Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-17 21:58:41.927 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:58828 10 6452 1 2025-10-17 21:59:06.045 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 21:59:06.071 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 21:59:06.133 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 21:59:06.207 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 21:59:05.961 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 21:59:42.366 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50030 10 6452 1 2025-10-17 21:56:45.884 00:05:00.301 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 22:00:42.765 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35896 10 6452 1 2025-10-17 22:01:43.185 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57984 10 6452 1 2025-10-17 22:02:43.588 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42458 10 6452 1 2025-10-17 22:03:43.991 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36794 10 6452 1 2025-10-17 22:04:06.055 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 22:04:06.217 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 22:04:06.180 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:04:06.211 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:04:06.293 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 22:00:45.881 00:05:00.304 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 22:04:44.354 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45786 10 6452 1 2025-10-17 22:05:44.756 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:48806 10 6452 1 2025-10-17 22:02:45.888 00:05:00.296 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 22:06:45.172 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:50462 10 6452 1 2025-10-17 22:07:45.538 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43632 10 6452 1 2025-10-17 22:08:45.938 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:52946 10 6452 1 2025-10-17 22:09:06.228 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 22:09:06.418 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 22:09:06.305 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:09:06.236 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:09:06.319 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 22:09:46.353 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34484 10 6452 1 2025-10-17 22:06:45.884 00:05:00.302 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 22:10:46.753 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33516 10 6452 1 2025-10-17 22:11:47.167 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:36408 10 6452 1 2025-10-17 22:08:45.887 00:05:00.299 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 22:12:47.562 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40708 10 6452 1 2025-10-17 22:13:47.966 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34128 10 6452 1 2025-10-17 22:14:06.554 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 22:14:06.320 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 22:14:06.471 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 22:14:06.358 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:14:06.471 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:14:48.328 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52286 10 6452 1 2025-10-17 22:15:48.735 00:00:10.952 TCP 1.101.0.1:3000 -> 23.104.0.1:40538 10 6452 1 2025-10-17 22:12:45.885 00:05:00.303 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 22:16:49.726 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:56542 10 6452 1 2025-10-17 22:17:50.142 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:32958 10 6452 1 2025-10-17 22:14:45.890 00:05:00.297 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 22:18:50.547 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49796 10 6452 1 2025-10-17 22:19:06.381 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 22:19:06.522 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 22:19:06.474 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:19:06.596 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:19:06.678 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 22:19:50.951 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:40674 10 6452 1 2025-10-17 22:20:51.362 00:00:11.103 TCP 1.101.0.1:3000 -> 23.104.0.1:57874 10 6452 1 2025-10-17 22:21:52.500 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34220 10 6452 1 2025-10-17 22:18:45.886 00:05:00.303 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 22:22:52.902 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35396 10 6452 1 2025-10-17 22:23:53.315 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36716 10 6452 1 2025-10-17 22:24:06.519 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 22:24:06.587 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 22:24:06.674 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:24:06.504 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:24:06.587 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 22:20:45.892 00:05:00.296 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 22:24:53.720 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35270 10 6452 1 2025-10-17 22:25:54.129 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45432 10 6452 1 2025-10-17 22:26:54.530 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49500 10 6452 1 2025-10-17 22:27:54.929 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:35066 10 6452 1 2025-10-17 22:24:45.893 00:05:00.298 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 22:29:06.992 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 22:29:06.803 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 22:29:06.860 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 22:29:06.624 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:29:06.909 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:28:55.360 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58062 10 6452 1 2025-10-17 22:29:55.770 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:36988 10 6452 1 2025-10-17 22:26:45.896 00:05:00.293 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 22:30:56.153 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39704 10 6452 1 2025-10-17 22:31:56.558 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:55424 10 6452 1 2025-10-17 22:32:56.933 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:53036 10 6452 1 2025-10-17 22:34:06.824 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 22:34:06.853 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:34:06.746 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:33:57.363 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43556 10 6452 1 2025-10-17 22:34:06.774 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 22:34:06.829 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 22:30:45.894 00:05:00.297 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 22:34:57.776 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47166 10 6452 1 2025-10-17 22:35:58.184 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41808 10 6452 1 2025-10-17 22:32:45.900 00:05:00.290 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 22:36:58.587 00:00:11.266 TCP 1.101.0.1:3000 -> 23.104.0.1:57792 10 6452 1 2025-10-17 22:37:59.892 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57072 12 6556 1 2025-10-17 22:39:06.921 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 22:39:06.923 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 22:39:07.004 00:00:00.031 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:39:07.010 00:00:00.041 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:39:07.092 00:00:00.042 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 22:39:00.306 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:51714 10 6452 1 2025-10-17 22:40:00.678 00:00:10.899 TCP 1.101.0.1:3000 -> 23.104.0.1:41404 10 6452 1 2025-10-17 22:36:45.905 00:05:00.289 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 22:41:01.615 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:52562 10 6452 1 2025-10-17 22:42:01.987 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:59484 10 6452 1 2025-10-17 22:38:45.907 00:05:00.285 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 22:43:02.348 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42818 10 6452 1 2025-10-17 22:44:06.914 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 22:44:06.999 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 22:44:06.914 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:44:07.145 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:44:07.228 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 22:44:02.759 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:38626 10 6452 1 2025-10-17 22:45:03.184 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34056 10 6452 1 2025-10-17 22:46:03.593 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36308 10 6452 1 2025-10-17 22:42:45.906 00:05:00.292 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 22:47:03.991 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56780 10 6452 1 2025-10-17 22:48:04.355 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41104 10 6452 1 2025-10-17 22:44:45.908 00:05:00.286 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 22:49:08.240 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 22:49:07.859 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 22:49:07.969 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:49:08.158 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:49:07.744 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 22:49:04.755 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:46406 10 6452 1 2025-10-17 22:50:05.119 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39712 10 6452 1 2025-10-17 22:51:05.530 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58396 10 6452 1 2025-10-17 22:52:05.891 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55254 12 6556 1 2025-10-17 22:48:45.908 00:05:00.291 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 22:53:06.304 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59436 10 6452 1 2025-10-17 22:54:07.215 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 22:54:06.954 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:54:07.134 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:54:07.135 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 22:54:07.246 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 22:54:06.720 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:58490 10 6452 1 2025-10-17 22:50:45.910 00:05:00.286 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 22:55:07.111 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47450 10 6452 1 2025-10-17 22:56:07.519 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42076 10 6452 1 2025-10-17 22:57:07.924 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38702 10 6452 1 2025-10-17 22:58:08.328 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:52428 10 6452 1 2025-10-17 22:54:45.910 00:05:00.290 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 Summary: total flows: 140, total bytes: 417208, total packets: 1024, avg bps: 882, avg pps: 0, avg bpp: 407 Time window: 2025-10-17 21:56:45 - 2025-10-17 22:59:46 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0029s User: 0.0029s Wall: 0.0020s flows/second: 70995.4 Runtime: 0.0020s