Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-20 15:59:24.397 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35690 10 6452 1 2025-10-20 16:00:25.717 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 16:00:25.479 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 16:00:25.485 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 16:00:25.588 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 16:00:25.634 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 16:00:24.802 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58184 10 6452 1 2025-10-20 15:55:47.261 00:06:00.264 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 15:55:47.265 00:06:00.260 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 16:01:25.209 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48538 10 6452 1 2025-10-20 16:02:25.609 00:00:17.136 TCP 1.101.0.1:3000 -> 23.104.0.1:56236 10 6452 1 2025-10-20 16:03:32.858 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:48994 10 6452 1 2025-10-20 16:04:33.281 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60778 10 6452 1 2025-10-20 16:05:25.432 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 16:05:25.697 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 16:05:25.655 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 16:05:25.780 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 16:05:25.863 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 16:05:33.684 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46296 10 6452 1 2025-10-20 16:06:34.112 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56098 10 6452 1 2025-10-20 16:07:34.516 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:43036 10 6452 1 2025-10-20 16:02:47.263 00:06:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 16:02:47.266 00:06:00.260 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 16:08:34.926 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:48968 10 6452 1 2025-10-20 16:09:35.292 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49426 10 6452 1 2025-10-20 16:10:25.616 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 16:10:25.610 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 16:10:25.699 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 16:10:25.760 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 16:10:25.782 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 16:10:35.696 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46892 10 6452 1 2025-10-20 16:11:36.113 00:00:14.195 TCP 1.101.0.1:3000 -> 23.104.0.1:56302 10 6452 1 2025-10-20 16:12:40.341 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50826 10 6452 1 2025-10-20 16:13:40.741 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34952 10 6452 1 2025-10-20 16:09:47.264 00:06:00.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 16:09:47.266 00:06:00.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 16:14:41.148 00:00:11.076 TCP 1.101.0.1:3000 -> 23.104.0.1:46854 10 6452 1 2025-10-20 16:15:25.878 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 16:15:25.992 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 16:15:25.803 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 16:15:25.954 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 16:15:26.037 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 16:15:42.263 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33204 10 6452 1 2025-10-20 16:16:42.666 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35002 10 6452 1 2025-10-20 16:17:43.083 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59072 10 6452 1 2025-10-20 16:18:43.485 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36066 10 6452 1 2025-10-20 16:19:43.886 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:56640 12 6556 1 2025-10-20 16:20:26.056 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 16:20:25.828 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 16:20:25.892 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 16:20:25.884 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 16:20:25.973 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 16:20:44.306 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43434 10 6452 1 2025-10-20 16:16:47.265 00:06:00.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 16:16:47.268 00:06:00.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 16:21:44.710 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36578 10 6452 1 2025-10-20 16:22:45.118 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37224 10 6452 1 2025-10-20 16:23:45.531 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:39312 10 6452 1 2025-10-20 16:24:45.949 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:34014 10 6452 1 2025-10-20 16:25:26.202 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 16:25:25.988 00:00:00.055 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 16:25:26.058 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 16:25:26.117 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 16:25:26.201 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 16:25:46.370 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:60650 10 6452 1 2025-10-20 16:26:46.769 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:36010 10 6452 1 2025-10-20 16:27:47.185 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47206 10 6452 1 2025-10-20 16:23:47.269 00:06:00.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 16:23:47.267 00:06:00.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 16:28:47.588 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38550 10 6452 1 2025-10-20 16:29:48.002 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44872 10 6452 1 2025-10-20 16:30:26.230 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 16:30:26.057 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 16:30:26.187 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 16:30:26.228 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 16:30:26.271 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 16:30:48.405 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33956 10 6452 1 2025-10-20 16:31:48.805 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:46116 10 6452 1 2025-10-20 16:32:49.176 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58704 10 6452 1 2025-10-20 16:33:49.581 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38834 10 6452 1 2025-10-20 16:34:49.981 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:50294 10 6452 1 2025-10-20 16:35:26.117 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 16:35:26.219 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 16:35:26.241 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 16:35:25.987 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 16:35:26.070 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 16:30:47.271 00:06:00.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 16:30:47.269 00:06:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 16:35:50.358 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52478 10 6452 1 2025-10-20 16:36:50.766 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:39232 10 6452 1 2025-10-20 16:37:51.146 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58286 10 6452 1 2025-10-20 16:38:51.547 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46064 10 6452 1 2025-10-20 16:39:51.953 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38766 10 6452 1 2025-10-20 16:40:26.484 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 16:40:26.334 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 16:40:26.236 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 16:40:26.346 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 16:40:26.403 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 16:40:52.366 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57294 10 6452 1 2025-10-20 16:41:52.768 00:00:14.598 TCP 1.101.0.1:3000 -> 23.104.0.1:41334 10 6452 1 2025-10-20 16:37:47.276 00:06:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 16:37:47.273 00:06:00.264 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 16:42:57.435 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50018 10 6452 1 2025-10-20 16:43:57.833 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54686 10 6452 1 2025-10-20 16:44:58.231 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37810 10 6452 1 2025-10-20 16:45:26.591 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 16:45:26.498 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 16:45:26.061 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 16:45:26.438 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 16:45:26.521 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 16:45:58.635 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37686 10 6452 1 2025-10-20 16:46:59.037 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57088 10 6452 1 2025-10-20 16:47:59.442 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57530 10 6452 1 2025-10-20 16:48:59.848 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:38858 10 6452 1 2025-10-20 16:44:47.276 00:06:00.260 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 16:44:47.274 00:06:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 16:50:00.278 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48338 10 6452 1 2025-10-20 16:50:26.388 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 16:50:26.679 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 16:50:26.311 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 16:50:26.562 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 16:50:26.644 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 16:51:00.699 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:48650 10 6452 1 2025-10-20 16:52:01.066 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53658 10 6452 1 2025-10-20 16:53:01.468 00:00:10.673 TCP 1.101.0.1:3000 -> 23.104.0.1:53708 10 6452 1 2025-10-20 16:54:02.181 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33662 10 6452 1 2025-10-20 16:55:02.546 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59556 10 6452 1 2025-10-20 16:55:26.687 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 16:55:26.704 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 16:55:26.615 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 16:55:26.769 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 16:55:26.699 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 16:56:02.949 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43696 12 6556 1 2025-10-20 16:51:47.276 00:06:00.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 16:51:47.275 00:06:00.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 16:57:03.357 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51636 10 6452 1 2025-10-20 16:58:03.760 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:41482 12 10375 1 Summary: total flows: 137, total bytes: 415417, total packets: 1028, avg bps: 886, avg pps: 0, avg bpp: 404 Time window: 2025-10-20 15:55:47 - 2025-10-20 16:58:14 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0034s User: 0.0011s Wall: 0.0026s flows/second: 53289.4 Runtime: 0.0026s