Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-18 09:59:08.353 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:47308 10 6452 1 2025-10-18 09:59:20.579 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 09:59:20.580 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 09:59:20.667 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 09:59:20.513 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 09:59:20.494 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 10:00:08.753 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60608 10 6452 1 2025-10-18 10:01:09.156 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60752 10 6452 1 2025-10-18 10:02:09.558 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52562 10 6452 1 2025-10-18 09:57:46.160 00:06:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 10:03:09.962 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:43328 12 10375 1 2025-10-18 10:04:20.533 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 10:04:20.654 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 10:04:10.444 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36480 10 6452 1 2025-10-18 10:04:20.649 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 10:04:20.649 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 10:04:20.736 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 10:05:10.843 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:50628 10 6452 1 2025-10-18 10:00:46.157 00:06:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 10:06:11.220 00:00:10.550 TCP 1.101.0.1:3000 -> 23.104.0.1:34136 10 6452 1 2025-10-18 10:07:11.812 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34776 10 6452 1 2025-10-18 10:08:12.215 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33992 10 6452 1 2025-10-18 10:09:20.646 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 10:09:20.645 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 10:09:20.832 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 10:09:12.617 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42124 10 6452 1 2025-10-18 10:09:20.720 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 10:09:20.802 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 10:04:46.161 00:06:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 10:10:13.029 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54148 10 6452 1 2025-10-18 10:11:13.428 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52782 10 6452 1 2025-10-18 10:12:13.788 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39806 10 6452 1 2025-10-18 10:07:46.159 00:06:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 10:13:14.193 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:58736 10 6452 1 2025-10-18 10:14:20.998 00:00:00.041 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 10:14:21.206 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 10:14:20.723 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 10:14:21.181 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 10:14:14.617 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33354 10 6452 1 2025-10-18 10:14:21.264 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 10:15:15.030 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36350 10 6452 1 2025-10-18 10:16:15.438 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53040 10 6452 1 2025-10-18 10:11:46.163 00:06:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 10:17:15.842 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:48988 10 6452 1 2025-10-18 10:18:16.280 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52856 10 6452 1 2025-10-18 10:19:21.211 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 10:19:20.790 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 10:19:20.787 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 10:19:20.886 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 10:19:21.129 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 10:19:16.684 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:33068 10 6452 1 2025-10-18 10:14:46.161 00:06:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 10:20:17.125 00:00:10.877 TCP 1.101.0.1:3000 -> 23.104.0.1:35030 10 6452 1 2025-10-18 10:21:18.054 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37892 10 6452 1 2025-10-18 10:22:18.459 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41776 10 6452 1 2025-10-18 10:23:18.863 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50144 10 6452 1 2025-10-18 10:18:46.164 00:06:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 10:24:21.150 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 10:24:20.916 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 10:24:20.986 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 10:24:21.072 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 10:24:21.067 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 10:24:19.274 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41204 10 6452 1 2025-10-18 10:25:19.678 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:55676 10 6452 1 2025-10-18 10:26:20.105 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49168 10 6452 1 2025-10-18 10:21:46.162 00:06:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 10:27:20.505 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54750 10 6452 1 2025-10-18 10:28:20.911 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48546 10 6452 1 2025-10-18 10:29:21.135 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 10:29:21.076 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 10:29:21.140 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 10:29:20.804 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 10:29:21.218 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 10:29:21.320 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:47524 10 6452 1 2025-10-18 10:30:21.722 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49370 10 6452 1 2025-10-18 10:25:46.166 00:06:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 10:31:22.134 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35320 10 6452 1 2025-10-18 10:32:22.540 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49790 10 6452 1 2025-10-18 10:33:22.941 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:34870 10 6452 1 2025-10-18 10:28:46.165 00:06:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 10:34:21.283 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 10:34:21.368 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 10:34:21.104 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 10:34:21.236 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 10:34:21.200 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 10:34:23.314 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35714 10 6452 1 2025-10-18 10:35:23.718 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53636 10 6452 1 2025-10-18 10:36:24.120 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:60162 10 6452 1 2025-10-18 10:37:24.481 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50692 10 6452 1 2025-10-18 10:32:46.169 00:06:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 10:38:24.885 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:59996 10 6452 1 2025-10-18 10:39:21.536 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 10:39:21.455 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 10:39:21.420 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 10:39:21.453 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 10:39:21.298 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 10:39:25.311 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58006 10 6452 1 2025-10-18 10:40:25.715 00:00:10.461 TCP 1.101.0.1:3000 -> 23.104.0.1:34542 11 6504 1 2025-10-18 10:35:46.168 00:06:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 10:41:26.215 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57366 10 6452 1 2025-10-18 10:42:26.624 00:00:10.448 TCP 1.101.0.1:3000 -> 23.104.0.1:40290 12 10375 1 2025-10-18 10:43:27.109 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37444 10 6452 1 2025-10-18 10:44:21.485 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 10:44:21.368 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 10:44:21.192 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 10:44:21.564 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 10:44:21.648 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 10:44:27.516 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48304 10 6452 1 2025-10-18 10:39:46.173 00:06:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 10:45:27.889 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:47332 12 6556 1 2025-10-18 10:46:28.315 00:00:10.423 TCP 1.101.0.1:3000 -> 23.104.0.1:56250 11 6504 1 2025-10-18 10:47:28.775 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:34712 10 6452 1 2025-10-18 10:42:46.170 00:06:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 10:48:29.188 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48184 10 6452 1 2025-10-18 10:49:21.656 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 10:49:21.572 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 10:49:21.573 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 10:49:21.407 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 10:49:21.573 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 10:49:29.594 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49768 10 6452 1 2025-10-18 10:50:29.992 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:47830 10 6452 1 2025-10-18 10:51:30.355 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52556 10 6452 1 2025-10-18 10:46:46.174 00:06:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 10:52:30.715 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:34656 10 6452 1 2025-10-18 10:53:31.107 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54458 10 6452 1 2025-10-18 10:54:21.398 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 10:54:21.713 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 10:54:21.551 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 10:54:21.667 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 10:54:21.750 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 10:54:31.510 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52842 10 6452 1 2025-10-18 10:49:46.173 00:06:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 10:55:31.915 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58560 10 6452 1 2025-10-18 10:56:32.321 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57818 10 6452 1 2025-10-18 10:57:32.731 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45204 10 6452 1 2025-10-18 10:58:33.138 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51878 10 6452 1 2025-10-18 10:53:46.177 00:06:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 Summary: total flows: 137, total bytes: 424931, total packets: 1026, avg bps: 913, avg pps: 0, avg bpp: 414 Time window: 2025-10-18 09:57:46 - 2025-10-18 10:59:46 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0030s User: 0.0020s Wall: 0.0031s flows/second: 44596.0 Runtime: 0.0031s