Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-19 00:59:09.703 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43048 10 6452 1 2025-10-19 00:59:38.592 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 00:59:38.579 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 00:59:38.617 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 00:59:38.515 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 00:59:38.508 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 01:00:10.109 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44638 10 6452 1 2025-10-19 01:01:10.514 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40406 10 6452 1 2025-10-19 00:56:46.460 00:06:00.239 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 01:02:10.911 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:58410 10 6452 1 2025-10-19 01:03:11.273 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57728 10 6452 1 2025-10-19 01:04:11.641 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:57600 10 6452 1 2025-10-19 01:04:38.744 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 01:04:38.744 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 01:04:38.613 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 01:04:38.679 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 01:04:38.761 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 01:05:12.122 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35080 10 6452 1 2025-10-19 01:00:46.462 00:06:00.236 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 01:06:12.528 00:00:10.662 TCP 1.101.0.1:3000 -> 23.104.0.1:39492 10 6452 1 2025-10-19 01:07:13.231 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37126 10 6452 1 2025-10-19 01:08:13.631 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37422 10 6452 1 2025-10-19 01:03:46.463 00:06:00.239 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 01:09:14.038 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:51698 10 6452 1 2025-10-19 01:09:38.648 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 01:09:38.864 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 01:09:38.575 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 01:09:38.730 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 01:09:38.814 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 01:10:14.453 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58624 10 6452 1 2025-10-19 01:11:14.859 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:34030 10 6452 1 2025-10-19 01:12:15.235 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45496 10 6452 1 2025-10-19 01:07:46.467 00:06:00.232 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 01:13:15.641 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34806 10 6452 1 2025-10-19 01:14:16.010 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47438 10 6452 1 2025-10-19 01:14:39.029 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 01:14:38.769 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 01:14:38.829 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 01:14:38.604 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 01:14:38.945 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 01:15:16.416 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35018 10 6452 1 2025-10-19 01:10:46.465 00:06:00.240 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 01:16:16.821 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56930 10 6452 1 2025-10-19 01:17:17.223 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:52882 10 6452 1 2025-10-19 01:18:17.586 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34160 10 6452 1 2025-10-19 01:19:17.985 00:00:11.576 TCP 1.101.0.1:3000 -> 23.104.0.1:57556 10 6452 1 2025-10-19 01:19:39.548 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 01:19:39.476 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 01:19:39.553 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 01:19:39.473 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 01:19:39.556 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 01:14:46.468 00:06:00.235 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 01:20:19.597 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58960 10 6452 1 2025-10-19 01:21:20.000 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59886 10 6452 1 2025-10-19 01:22:20.400 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:58958 11 6504 1 2025-10-19 01:17:46.467 00:06:00.239 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 01:23:20.857 00:00:10.453 TCP 1.101.0.1:3000 -> 23.104.0.1:44800 12 10375 1 2025-10-19 01:24:21.343 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60832 10 6452 1 2025-10-19 01:24:39.196 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 01:24:39.206 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 01:24:39.311 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 01:24:39.195 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 01:24:39.279 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 01:25:21.750 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47730 10 6452 1 2025-10-19 01:26:22.152 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49442 10 6452 1 2025-10-19 01:21:46.471 00:06:00.237 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 01:27:22.555 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:54278 10 6452 1 2025-10-19 01:28:22.912 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45192 10 6452 1 2025-10-19 01:29:23.321 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:44512 10 6452 1 2025-10-19 01:29:39.206 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 01:29:39.080 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 01:29:39.169 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 01:29:39.207 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 01:29:39.289 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 01:24:46.473 00:06:00.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 01:30:23.702 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:34070 10 6452 1 2025-10-19 01:31:24.075 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49554 10 6452 1 2025-10-19 01:32:24.483 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58598 10 6452 1 2025-10-19 01:33:24.855 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:36198 10 6452 1 2025-10-19 01:28:46.479 00:06:00.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 01:34:39.206 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 01:34:39.337 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 01:34:39.338 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 01:34:39.299 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 01:34:25.252 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53940 10 6452 1 2025-10-19 01:34:39.125 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 01:35:25.656 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48510 10 6452 1 2025-10-19 01:36:26.069 00:00:10.705 TCP 1.101.0.1:3000 -> 23.104.0.1:42384 10 6452 1 2025-10-19 01:31:46.479 00:06:00.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 01:37:26.814 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50778 10 6452 1 2025-10-19 01:38:27.222 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:54596 10 6452 1 2025-10-19 01:39:39.734 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 01:39:39.882 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 01:39:27.584 00:00:10.832 TCP 1.101.0.1:3000 -> 23.104.0.1:54132 10 6452 1 2025-10-19 01:39:39.828 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 01:39:39.745 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 01:39:39.652 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 01:40:28.453 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40924 10 6452 1 2025-10-19 01:35:46.480 00:06:00.229 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 01:41:28.815 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38652 10 6452 1 2025-10-19 01:42:29.214 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58460 10 6452 1 2025-10-19 01:43:29.574 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51050 10 6452 1 2025-10-19 01:38:46.479 00:06:00.237 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 01:44:39.461 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 01:44:39.381 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 01:44:39.379 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 01:44:39.301 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 01:44:39.378 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 01:44:29.977 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51690 10 6452 1 2025-10-19 01:45:30.338 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59008 10 6452 1 2025-10-19 01:46:30.749 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58842 10 6452 1 2025-10-19 01:47:31.152 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36074 10 6452 1 2025-10-19 01:42:46.481 00:06:00.234 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 01:48:31.556 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54466 10 6452 1 2025-10-19 01:49:39.736 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 01:49:39.654 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 01:49:39.696 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 01:49:39.724 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 01:49:39.285 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 01:49:31.964 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40190 10 6452 1 2025-10-19 01:50:32.376 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42442 10 6452 1 2025-10-19 01:45:46.481 00:06:00.238 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 01:51:32.733 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34982 10 6452 1 2025-10-19 01:52:33.143 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50980 10 6452 1 2025-10-19 01:53:33.547 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48664 10 6452 1 2025-10-19 01:54:39.641 00:00:00.014 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 01:54:39.665 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 01:54:39.560 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 01:54:39.547 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 01:54:39.656 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 01:54:33.947 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:52952 10 6452 1 2025-10-19 01:49:46.487 00:06:00.232 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 01:55:34.361 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:41464 10 6452 1 2025-10-19 01:56:34.740 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51082 10 6452 1 2025-10-19 01:52:46.483 00:06:00.238 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 01:57:35.150 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:32772 10 6452 1 2025-10-19 01:58:35.516 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36162 10 6452 1 Summary: total flows: 137, total bytes: 420852, total packets: 1021, avg bps: 904, avg pps: 0, avg bpp: 412 Time window: 2025-10-19 00:56:46 - 2025-10-19 01:58:46 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0037s User: 0.0012s Wall: 0.0021s flows/second: 64074.4 Runtime: 0.0022s