Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-14 18:59:26.920 00:00:11.236 TCP 1.101.0.1:3000 -> 23.104.0.1:44698 10 6661 1 2025-10-14 19:00:28.194 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39902 10 6661 1 2025-10-14 19:01:28.604 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55520 10 6661 1 2025-10-14 19:02:35.798 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 19:02:35.715 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 19:02:29.014 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:54682 10 6661 1 2025-10-14 19:02:35.975 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 19:02:35.823 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 19:02:35.798 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 18:58:44.228 00:04:00.428 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 18:58:44.232 00:04:00.423 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 19:03:29.413 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:37566 10 6661 1 2025-10-14 19:04:29.810 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56120 10 6661 1 2025-10-14 19:03:44.229 00:01:00.427 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-14 19:05:30.220 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41718 10 6661 1 2025-10-14 19:06:30.619 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45164 10 6661 1 2025-10-14 19:07:36.043 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 19:07:36.070 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 19:07:36.122 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 19:07:35.994 00:00:00.045 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 19:07:35.960 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 19:07:31.032 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43308 10 6661 1 2025-10-14 19:03:44.232 00:04:00.423 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 19:08:31.434 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:43670 10 6661 1 2025-10-14 19:05:44.233 00:04:00.424 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 19:09:31.795 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39542 10 6661 1 2025-10-14 19:10:32.156 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:58824 10 6661 1 2025-10-14 19:11:32.528 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52104 10 6661 1 2025-10-14 19:12:36.076 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 19:12:36.142 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 19:12:35.747 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 19:12:36.076 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 19:12:36.159 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 19:12:32.932 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:38538 10 6661 1 2025-10-14 19:08:44.234 00:04:00.422 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 19:13:33.354 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48330 10 6661 1 2025-10-14 19:14:33.752 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51778 10 6661 1 2025-10-14 19:10:44.231 00:04:00.427 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 19:15:34.156 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:41852 10 6661 1 2025-10-14 19:16:34.575 00:00:10.792 TCP 1.101.0.1:3000 -> 23.104.0.1:48822 10 6661 1 2025-10-14 19:17:36.369 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 19:17:36.282 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 19:17:36.134 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 19:17:35.856 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 19:17:36.452 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 19:13:44.235 00:04:00.428 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 19:17:35.407 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34438 10 6661 1 2025-10-14 19:18:35.815 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56892 10 6661 1 2025-10-14 19:15:44.233 00:04:00.437 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 19:19:36.179 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:38530 10 6661 1 2025-10-14 19:20:36.593 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:45532 10 6661 1 2025-10-14 19:21:36.992 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:55118 10 6661 1 2025-10-14 19:22:36.307 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 19:22:36.280 00:00:00.034 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 19:22:36.275 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 19:22:36.174 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 19:22:36.216 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 19:18:44.236 00:04:00.433 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 19:22:37.387 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50550 10 6661 1 2025-10-14 19:23:37.788 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51310 10 6661 1 2025-10-14 19:23:44.237 00:01:00.432 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-14 19:20:44.234 00:04:00.438 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 19:24:38.198 00:00:11.224 TCP 1.101.0.1:3000 -> 23.104.0.1:44440 10 6661 1 2025-10-14 19:25:39.460 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33746 10 6661 1 2025-10-14 19:26:39.862 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57628 10 6661 1 2025-10-14 19:27:36.472 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 19:27:36.386 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 19:27:36.296 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 19:27:36.244 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 19:27:36.389 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 19:25:44.237 00:02:00.433 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-14 19:27:40.277 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38706 10 6661 1 2025-10-14 19:28:40.642 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53108 10 6661 1 2025-10-14 19:25:44.234 00:04:00.441 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 19:28:44.237 00:01:00.436 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-14 19:29:41.047 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38912 10 6661 1 2025-10-14 19:30:41.454 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54586 10 6661 1 2025-10-14 19:31:41.856 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:59774 10 6661 1 2025-10-14 19:32:36.553 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 19:32:36.548 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 19:32:36.423 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 19:32:36.728 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 19:32:36.810 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 19:32:42.275 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38178 10 6661 1 2025-10-14 19:33:42.688 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:43038 10 6661 1 2025-10-14 19:30:44.235 00:04:00.440 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 19:30:44.237 00:04:00.436 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 19:34:43.055 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53416 10 6661 1 2025-10-14 19:35:43.417 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36426 10 6661 1 2025-10-14 19:35:44.237 00:01:00.439 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-14 19:36:43.821 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49840 10 6661 1 2025-10-14 19:37:36.821 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 19:37:36.739 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 19:37:36.676 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 19:37:36.678 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 19:37:36.359 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 19:37:44.225 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:50848 10 6661 1 2025-10-14 19:38:44.582 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40258 10 6661 1 2025-10-14 19:35:44.239 00:04:00.435 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 19:37:44.236 00:02:00.439 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-14 19:39:44.983 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50758 10 6661 1 2025-10-14 19:40:45.388 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52992 10 6661 1 2025-10-14 19:40:44.237 00:01:00.439 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-14 19:41:45.810 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48218 10 6661 1 2025-10-14 19:42:36.817 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 19:42:36.740 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 19:42:36.736 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 19:42:36.699 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 19:42:36.734 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 19:42:46.219 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54550 10 6661 1 2025-10-14 19:43:46.630 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43756 10 6661 1 2025-10-14 19:40:44.240 00:04:00.435 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 19:44:47.033 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59068 10 6661 1 2025-10-14 19:45:47.437 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37516 10 6661 1 2025-10-14 19:42:44.238 00:04:00.440 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 19:46:47.839 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:41392 10 6661 1 2025-10-14 19:47:36.832 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 19:47:36.828 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 19:47:36.665 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 19:47:36.741 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 19:47:36.824 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 19:47:48.222 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50466 10 6661 1 2025-10-14 19:48:48.624 00:00:10.421 TCP 1.101.0.1:3000 -> 23.104.0.1:51000 11 6713 1 2025-10-14 19:45:44.240 00:04:00.435 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 19:49:49.119 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48690 10 6661 1 2025-10-14 19:50:49.524 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:38318 10 6661 1 2025-10-14 19:50:44.243 00:01:00.433 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-14 19:47:44.241 00:04:00.438 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 19:51:49.971 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49532 10 6661 1 2025-10-14 19:52:36.938 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 19:52:36.977 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 19:52:36.888 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 19:52:36.746 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 19:52:37.023 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 19:52:50.376 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50626 10 6661 1 2025-10-14 19:53:50.740 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34346 10 6661 1 2025-10-14 19:52:44.243 00:02:00.433 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-14 19:54:51.155 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:52518 11 6713 1 2025-10-14 19:55:51.613 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38326 10 6661 1 2025-10-14 19:55:44.244 00:01:00.434 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-14 19:52:44.240 00:04:00.440 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 19:56:52.018 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37574 10 6661 1 2025-10-14 19:57:37.117 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 19:57:37.041 00:00:00.016 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 19:57:37.200 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 19:57:37.048 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 19:57:37.132 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 19:57:52.422 00:00:10.481 TCP 1.101.0.1:3000 -> 23.104.0.1:60632 10 6661 1 Summary: total flows: 148, total bytes: 422737, total packets: 1008, avg bps: 950, avg pps: 0, avg bpp: 419 Time window: 2025-10-14 18:58:44 - 2025-10-14 19:58:02 Total flows processed: 148, passed: 148, Blocks skipped: 0, Bytes read: 15456 Sys: 0.0037s User: 0.0012s Wall: 0.0031s flows/second: 48068.5 Runtime: 0.0031s