 18:57:41 - 2025-10-09 19:59:42 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0030s User: 0.0015s Wall: 0.0023s flows/second: 59478.5 Runtime: 0.0024s