Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-20 01:59:26.141 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:48468 10 6452 1 2025-10-20 02:00:08.594 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 02:00:08.847 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 02:00:08.892 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 02:00:08.665 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 02:00:08.678 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 02:00:26.540 00:00:17.022 TCP 1.101.0.1:3000 -> 23.104.0.1:57108 10 6452 1 2025-10-20 01:56:46.970 00:05:00.246 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-20 02:01:33.626 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45212 10 6452 1 2025-10-20 01:57:46.965 00:05:00.255 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-20 02:02:34.032 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:47186 10 6452 1 2025-10-20 02:03:34.433 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44008 10 6452 1 2025-10-20 02:04:34.795 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33536 10 6452 1 2025-10-20 02:05:09.166 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 02:05:08.990 00:00:00.045 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 02:05:08.966 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 02:05:08.819 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 02:05:09.084 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 02:05:35.197 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39778 10 6452 1 2025-10-20 02:06:35.603 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35164 10 6452 1 2025-10-20 02:02:46.970 00:05:00.248 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-20 02:07:36.007 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36330 10 6452 1 2025-10-20 02:03:46.966 00:05:00.255 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-20 02:08:36.408 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54548 10 6452 1 2025-10-20 02:09:36.813 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50112 10 6452 1 2025-10-20 02:10:08.815 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 02:10:08.981 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 02:10:08.913 00:00:00.014 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 02:10:08.913 00:00:00.016 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 02:10:08.731 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 02:10:37.214 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41578 10 6452 1 2025-10-20 02:11:37.610 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58134 10 6452 1 2025-10-20 02:08:46.970 00:05:00.250 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-20 02:12:37.979 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:42718 10 6452 1 2025-10-20 02:13:38.412 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52476 10 6452 1 2025-10-20 02:09:46.968 00:05:00.254 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-20 02:14:38.817 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33918 10 6452 1 2025-10-20 02:15:09.406 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 02:15:09.271 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 02:15:09.332 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 02:15:09.015 00:00:00.044 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 02:15:09.324 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 02:15:39.225 00:00:10.572 TCP 1.101.0.1:3000 -> 23.104.0.1:40120 10 6452 1 2025-10-20 02:16:39.841 00:00:10.668 TCP 1.101.0.1:3000 -> 23.104.0.1:49634 10 6452 1 2025-10-20 02:17:40.557 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39176 10 6452 1 2025-10-20 02:14:46.972 00:05:00.249 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-20 02:18:40.958 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60206 10 6452 1 2025-10-20 02:15:46.970 00:05:00.254 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-20 02:19:41.363 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35144 10 6452 1 2025-10-20 02:20:08.996 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 02:20:09.011 00:00:00.034 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 02:20:09.119 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 02:20:08.975 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 02:20:08.913 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 02:20:41.764 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:36546 10 6452 1 2025-10-20 02:21:42.176 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:55984 10 6452 1 2025-10-20 02:22:42.536 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:50406 10 6452 1 2025-10-20 02:23:42.890 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:34818 10 6452 1 2025-10-20 02:20:46.975 00:05:00.247 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-20 02:24:43.300 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49558 10 6452 1 2025-10-20 02:25:09.250 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 02:25:09.192 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 02:25:09.272 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 02:25:09.192 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 02:25:09.275 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 02:21:46.973 00:05:00.252 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-20 02:25:43.697 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45730 10 6452 1 2025-10-20 02:26:44.113 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58658 10 6452 1 2025-10-20 02:27:44.479 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53214 10 6452 1 2025-10-20 02:28:44.889 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:42986 12 6556 1 2025-10-20 02:29:45.312 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43316 10 6452 1 2025-10-20 02:30:09.396 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 02:30:09.342 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 02:30:09.107 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 02:30:09.259 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 02:30:09.343 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 02:26:46.977 00:05:00.246 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-20 02:30:45.715 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39242 10 6452 1 2025-10-20 02:27:46.974 00:05:00.251 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-20 02:31:46.120 00:00:14.155 TCP 1.101.0.1:3000 -> 23.104.0.1:34462 10 6452 1 2025-10-20 02:32:50.344 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:43452 10 6452 1 2025-10-20 02:33:50.743 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58504 12 6556 1 2025-10-20 02:34:51.148 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51734 10 6452 1 2025-10-20 02:35:09.285 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 02:35:09.288 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 02:35:09.321 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 02:35:09.439 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 02:35:09.520 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 02:35:51.549 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58104 10 6452 1 2025-10-20 02:32:46.979 00:05:00.245 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-20 02:36:51.954 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60928 10 6452 1 2025-10-20 02:33:46.977 00:05:00.250 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-20 02:37:52.357 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60494 10 6452 1 2025-10-20 02:38:52.767 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:49832 10 6452 1 2025-10-20 02:39:53.189 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43502 10 6452 1 2025-10-20 02:40:09.605 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 02:40:09.575 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 02:40:09.569 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 02:40:09.376 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 02:40:09.523 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 02:40:53.593 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:47786 10 6452 1 2025-10-20 02:41:53.949 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:48206 10 6452 1 2025-10-20 02:38:46.980 00:05:00.245 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-20 02:42:54.360 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:60712 10 6452 1 2025-10-20 02:39:46.979 00:05:00.249 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-20 02:43:54.759 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:57874 10 6452 1 2025-10-20 02:45:09.688 00:00:00.032 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 02:45:09.600 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 02:45:09.602 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 02:44:55.177 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:33346 10 6452 1 2025-10-20 02:45:09.722 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 02:45:09.748 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 02:45:55.540 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38550 10 6452 1 2025-10-20 02:46:55.943 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:51914 10 6452 1 2025-10-20 02:47:56.367 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:55084 12 10375 1 2025-10-20 02:44:46.982 00:05:00.245 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-20 02:48:56.840 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:50814 10 6452 1 2025-10-20 02:45:46.980 00:05:00.250 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-20 02:50:09.747 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 02:50:09.603 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 02:50:09.788 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 02:49:57.262 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:37094 10 6452 1 2025-10-20 02:50:09.787 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 02:50:09.871 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 02:50:57.706 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:52114 10 6452 1 2025-10-20 02:51:58.124 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35904 10 6452 1 2025-10-20 02:52:58.527 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42976 10 6452 1 2025-10-20 02:53:58.937 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43094 10 6452 1 2025-10-20 02:50:46.983 00:05:00.246 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-20 02:54:59.305 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57758 10 6452 1 2025-10-20 02:55:10.423 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 02:55:10.421 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 02:55:10.389 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 02:55:10.184 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 02:55:10.339 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 02:51:46.981 00:05:00.250 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-20 02:55:59.705 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:57366 10 6452 1 2025-10-20 02:57:00.111 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:60698 10 6452 1 2025-10-20 02:58:00.481 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45084 10 6452 1 Summary: total flows: 139, total bytes: 414679, total packets: 1016, avg bps: 900, avg pps: 0, avg bpp: 408 Time window: 2025-10-20 01:56:46 - 2025-10-20 02:58:10 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0039s User: 0.0010s Wall: 0.0019s flows/second: 72208.1 Runtime: 0.0019s