Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-16 07:59:34.629 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52118 10 6452 1 2025-10-16 07:54:45.002 00:06:00.419 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 08:00:35.031 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54680 10 6452 1 2025-10-16 08:01:35.429 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52460 10 6452 1 2025-10-16 08:02:35.832 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40266 10 6452 1 2025-10-16 08:03:20.806 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 08:03:20.681 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 08:03:20.678 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 08:03:20.409 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 08:03:20.890 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 08:03:36.243 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33762 10 6452 1 2025-10-16 08:04:36.651 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:35848 10 6452 1 2025-10-16 08:00:45.041 00:06:00.379 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 08:05:37.031 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:50092 10 6452 1 2025-10-16 08:01:45.036 00:06:00.385 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 08:06:37.429 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43058 10 6452 1 2025-10-16 08:07:37.834 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:42010 10 6452 1 2025-10-16 08:08:20.650 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 08:08:20.657 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 08:08:20.624 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 08:08:20.441 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 08:08:20.567 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 08:08:38.256 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60856 10 6452 1 2025-10-16 08:09:38.670 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57406 10 6452 1 2025-10-16 08:10:39.099 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40252 10 6452 1 2025-10-16 08:11:39.503 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40098 10 6452 1 2025-10-16 08:07:45.040 00:06:00.386 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 08:12:39.899 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:52466 11 6492 1 2025-10-16 08:13:20.669 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 08:13:20.599 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 08:13:20.674 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 08:13:20.669 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 08:13:20.757 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 08:08:45.037 00:06:00.392 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 08:13:40.264 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:46032 10 6452 1 2025-10-16 08:14:40.629 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43458 10 6452 1 2025-10-16 08:15:40.992 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60338 10 6452 1 2025-10-16 08:16:41.397 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38280 10 6452 1 2025-10-16 08:17:41.802 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36500 10 6452 1 2025-10-16 08:18:20.973 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 08:18:20.813 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 08:18:20.680 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 08:18:20.608 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 08:18:20.691 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 08:18:42.214 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:36830 10 6452 1 2025-10-16 08:14:45.045 00:06:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 08:19:42.594 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37650 10 6452 1 2025-10-16 08:15:45.044 00:06:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 08:20:42.959 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34338 10 6452 1 2025-10-16 08:21:43.363 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57802 10 6452 1 2025-10-16 08:22:43.760 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:40406 10 6452 1 2025-10-16 08:23:21.105 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 08:23:21.106 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 08:23:20.867 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 08:23:20.996 00:00:00.043 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 08:23:21.080 00:00:00.043 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 08:23:44.180 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38614 10 6452 1 2025-10-16 08:24:44.580 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52322 10 6452 1 2025-10-16 08:25:44.981 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35244 10 6452 1 2025-10-16 08:21:45.046 00:06:00.385 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 08:26:45.392 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:37752 10 6452 1 2025-10-16 08:22:45.044 00:06:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 08:27:45.804 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:56124 10 6452 1 2025-10-16 08:28:21.182 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 08:28:21.061 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 08:28:21.053 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 08:28:20.605 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 08:28:21.099 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 08:28:46.179 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53590 10 6452 1 2025-10-16 08:29:46.544 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:54298 10 6452 1 2025-10-16 08:30:46.911 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60082 10 6452 1 2025-10-16 08:31:47.314 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56878 10 6452 1 2025-10-16 08:32:47.718 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:56238 10 6452 1 2025-10-16 08:33:21.164 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 08:33:21.004 00:00:00.051 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 08:33:21.143 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 08:33:20.845 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 08:33:21.246 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 08:28:45.048 00:06:00.386 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 08:33:48.157 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40424 10 6452 1 2025-10-16 08:29:45.046 00:06:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 08:34:48.561 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40566 10 6452 1 2025-10-16 08:35:48.963 00:00:10.849 TCP 1.101.0.1:3000 -> 23.104.0.1:51478 10 6452 1 2025-10-16 08:36:49.855 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60830 10 6452 1 2025-10-16 08:37:50.274 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42600 10 6452 1 2025-10-16 08:38:21.086 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 08:38:21.602 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 08:38:21.427 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 08:38:21.479 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 08:38:21.562 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 08:38:50.690 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59896 10 6452 1 2025-10-16 08:39:51.104 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52910 10 6452 1 2025-10-16 08:35:45.050 00:06:00.385 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 08:40:51.514 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34238 10 6452 1 2025-10-16 08:36:45.050 00:06:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 08:41:51.881 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33200 10 6452 1 2025-10-16 08:42:52.287 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34708 10 6452 1 2025-10-16 08:43:21.282 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 08:43:21.282 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 08:43:21.008 00:00:00.047 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 08:43:21.204 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 08:43:21.286 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 08:43:52.688 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:56328 10 6452 1 2025-10-16 08:44:53.111 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37658 10 6452 1 2025-10-16 08:45:53.473 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:56074 10 6452 1 2025-10-16 08:46:53.843 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:44146 10 6452 1 2025-10-16 08:42:45.052 00:06:00.386 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 08:47:54.268 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33606 10 6452 1 2025-10-16 08:48:21.418 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 08:48:21.212 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 08:48:21.358 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 08:48:21.242 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 08:48:21.502 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 08:43:45.051 00:06:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 08:48:54.665 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:33902 10 6452 1 2025-10-16 08:49:55.028 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47970 10 6452 1 2025-10-16 08:50:55.433 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:54026 10 6452 1 2025-10-16 08:51:55.801 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37328 10 6452 1 2025-10-16 08:52:56.205 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:53204 10 6452 1 2025-10-16 08:53:21.264 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 08:53:21.344 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 08:53:21.470 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 08:53:21.330 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 08:53:21.413 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 08:53:56.564 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39120 10 6452 1 2025-10-16 08:49:45.057 00:06:00.382 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 08:54:56.962 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:48446 10 6452 1 2025-10-16 08:50:45.053 00:06:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 08:55:57.392 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41686 10 6452 1 2025-10-16 08:56:57.758 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:39550 10 6452 1 2025-10-16 08:57:58.184 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58978 10 6452 1 2025-10-16 08:58:21.511 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 08:58:21.409 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 08:58:21.453 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 08:58:21.672 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 08:58:21.755 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 136, total bytes: 410465, total packets: 1009, avg bps: 860, avg pps: 0, avg bpp: 406 Time window: 2025-10-16 07:54:45 - 2025-10-16 08:58:21 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0029s User: 0.0019s Wall: 0.0022s flows/second: 61211.0 Runtime: 0.0022s