Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-19 18:59:28.120 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43414 10 6452 1 2025-10-19 19:00:00.531 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 19:00:00.212 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 19:00:00.280 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 19:00:00.350 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 19:00:00.448 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 19:00:28.522 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47716 10 6452 1 2025-10-19 18:56:46.828 00:05:00.261 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 19:01:28.924 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:57416 10 6452 1 2025-10-19 18:57:46.824 00:05:00.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 19:02:29.345 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53192 10 6452 1 2025-10-19 19:03:29.751 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:32858 10 6452 1 2025-10-19 19:04:30.153 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45686 10 6452 1 2025-10-19 19:05:00.141 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 19:05:00.407 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 19:05:00.467 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 19:05:00.263 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 19:05:00.346 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 19:05:30.516 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:57100 10 6452 1 2025-10-19 19:06:30.884 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:59002 10 6452 1 2025-10-19 19:02:46.829 00:05:00.261 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 19:07:31.243 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40070 10 6452 1 2025-10-19 19:03:46.827 00:05:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 19:08:31.649 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48856 10 6452 1 2025-10-19 19:09:32.061 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59822 10 6452 1 2025-10-19 19:10:00.936 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 19:10:00.854 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 19:10:00.680 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 19:10:00.680 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 19:10:00.672 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 19:10:32.461 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45332 10 6452 1 2025-10-19 19:11:32.860 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:35766 10 6452 1 2025-10-19 19:12:33.280 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50994 10 6452 1 2025-10-19 19:08:46.830 00:05:00.261 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 19:13:33.690 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:41140 10 6452 1 2025-10-19 19:09:46.828 00:05:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 19:14:34.121 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45764 10 6452 1 2025-10-19 19:15:00.573 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 19:15:00.394 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 19:15:00.725 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 19:15:00.360 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 19:15:00.490 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 19:15:34.488 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59242 10 6452 1 2025-10-19 19:16:34.895 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:57972 12 6556 1 2025-10-19 19:17:35.313 00:00:10.673 TCP 1.101.0.1:3000 -> 23.104.0.1:58814 10 6452 1 2025-10-19 19:18:36.019 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52996 10 6452 1 2025-10-19 19:14:46.831 00:05:00.261 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 19:15:46.830 00:05:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 19:19:36.421 00:00:11.209 TCP 1.101.0.1:3000 -> 23.104.0.1:48998 10 6452 1 2025-10-19 19:20:00.720 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 19:20:00.850 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 19:20:00.647 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 19:20:00.676 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 19:20:00.803 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 19:20:37.666 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43712 10 6452 1 2025-10-19 19:21:38.103 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:32830 10 6452 1 2025-10-19 19:22:38.514 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51062 10 6452 1 2025-10-19 19:23:38.916 00:00:10.459 TCP 1.101.0.1:3000 -> 23.104.0.1:58908 10 6452 1 2025-10-19 19:24:39.407 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51956 10 6452 1 2025-10-19 19:20:46.832 00:05:00.263 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 19:25:00.759 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 19:25:00.679 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 19:25:00.705 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 19:25:00.677 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 19:25:00.760 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 19:21:46.830 00:05:00.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 19:25:39.808 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47218 10 6452 1 2025-10-19 19:26:40.212 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56234 10 6452 1 2025-10-19 19:27:40.616 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44984 10 6452 1 2025-10-19 19:28:41.020 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36026 10 6452 1 2025-10-19 19:29:41.422 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55666 10 6452 1 2025-10-19 19:30:00.828 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 19:30:00.820 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 19:30:00.752 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 19:30:00.824 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 19:30:00.905 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 19:26:46.836 00:05:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 19:30:41.825 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:41640 10 6452 1 2025-10-19 19:27:46.833 00:05:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 19:31:42.243 00:00:12.744 TCP 1.101.0.1:3000 -> 23.104.0.1:53660 10 6452 1 2025-10-19 19:32:45.031 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60548 10 6452 1 2025-10-19 19:33:45.434 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57756 10 6452 1 2025-10-19 19:34:45.844 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:59090 10 6452 1 2025-10-19 19:35:00.907 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 19:35:00.815 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 19:35:01.069 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 19:35:00.799 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 19:35:00.899 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 19:35:46.226 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57446 10 6452 1 2025-10-19 19:32:46.838 00:05:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 19:36:46.624 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42628 10 6452 1 2025-10-19 19:33:46.837 00:05:00.264 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 19:37:47.032 00:00:10.775 TCP 1.101.0.1:3000 -> 23.104.0.1:54374 10 6452 1 2025-10-19 19:38:47.847 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:38872 10 6452 1 2025-10-19 19:39:48.231 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38190 10 6452 1 2025-10-19 19:40:01.671 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 19:40:01.453 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 19:40:01.455 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 19:40:01.478 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 19:40:01.588 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 19:40:48.594 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59136 10 6452 1 2025-10-19 19:41:49.000 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57154 10 6452 1 2025-10-19 19:38:46.839 00:05:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 19:42:49.361 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56484 10 6452 1 2025-10-19 19:39:46.837 00:05:00.264 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 19:43:49.767 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:50858 10 6452 1 2025-10-19 19:45:00.965 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 19:44:50.172 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:36352 10 6452 1 2025-10-19 19:45:01.243 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 19:45:01.105 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 19:45:01.192 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 19:45:01.324 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 19:45:50.533 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56220 10 6452 1 2025-10-19 19:46:50.899 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:53452 12 6556 1 2025-10-19 19:47:51.314 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37434 10 6452 1 2025-10-19 19:44:46.840 00:05:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 19:48:51.719 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:45234 10 6452 1 2025-10-19 19:45:46.838 00:05:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 19:50:01.145 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 19:50:01.123 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 19:50:01.081 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 19:49:52.133 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43452 10 6452 1 2025-10-19 19:50:01.314 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 19:50:01.402 00:00:00.041 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 19:50:52.534 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48896 10 6452 1 2025-10-19 19:51:52.936 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:60164 10 6452 1 2025-10-19 19:52:53.358 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37302 10 6452 1 2025-10-19 19:53:53.761 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:37804 10 6452 1 2025-10-19 19:50:46.842 00:05:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 19:55:01.311 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 19:55:01.565 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 19:55:01.565 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 19:55:01.360 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 19:54:54.177 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:37010 10 6452 1 2025-10-19 19:55:01.228 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 19:51:46.840 00:05:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 19:55:54.536 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46900 10 6452 1 2025-10-19 19:56:54.938 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:60596 10 6452 1 2025-10-19 19:57:55.308 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38856 10 6452 1 Summary: total flows: 139, total bytes: 410756, total packets: 1014, avg bps: 893, avg pps: 0, avg bpp: 405 Time window: 2025-10-19 18:56:46 - 2025-10-19 19:58:05 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0026s User: 0.0017s Wall: 0.0018s flows/second: 76210.2 Runtime: 0.0018s