Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-14 13:59:15.980 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58374 10 6452 1 2025-10-14 13:54:44.555 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-10-14 13:55:44.104 00:04:00.454 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 14:00:16.386 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54276 10 6452 1 2025-10-14 14:01:16.789 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:32808 10 6452 1 2025-10-14 14:02:29.879 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 14:02:17.208 00:00:10.421 TCP 1.101.0.1:3000 -> 23.104.0.1:38246 11 6504 1 2025-10-14 14:02:29.650 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 14:02:29.870 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 14:02:29.953 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 14:02:30.230 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 14:03:17.679 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:59230 10 6452 1 2025-10-14 14:04:18.107 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33702 10 6452 1 2025-10-14 14:01:44.109 00:03:00.447 TCP 179.21.23.21:38570 -> 179.21.23.23:179 8 492 1 2025-10-14 14:05:18.471 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60680 10 6452 1 2025-10-14 14:00:44.107 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-10-14 14:06:18.871 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:32898 10 6452 1 2025-10-14 14:07:29.840 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 14:07:19.273 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36972 10 6452 1 2025-10-14 14:07:30.120 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 14:07:30.040 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 14:07:30.010 00:00:00.045 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 14:07:30.036 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 14:08:19.678 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60462 10 6452 1 2025-10-14 14:09:20.048 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52096 10 6452 1 2025-10-14 14:05:44.111 00:04:00.447 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 14:10:20.448 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46398 10 6452 1 2025-10-14 14:11:20.857 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:53316 10 6452 1 2025-10-14 14:06:44.560 00:05:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 11 667 1 2025-10-14 14:12:29.810 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 14:12:29.925 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 14:12:21.229 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43484 10 6452 1 2025-10-14 14:12:30.145 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 14:12:30.238 00:00:00.029 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 14:12:30.228 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 14:13:21.635 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48752 10 6452 1 2025-10-14 14:14:22.040 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51210 10 6452 1 2025-10-14 14:10:44.112 00:04:00.447 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 14:15:22.403 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44376 10 6452 1 2025-10-14 14:16:22.768 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33498 10 6452 1 2025-10-14 14:12:44.109 00:04:00.453 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 14:17:30.226 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 14:17:30.227 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 14:17:30.109 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 14:17:30.230 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 14:17:23.177 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57216 10 6452 1 2025-10-14 14:17:30.314 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 14:18:23.540 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49276 10 6452 1 2025-10-14 14:19:23.942 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:56112 10 6452 1 2025-10-14 14:15:44.112 00:04:00.449 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 14:20:24.365 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49386 10 6452 1 2025-10-14 14:21:24.772 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34958 10 6452 1 2025-10-14 14:17:44.110 00:04:00.453 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 14:22:30.349 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 14:22:30.286 00:00:00.019 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 14:22:30.286 00:00:00.018 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 14:22:30.314 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 14:22:30.432 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 14:22:25.184 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49074 10 6452 1 2025-10-14 14:23:25.608 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55334 10 6452 1 2025-10-14 14:24:25.973 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43678 10 6452 1 2025-10-14 14:25:26.373 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36590 10 6452 1 2025-10-14 14:20:44.113 00:06:00.007 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-10-14 14:26:26.774 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36208 10 6452 1 2025-10-14 14:22:44.116 00:04:00.448 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 14:27:30.451 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 14:27:30.317 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 14:27:30.267 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 14:27:30.396 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 14:27:30.477 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 14:27:27.178 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45914 10 6452 1 2025-10-14 14:28:27.533 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:43350 10 6452 1 2025-10-14 14:29:27.934 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:40836 10 6452 1 2025-10-14 14:30:28.362 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44226 10 6452 1 2025-10-14 14:31:28.768 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:51680 10 6452 1 2025-10-14 14:27:44.118 00:04:00.447 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 14:26:44.561 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-10-14 14:32:30.542 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 14:32:30.715 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 14:32:30.603 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 14:32:30.459 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 14:32:30.562 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 14:32:29.186 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60212 10 6452 1 2025-10-14 14:33:29.590 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:43846 10 6452 1 2025-10-14 14:34:30.030 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59274 10 6452 1 2025-10-14 14:35:30.400 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47248 10 6452 1 2025-10-14 14:33:44.121 00:03:00.442 TCP 179.21.23.21:38570 -> 179.21.23.23:179 8 492 1 2025-10-14 14:36:30.803 00:00:10.527 TCP 1.101.0.1:3000 -> 23.104.0.1:52064 10 6452 1 2025-10-14 14:37:30.685 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 14:37:30.749 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 14:37:30.604 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 14:37:30.574 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 14:37:30.602 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 14:37:31.368 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57132 10 6452 1 2025-10-14 14:32:44.118 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-10-14 14:38:31.764 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:54912 10 6452 1 2025-10-14 14:39:32.181 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:54362 10 6452 1 2025-10-14 14:40:32.577 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38144 10 6452 1 2025-10-14 14:41:32.985 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41626 10 6452 1 2025-10-14 14:37:44.125 00:04:00.441 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 14:42:30.860 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 14:42:30.527 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 14:42:30.616 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 14:42:30.656 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 14:42:30.778 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 14:42:33.345 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42254 10 6452 1 2025-10-14 14:38:44.572 00:04:59.997 TCP 179.21.23.23:179 -> 179.21.23.21:38570 11 667 1 2025-10-14 14:43:33.752 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:54444 10 6452 1 2025-10-14 14:44:34.112 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:36914 10 6452 1 2025-10-14 14:45:34.477 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51078 10 6452 1 2025-10-14 14:42:44.126 00:04:00.441 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 14:46:34.877 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40688 10 6452 1 2025-10-14 14:47:30.739 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 14:47:30.626 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 14:47:30.475 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 14:47:30.743 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 14:47:30.826 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 14:47:35.282 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:51644 10 6452 1 2025-10-14 14:44:44.123 00:04:00.447 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 14:48:35.646 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51622 10 6452 1 2025-10-14 14:49:36.053 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58856 10 6452 1 2025-10-14 14:50:36.466 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52444 10 6452 1 2025-10-14 14:47:44.127 00:04:00.442 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 14:51:36.868 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36514 10 6452 1 2025-10-14 14:52:31.301 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 14:52:31.217 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 14:52:30.761 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 14:52:30.838 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 14:52:31.218 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 14:52:37.274 00:00:10.604 TCP 1.101.0.1:3000 -> 23.104.0.1:48880 10 6452 1 2025-10-14 14:49:44.124 00:04:00.447 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 14:53:37.917 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47838 10 6452 1 2025-10-14 14:54:38.321 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48924 10 6452 1 2025-10-14 14:55:38.726 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:42998 10 6452 1 2025-10-14 14:56:39.108 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42632 10 6452 1 2025-10-14 14:57:30.818 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 14:57:30.985 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 14:57:30.826 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 14:57:30.903 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 14:57:30.986 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 14:52:44.126 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-10-14 14:57:39.514 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:58278 10 6452 1 2025-10-14 14:54:44.124 00:04:00.447 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 Summary: total flows: 143, total bytes: 411584, total packets: 1027, avg bps: 857, avg pps: 0, avg bpp: 400 Time window: 2025-10-14 13:54:44 - 2025-10-14 14:58:44 Total flows processed: 143, passed: 143, Blocks skipped: 0, Bytes read: 14936 Sys: 0.0046s User: 0.0008s Wall: 0.0019s flows/second: 73368.3 Runtime: 0.0020s