Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-14 16:59:30.504 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47900 10 6452 1 2025-10-14 16:55:44.178 00:04:00.435 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 17:00:30.900 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:58018 10 6452 1 2025-10-14 16:57:44.175 00:04:00.441 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 17:01:31.283 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:60216 12 10375 1 2025-10-14 17:02:33.291 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 17:02:33.664 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 17:02:33.409 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 17:02:33.363 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 17:02:33.209 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 17:02:31.765 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:51140 10 6452 1 2025-10-14 17:03:32.138 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57014 10 6452 1 2025-10-14 17:00:44.179 00:04:00.435 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 17:04:32.559 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:50348 10 6452 1 2025-10-14 17:05:32.929 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57308 10 6452 1 2025-10-14 17:06:33.358 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35900 10 6452 1 2025-10-14 17:02:44.177 00:04:00.441 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 17:07:33.600 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 17:07:33.405 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 17:07:33.438 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 17:07:33.602 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 17:07:33.687 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 17:07:33.770 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:56936 10 6452 1 2025-10-14 17:08:34.185 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40534 10 6452 1 2025-10-14 17:05:44.180 00:04:00.435 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 17:09:34.597 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39716 10 6452 1 2025-10-14 17:10:35.005 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37818 10 6452 1 2025-10-14 17:10:44.180 00:01:00.435 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-14 17:07:44.178 00:04:00.440 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 17:11:35.403 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58472 10 6452 1 2025-10-14 17:12:33.696 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 17:12:33.640 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 17:12:33.540 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 17:12:33.651 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 17:12:33.734 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 17:12:35.814 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:60920 10 6452 1 2025-10-14 17:13:36.187 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49798 10 6452 1 2025-10-14 17:14:36.593 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46064 10 6452 1 2025-10-14 17:15:36.953 00:00:10.700 TCP 1.101.0.1:3000 -> 23.104.0.1:49112 10 6452 1 2025-10-14 17:12:44.181 00:04:00.443 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 17:12:44.184 00:04:00.439 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 17:16:37.692 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:38254 12 10375 1 2025-10-14 17:17:34.023 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 17:17:33.904 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 17:17:33.877 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 17:17:33.939 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 17:17:33.857 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 17:17:38.145 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51708 10 6452 1 2025-10-14 17:18:38.546 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52130 10 6452 1 2025-10-14 17:19:38.951 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45772 10 6452 1 2025-10-14 17:20:39.322 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54998 10 6452 1 2025-10-14 17:17:44.183 00:04:00.443 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 17:17:44.186 00:04:00.437 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 17:21:39.723 00:00:10.448 TCP 1.101.0.1:3000 -> 23.104.0.1:59038 12 10369 1 2025-10-14 17:22:33.907 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 17:22:33.906 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 17:22:33.850 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 17:22:33.870 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 17:22:33.954 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 17:22:40.211 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38680 10 6452 1 2025-10-14 17:23:40.622 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:33030 10 6452 1 2025-10-14 17:24:40.980 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:50824 10 6452 1 2025-10-14 17:25:41.389 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:50228 10 6452 1 2025-10-14 17:22:44.192 00:04:00.433 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 17:26:41.746 00:00:10.499 TCP 1.101.0.1:3000 -> 23.104.0.1:56886 14 10479 1 2025-10-14 17:27:34.286 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 17:27:34.142 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 17:27:33.958 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 17:27:34.056 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 17:27:34.202 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 17:22:44.189 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-10-14 17:27:42.283 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48978 10 6452 1 2025-10-14 17:28:44.629 00:00:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 1 52 1 2025-10-14 17:28:42.690 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:47126 10 6452 1 2025-10-14 17:29:43.065 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58018 10 6452 1 2025-10-14 17:30:43.472 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:33184 10 6452 1 2025-10-14 17:27:44.193 00:04:00.434 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 17:31:43.830 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:45502 12 10584 1 2025-10-14 17:32:34.070 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 17:32:33.987 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 17:32:33.980 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 17:32:34.102 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 17:32:33.935 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 17:32:44.312 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45488 10 6661 1 2025-10-14 17:29:44.192 00:04:00.438 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 17:33:44.715 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54024 10 6661 1 2025-10-14 17:34:45.106 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56618 10 6661 1 2025-10-14 17:35:45.516 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48618 10 6661 1 2025-10-14 17:32:44.195 00:04:00.433 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 17:36:45.927 00:00:10.460 TCP 1.101.0.1:3000 -> 23.104.0.1:42452 12 10793 1 2025-10-14 17:37:34.221 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 17:37:34.131 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 17:37:34.321 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 17:37:34.161 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 17:37:34.138 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 17:37:46.437 00:00:10.896 TCP 1.101.0.1:3000 -> 23.104.0.1:38450 10 6870 1 2025-10-14 17:34:44.196 00:04:00.437 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 17:38:47.375 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37108 10 6870 1 2025-10-14 17:39:47.778 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:35112 10 6870 1 2025-10-14 17:40:48.194 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36774 10 6870 1 2025-10-14 17:37:44.200 00:04:00.431 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 17:41:48.598 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34588 10 6870 1 2025-10-14 17:42:34.529 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 17:42:34.391 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 17:42:34.276 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 17:42:34.301 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 17:42:34.449 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 17:42:49.001 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47282 10 6870 1 2025-10-14 17:39:44.199 00:04:00.436 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 17:43:49.406 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48694 10 6870 1 2025-10-14 17:44:49.810 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46074 10 6870 1 2025-10-14 17:45:50.210 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57460 10 6870 1 2025-10-14 17:42:44.201 00:04:00.430 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 17:46:50.614 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35680 10 6870 1 2025-10-14 17:47:34.285 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 17:47:34.612 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 17:47:34.565 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 17:47:34.608 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 17:47:34.691 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 17:47:51.027 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57996 10 6870 1 2025-10-14 17:44:44.197 00:04:00.438 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 17:47:44.200 00:01:00.433 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-14 17:48:51.427 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38374 10 6870 1 2025-10-14 17:49:51.838 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:43954 10 6870 1 2025-10-14 17:50:52.263 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38126 10 6870 1 2025-10-14 17:51:52.663 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50032 10 6870 1 2025-10-14 17:52:34.731 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 17:52:34.400 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 17:52:34.396 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 17:52:34.419 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 17:52:34.648 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 17:52:53.102 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:58356 10 6870 1 2025-10-14 17:49:44.199 00:04:00.438 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 17:49:44.201 00:04:00.433 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 17:53:53.499 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33884 10 6870 1 2025-10-14 17:54:53.900 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:40688 12 6974 1 2025-10-14 17:54:44.200 00:01:00.437 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-14 17:55:54.318 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52842 10 6870 1 2025-10-14 17:56:54.719 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59556 10 6870 1 2025-10-14 17:57:34.576 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 17:57:34.604 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 17:57:34.638 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 17:57:34.573 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 17:57:34.721 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 17:57:55.125 00:00:10.979 TCP 1.101.0.1:3000 -> 23.104.0.1:38028 10 6870 1 2025-10-14 17:54:44.203 00:04:00.434 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 17:56:44.201 00:02:00.437 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 Summary: total flows: 147, total bytes: 445267, total packets: 1038, avg bps: 942, avg pps: 0, avg bpp: 428 Time window: 2025-10-14 16:55:44 - 2025-10-14 17:58:44 Total flows processed: 147, passed: 147, Blocks skipped: 0, Bytes read: 15352 Sys: 0.0041s User: 0.0010s Wall: 0.0023s flows/second: 64500.8 Runtime: 0.0023s