Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-18 17:58:46.807 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34302 10 6452 1 2025-10-18 17:59:30.721 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 17:59:30.490 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 17:59:30.632 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 17:59:30.319 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 17:59:30.639 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 17:59:47.213 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34696 10 6452 1 2025-10-18 18:00:47.614 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48656 10 6452 1 2025-10-18 17:56:46.321 00:06:00.250 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 18:01:48.026 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35886 10 6452 1 2025-10-18 18:02:48.432 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55422 10 6452 1 2025-10-18 18:03:48.837 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59572 10 6452 1 2025-10-18 18:04:30.453 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 18:04:30.374 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 18:04:30.319 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 18:04:30.274 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 18:04:30.372 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 18:04:49.252 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55004 10 6452 1 2025-10-18 18:00:46.326 00:06:00.245 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 18:05:49.659 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:56726 10 6452 1 2025-10-18 18:06:50.019 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47674 10 6452 1 2025-10-18 18:07:50.431 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48998 10 6452 1 2025-10-18 18:03:46.325 00:06:00.252 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 18:08:50.833 00:00:10.633 TCP 1.101.0.1:3000 -> 23.104.0.1:40980 10 6452 1 2025-10-18 18:09:30.318 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 18:09:30.487 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 18:09:30.262 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 18:09:30.230 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 18:09:30.313 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 18:09:51.504 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:56378 10 6452 1 2025-10-18 18:10:51.910 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49142 10 6452 1 2025-10-18 18:11:52.319 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:54990 10 6452 1 2025-10-18 18:07:46.327 00:06:00.247 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 18:12:52.683 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:58570 10 6452 1 2025-10-18 18:13:53.051 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48350 10 6452 1 2025-10-18 18:14:30.665 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 18:14:30.689 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 18:14:30.560 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 18:14:30.209 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 18:14:30.582 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 18:14:53.416 00:00:10.523 TCP 1.101.0.1:3000 -> 23.104.0.1:34032 10 6452 1 2025-10-18 18:10:46.325 00:06:00.252 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 18:15:53.976 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:44142 10 6452 1 2025-10-18 18:16:54.378 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35696 10 6452 1 2025-10-18 18:17:54.776 00:00:10.545 TCP 1.101.0.1:3000 -> 23.104.0.1:37494 10 6452 1 2025-10-18 18:18:55.358 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58750 10 6452 1 2025-10-18 18:19:30.634 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 18:19:30.578 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 18:19:30.642 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 18:19:30.659 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 18:19:30.742 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 18:14:46.331 00:06:00.248 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 18:19:55.718 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39232 10 6452 1 2025-10-18 18:20:56.127 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53954 10 6452 1 2025-10-18 18:21:56.532 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52560 10 6452 1 2025-10-18 18:17:46.331 00:06:00.251 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 18:22:56.932 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:36114 10 6452 1 2025-10-18 18:23:57.366 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56248 10 6452 1 2025-10-18 18:24:30.557 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 18:24:30.649 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 18:24:30.595 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 18:24:30.648 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 18:24:30.730 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 18:24:57.780 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55454 10 6452 1 2025-10-18 18:25:58.147 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:48476 10 6452 1 2025-10-18 18:21:46.336 00:06:00.248 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 18:26:58.513 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45140 10 6452 1 2025-10-18 18:27:58.920 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34580 10 6452 1 2025-10-18 18:28:59.322 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:33838 10 6452 1 2025-10-18 18:29:30.717 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 18:29:30.798 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 18:29:30.787 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 18:29:30.840 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 18:29:30.924 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 18:24:46.334 00:06:00.254 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 18:29:59.720 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49890 10 6452 1 2025-10-18 18:31:00.131 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52760 10 6452 1 2025-10-18 18:32:00.538 00:00:10.767 TCP 1.101.0.1:3000 -> 23.104.0.1:52282 10 6452 1 2025-10-18 18:33:01.345 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:50786 12 10369 1 2025-10-18 18:28:46.337 00:06:00.248 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 18:34:01.825 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43730 10 6452 1 2025-10-18 18:34:30.687 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 18:34:30.875 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 18:34:30.751 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 18:34:30.762 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 18:34:30.959 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 18:35:02.229 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37006 10 6452 1 2025-10-18 18:36:02.595 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42654 10 6452 1 2025-10-18 18:31:46.335 00:06:00.254 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 18:37:02.998 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:32796 10 6452 1 2025-10-18 18:38:03.404 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:48976 12 10369 1 2025-10-18 18:39:03.891 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37178 10 6452 1 2025-10-18 18:39:30.901 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 18:39:30.958 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 18:39:30.937 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 18:39:30.777 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 18:39:30.860 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 18:40:04.320 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40642 10 6452 1 2025-10-18 18:35:46.341 00:06:00.246 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 18:41:04.690 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:46090 10 6452 1 2025-10-18 18:42:05.117 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35892 10 6452 1 2025-10-18 18:43:05.478 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57560 10 6452 1 2025-10-18 18:38:46.339 00:06:00.253 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 18:44:05.880 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43480 10 6452 1 2025-10-18 18:44:31.041 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 18:44:31.055 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 18:44:31.061 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 18:44:31.055 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 18:44:31.139 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 18:45:06.283 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58432 10 6452 1 2025-10-18 18:46:06.689 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44158 10 6452 1 2025-10-18 18:47:07.109 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33924 10 6452 1 2025-10-18 18:42:46.342 00:06:00.247 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 18:48:07.510 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56044 10 6452 1 2025-10-18 18:49:07.911 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56208 10 6452 1 2025-10-18 18:49:31.362 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 18:49:31.090 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 18:49:31.307 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 18:49:31.064 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 18:49:31.445 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 18:50:08.328 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:56578 10 6452 1 2025-10-18 18:45:46.340 00:06:00.253 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 18:51:08.713 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45008 10 6452 1 2025-10-18 18:52:09.136 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51868 10 6452 1 2025-10-18 18:53:09.542 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53768 10 6452 1 2025-10-18 18:54:09.947 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49588 10 6452 1 2025-10-18 18:54:31.300 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 18:54:31.221 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 18:54:31.433 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 18:54:31.325 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 18:54:31.217 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 18:49:46.343 00:06:00.250 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 18:55:10.359 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59720 10 6452 1 2025-10-18 18:56:10.764 00:00:12.848 TCP 1.101.0.1:3000 -> 23.104.0.1:43892 10 6452 1 2025-10-18 18:57:13.649 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45220 10 6452 1 2025-10-18 18:52:46.342 00:06:00.253 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 18:58:14.066 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39656 10 6452 1 Summary: total flows: 137, total bytes: 424711, total packets: 1022, avg bps: 913, avg pps: 0, avg bpp: 415 Time window: 2025-10-18 17:56:46 - 2025-10-18 18:58:46 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0031s User: 0.0031s Wall: 0.0020s flows/second: 68155.6 Runtime: 0.0020s