Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-14 14:58:39.918 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:56236 10 6452 1 2025-10-14 14:59:40.338 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34946 10 6452 1 2025-10-14 15:00:40.748 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:57934 10 6452 1 2025-10-14 15:01:41.180 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55072 10 6452 1 2025-10-14 15:02:31.199 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 15:02:30.890 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 15:02:30.893 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 15:02:31.070 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:02:31.117 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:02:41.581 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37042 10 6452 1 2025-10-14 14:59:44.127 00:04:00.451 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 14:58:44.569 00:06:00.007 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-10-14 15:03:41.980 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35374 10 6452 1 2025-10-14 15:04:42.390 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35196 10 6452 1 2025-10-14 15:05:42.800 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:58028 11 6492 1 2025-10-14 15:06:43.173 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33492 10 6452 1 2025-10-14 15:07:31.168 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 15:07:31.092 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 15:07:31.099 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:07:30.980 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:07:31.063 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 15:07:43.577 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44776 10 6452 1 2025-10-14 15:05:44.131 00:03:00.447 TCP 179.21.23.21:38570 -> 179.21.23.23:179 8 492 1 2025-10-14 15:08:43.976 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49818 10 6452 1 2025-10-14 15:04:44.129 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-10-14 15:09:44.390 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:51648 11 6504 1 2025-10-14 15:10:44.844 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:36256 10 6452 1 2025-10-14 15:11:45.227 00:00:10.720 TCP 1.101.0.1:3000 -> 23.104.0.1:44596 10 6452 1 2025-10-14 15:12:31.553 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 15:12:31.478 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 15:12:31.832 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 15:12:31.564 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:12:31.469 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:12:45.983 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50002 12 6556 1 2025-10-14 15:09:44.132 00:04:00.446 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 15:13:46.393 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47776 10 6452 1 2025-10-14 15:14:46.791 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36054 10 6452 1 2025-10-14 15:10:44.580 00:05:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 11 667 1 2025-10-14 15:15:47.154 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:52026 10 6452 1 2025-10-14 15:16:47.513 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:54234 12 10369 1 2025-10-14 15:17:31.422 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 15:17:31.433 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 15:17:31.152 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 15:17:31.392 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:17:31.338 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:17:48.001 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:58072 10 6452 1 2025-10-14 15:14:44.135 00:04:00.444 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 15:18:48.361 00:00:10.422 TCP 1.101.0.1:3000 -> 23.104.0.1:54614 10 6452 1 2025-10-14 15:19:48.820 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:54630 10 6452 1 2025-10-14 15:16:44.133 00:04:00.451 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 15:20:49.184 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:40208 10 6452 1 2025-10-14 15:21:49.542 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33470 10 6452 1 2025-10-14 15:22:31.531 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 15:22:31.571 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 15:22:31.577 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:22:31.529 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:22:31.612 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 15:22:49.948 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55228 10 6452 1 2025-10-14 15:19:44.136 00:04:00.444 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 15:23:50.357 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39110 10 6452 1 2025-10-14 15:24:50.757 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:60728 10 6452 1 2025-10-14 15:21:44.134 00:04:00.450 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 15:25:51.181 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52624 10 6452 1 2025-10-14 15:26:51.592 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33276 10 6452 1 2025-10-14 15:27:31.671 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:27:31.637 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 15:27:31.632 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 15:27:31.573 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:27:31.755 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 15:27:52.002 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56204 10 6452 1 2025-10-14 15:24:44.143 00:04:00.440 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 15:28:52.408 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46686 10 6452 1 2025-10-14 15:29:52.823 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35940 10 6452 1 2025-10-14 15:26:44.137 00:04:00.448 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 15:30:53.233 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47792 10 6452 1 2025-10-14 15:31:53.633 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:36130 10 6452 1 2025-10-14 15:32:31.819 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 15:32:31.767 00:00:00.032 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 15:32:31.476 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:32:31.544 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:32:31.626 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 15:32:54.071 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33382 10 6452 1 2025-10-14 15:33:54.432 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53546 10 6452 1 2025-10-14 15:29:44.140 00:06:00.443 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-14 15:34:54.837 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:60758 10 6452 1 2025-10-14 15:31:44.138 00:04:00.449 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 15:35:55.263 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57790 10 6452 1 2025-10-14 15:36:55.678 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40540 10 6452 1 2025-10-14 15:37:32.023 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 15:37:31.930 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 15:37:31.967 00:00:00.036 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 15:37:31.672 00:00:00.029 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:37:31.939 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:37:56.107 00:00:10.521 TCP 1.101.0.1:3000 -> 23.104.0.1:33302 10 6452 1 2025-10-14 15:38:56.668 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34774 10 6452 1 2025-10-14 15:39:57.104 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51164 10 6452 1 2025-10-14 15:36:44.139 00:04:00.451 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 15:36:44.142 00:04:00.445 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 15:40:57.508 00:00:10.426 TCP 1.101.0.1:3000 -> 23.104.0.1:45918 12 10375 1 2025-10-14 15:41:57.948 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:47216 10 6452 1 2025-10-14 15:42:31.808 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 15:42:31.809 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 15:42:31.751 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:42:31.889 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:42:31.972 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 15:42:58.375 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53726 10 6452 1 2025-10-14 15:43:58.745 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52198 10 6452 1 2025-10-14 15:44:59.149 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:41230 12 6556 1 2025-10-14 15:41:44.145 00:04:00.444 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 15:45:59.544 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50626 10 6452 1 2025-10-14 15:41:44.142 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-10-14 15:46:59.949 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:47382 11 6504 1 2025-10-14 15:47:31.796 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 15:47:31.910 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:47:32.097 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:47:31.866 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 15:47:32.180 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 15:47:44.591 00:00:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 1 52 1 2025-10-14 15:48:00.365 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59870 10 6452 1 2025-10-14 15:49:00.772 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51582 10 6452 1 2025-10-14 15:50:01.183 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48212 10 6452 1 2025-10-14 15:46:44.146 00:04:00.444 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 15:51:01.585 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36160 10 6452 1 2025-10-14 15:52:01.990 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44908 10 6452 1 2025-10-14 15:52:31.911 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 15:52:31.828 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:52:32.116 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 15:52:31.955 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 15:52:32.084 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:48:44.144 00:04:00.448 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 15:53:02.394 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57318 10 6452 1 2025-10-14 15:54:02.796 00:00:10.404 TCP 1.101.0.1:3000 -> 23.104.0.1:35604 11 6504 1 2025-10-14 15:55:03.241 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51406 10 6452 1 2025-10-14 15:51:44.147 00:04:00.447 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 15:56:03.643 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46520 10 6452 1 2025-10-14 15:57:04.062 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:39832 10 6452 1 2025-10-14 15:57:32.602 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 15:57:32.506 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 15:57:32.410 00:00:00.029 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 15:57:32.073 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:57:32.520 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:53:44.146 00:04:00.451 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 15:58:04.475 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58098 10 6452 1 Summary: total flows: 143, total bytes: 424823, total packets: 1025, avg bps: 950, avg pps: 0, avg bpp: 414 Time window: 2025-10-14 14:58:39 - 2025-10-14 15:58:14 Total flows processed: 143, passed: 143, Blocks skipped: 0, Bytes read: 14936 Sys: 0.0027s User: 0.0027s Wall: 0.0019s flows/second: 75941.4 Runtime: 0.0019s