Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-18 13:58:50.067 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53616 10 6452 1 2025-10-18 13:59:25.480 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 13:59:25.549 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 13:59:25.310 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 13:59:25.490 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 13:59:25.573 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 13:59:50.477 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45444 10 6452 1 2025-10-18 13:55:46.240 00:06:00.265 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 14:00:50.837 00:00:10.661 TCP 1.101.0.1:3000 -> 23.104.0.1:40514 10 6452 1 2025-10-18 14:01:51.536 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34936 10 6452 1 2025-10-18 14:02:51.940 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:50954 10 6452 1 2025-10-18 13:58:46.240 00:06:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 14:03:52.358 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43446 10 6452 1 2025-10-18 14:04:25.497 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 14:04:25.516 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 14:04:25.400 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 14:04:25.323 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:04:25.414 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:04:52.758 00:00:11.029 TCP 1.101.0.1:3000 -> 23.104.0.1:45316 10 6452 1 2025-10-18 14:05:53.828 00:00:10.566 TCP 1.101.0.1:3000 -> 23.104.0.1:43992 10 6452 1 2025-10-18 14:06:54.433 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54272 10 6452 1 2025-10-18 14:02:46.241 00:06:00.268 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 14:07:54.842 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:40480 10 6452 1 2025-10-18 14:08:55.274 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56618 10 6452 1 2025-10-18 14:09:25.597 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 14:09:25.700 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 14:09:25.235 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:09:25.544 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:09:25.627 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 14:09:55.681 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:49716 10 6452 1 2025-10-18 14:05:46.239 00:06:00.273 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 14:10:56.109 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56204 10 6452 1 2025-10-18 14:11:56.519 00:00:10.407 TCP 1.101.0.1:3000 -> 23.104.0.1:59164 10 6452 1 2025-10-18 14:12:56.966 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58696 10 6452 1 2025-10-18 14:13:57.372 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33820 10 6452 1 2025-10-18 14:14:25.802 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 14:14:25.660 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 14:14:25.659 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 14:14:25.614 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:14:25.718 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:09:46.244 00:06:00.268 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 14:14:57.735 00:00:10.987 TCP 1.101.0.1:3000 -> 23.104.0.1:51998 10 6452 1 2025-10-18 14:15:58.757 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:57110 10 6452 1 2025-10-18 14:16:59.174 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38226 10 6452 1 2025-10-18 14:12:46.240 00:06:00.273 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 14:17:59.575 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52848 10 6452 1 2025-10-18 14:18:59.981 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:33262 10 6452 1 2025-10-18 14:19:25.887 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:19:25.920 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:19:25.753 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 14:19:25.839 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 14:19:26.003 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 14:20:00.391 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44548 10 6452 1 2025-10-18 14:21:00.795 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45484 10 6452 1 2025-10-18 14:16:46.245 00:06:00.266 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 14:22:01.203 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52808 10 6452 1 2025-10-18 14:23:01.609 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38032 10 6452 1 2025-10-18 14:24:02.016 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55882 10 6452 1 2025-10-18 14:24:25.702 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 14:24:25.789 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 14:24:25.762 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:24:25.702 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:24:25.786 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 14:19:46.244 00:06:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 14:25:02.419 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:59362 10 6452 1 2025-10-18 14:26:02.781 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:50620 10 6452 1 2025-10-18 14:27:03.202 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55434 10 6452 1 2025-10-18 14:28:03.604 00:00:10.446 TCP 1.101.0.1:3000 -> 23.104.0.1:38248 12 10375 1 2025-10-18 14:23:46.247 00:06:00.265 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 14:29:04.123 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39496 10 6452 1 2025-10-18 14:29:25.889 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 14:29:26.091 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 14:29:26.064 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:29:26.043 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:29:26.125 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 14:30:04.529 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41430 10 6452 1 2025-10-18 14:31:04.933 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:50964 10 6452 1 2025-10-18 14:26:46.246 00:06:00.272 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 14:32:05.345 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:46670 10 6452 1 2025-10-18 14:33:05.703 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33932 10 6452 1 2025-10-18 14:34:06.112 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53650 10 6452 1 2025-10-18 14:34:26.296 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 14:34:26.206 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 14:34:26.147 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:34:26.213 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:34:26.260 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 14:35:06.517 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58368 10 6452 1 2025-10-18 14:30:46.249 00:06:00.266 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 14:36:06.926 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:40660 10 6452 1 2025-10-18 14:37:07.345 00:00:10.863 TCP 1.101.0.1:3000 -> 23.104.0.1:45072 10 6452 1 2025-10-18 14:38:08.247 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:54610 10 6452 1 2025-10-18 14:33:46.246 00:06:00.272 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 14:39:08.617 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43902 12 6556 1 2025-10-18 14:39:26.695 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 14:39:26.615 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 14:39:26.529 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 14:39:26.460 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:39:26.614 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:40:09.024 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38512 10 6452 1 2025-10-18 14:41:09.427 00:00:10.503 TCP 1.101.0.1:3000 -> 23.104.0.1:36364 10 6452 1 2025-10-18 14:42:09.967 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41866 10 6452 1 2025-10-18 14:37:46.250 00:06:00.266 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 14:43:10.369 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:49350 10 6452 1 2025-10-18 14:44:10.725 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53626 10 6452 1 2025-10-18 14:44:26.257 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 14:44:26.086 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 14:44:26.132 00:00:00.031 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:44:26.374 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:44:26.457 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 14:45:11.132 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58028 10 6452 1 2025-10-18 14:40:46.249 00:06:00.272 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 14:46:11.492 00:00:10.755 TCP 1.101.0.1:3000 -> 23.104.0.1:33610 10 6452 1 2025-10-18 14:47:12.284 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55742 10 6452 1 2025-10-18 14:48:12.692 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49138 10 6452 1 2025-10-18 14:49:13.053 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49772 10 6452 1 2025-10-18 14:49:26.420 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 14:49:26.271 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 14:49:26.271 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 14:49:26.395 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:49:26.336 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:44:46.250 00:06:00.267 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 14:50:13.457 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:37188 10 6452 1 2025-10-18 14:51:13.858 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:44062 10 6452 1 2025-10-18 14:52:14.227 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33952 10 6452 1 2025-10-18 14:47:46.249 00:06:00.271 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 14:53:14.634 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47794 10 6452 1 2025-10-18 14:54:26.644 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 14:54:26.461 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 14:54:26.589 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 14:54:26.340 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:54:26.561 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:54:15.036 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34380 10 6452 1 2025-10-18 14:55:15.440 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:54378 10 6452 1 2025-10-18 14:56:15.826 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47400 10 6452 1 2025-10-18 14:51:46.252 00:06:00.266 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 14:57:16.228 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37824 10 6452 1 2025-10-18 14:58:16.628 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40416 10 6452 1 Summary: total flows: 137, total bytes: 420904, total packets: 1022, avg bps: 895, avg pps: 0, avg bpp: 411 Time window: 2025-10-18 13:55:46 - 2025-10-18 14:58:27 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0027s User: 0.0027s Wall: 0.0028s flows/second: 49159.0 Runtime: 0.0028s