Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-15 18:59:37.755 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56768 10 6452 1 2025-10-15 19:00:38.158 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45028 10 6452 1 2025-10-15 18:57:44.715 00:05:00.451 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 19:01:38.561 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:35998 10 6452 1 2025-10-15 19:02:38.920 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50238 10 6452 1 2025-10-15 19:03:04.772 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 19:03:04.824 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 19:03:04.435 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 19:03:04.762 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 19:03:04.844 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 19:03:39.326 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:53448 10 6452 1 2025-10-15 18:59:44.712 00:05:00.457 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 19:04:39.687 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48328 10 6452 1 2025-10-15 19:05:40.109 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44576 10 6452 1 2025-10-15 19:06:40.512 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:41738 12 10375 1 2025-10-15 19:03:44.718 00:05:00.450 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 19:07:40.993 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46482 10 6452 1 2025-10-15 19:08:04.908 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 19:08:04.862 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 19:08:04.622 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 19:08:04.774 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 19:08:04.859 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 19:08:41.358 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58842 10 6452 1 2025-10-15 19:05:44.717 00:05:00.454 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 19:09:41.791 00:00:10.711 TCP 1.101.0.1:3000 -> 23.104.0.1:56888 10 6452 1 2025-10-15 19:10:42.540 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43514 10 6452 1 2025-10-15 19:11:42.951 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:49278 10 6452 1 2025-10-15 19:12:43.313 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36028 10 6452 1 2025-10-15 19:13:04.838 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 19:13:05.238 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 19:13:05.155 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 19:13:05.163 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 19:13:05.343 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 19:09:44.730 00:05:00.439 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 19:13:43.717 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:44080 10 6452 1 2025-10-15 19:14:44.130 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58464 10 6452 1 2025-10-15 19:11:44.729 00:05:00.446 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 19:15:44.531 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43678 10 6452 1 2025-10-15 19:16:44.931 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:48594 10 6452 1 2025-10-15 19:17:45.346 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60562 10 6452 1 2025-10-15 19:18:04.960 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 19:18:04.972 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 19:18:05.055 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 19:18:05.222 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 19:18:05.013 00:00:00.044 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 19:18:45.751 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:36908 10 6452 1 2025-10-15 19:15:44.731 00:05:00.441 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 19:19:46.116 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56998 10 6452 1 2025-10-15 19:20:46.520 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47370 10 6452 1 2025-10-15 19:17:44.729 00:05:00.445 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 19:21:46.932 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:32902 10 6452 1 2025-10-15 19:22:47.374 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35850 10 6452 1 2025-10-15 19:23:05.356 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 19:23:05.432 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 19:23:04.999 00:00:00.047 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 19:23:05.274 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 19:23:05.189 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 19:23:47.782 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42904 10 6452 1 2025-10-15 19:24:48.198 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:35938 10 6452 1 2025-10-15 19:21:44.734 00:05:00.440 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 19:25:48.608 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52380 10 6452 1 2025-10-15 19:26:49.020 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:33088 10 6452 1 2025-10-15 19:23:44.731 00:05:00.445 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 19:27:49.419 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46812 10 6452 1 2025-10-15 19:28:05.200 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 19:28:05.282 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 19:28:05.284 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 19:28:05.195 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 19:28:05.117 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 19:28:49.825 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38266 10 6452 1 2025-10-15 19:29:50.231 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:40774 10 6452 1 2025-10-15 19:30:50.604 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52218 10 6452 1 2025-10-15 19:27:44.734 00:05:00.439 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 19:31:51.008 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34692 10 6452 1 2025-10-15 19:32:51.412 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60912 10 6452 1 2025-10-15 19:33:05.652 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 19:33:05.524 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 19:33:05.470 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 19:33:05.205 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 19:33:05.569 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 19:29:44.737 00:05:00.441 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 19:33:51.817 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:50276 10 6452 1 2025-10-15 19:34:52.181 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:44126 10 6452 1 2025-10-15 19:35:52.546 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:44212 10 6452 1 2025-10-15 19:36:52.911 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52614 10 6452 1 2025-10-15 19:33:44.740 00:05:00.435 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 19:37:53.319 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38816 10 6452 1 2025-10-15 19:38:05.392 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 19:38:05.466 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 19:38:05.483 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 19:38:05.566 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 19:38:05.648 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 19:38:53.722 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39600 10 6452 1 2025-10-15 19:35:44.738 00:05:00.440 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 19:39:54.137 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40034 10 6452 1 2025-10-15 19:40:54.547 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34944 10 6452 1 2025-10-15 19:41:54.945 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:51650 10 6452 1 2025-10-15 19:43:05.717 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 19:42:55.322 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55860 10 6452 1 2025-10-15 19:43:05.635 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 19:43:05.631 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 19:43:05.497 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 19:43:05.681 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 19:39:44.740 00:05:00.435 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 19:43:55.737 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41014 10 6452 1 2025-10-15 19:44:56.144 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52110 10 6452 1 2025-10-15 19:41:44.739 00:05:00.440 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 19:45:56.540 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:59114 10 6452 1 2025-10-15 19:46:56.959 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:35746 12 10375 1 2025-10-15 19:48:05.800 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 19:48:05.435 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 19:47:57.440 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57456 10 6452 1 2025-10-15 19:48:05.651 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 19:48:05.659 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 19:48:05.718 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 19:48:57.848 00:00:11.051 TCP 1.101.0.1:3000 -> 23.104.0.1:41622 11 6504 1 2025-10-15 19:45:44.742 00:05:00.434 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 19:49:58.942 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44862 10 6452 1 2025-10-15 19:50:59.344 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:50718 10 6452 1 2025-10-15 19:47:44.739 00:05:00.440 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 19:51:59.699 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:44248 12 10375 1 2025-10-15 19:53:05.792 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 19:53:05.692 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 19:53:05.804 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 19:53:05.788 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 19:53:05.870 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 19:53:00.187 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53922 10 6452 1 2025-10-15 19:54:00.590 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41410 10 6452 1 2025-10-15 19:55:00.992 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:35762 10 6452 1 2025-10-15 19:51:44.742 00:05:00.435 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 19:56:01.361 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46506 10 6452 1 2025-10-15 19:57:01.729 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55968 10 6452 1 2025-10-15 19:53:44.740 00:05:00.440 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 19:58:05.973 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 19:58:05.819 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 19:58:06.060 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 19:58:05.903 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 19:58:06.143 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 19:58:02.139 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34628 10 6452 1 Summary: total flows: 139, total bytes: 422369, total packets: 1017, avg bps: 923, avg pps: 0, avg bpp: 415 Time window: 2025-10-15 18:57:44 - 2025-10-15 19:58:45 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0031s User: 0.0021s Wall: 0.0020s flows/second: 70522.3 Runtime: 0.0020s