Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-19 15:58:55.899 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:49376 10 6452 1 2025-10-19 15:59:56.603 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 15:59:56.672 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 15:59:56.672 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 15:59:56.712 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 15:59:56.521 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 15:59:56.272 00:00:10.408 TCP 1.101.0.1:3000 -> 23.104.0.1:39896 11 6504 1 2025-10-19 15:56:46.774 00:05:00.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 16:00:56.719 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34680 10 6452 1 2025-10-19 15:57:46.772 00:05:00.233 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 16:01:57.134 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:53570 10 6452 1 2025-10-19 16:02:57.510 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38682 10 6452 1 2025-10-19 16:03:57.911 00:00:10.740 TCP 1.101.0.1:3000 -> 23.104.0.1:51350 10 6452 1 2025-10-19 16:04:56.851 00:00:00.020 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 16:04:56.595 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 16:04:56.801 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 16:04:56.603 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 16:04:56.685 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 16:04:58.693 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:52660 10 6452 1 2025-10-19 16:05:59.057 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45088 10 6452 1 2025-10-19 16:02:46.775 00:05:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 16:06:59.458 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:42860 10 6452 1 2025-10-19 16:03:46.772 00:05:00.259 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 16:07:59.841 00:00:10.469 TCP 1.101.0.1:3000 -> 23.104.0.1:44632 12 10375 1 2025-10-19 16:09:00.342 00:00:10.497 TCP 1.101.0.1:3000 -> 23.104.0.1:39084 10 6452 1 2025-10-19 16:09:56.871 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 16:09:56.686 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 16:09:56.835 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 16:09:56.783 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 16:09:56.866 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 16:10:00.878 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:52060 10 6452 1 2025-10-19 16:11:01.281 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:57096 10 6452 1 2025-10-19 16:12:01.648 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:56888 10 6452 1 2025-10-19 16:08:46.775 00:05:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 16:13:02.049 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44678 10 6452 1 2025-10-19 16:09:46.774 00:05:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 16:14:02.453 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36874 10 6452 1 2025-10-19 16:14:57.231 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 16:14:57.149 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 16:14:57.179 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 16:14:56.881 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 16:14:57.147 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 16:15:02.816 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34846 10 6452 1 2025-10-19 16:16:03.224 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:46146 10 6452 1 2025-10-19 16:17:03.588 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38496 10 6452 1 2025-10-19 16:18:03.950 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:39754 10 6452 1 2025-10-19 16:14:46.777 00:05:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 16:19:04.360 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49840 10 6452 1 2025-10-19 16:15:46.774 00:05:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 16:19:56.897 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 16:19:57.165 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 16:19:56.786 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 16:19:57.003 00:00:00.035 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 16:19:57.085 00:00:00.035 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 16:20:04.763 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49746 10 6452 1 2025-10-19 16:21:05.171 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49022 10 6452 1 2025-10-19 16:22:05.574 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55156 10 6452 1 2025-10-19 16:23:05.977 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39238 10 6452 1 2025-10-19 16:24:06.380 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59062 10 6452 1 2025-10-19 16:20:46.779 00:05:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 16:24:57.111 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 16:24:57.177 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 16:24:56.988 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 16:24:57.236 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 16:24:57.319 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 16:25:06.783 00:00:11.094 TCP 1.101.0.1:3000 -> 23.104.0.1:39052 10 6452 1 2025-10-19 16:21:46.776 00:05:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 16:26:07.919 00:00:10.585 TCP 1.101.0.1:3000 -> 23.104.0.1:36528 10 6452 1 2025-10-19 16:27:08.544 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51762 10 6452 1 2025-10-19 16:28:08.945 00:00:10.453 TCP 1.101.0.1:3000 -> 23.104.0.1:47742 12 10369 1 2025-10-19 16:29:09.437 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46926 10 6452 1 2025-10-19 16:29:57.355 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 16:29:57.271 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 16:29:57.271 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 16:29:57.155 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 16:29:57.271 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 16:30:09.839 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:45742 10 6452 1 2025-10-19 16:26:46.778 00:05:00.261 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 16:31:10.217 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45646 10 6452 1 2025-10-19 16:27:46.777 00:05:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 16:32:10.620 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33280 10 6452 1 2025-10-19 16:33:11.025 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:56780 10 6452 1 2025-10-19 16:34:11.388 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57242 10 6452 1 2025-10-19 16:34:57.289 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 16:34:57.376 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 16:34:57.430 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 16:34:57.398 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 16:34:57.206 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 16:35:11.791 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:44912 10 6452 1 2025-10-19 16:36:12.153 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57832 10 6452 1 2025-10-19 16:32:46.780 00:05:00.260 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 16:37:12.557 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55818 10 6452 1 2025-10-19 16:33:46.779 00:05:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 16:38:12.916 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47718 10 6452 1 2025-10-19 16:39:13.321 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:47172 11 6504 1 2025-10-19 16:39:57.335 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 16:39:57.243 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 16:39:57.437 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 16:39:57.459 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 16:39:57.253 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 16:40:13.774 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51332 10 6452 1 2025-10-19 16:41:14.188 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49668 10 6452 1 2025-10-19 16:42:14.593 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51932 10 6452 1 2025-10-19 16:38:46.782 00:05:00.261 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 16:43:15.006 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43610 10 6452 1 2025-10-19 16:39:46.780 00:05:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 16:44:15.408 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58490 10 6452 1 2025-10-19 16:44:57.700 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 16:44:57.722 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 16:44:57.505 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 16:44:57.618 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 16:44:57.617 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 16:45:15.814 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58872 10 6452 1 2025-10-19 16:46:16.217 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48588 10 6452 1 2025-10-19 16:47:16.616 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56710 10 6452 1 2025-10-19 16:48:17.023 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36646 10 6452 1 2025-10-19 16:44:46.784 00:05:00.264 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 16:49:17.439 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46774 10 6452 1 2025-10-19 16:45:46.781 00:05:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 16:49:57.750 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 16:49:57.485 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 16:49:57.697 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 16:49:57.700 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 16:49:57.780 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 16:50:17.839 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:35990 10 6452 1 2025-10-19 16:51:18.222 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52882 10 6452 1 2025-10-19 16:52:18.631 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47244 10 6452 1 2025-10-19 16:53:18.984 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:59150 10 6452 1 2025-10-19 16:54:19.407 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41120 10 6452 1 2025-10-19 16:50:46.786 00:05:00.264 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 16:54:58.054 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 16:54:57.951 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 16:54:58.050 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 16:54:57.953 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 16:54:58.034 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 16:55:19.809 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:60760 10 6452 1 2025-10-19 16:51:46.784 00:05:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 16:56:20.199 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48390 10 6452 1 2025-10-19 16:57:20.600 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39508 10 6452 1 2025-10-19 16:58:21.006 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51660 10 6452 1 Summary: total flows: 140, total bytes: 424944, total packets: 1026, avg bps: 917, avg pps: 0, avg bpp: 414 Time window: 2025-10-19 15:56:46 - 2025-10-19 16:58:31 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0022s User: 0.0029s Wall: 0.0023s flows/second: 61784.8 Runtime: 0.0023s