Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-16 14:59:01.610 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:39048 10 6452 1 2025-10-16 14:54:45.166 00:06:00.397 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 15:00:01.968 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:47144 10 6452 1 2025-10-16 15:01:02.340 00:00:10.711 TCP 1.101.0.1:3000 -> 23.104.0.1:50432 10 6452 1 2025-10-16 15:02:03.113 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:50698 10 6452 1 2025-10-16 15:03:03.478 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49992 10 6452 1 2025-10-16 15:03:28.937 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 15:03:28.955 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 15:03:29.010 00:00:00.047 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 15:03:28.957 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 15:03:28.855 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 15:04:03.877 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44452 10 6452 1 2025-10-16 15:05:04.281 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56074 10 6452 1 2025-10-16 15:00:45.169 00:06:00.393 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 15:06:04.684 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:59650 10 6452 1 2025-10-16 15:01:45.167 00:06:00.398 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 15:07:05.108 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47330 10 6452 1 2025-10-16 15:08:05.471 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56218 10 6452 1 2025-10-16 15:08:29.218 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 15:08:29.182 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 15:08:28.844 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 15:08:29.007 00:00:00.043 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 15:08:29.091 00:00:00.044 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 15:09:05.869 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60982 10 6452 1 2025-10-16 15:10:06.280 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46388 10 6452 1 2025-10-16 15:11:06.637 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52082 10 6452 1 2025-10-16 15:12:07.040 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53914 10 6452 1 2025-10-16 15:07:45.169 00:06:00.394 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 15:13:07.438 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40744 10 6452 1 2025-10-16 15:13:29.082 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 15:13:28.970 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 15:13:28.967 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 15:13:29.003 00:00:00.038 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 15:13:29.166 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 15:08:45.167 00:06:00.400 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 15:14:07.852 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:47008 10 6452 1 2025-10-16 15:15:08.230 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:46840 10 6452 1 2025-10-16 15:16:08.623 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51834 10 6452 1 2025-10-16 15:17:09.030 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:35128 10 6452 1 2025-10-16 15:18:09.449 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49336 10 6452 1 2025-10-16 15:18:28.983 00:00:00.039 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 15:18:29.249 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 15:18:28.935 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 15:18:29.252 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 15:18:29.336 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 15:19:09.857 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:36706 10 6452 1 2025-10-16 15:14:45.171 00:06:00.395 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 15:20:10.287 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57956 10 6452 1 2025-10-16 15:15:45.169 00:06:00.400 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 15:21:10.698 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33132 10 6452 1 2025-10-16 15:22:11.115 00:00:10.844 TCP 1.101.0.1:3000 -> 23.104.0.1:40290 12 10375 1 2025-10-16 15:23:12.000 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39024 10 6452 1 2025-10-16 15:23:29.308 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 15:23:29.223 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 15:23:29.253 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 15:23:29.384 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 15:23:29.467 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 15:24:12.403 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54448 10 6452 1 2025-10-16 15:25:12.799 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:55640 10 6452 1 2025-10-16 15:26:13.238 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:35684 10 6452 1 2025-10-16 15:21:45.174 00:06:00.394 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 15:27:13.598 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:53610 10 6452 1 2025-10-16 15:22:45.169 00:06:00.401 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 15:28:14.017 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44390 10 6452 1 2025-10-16 15:28:29.453 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 15:28:29.324 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 15:28:29.448 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 15:28:29.321 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 15:28:29.406 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 15:29:14.419 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:54102 10 6452 1 2025-10-16 15:30:14.780 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56290 10 6452 1 2025-10-16 15:31:15.187 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47708 10 6452 1 2025-10-16 15:32:15.591 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53966 10 6452 1 2025-10-16 15:33:29.683 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 15:33:29.377 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 15:33:15.994 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59370 10 6452 1 2025-10-16 15:33:29.571 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 15:33:29.655 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 15:33:29.655 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 15:28:45.175 00:06:00.395 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 15:34:16.398 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43628 10 6452 1 2025-10-16 15:29:45.172 00:06:00.401 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 15:35:16.802 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:48268 10 6452 1 2025-10-16 15:36:17.174 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54864 10 6452 1 2025-10-16 15:37:17.580 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:41066 10 6452 1 2025-10-16 15:38:29.703 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 15:38:29.566 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 15:38:29.543 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 15:38:29.484 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 15:38:17.939 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:52166 10 6452 1 2025-10-16 15:38:29.566 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 15:39:18.354 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55326 10 6452 1 2025-10-16 15:40:18.754 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:41864 10 6452 1 2025-10-16 15:35:45.175 00:06:00.397 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 15:41:19.171 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:55998 10 6452 1 2025-10-16 15:36:45.172 00:06:00.402 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 15:42:19.593 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:58258 12 10375 1 2025-10-16 15:43:29.751 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 15:43:29.559 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 15:43:29.840 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 15:43:29.598 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 15:43:29.668 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 15:43:20.100 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:58946 10 6452 1 2025-10-16 15:44:20.478 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45648 10 6452 1 2025-10-16 15:45:20.883 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46796 10 6452 1 2025-10-16 15:46:21.297 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45386 10 6452 1 2025-10-16 15:47:21.706 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:41200 10 6452 1 2025-10-16 15:42:45.177 00:06:00.396 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 15:48:29.771 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 15:48:29.931 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 15:48:29.811 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 15:48:29.836 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 15:48:29.918 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 15:48:22.102 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59026 10 6452 1 2025-10-16 15:43:45.173 00:06:00.402 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 15:49:22.513 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35178 10 6452 1 2025-10-16 15:50:22.935 00:00:10.618 TCP 1.101.0.1:3000 -> 23.104.0.1:50194 10 6452 1 2025-10-16 15:51:23.595 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57070 10 6452 1 2025-10-16 15:52:23.997 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:34186 10 6452 1 2025-10-16 15:53:29.880 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 15:53:29.876 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 15:53:29.520 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 15:53:29.820 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 15:53:29.903 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 15:53:24.394 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55118 10 6452 1 2025-10-16 15:54:24.801 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44794 10 6452 1 2025-10-16 15:49:45.177 00:06:00.397 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 15:55:25.197 00:00:15.292 TCP 1.101.0.1:3000 -> 23.104.0.1:47684 10 6452 1 2025-10-16 15:50:45.174 00:06:00.402 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 15:56:30.561 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41408 10 6452 1 2025-10-16 15:57:30.960 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59766 10 6452 1 2025-10-16 15:58:29.805 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 15:58:29.913 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 15:58:29.726 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 15:58:29.916 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 15:58:29.998 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 15:58:31.366 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45878 10 6452 1 Summary: total flows: 137, total bytes: 424723, total packets: 1022, avg bps: 885, avg pps: 0, avg bpp: 415 Time window: 2025-10-16 14:54:45 - 2025-10-16 15:58:41 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0009s User: 0.0035s Wall: 0.0019s flows/second: 73499.6 Runtime: 0.0019s