Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-19 13:59:06.231 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51438 10 6452 1 2025-10-19 13:59:54.178 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 13:59:54.173 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 13:59:54.198 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 13:59:54.234 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 13:59:54.318 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 14:00:06.633 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40920 10 6452 1 2025-10-19 14:01:07.041 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45174 10 6452 1 2025-10-19 14:02:07.442 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:52260 10 6452 1 2025-10-19 13:57:46.734 00:06:00.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 14:03:07.847 00:00:10.426 TCP 1.101.0.1:3000 -> 23.104.0.1:35644 12 10369 1 2025-10-19 14:04:08.314 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58590 12 6556 1 2025-10-19 14:04:54.434 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 14:04:54.369 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 14:04:54.457 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 14:04:54.439 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 14:04:54.522 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 14:05:08.724 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:54040 10 6452 1 2025-10-19 14:00:46.735 00:06:00.226 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 14:06:09.124 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32930 10 6452 1 2025-10-19 14:07:09.531 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:48924 10 6452 1 2025-10-19 14:08:09.927 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:58262 12 10369 1 2025-10-19 14:09:10.383 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:32916 10 6452 1 2025-10-19 14:04:46.737 00:06:00.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 14:09:54.418 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 14:09:54.481 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 14:09:54.482 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 14:09:54.466 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 14:09:54.500 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 14:10:10.799 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49358 10 6452 1 2025-10-19 14:11:11.204 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43828 10 6452 1 2025-10-19 14:12:11.585 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49618 10 6452 1 2025-10-19 14:07:46.736 00:06:00.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 14:13:11.986 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50468 10 6452 1 2025-10-19 14:14:12.398 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:44318 10 6452 1 2025-10-19 14:14:54.571 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 14:14:54.617 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 14:14:54.332 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 14:14:54.564 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 14:14:54.647 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 14:15:12.826 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43424 10 6452 1 2025-10-19 14:16:13.191 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33444 10 6452 1 2025-10-19 14:11:46.739 00:06:00.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 14:17:13.592 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38782 10 6452 1 2025-10-19 14:18:13.998 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48892 10 6452 1 2025-10-19 14:19:14.399 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:44384 10 6452 1 2025-10-19 14:14:46.738 00:06:00.226 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 14:19:54.974 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 14:19:55.213 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 14:19:55.210 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 14:19:55.210 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 14:19:55.293 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 14:20:14.800 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50592 10 6452 1 2025-10-19 14:21:15.210 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35442 10 6452 1 2025-10-19 14:22:15.571 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:57478 10 6452 1 2025-10-19 14:23:15.968 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53426 10 6452 1 2025-10-19 14:18:46.741 00:06:00.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 14:24:16.375 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47162 10 6452 1 2025-10-19 14:24:54.721 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 14:24:54.746 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 14:24:54.624 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 14:24:54.716 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 14:24:54.638 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 14:25:16.739 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57814 10 6452 1 2025-10-19 14:26:17.151 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59144 10 6452 1 2025-10-19 14:21:46.740 00:06:00.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 14:27:17.567 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53538 10 6452 1 2025-10-19 14:28:17.968 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:38364 10 6452 1 2025-10-19 14:29:18.383 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47294 10 6452 1 2025-10-19 14:29:54.909 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 14:29:54.871 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 14:29:54.676 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 14:29:54.654 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 14:29:54.757 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 14:30:18.790 00:00:10.727 TCP 1.101.0.1:3000 -> 23.104.0.1:51468 10 6452 1 2025-10-19 14:25:46.743 00:06:00.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 14:31:19.553 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58260 10 6452 1 2025-10-19 14:32:19.962 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:59664 10 6452 1 2025-10-19 14:33:20.316 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:52458 10 6452 1 2025-10-19 14:28:46.742 00:06:00.224 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 14:34:20.685 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38414 10 6452 1 2025-10-19 14:34:54.944 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 14:34:54.941 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 14:34:54.674 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 14:34:54.995 00:00:00.044 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 14:34:55.028 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 14:35:21.115 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:48248 10 6452 1 2025-10-19 14:36:21.479 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44742 10 6452 1 2025-10-19 14:37:21.882 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41252 10 6452 1 2025-10-19 14:32:46.745 00:06:00.221 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 14:38:22.245 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52684 10 6452 1 2025-10-19 14:39:22.659 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54916 10 6452 1 2025-10-19 14:39:54.932 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 14:39:55.077 00:00:00.032 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 14:39:54.995 00:00:00.032 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 14:39:54.994 00:00:00.050 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 14:39:55.000 00:00:00.036 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 14:40:23.094 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41458 10 6452 1 2025-10-19 14:35:46.742 00:06:00.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 14:41:23.496 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:35076 10 6452 1 2025-10-19 14:42:23.908 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57966 10 6452 1 2025-10-19 14:43:24.315 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60422 10 6452 1 2025-10-19 14:44:24.723 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:52404 10 6452 1 2025-10-19 14:39:46.750 00:06:00.217 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 14:44:55.349 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 14:44:55.254 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 14:44:55.442 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 14:44:55.251 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 14:44:55.338 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 14:45:25.137 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44204 10 6452 1 2025-10-19 14:46:25.548 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58116 10 6452 1 2025-10-19 14:47:25.950 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51566 10 6452 1 2025-10-19 14:42:46.748 00:06:00.222 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 14:48:26.354 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34404 10 6452 1 2025-10-19 14:49:26.764 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:42294 10 6452 1 2025-10-19 14:49:55.263 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 14:49:55.201 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 14:49:55.262 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 14:49:54.997 00:00:00.049 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 14:49:55.347 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 14:50:27.134 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47940 10 6452 1 2025-10-19 14:51:27.541 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35278 10 6452 1 2025-10-19 14:46:46.751 00:06:00.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 14:52:27.906 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:32826 10 6452 1 2025-10-19 14:53:28.276 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42074 10 6452 1 2025-10-19 14:54:28.679 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44620 10 6452 1 2025-10-19 14:49:46.749 00:06:00.226 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 14:54:54.962 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 14:54:55.411 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 14:54:55.407 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 14:54:55.406 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 14:54:55.488 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 14:55:29.102 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36090 10 6452 1 2025-10-19 14:56:29.500 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36072 10 6452 1 2025-10-19 14:57:29.883 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57900 10 6452 1 2025-10-19 14:58:30.270 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:57040 12 10375 1 2025-10-19 14:53:46.753 00:06:00.219 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 Summary: total flows: 137, total bytes: 428738, total packets: 1026, avg bps: 921, avg pps: 0, avg bpp: 417 Time window: 2025-10-19 13:57:46 - 2025-10-19 14:59:46 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0040s User: 0.0020s Wall: 0.0019s flows/second: 71800.5 Runtime: 0.0019s