Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-19 17:58:46.669 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52958 10 6452 1 2025-10-19 17:59:59.282 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 17:59:59.285 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 17:59:59.104 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 17:59:59.237 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 17:59:47.099 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49344 10 6452 1 2025-10-19 17:59:59.320 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 17:56:46.808 00:05:00.264 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 18:00:47.505 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53020 10 6452 1 2025-10-19 17:57:46.806 00:05:00.269 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 18:01:47.911 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48120 10 6452 1 2025-10-19 18:02:48.321 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:60976 10 6452 1 2025-10-19 18:03:48.686 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53264 10 6452 1 2025-10-19 18:04:59.166 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 18:04:59.084 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 18:04:59.217 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 18:04:59.259 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 18:04:58.997 00:00:00.048 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 18:04:49.105 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42062 10 6452 1 2025-10-19 18:05:49.506 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56054 10 6452 1 2025-10-19 18:02:46.809 00:05:00.265 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 18:06:49.916 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42922 10 6452 1 2025-10-19 18:03:46.806 00:05:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 18:07:50.324 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:45320 10 6452 1 2025-10-19 18:08:50.683 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42444 10 6452 1 2025-10-19 18:09:59.238 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 18:09:59.132 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 18:09:59.151 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 18:09:59.239 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 18:09:59.321 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 18:09:51.110 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50680 10 6452 1 2025-10-19 18:10:51.515 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39598 10 6452 1 2025-10-19 18:11:51.915 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60186 10 6452 1 2025-10-19 18:08:46.810 00:05:00.264 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 18:12:52.320 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40770 10 6452 1 2025-10-19 18:09:46.810 00:05:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 18:13:52.725 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:47052 10 6452 1 2025-10-19 18:14:59.449 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 18:14:59.399 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 18:14:59.448 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 18:14:59.450 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 18:14:59.534 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 18:14:53.127 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47566 10 6452 1 2025-10-19 18:15:53.543 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56062 10 6452 1 2025-10-19 18:16:53.952 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37756 10 6452 1 2025-10-19 18:17:54.358 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51524 10 6452 1 2025-10-19 18:14:46.813 00:05:00.263 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 18:18:54.759 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:37730 10 6452 1 2025-10-19 18:15:46.810 00:05:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 18:19:59.387 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 18:19:59.564 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 18:19:59.639 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 18:19:59.488 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 18:19:59.305 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 18:19:55.175 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34918 10 6452 1 2025-10-19 18:20:55.591 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55158 10 6452 1 2025-10-19 18:21:56.004 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49302 10 6452 1 2025-10-19 18:22:56.405 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39222 10 6452 1 2025-10-19 18:23:56.808 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34730 10 6452 1 2025-10-19 18:20:46.818 00:05:00.260 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 18:24:59.578 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 18:24:59.521 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 18:24:59.392 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 18:24:59.527 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 18:24:59.608 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 18:24:57.217 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47610 10 6452 1 2025-10-19 18:21:46.814 00:05:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 18:25:57.578 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:53344 10 6452 1 2025-10-19 18:26:57.947 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:43572 10 6452 1 2025-10-19 18:27:58.360 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:32842 10 6452 1 2025-10-19 18:28:58.762 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:49664 10 6452 1 2025-10-19 18:29:59.710 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 18:29:59.539 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 18:29:59.594 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 18:29:59.629 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 18:29:59.763 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 18:29:59.184 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36602 10 6452 1 2025-10-19 18:26:46.820 00:05:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 18:30:59.592 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47468 10 6452 1 2025-10-19 18:27:46.819 00:05:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 18:31:59.997 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:43804 10 6452 1 2025-10-19 18:33:00.395 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55430 10 6452 1 2025-10-19 18:34:00.756 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:54294 10 6452 1 2025-10-19 18:34:59.785 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 18:34:59.793 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 18:34:59.783 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 18:34:59.561 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 18:34:59.701 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 18:35:01.154 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33264 10 6452 1 2025-10-19 18:36:01.565 00:00:26.784 TCP 1.101.0.1:3000 -> 23.104.0.1:46692 10 6452 1 2025-10-19 18:32:46.823 00:05:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 18:37:18.384 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44842 10 6452 1 2025-10-19 18:33:46.820 00:05:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 18:38:18.746 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:40586 10 6452 1 2025-10-19 18:39:19.113 00:00:10.789 TCP 1.101.0.1:3000 -> 23.104.0.1:58546 10 6452 1 2025-10-19 18:39:59.849 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 18:40:00.409 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 18:40:00.034 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 18:40:00.240 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 18:40:00.323 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 18:40:19.935 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:34440 10 6452 1 2025-10-19 18:41:20.358 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33074 10 6452 1 2025-10-19 18:42:20.761 00:00:10.813 TCP 1.101.0.1:3000 -> 23.104.0.1:34272 10 6452 1 2025-10-19 18:38:46.824 00:05:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 18:43:21.619 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36882 10 6452 1 2025-10-19 18:39:46.821 00:05:00.264 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 18:44:22.022 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:60434 10 6452 1 2025-10-19 18:44:59.973 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 18:44:59.875 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 18:44:59.806 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 18:44:59.934 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 18:44:59.890 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 18:45:22.382 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:53174 10 6452 1 2025-10-19 18:46:22.744 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45916 10 6452 1 2025-10-19 18:47:23.152 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59028 10 6452 1 2025-10-19 18:48:23.557 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:54636 12 10369 1 2025-10-19 18:44:46.825 00:05:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 18:49:24.034 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48808 10 6452 1 2025-10-19 18:45:46.822 00:05:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 18:49:59.931 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 18:50:00.183 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 18:50:00.104 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 18:50:00.243 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 18:50:00.102 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 18:50:24.436 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38152 10 6452 1 2025-10-19 18:51:24.837 00:00:10.354 TCP 1.101.0.1:3000 -> 23.104.0.1:51142 10 6452 1 2025-10-19 18:52:25.232 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53374 10 6452 1 2025-10-19 18:53:25.636 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57394 10 6452 1 2025-10-19 18:54:26.035 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:53568 10 6452 1 2025-10-19 18:50:46.829 00:05:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 18:55:00.347 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 18:55:00.106 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 18:55:00.105 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 18:55:00.067 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 18:55:00.264 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 18:55:26.441 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45160 10 6452 1 2025-10-19 18:51:46.826 00:05:00.264 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 18:56:26.848 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:48686 10 6452 1 2025-10-19 18:57:27.279 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42146 10 6452 1 2025-10-19 18:58:27.682 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39806 10 6452 1 Summary: total flows: 140, total bytes: 420917, total packets: 1022, avg bps: 907, avg pps: 0, avg bpp: 411 Time window: 2025-10-19 17:56:46 - 2025-10-19 18:58:38 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0027s User: 0.0027s Wall: 0.0015s flows/second: 94208.7 Runtime: 0.0015s