Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-17 19:58:41.975 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:40736 10 6452 1 2025-10-17 19:59:03.660 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 19:59:03.546 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 19:59:03.681 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 19:59:03.550 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 19:59:03.633 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 19:59:42.350 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48126 10 6452 1 2025-10-17 19:56:45.841 00:05:00.308 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 20:00:42.712 00:00:10.954 TCP 1.101.0.1:3000 -> 23.104.0.1:37664 10 6452 1 2025-10-17 20:01:43.704 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:47024 10 6452 1 2025-10-17 20:02:44.097 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54124 10 6452 1 2025-10-17 20:04:03.984 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 20:03:44.503 00:00:16.676 TCP 1.101.0.1:3000 -> 23.104.0.1:41276 10 6452 1 2025-10-17 20:04:03.953 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 20:04:03.674 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:04:03.792 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:04:03.875 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 20:00:45.839 00:05:00.316 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 20:04:51.237 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:54428 10 6452 1 2025-10-17 20:05:51.635 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59232 10 6452 1 2025-10-17 20:02:45.841 00:05:00.312 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 20:06:52.041 00:00:10.722 TCP 1.101.0.1:3000 -> 23.104.0.1:48362 12 10375 1 2025-10-17 20:07:52.803 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57034 10 6452 1 2025-10-17 20:09:03.977 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 20:08:53.209 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33962 10 6452 1 2025-10-17 20:09:03.837 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 20:09:03.783 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:09:03.833 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:09:03.917 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 20:09:53.612 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39880 10 6452 1 2025-10-17 20:06:45.839 00:05:00.318 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 20:10:53.980 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40446 10 6452 1 2025-10-17 20:11:54.393 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39536 10 6452 1 2025-10-17 20:08:45.842 00:05:00.312 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 20:12:54.793 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45974 10 6452 1 2025-10-17 20:14:03.837 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 20:14:04.003 00:00:00.035 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 20:14:03.994 00:00:00.051 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:14:04.108 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:14:04.191 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 20:13:55.154 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43730 10 6452 1 2025-10-17 20:14:55.557 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43158 10 6452 1 2025-10-17 20:15:55.958 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38548 10 6452 1 2025-10-17 20:12:45.842 00:05:00.315 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 20:16:56.359 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46138 10 6452 1 2025-10-17 20:17:56.759 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34894 10 6452 1 2025-10-17 20:14:45.846 00:05:00.310 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 20:19:04.092 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 20:19:04.149 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 20:19:03.812 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:19:04.152 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:19:04.233 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 20:18:57.162 00:00:10.724 TCP 1.101.0.1:3000 -> 23.104.0.1:54454 10 6452 1 2025-10-17 20:19:57.925 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51984 10 6452 1 2025-10-17 20:20:58.339 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40802 10 6452 1 2025-10-17 20:21:58.768 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41904 10 6452 1 2025-10-17 20:18:45.844 00:05:00.315 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 20:22:59.173 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52948 10 6452 1 2025-10-17 20:24:04.322 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 20:24:04.657 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 20:24:04.479 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:24:04.719 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:24:04.801 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 20:23:59.577 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46524 10 6452 1 2025-10-17 20:20:45.847 00:05:00.312 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 20:24:59.982 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:55522 10 6452 1 2025-10-17 20:26:00.356 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:58166 10 6452 1 2025-10-17 20:27:00.724 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:39324 10 6452 1 2025-10-17 20:28:01.139 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40238 10 6452 1 2025-10-17 20:24:45.846 00:05:00.316 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 20:29:04.468 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 20:29:04.364 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 20:29:04.253 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:29:04.400 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:29:04.483 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 20:29:01.537 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43558 10 6452 1 2025-10-17 20:30:01.943 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:37010 10 6452 1 2025-10-17 20:26:45.847 00:05:00.313 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 20:31:02.320 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35790 10 6452 1 2025-10-17 20:32:02.725 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33676 10 6452 1 2025-10-17 20:33:03.117 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45912 10 6452 1 2025-10-17 20:34:04.475 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 20:34:04.392 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:34:04.392 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 20:34:04.398 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 20:34:04.257 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:34:03.525 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:42048 10 6452 1 2025-10-17 20:30:45.846 00:05:00.317 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 20:35:03.954 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:50692 10 6452 1 2025-10-17 20:36:04.374 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60128 10 6452 1 2025-10-17 20:32:45.850 00:05:00.311 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 20:37:04.778 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:49108 10 6452 1 2025-10-17 20:38:05.190 00:00:10.411 TCP 1.101.0.1:3000 -> 23.104.0.1:50468 11 6504 1 2025-10-17 20:39:04.633 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 20:39:04.473 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:39:04.552 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:39:04.555 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 20:39:04.562 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 20:39:05.641 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45614 10 6452 1 2025-10-17 20:40:06.038 00:00:11.073 TCP 1.101.0.1:3000 -> 23.104.0.1:42768 10 6452 1 2025-10-17 20:36:45.851 00:05:00.314 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 20:41:07.148 00:00:11.438 TCP 1.101.0.1:3000 -> 23.104.0.1:38562 10 6452 1 2025-10-17 20:42:08.618 00:00:10.765 TCP 1.101.0.1:3000 -> 23.104.0.1:49884 10 6452 1 2025-10-17 20:38:45.854 00:05:00.308 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 20:43:09.418 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58512 10 6452 1 2025-10-17 20:44:04.729 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 20:44:04.566 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 20:44:04.466 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:44:04.636 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:44:04.719 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 20:44:09.823 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:57240 10 6452 1 2025-10-17 20:45:10.193 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44782 10 6452 1 2025-10-17 20:46:10.596 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55506 10 6452 1 2025-10-17 20:42:45.855 00:05:00.309 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 20:47:11.012 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:41650 10 6452 1 2025-10-17 20:48:11.455 00:00:10.423 TCP 1.101.0.1:3000 -> 23.104.0.1:48066 11 6504 1 2025-10-17 20:44:45.860 00:05:00.304 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 20:49:04.731 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 20:49:04.809 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 20:49:04.811 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 20:49:04.753 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:49:04.648 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:49:11.917 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53028 10 6452 1 2025-10-17 20:50:12.325 00:00:10.575 TCP 1.101.0.1:3000 -> 23.104.0.1:56840 10 6452 1 2025-10-17 20:51:12.937 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:35366 10 6452 1 2025-10-17 20:52:13.357 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35726 10 6452 1 2025-10-17 20:48:45.858 00:05:00.311 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 20:53:13.768 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49256 10 6452 1 2025-10-17 20:54:04.950 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 20:54:04.871 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:54:04.873 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:54:04.877 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 20:54:04.955 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 20:54:14.176 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48658 10 6452 1 2025-10-17 20:50:45.860 00:05:00.306 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 20:55:14.588 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52792 10 6452 1 2025-10-17 20:56:14.995 00:00:10.686 TCP 1.101.0.1:3000 -> 23.104.0.1:34254 10 6452 1 2025-10-17 20:57:15.718 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:47396 10 6452 1 2025-10-17 20:58:16.137 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56076 10 6452 1 2025-10-17 20:54:45.859 00:05:00.312 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 Summary: total flows: 140, total bytes: 421027, total packets: 1024, avg bps: 890, avg pps: 0, avg bpp: 411 Time window: 2025-10-17 19:56:45 - 2025-10-17 20:59:46 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0038s User: 0.0023s Wall: 0.0026s flows/second: 54410.9 Runtime: 0.0026s