Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-16 17:59:30.193 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:54906 10 6452 1 2025-10-16 18:00:30.558 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40640 10 6452 1 2025-10-16 17:55:45.243 00:06:00.364 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 18:01:30.960 00:00:10.851 TCP 1.101.0.1:3000 -> 23.104.0.1:36242 10 6452 1 2025-10-16 17:56:45.243 00:06:00.368 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 18:02:31.860 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:36696 10 6452 1 2025-10-16 18:03:32.576 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:03:32.417 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 18:03:32.839 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 18:03:32.766 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:03:32.664 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 18:03:32.269 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:59518 10 6452 1 2025-10-16 18:04:32.637 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52086 10 6452 1 2025-10-16 18:05:33.041 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:60184 10 6452 1 2025-10-16 18:06:33.397 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43614 10 6452 1 2025-10-16 18:07:33.805 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41308 10 6452 1 2025-10-16 18:02:45.247 00:06:00.363 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 18:08:32.663 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 18:08:32.761 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 18:08:32.257 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:08:32.663 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:08:32.746 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 18:08:34.210 00:00:11.003 TCP 1.101.0.1:3000 -> 23.104.0.1:52616 10 6452 1 2025-10-16 18:03:45.247 00:06:00.366 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 18:09:35.246 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51700 10 6452 1 2025-10-16 18:10:35.652 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57660 10 6452 1 2025-10-16 18:11:36.017 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59660 10 6452 1 2025-10-16 18:12:36.411 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50124 10 6452 1 2025-10-16 18:13:32.517 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 18:13:32.656 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:13:32.517 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:13:32.717 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 18:13:32.599 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 18:13:36.816 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39646 10 6452 1 2025-10-16 18:09:45.250 00:06:00.362 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 18:14:37.222 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47060 10 6452 1 2025-10-16 18:10:45.246 00:06:00.367 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 18:15:37.622 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49122 10 6452 1 2025-10-16 18:16:38.023 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:59682 10 6452 1 2025-10-16 18:17:38.378 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52270 10 6452 1 2025-10-16 18:18:33.190 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:18:33.008 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 18:18:33.290 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 18:18:32.935 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:18:33.273 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 18:18:38.776 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56770 10 6452 1 2025-10-16 18:19:39.181 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57488 10 6452 1 2025-10-16 18:20:39.543 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37706 10 6452 1 2025-10-16 18:16:45.251 00:06:00.362 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 18:21:39.943 00:00:10.825 TCP 1.101.0.1:3000 -> 23.104.0.1:33598 10 6452 1 2025-10-16 18:17:45.250 00:06:00.367 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 18:22:40.802 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50440 10 6452 1 2025-10-16 18:23:32.906 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 18:23:32.854 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 18:23:32.926 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:23:32.736 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:23:32.827 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 18:23:41.208 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34750 10 6452 1 2025-10-16 18:24:41.574 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59950 10 6452 1 2025-10-16 18:25:41.988 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:46276 10 6452 1 2025-10-16 18:26:42.369 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50604 10 6452 1 2025-10-16 18:27:42.774 00:00:10.783 TCP 1.101.0.1:3000 -> 23.104.0.1:55462 10 6452 1 2025-10-16 18:28:33.078 00:00:00.046 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 18:28:33.000 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 18:28:33.002 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 18:28:32.930 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:28:32.996 00:00:00.046 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:23:45.255 00:06:00.361 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 18:28:43.598 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33402 10 6452 1 2025-10-16 18:24:45.252 00:06:00.367 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 18:29:44.004 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56226 10 6452 1 2025-10-16 18:30:44.416 00:00:10.890 TCP 1.101.0.1:3000 -> 23.104.0.1:56514 10 6452 1 2025-10-16 18:31:45.353 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58824 10 6452 1 2025-10-16 18:32:45.760 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57002 10 6452 1 2025-10-16 18:33:33.277 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 18:33:32.921 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 18:33:32.831 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:33:33.195 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:33:33.072 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 18:33:46.168 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42342 10 6452 1 2025-10-16 18:34:46.570 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49892 10 6452 1 2025-10-16 18:30:45.257 00:06:00.361 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 18:35:46.982 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34036 10 6452 1 2025-10-16 18:31:45.255 00:06:00.368 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 18:36:47.390 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40674 10 6452 1 2025-10-16 18:37:47.790 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54676 10 6452 1 2025-10-16 18:38:33.318 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 18:38:33.182 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 18:38:33.279 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 18:38:32.914 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:38:33.234 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:38:48.192 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52476 10 6452 1 2025-10-16 18:39:48.597 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53834 10 6452 1 2025-10-16 18:40:48.995 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36290 10 6452 1 2025-10-16 18:41:49.399 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39858 10 6452 1 2025-10-16 18:37:45.258 00:06:00.364 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 18:42:49.802 00:00:11.024 TCP 1.101.0.1:3000 -> 23.104.0.1:47044 10 6452 1 2025-10-16 18:43:33.497 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 18:43:33.037 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:43:33.579 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:43:33.665 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 18:43:33.662 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 18:38:45.256 00:06:00.368 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 18:43:50.863 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:60322 10 6452 1 2025-10-16 18:44:51.280 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58782 10 6452 1 2025-10-16 18:45:51.682 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45174 10 6452 1 2025-10-16 18:46:52.115 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41050 10 6452 1 2025-10-16 18:47:52.520 00:00:10.896 TCP 1.101.0.1:3000 -> 23.104.0.1:41822 10 6452 1 2025-10-16 18:48:33.409 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:48:33.324 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 18:48:33.405 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 18:48:33.235 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:48:33.491 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 18:48:53.463 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45082 10 6452 1 2025-10-16 18:44:45.260 00:06:00.362 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 18:49:53.864 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:36138 10 6452 1 2025-10-16 18:45:45.256 00:06:00.368 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 18:50:54.274 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52796 10 6452 1 2025-10-16 18:51:54.674 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34304 10 6452 1 2025-10-16 18:52:55.100 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34028 10 6452 1 2025-10-16 18:53:33.428 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 18:53:33.622 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 18:53:33.129 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:53:33.354 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:53:33.436 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 18:53:55.461 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53144 10 6452 1 2025-10-16 18:54:55.868 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52976 10 6452 1 2025-10-16 18:55:56.277 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48782 10 6452 1 2025-10-16 18:51:45.265 00:06:00.358 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 18:56:56.681 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47048 10 6452 1 2025-10-16 18:52:45.263 00:06:00.364 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 18:57:57.104 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59168 10 6452 1 2025-10-16 18:58:33.852 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 18:58:33.451 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 18:58:33.629 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 18:58:33.497 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:58:33.768 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 Summary: total flows: 137, total bytes: 411286, total packets: 1022, avg bps: 870, avg pps: 0, avg bpp: 402 Time window: 2025-10-16 17:55:45 - 2025-10-16 18:58:45 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0031s User: 0.0020s Wall: 0.0019s flows/second: 70470.9 Runtime: 0.0020s