Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-26 21:53:50.592 00:06:00.271 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-26 21:59:26.284 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:43676 10 6452 1 2025-10-26 22:00:26.695 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54836 10 6452 1 2025-10-26 21:55:50.595 00:06:00.266 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-26 22:01:27.113 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53568 10 6452 1 2025-10-26 22:02:27.523 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34392 10 6452 1 2025-10-26 22:03:26.514 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 22:03:26.560 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 22:03:26.216 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 22:03:26.383 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 22:03:26.466 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 22:03:27.923 00:00:10.353 TCP 1.101.0.1:3000 -> 23.104.0.1:38794 10 6452 1 2025-10-26 22:04:28.324 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56826 10 6452 1 2025-10-26 22:05:28.731 00:00:11.488 TCP 1.101.0.1:3000 -> 23.104.0.1:47182 10 6452 1 2025-10-26 22:00:50.594 00:06:00.274 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-26 22:06:30.260 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48552 10 6452 1 2025-10-26 22:07:30.660 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54566 10 6452 1 2025-10-26 22:02:50.597 00:06:00.266 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-26 22:08:26.421 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 22:08:26.700 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 22:08:26.355 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 22:08:26.671 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 22:08:26.339 00:00:00.031 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 22:08:31.099 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57276 10 6452 1 2025-10-26 22:09:31.499 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45384 10 6452 1 2025-10-26 22:10:31.906 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:39154 12 6556 1 2025-10-26 22:11:32.319 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:58472 12 10369 1 2025-10-26 22:12:32.800 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52010 10 6452 1 2025-10-26 22:07:50.596 00:06:00.271 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-26 22:13:26.715 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 22:13:26.672 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 22:13:26.285 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 22:13:26.680 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 22:13:26.763 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 22:13:33.211 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46182 10 6452 1 2025-10-26 22:14:33.622 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45248 10 6452 1 2025-10-26 22:09:50.599 00:06:00.265 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-26 22:15:34.023 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44552 10 6452 1 2025-10-26 22:16:34.394 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:32778 10 6452 1 2025-10-26 22:17:34.810 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45114 10 6452 1 2025-10-26 22:18:26.709 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 22:18:26.627 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 22:18:26.784 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 22:18:26.727 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 22:18:26.525 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 22:18:35.213 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60668 10 6452 1 2025-10-26 22:19:35.617 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42510 10 6452 1 2025-10-26 22:14:50.599 00:06:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-26 22:20:36.023 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:44804 10 6452 1 2025-10-26 22:21:36.387 00:00:10.990 TCP 1.101.0.1:3000 -> 23.104.0.1:54382 10 6452 1 2025-10-26 22:16:50.605 00:06:00.263 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-26 22:22:37.413 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:51530 10 6452 1 2025-10-26 22:23:26.892 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 22:23:26.817 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 22:23:26.873 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 22:23:26.769 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 22:23:26.811 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 22:23:37.811 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57958 10 6452 1 2025-10-26 22:24:38.215 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51734 10 6452 1 2025-10-26 22:25:38.612 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:55762 10 6452 1 2025-10-26 22:26:38.974 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42254 10 6452 1 2025-10-26 22:21:50.602 00:06:00.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-26 22:27:39.380 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53632 10 6452 1 2025-10-26 22:28:27.456 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 22:28:27.311 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 22:28:27.251 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 22:28:27.129 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 22:28:27.374 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 22:23:50.606 00:06:00.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-26 22:28:39.784 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45436 12 6556 1 2025-10-26 22:29:40.191 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35744 10 6452 1 2025-10-26 22:30:40.553 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45672 10 6452 1 2025-10-26 22:31:40.953 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:35570 10 6452 1 2025-10-26 22:32:41.322 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57802 10 6452 1 2025-10-26 22:33:27.213 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 22:33:27.091 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 22:33:26.997 00:00:00.040 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 22:33:27.049 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 22:33:27.129 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 22:33:41.718 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47144 10 6452 1 2025-10-26 22:28:50.605 00:06:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-26 22:34:42.140 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51146 10 6452 1 2025-10-26 22:30:50.607 00:06:00.263 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-26 22:35:42.544 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53246 10 6452 1 2025-10-26 22:36:42.909 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54024 10 6452 1 2025-10-26 22:37:43.272 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53518 10 6452 1 2025-10-26 22:38:27.383 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 22:38:27.400 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 22:38:27.257 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 22:38:27.044 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 22:38:27.300 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 22:38:43.687 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:52198 10 6452 1 2025-10-26 22:39:44.073 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39134 10 6452 1 2025-10-26 22:35:50.606 00:06:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-26 22:40:44.474 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:53672 10 6452 1 2025-10-26 22:41:44.831 00:00:16.281 TCP 1.101.0.1:3000 -> 23.104.0.1:60030 10 6452 1 2025-10-26 22:37:50.608 00:06:00.267 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-26 22:42:51.157 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33572 10 6452 1 2025-10-26 22:43:27.144 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 22:43:27.031 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 22:43:26.979 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 22:43:27.212 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 22:43:27.295 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 22:43:51.566 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36190 10 6452 1 2025-10-26 22:44:51.975 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55512 10 6452 1 2025-10-26 22:45:52.389 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:55920 10 6452 1 2025-10-26 22:46:52.787 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35288 10 6452 1 2025-10-26 22:42:50.607 00:06:00.274 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-26 22:47:53.193 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40370 10 6452 1 2025-10-26 22:48:27.577 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 22:48:27.449 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 22:48:27.454 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 22:48:27.447 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 22:48:27.494 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 22:48:53.606 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46088 10 6452 1 2025-10-26 22:44:50.610 00:06:00.269 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-26 22:49:54.015 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43638 10 6452 1 2025-10-26 22:50:54.416 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48912 10 6452 1 2025-10-26 22:51:54.819 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40954 10 6452 1 2025-10-26 22:52:55.222 00:00:11.581 TCP 1.101.0.1:3000 -> 23.104.0.1:52782 10 6452 1 2025-10-26 22:53:27.315 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 22:53:27.800 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 22:53:27.232 00:00:00.051 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 22:53:27.757 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 22:53:27.232 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 22:53:56.847 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:50698 10 6452 1 2025-10-26 22:49:50.611 00:06:00.274 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-26 22:54:57.267 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:36230 10 6452 1 2025-10-26 22:55:57.633 00:00:10.408 TCP 1.101.0.1:3000 -> 23.104.0.1:47494 10 6452 1 2025-10-26 22:51:50.615 00:06:00.267 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-26 22:56:58.103 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32858 10 6452 1 2025-10-26 22:57:58.506 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51764 10 6452 1 2025-10-26 22:58:27.651 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 22:58:27.742 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 22:58:27.674 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 22:58:27.575 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 22:58:27.569 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 Summary: total flows: 137, total bytes: 415411, total packets: 1028, avg bps: 857, avg pps: 0, avg bpp: 404 Time window: 2025-10-26 21:53:50 - 2025-10-26 22:58:27 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0038s User: 0.0009s Wall: 0.0019s flows/second: 72949.0 Runtime: 0.0019s