Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-21 15:59:17.984 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49618 10 6452 1 2025-10-21 16:00:18.387 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:32826 10 6452 1 2025-10-21 16:00:54.401 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 16:00:54.299 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 16:00:54.328 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 16:00:54.625 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 16:00:54.708 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 16:01:18.753 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:39320 12 6556 1 2025-10-21 15:57:47.793 00:05:00.327 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-21 16:02:19.188 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40302 10 6452 1 2025-10-21 16:03:19.585 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46498 10 6452 1 2025-10-21 15:59:47.795 00:05:00.322 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-21 16:04:19.988 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38770 10 6452 1 2025-10-21 16:05:20.388 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45966 10 6452 1 2025-10-21 16:05:54.421 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 16:05:54.582 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 16:05:54.510 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 16:05:54.509 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 16:05:54.504 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 16:06:20.752 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36806 10 6452 1 2025-10-21 16:07:21.157 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44692 10 6452 1 2025-10-21 16:03:47.794 00:05:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-21 16:08:21.565 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57136 10 6452 1 2025-10-21 16:09:21.925 00:00:10.464 TCP 1.101.0.1:3000 -> 23.104.0.1:51024 12 10375 1 2025-10-21 16:05:47.798 00:05:00.325 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-21 16:10:22.428 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59116 10 6452 1 2025-10-21 16:10:54.683 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 16:10:54.613 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 16:10:54.682 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 16:10:54.701 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 16:10:54.600 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 16:11:22.830 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40464 10 6452 1 2025-10-21 16:12:23.236 00:00:10.430 TCP 1.101.0.1:3000 -> 23.104.0.1:58036 11 6504 1 2025-10-21 16:13:23.731 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:34356 10 6452 1 2025-10-21 16:09:47.795 00:05:00.330 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-21 16:14:24.145 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48946 10 6452 1 2025-10-21 16:15:24.547 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:40476 10 6452 1 2025-10-21 16:11:47.797 00:05:00.328 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-21 16:15:54.702 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 16:15:55.090 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 16:15:55.079 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 16:15:55.318 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 16:15:55.162 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 16:16:24.920 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:38792 10 6452 1 2025-10-21 16:17:25.346 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59344 10 6452 1 2025-10-21 16:18:25.754 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50534 10 6452 1 2025-10-21 16:19:26.150 00:00:10.408 TCP 1.101.0.1:3000 -> 23.104.0.1:54100 12 10369 1 2025-10-21 16:15:47.798 00:05:00.330 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-21 16:20:26.589 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57420 10 6452 1 2025-10-21 16:20:54.664 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 16:20:54.985 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 16:20:54.992 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 16:20:54.984 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 16:20:55.067 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 16:21:26.984 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44360 10 6452 1 2025-10-21 16:17:47.801 00:05:00.326 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-21 16:22:27.386 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44354 10 6452 1 2025-10-21 16:23:27.791 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50662 10 6452 1 2025-10-21 16:24:28.193 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60542 10 6452 1 2025-10-21 16:25:28.602 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38954 10 6452 1 2025-10-21 16:25:54.878 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 16:25:54.808 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 16:25:54.876 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 16:25:54.954 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 16:21:47.800 00:05:00.330 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-21 16:25:54.959 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 16:26:28.973 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:43896 10 6452 1 2025-10-21 16:27:29.385 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47888 10 6452 1 2025-10-21 16:23:47.804 00:05:00.324 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-21 16:28:29.791 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39898 10 6452 1 2025-10-21 16:29:30.204 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:35222 12 10375 1 2025-10-21 16:30:30.681 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56882 10 6452 1 2025-10-21 16:30:55.424 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 16:30:55.232 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 16:30:55.347 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 16:30:55.469 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 16:30:55.431 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 16:31:31.113 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41242 10 6452 1 2025-10-21 16:27:47.803 00:05:00.330 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-21 16:32:31.520 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:43222 10 6452 1 2025-10-21 16:33:31.885 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:48298 10 6452 1 2025-10-21 16:29:47.805 00:05:00.326 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-21 16:34:32.283 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37918 10 6452 1 2025-10-21 16:35:32.710 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:55456 10 6452 1 2025-10-21 16:35:55.275 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 16:35:55.206 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 16:35:55.286 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 16:35:55.265 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 16:35:55.347 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 16:36:33.102 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36288 10 6452 1 2025-10-21 16:37:33.508 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:48348 10 6452 1 2025-10-21 16:33:47.805 00:05:00.331 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-21 16:38:33.934 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:38104 10 6452 1 2025-10-21 16:39:34.352 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:38620 10 6452 1 2025-10-21 16:35:47.808 00:05:00.325 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-21 16:40:34.726 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:42844 10 6452 1 2025-10-21 16:40:55.464 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 16:40:55.376 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 16:40:55.372 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 16:40:55.047 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 16:40:55.373 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 16:41:35.141 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39550 10 6452 1 2025-10-21 16:42:35.540 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44232 10 6452 1 2025-10-21 16:39:47.807 00:05:00.330 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-21 16:43:35.905 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57776 10 6452 1 2025-10-21 16:44:36.310 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50086 10 6452 1 2025-10-21 16:41:47.810 00:05:00.325 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-21 16:45:36.718 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:36788 10 6452 1 2025-10-21 16:45:55.362 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 16:45:55.355 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 16:45:55.355 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 16:45:55.319 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 16:45:55.444 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 16:46:37.127 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41964 10 6452 1 2025-10-21 16:47:37.534 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45374 10 6452 1 2025-10-21 16:48:37.947 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:35514 10 6452 1 2025-10-21 16:49:38.365 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58456 10 6452 1 2025-10-21 16:45:47.810 00:05:00.329 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-21 16:50:38.768 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:46852 10 6452 1 2025-10-21 16:50:56.783 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 16:50:56.633 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 16:50:56.690 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 16:50:56.710 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 16:50:56.866 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 16:51:39.184 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:44276 10 6452 1 2025-10-21 16:47:47.811 00:05:00.323 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-21 16:52:39.552 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46182 10 6452 1 2025-10-21 16:53:39.955 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48742 10 6452 1 2025-10-21 16:54:40.365 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57000 10 6452 1 2025-10-21 16:51:47.811 00:05:00.328 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-21 16:55:40.733 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44838 10 6452 1 2025-10-21 16:55:55.686 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 16:55:55.547 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 16:55:55.537 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 16:55:55.515 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 16:55:55.604 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 16:56:41.138 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51580 10 6452 1 2025-10-21 16:53:47.813 00:05:00.324 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-21 16:57:41.538 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51566 10 6452 1 Summary: total flows: 139, total bytes: 422467, total packets: 1019, avg bps: 923, avg pps: 0, avg bpp: 414 Time window: 2025-10-21 15:57:47 - 2025-10-21 16:58:48 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0049s User: 0.0012s Wall: 0.0020s flows/second: 70233.5 Runtime: 0.0020s