Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-14 15:59:04.844 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:40968 10 6452 1 2025-10-14 16:00:05.245 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:43290 10 6452 1 2025-10-14 15:56:44.149 00:04:00.446 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 16:01:05.671 00:00:10.464 TCP 1.101.0.1:3000 -> 23.104.0.1:56718 12 10369 1 2025-10-14 16:02:06.174 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43566 10 6452 1 2025-10-14 16:02:32.307 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 16:02:32.253 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 16:02:32.139 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:02:32.312 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:02:32.395 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 15:58:44.148 00:04:00.451 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 16:03:06.593 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:48964 10 6452 1 2025-10-14 16:04:06.971 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:47478 10 6452 1 2025-10-14 16:05:07.356 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39280 10 6452 1 2025-10-14 16:06:07.722 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:55410 10 6452 1 2025-10-14 16:01:44.150 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-10-14 16:07:08.136 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39776 10 6452 1 2025-10-14 16:07:32.306 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 16:07:32.452 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 16:07:32.500 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 16:07:32.256 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:07:32.223 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:03:44.148 00:04:00.453 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 16:08:08.499 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48454 10 6452 1 2025-10-14 16:09:08.910 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48030 10 6452 1 2025-10-14 16:10:09.314 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46978 10 6452 1 2025-10-14 16:11:09.720 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54230 10 6452 1 2025-10-14 16:12:10.131 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54962 10 6452 1 2025-10-14 16:12:32.492 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 16:12:32.573 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 16:12:32.334 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 16:12:32.288 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:12:32.411 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:07:44.598 00:05:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 11 686 1 2025-10-14 16:08:44.149 00:04:00.453 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 16:13:10.536 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47838 10 6452 1 2025-10-14 16:14:10.939 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:53080 10 6452 1 2025-10-14 16:15:11.360 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50056 10 6452 1 2025-10-14 16:16:11.766 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48252 10 6452 1 2025-10-14 16:17:12.176 00:00:11.073 TCP 1.101.0.1:3000 -> 23.104.0.1:48386 10 6452 1 2025-10-14 16:17:32.468 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 16:17:32.298 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 16:17:32.492 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 16:17:32.329 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:17:32.383 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:13:44.154 00:04:00.447 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 16:18:13.284 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34776 10 6452 1 2025-10-14 16:13:44.151 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-10-14 16:19:13.686 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48306 10 6452 1 2025-10-14 16:19:44.604 00:00:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 1 52 1 2025-10-14 16:20:14.110 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32932 10 6452 1 2025-10-14 16:21:14.514 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40784 10 6452 1 2025-10-14 16:22:14.881 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41842 10 6452 1 2025-10-14 16:22:32.996 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 16:22:32.809 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 16:22:33.065 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:22:32.994 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:22:33.077 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 16:18:44.159 00:04:00.445 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 16:23:15.282 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:55430 10 6452 1 2025-10-14 16:24:15.694 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55142 10 6452 1 2025-10-14 16:20:44.154 00:04:00.451 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 16:25:16.108 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51042 10 6452 1 2025-10-14 16:26:16.508 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34758 10 6452 1 2025-10-14 16:27:16.911 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57106 10 6452 1 2025-10-14 16:27:32.746 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 16:27:32.911 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 16:27:32.852 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 16:27:32.722 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:27:32.664 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:23:44.158 00:04:00.446 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 16:28:17.321 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56218 10 6452 1 2025-10-14 16:29:17.727 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:42724 10 6452 1 2025-10-14 16:25:44.156 00:04:00.452 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 16:30:18.141 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51922 10 6452 1 2025-10-14 16:31:18.547 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:43788 10 6452 1 2025-10-14 16:32:18.969 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:32840 10 6452 1 2025-10-14 16:32:33.012 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 16:32:32.928 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:32:32.837 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 16:32:32.996 00:00:00.030 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 16:32:32.653 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:28:44.158 00:04:00.450 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 16:33:19.396 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49082 10 6452 1 2025-10-14 16:34:19.800 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34104 10 6452 1 2025-10-14 16:30:44.156 00:04:00.454 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 16:35:20.202 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58472 10 6452 1 2025-10-14 16:36:20.615 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57614 10 6452 1 2025-10-14 16:37:33.059 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 16:37:32.975 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 16:37:33.049 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 16:37:32.926 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:37:20.987 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39024 10 6452 1 2025-10-14 16:37:32.977 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:38:21.398 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57822 10 6452 1 2025-10-14 16:33:44.159 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-10-14 16:39:21.802 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50280 10 6452 1 2025-10-14 16:35:44.157 00:04:00.454 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 16:39:44.609 00:00:00.000 TCP 179.21.23.21:38570 -> 179.21.23.23:179 1 71 1 2025-10-14 16:40:22.206 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37192 10 6452 1 2025-10-14 16:41:22.609 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46728 10 6452 1 2025-10-14 16:42:33.290 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 16:42:33.088 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 16:42:32.912 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:42:23.019 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:55962 10 6452 1 2025-10-14 16:42:33.076 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:42:33.157 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 16:43:23.413 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58992 10 6452 1 2025-10-14 16:44:23.819 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:43208 10 6452 1 2025-10-14 16:40:44.161 00:04:00.453 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 16:40:44.163 00:04:00.448 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 16:45:24.193 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59770 10 6452 1 2025-10-14 16:46:24.591 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43716 10 6452 1 2025-10-14 16:47:33.044 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 16:47:33.076 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 16:47:33.105 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:47:33.244 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:47:33.327 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 16:47:24.994 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50232 10 6452 1 2025-10-14 16:48:25.397 00:00:11.040 TCP 1.101.0.1:3000 -> 23.104.0.1:49116 10 6452 1 2025-10-14 16:49:26.481 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49124 10 6452 1 2025-10-14 16:45:44.160 00:04:00.450 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 16:50:26.842 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:50180 10 6452 1 2025-10-14 16:45:44.159 00:06:00.016 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-10-14 16:51:27.262 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60478 10 6452 1 2025-10-14 16:52:33.488 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 16:52:33.349 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 16:52:33.358 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 16:52:33.319 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:52:33.405 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:52:27.667 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44544 10 6452 1 2025-10-14 16:53:28.103 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42094 10 6452 1 2025-10-14 16:54:28.468 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41688 10 6452 1 2025-10-14 16:50:44.165 00:04:00.449 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 16:55:28.836 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:39648 10 6452 1 2025-10-14 16:56:29.263 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55990 10 6452 1 2025-10-14 16:51:44.615 00:05:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 11 667 1 2025-10-14 16:57:33.500 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 16:57:33.264 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 16:57:33.422 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:57:33.498 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:57:33.581 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 16:57:29.664 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40208 10 6452 1 2025-10-14 16:58:30.099 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34116 10 6452 1 Summary: total flows: 144, total bytes: 420671, total packets: 1018, avg bps: 905, avg pps: 0, avg bpp: 413 Time window: 2025-10-14 15:56:44 - 2025-10-14 16:58:40 Total flows processed: 144, passed: 144, Blocks skipped: 0, Bytes read: 15040 Sys: 0.0027s User: 0.0027s Wall: 0.0022s flows/second: 66974.9 Runtime: 0.0022s