Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-19 20:59:20.140 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:49268 10 6452 1 2025-10-19 21:00:02.576 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 21:00:02.746 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 21:00:02.805 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 21:00:02.673 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 21:00:02.757 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 21:00:20.555 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:49538 10 6452 1 2025-10-19 20:56:46.866 00:05:00.249 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 21:01:20.916 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49124 10 6452 1 2025-10-19 20:57:46.865 00:05:00.252 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 21:02:21.324 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44522 10 6452 1 2025-10-19 21:03:21.727 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:39178 10 6452 1 2025-10-19 21:04:22.140 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54664 10 6452 1 2025-10-19 21:05:02.895 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 21:05:02.901 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 21:05:02.815 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 21:05:02.826 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 21:05:02.909 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 21:05:22.551 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39262 10 6452 1 2025-10-19 21:06:22.956 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56618 10 6452 1 2025-10-19 21:02:46.867 00:05:00.250 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 21:07:23.366 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34514 10 6452 1 2025-10-19 21:03:46.866 00:05:00.254 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 21:08:23.764 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51566 10 6452 1 2025-10-19 21:09:24.128 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36370 10 6452 1 2025-10-19 21:10:03.195 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 21:10:02.990 00:00:00.054 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 21:10:03.182 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 21:10:02.883 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 21:10:03.112 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 21:10:24.534 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43660 10 6452 1 2025-10-19 21:11:24.939 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:58842 10 6452 1 2025-10-19 21:12:25.353 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50714 10 6452 1 2025-10-19 21:08:46.871 00:05:00.247 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 21:13:25.757 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:42160 10 6452 1 2025-10-19 21:09:46.868 00:05:00.253 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 21:14:26.188 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39616 10 6452 1 2025-10-19 21:15:03.245 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 21:15:02.954 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 21:15:02.850 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 21:15:02.947 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 21:15:03.163 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 21:15:26.593 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39906 10 6452 1 2025-10-19 21:16:26.995 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36708 10 6452 1 2025-10-19 21:17:27.400 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53110 10 6452 1 2025-10-19 21:18:27.804 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50646 10 6452 1 2025-10-19 21:14:46.872 00:05:00.248 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 21:19:28.217 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49104 10 6452 1 2025-10-19 21:15:46.870 00:05:00.253 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 21:20:03.182 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 21:20:03.198 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 21:20:02.942 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 21:20:03.044 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 21:20:03.098 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 21:20:28.638 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:48682 10 6452 1 2025-10-19 21:21:29.001 00:00:12.352 TCP 1.101.0.1:3000 -> 23.104.0.1:36436 10 6452 1 2025-10-19 21:22:31.402 00:00:10.354 TCP 1.101.0.1:3000 -> 23.104.0.1:50114 10 6452 1 2025-10-19 21:23:31.797 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39528 10 6452 1 2025-10-19 21:24:32.204 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37012 10 6452 1 2025-10-19 21:20:46.875 00:05:00.246 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 21:25:03.198 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 21:25:02.957 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 21:25:03.194 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 21:25:03.322 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 21:25:03.405 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 21:25:32.613 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60452 10 6452 1 2025-10-19 21:21:46.873 00:05:00.251 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 21:26:33.018 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36656 10 6452 1 2025-10-19 21:27:33.417 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51230 10 6452 1 2025-10-19 21:28:33.821 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35370 10 6452 1 2025-10-19 21:29:34.224 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48658 10 6452 1 2025-10-19 21:30:03.309 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 21:30:03.401 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 21:30:03.274 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 21:30:03.252 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 21:30:03.335 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 21:30:34.631 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42612 10 6452 1 2025-10-19 21:26:46.875 00:05:00.252 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 21:31:35.034 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60618 10 6452 1 2025-10-19 21:27:46.873 00:05:00.258 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 21:32:35.452 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38630 10 6452 1 2025-10-19 21:33:35.854 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:37690 10 6452 1 2025-10-19 21:34:36.277 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41056 10 6452 1 2025-10-19 21:35:03.882 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 21:35:04.076 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 21:35:04.219 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 21:35:03.301 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 21:35:03.799 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 21:35:36.686 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33628 10 6452 1 2025-10-19 21:32:46.878 00:05:00.253 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 21:36:37.068 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49638 10 6452 1 2025-10-19 21:37:37.437 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:46764 10 6452 1 2025-10-19 21:33:46.876 00:05:00.258 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 21:38:37.826 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33718 10 6452 1 2025-10-19 21:39:38.232 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35308 10 6452 1 2025-10-19 21:40:04.513 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 21:40:04.556 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 21:40:04.516 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 21:40:04.251 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 21:40:04.432 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 21:40:38.629 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43710 10 6452 1 2025-10-19 21:41:39.035 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50504 10 6452 1 2025-10-19 21:42:39.439 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44492 10 6452 1 2025-10-19 21:38:46.879 00:05:00.253 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 21:39:46.876 00:05:00.258 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 21:43:39.845 00:00:10.514 TCP 1.101.0.1:3000 -> 23.104.0.1:56306 13 10421 1 2025-10-19 21:44:40.399 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51112 10 6452 1 2025-10-19 21:45:03.883 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 21:45:03.841 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 21:45:03.744 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 21:45:03.679 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 21:45:03.801 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 21:45:40.801 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49168 10 6452 1 2025-10-19 21:46:41.214 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39532 12 6556 1 2025-10-19 21:47:41.619 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52734 10 6452 1 2025-10-19 21:44:46.883 00:05:00.249 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 21:48:42.023 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38752 10 6452 1 2025-10-19 21:45:46.881 00:05:00.254 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 21:49:42.388 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:57864 10 6452 1 2025-10-19 21:50:03.773 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 21:50:03.657 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 21:50:03.660 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 21:50:03.664 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 21:50:03.749 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 21:50:42.797 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:35906 10 6452 1 2025-10-19 21:51:43.165 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:57780 10 6452 1 2025-10-19 21:52:43.526 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46636 10 6452 1 2025-10-19 21:53:43.934 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:36856 10 6452 1 2025-10-19 21:50:46.884 00:05:00.249 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 21:54:44.385 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52326 10 6452 1 2025-10-19 21:55:03.988 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 21:55:03.906 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 21:55:03.903 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 21:55:04.070 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 21:55:03.741 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 21:51:46.882 00:05:00.254 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 21:55:44.797 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:53186 10 6452 1 2025-10-19 21:56:45.169 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46312 10 6452 1 2025-10-19 21:57:45.577 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42528 10 6452 1 Summary: total flows: 139, total bytes: 414621, total packets: 1015, avg bps: 904, avg pps: 0, avg bpp: 408 Time window: 2025-10-19 20:56:46 - 2025-10-19 21:57:55 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0036s User: 0.0024s Wall: 0.0023s flows/second: 61150.4 Runtime: 0.0023s