Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-19 16:59:21.367 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43218 10 6452 1 2025-10-19 16:59:58.129 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 16:59:57.968 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 16:59:57.873 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 16:59:57.858 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 16:59:58.046 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 17:00:21.779 00:00:10.451 TCP 1.101.0.1:3000 -> 23.104.0.1:58618 10 6452 1 2025-10-19 16:56:46.788 00:05:00.264 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 17:01:22.273 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:32996 10 6452 1 2025-10-19 16:57:46.787 00:05:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 17:02:22.637 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38548 10 6452 1 2025-10-19 17:03:23.040 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:46242 12 10369 1 2025-10-19 17:04:23.526 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50366 10 6452 1 2025-10-19 17:04:57.986 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 17:04:57.799 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 17:04:58.102 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 17:04:57.981 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 17:04:58.068 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 17:05:23.940 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:56792 10 6452 1 2025-10-19 17:06:24.319 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:34216 10 6452 1 2025-10-19 17:02:46.788 00:05:00.266 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 17:07:24.681 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43166 10 6452 1 2025-10-19 17:03:46.786 00:05:00.271 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 17:08:25.119 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60110 10 6452 1 2025-10-19 17:09:25.522 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40672 10 6452 1 2025-10-19 17:09:58.187 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 17:09:58.112 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 17:09:58.203 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 17:09:57.987 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 17:09:58.104 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 17:10:25.927 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:44930 10 6452 1 2025-10-19 17:11:26.350 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:59520 10 6452 1 2025-10-19 17:12:26.715 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43870 10 6452 1 2025-10-19 17:08:46.790 00:05:00.265 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 17:13:27.117 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36196 10 6452 1 2025-10-19 17:09:46.788 00:05:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 17:14:27.525 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57406 10 6452 1 2025-10-19 17:14:58.363 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 17:14:57.985 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 17:14:57.915 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 17:14:58.097 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 17:14:58.179 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 17:15:27.889 00:00:10.717 TCP 1.101.0.1:3000 -> 23.104.0.1:51116 10 6452 1 2025-10-19 17:16:28.645 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43676 10 6452 1 2025-10-19 17:17:29.052 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39816 10 6452 1 2025-10-19 17:18:29.459 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:53920 10 6452 1 2025-10-19 17:14:46.791 00:05:00.265 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 17:19:29.832 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37876 10 6452 1 2025-10-19 17:15:46.789 00:05:00.271 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 17:19:58.114 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 17:19:58.318 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 17:19:58.234 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 17:19:58.202 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 17:19:58.284 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 17:20:30.234 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46268 10 6452 1 2025-10-19 17:21:30.637 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56932 10 6452 1 2025-10-19 17:22:31.051 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45118 10 6452 1 2025-10-19 17:23:31.455 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48478 10 6452 1 2025-10-19 17:24:31.861 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:36202 10 6452 1 2025-10-19 17:20:46.795 00:05:00.264 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 17:24:58.615 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 17:24:58.726 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 17:24:58.679 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 17:24:58.466 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 17:24:58.531 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 17:25:32.231 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59970 10 6452 1 2025-10-19 17:21:46.792 00:05:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 17:26:32.635 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53576 10 6452 1 2025-10-19 17:27:33.036 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43826 10 6452 1 2025-10-19 17:28:33.444 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:45164 10 6452 1 2025-10-19 17:29:33.884 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:42164 10 6452 1 2025-10-19 17:29:58.599 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 17:29:58.582 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 17:29:58.517 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 17:29:58.452 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 17:29:58.517 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 17:30:34.321 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37540 10 6452 1 2025-10-19 17:26:46.795 00:05:00.265 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 17:27:46.794 00:05:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 17:31:34.685 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43722 10 6452 1 2025-10-19 17:32:35.113 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60302 10 6452 1 2025-10-19 17:33:35.521 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:43770 10 6452 1 2025-10-19 17:34:35.936 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:52686 10 6452 1 2025-10-19 17:34:58.745 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 17:34:58.532 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 17:34:58.537 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 17:34:58.454 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 17:34:58.662 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 17:35:36.353 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53492 10 6452 1 2025-10-19 17:32:46.797 00:05:00.267 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 17:36:36.756 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:56310 10 6452 1 2025-10-19 17:33:46.796 00:05:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 17:37:37.120 00:00:10.934 TCP 1.101.0.1:3000 -> 23.104.0.1:40640 10 6452 1 2025-10-19 17:38:38.110 00:00:10.446 TCP 1.101.0.1:3000 -> 23.104.0.1:59640 12 10375 1 2025-10-19 17:39:38.594 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57764 10 6452 1 2025-10-19 17:39:58.802 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 17:39:58.766 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 17:39:58.464 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 17:39:58.772 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 17:39:58.856 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 17:40:39.004 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56426 10 6452 1 2025-10-19 17:41:39.410 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53780 10 6452 1 2025-10-19 17:38:46.804 00:05:00.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 17:42:39.773 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37288 10 6452 1 2025-10-19 17:39:46.801 00:05:00.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 17:43:40.189 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40260 10 6452 1 2025-10-19 17:44:40.598 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57340 10 6452 1 2025-10-19 17:44:58.829 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 17:44:58.803 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 17:44:58.893 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 17:44:58.463 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 17:44:58.747 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 17:45:41.006 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:60046 10 6452 1 2025-10-19 17:46:41.445 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:48538 10 6452 1 2025-10-19 17:47:41.806 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43398 10 6452 1 2025-10-19 17:44:46.805 00:05:00.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 17:48:42.213 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41590 10 6452 1 2025-10-19 17:45:46.804 00:05:00.269 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 17:49:42.617 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34808 10 6452 1 2025-10-19 17:49:58.960 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 17:49:58.869 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 17:49:58.675 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 17:49:58.961 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 17:49:59.045 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 17:50:43.016 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55912 10 6452 1 2025-10-19 17:51:43.423 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33362 10 6452 1 2025-10-19 17:52:43.829 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37474 10 6452 1 2025-10-19 17:53:44.230 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43278 10 6452 1 2025-10-19 17:50:46.807 00:05:00.264 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 17:54:59.017 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 17:54:59.008 00:00:00.044 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 17:54:59.083 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 17:54:58.726 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 17:54:44.632 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51320 10 6452 1 2025-10-19 17:54:58.932 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 17:51:46.805 00:05:00.269 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 17:55:45.033 00:00:10.804 TCP 1.101.0.1:3000 -> 23.104.0.1:48318 10 6452 1 2025-10-19 17:56:45.873 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:41572 10 6452 1 2025-10-19 17:57:46.294 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:44832 10 6452 1 Summary: total flows: 139, total bytes: 418388, total packets: 1014, avg bps: 912, avg pps: 0, avg bpp: 412 Time window: 2025-10-19 16:56:46 - 2025-10-19 17:57:56 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0029s User: 0.0029s Wall: 0.0018s flows/second: 77311.8 Runtime: 0.0018s