Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-29 15:58:41.993 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54790 10 6452 1 2025-10-29 15:59:45.815 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 15:59:45.732 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 15:59:45.729 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 15:59:45.408 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 15:59:45.732 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 15:59:42.396 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49628 10 6452 1 2025-10-29 15:56:51.883 00:05:00.378 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 16:00:42.799 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40560 10 6452 1 2025-10-29 15:57:51.880 00:05:00.383 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 16:01:43.201 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46692 10 6452 1 2025-10-29 16:02:43.609 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45334 10 6452 1 2025-10-29 16:03:44.018 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45564 10 6452 1 2025-10-29 16:04:46.144 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 16:04:45.893 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 16:04:45.820 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 16:04:45.801 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:04:46.062 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:04:44.419 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:55688 10 6452 1 2025-10-29 16:05:44.777 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37140 10 6452 1 2025-10-29 16:02:51.887 00:05:00.374 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 16:06:45.140 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:47116 10 6452 1 2025-10-29 16:03:51.886 00:05:00.380 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 16:07:45.506 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53836 10 6452 1 2025-10-29 16:08:45.873 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54814 10 6452 1 2025-10-29 16:09:45.794 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:09:45.674 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 16:09:45.887 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 16:09:45.915 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:09:45.877 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 16:09:46.283 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38800 10 6452 1 2025-10-29 16:10:46.688 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51148 10 6452 1 2025-10-29 16:11:47.114 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43162 10 6452 1 2025-10-29 16:08:51.889 00:05:00.374 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 16:12:47.520 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60228 10 6452 1 2025-10-29 16:09:51.887 00:05:00.380 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 16:13:47.923 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60708 10 6452 1 2025-10-29 16:14:46.251 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 16:14:46.442 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 16:14:46.059 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 16:14:46.014 00:00:00.040 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:14:46.169 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:14:48.335 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38392 10 6452 1 2025-10-29 16:15:48.734 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38046 10 6452 1 2025-10-29 16:16:49.141 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56890 10 6452 1 2025-10-29 16:17:49.562 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51570 10 6452 1 2025-10-29 16:14:51.891 00:05:00.374 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 16:18:49.933 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:33444 10 6452 1 2025-10-29 16:19:46.336 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:19:46.337 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 16:19:46.387 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 16:19:46.181 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:19:46.418 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 16:15:51.888 00:05:00.379 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 16:19:50.406 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:51916 10 6452 1 2025-10-29 16:20:50.775 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:53146 10 6452 1 2025-10-29 16:21:51.144 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59844 10 6452 1 2025-10-29 16:22:51.553 00:00:23.242 TCP 1.101.0.1:3000 -> 23.104.0.1:52546 10 6452 1 2025-10-29 16:24:04.838 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:60220 10 6452 1 2025-10-29 16:24:46.428 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 16:24:46.346 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:24:46.122 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 16:24:46.221 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 16:24:45.993 00:00:00.052 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:20:51.893 00:05:00.373 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 16:25:05.255 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41574 10 6452 1 2025-10-29 16:21:51.891 00:05:00.378 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 16:26:05.656 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57776 10 6452 1 2025-10-29 16:27:06.027 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56906 10 6452 1 2025-10-29 16:28:06.431 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60736 10 6452 1 2025-10-29 16:29:06.839 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:58264 10 6452 1 2025-10-29 16:29:46.761 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 16:29:46.717 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 16:29:46.395 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:29:46.585 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:29:46.668 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 16:30:07.224 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55592 10 6452 1 2025-10-29 16:26:51.896 00:05:00.372 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 16:31:07.626 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:36840 10 6452 1 2025-10-29 16:27:51.893 00:05:00.378 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 16:32:07.985 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46892 10 6452 1 2025-10-29 16:33:08.385 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42436 10 6452 1 2025-10-29 16:34:08.748 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56092 10 6452 1 2025-10-29 16:34:46.509 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 16:34:46.331 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 16:34:46.154 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:34:46.509 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:34:46.591 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 16:35:09.155 00:00:11.624 TCP 1.101.0.1:3000 -> 23.104.0.1:36284 10 6452 1 2025-10-29 16:36:10.824 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58754 10 6452 1 2025-10-29 16:32:51.896 00:05:00.382 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 16:37:11.228 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47240 10 6452 1 2025-10-29 16:33:51.894 00:05:00.386 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 16:38:11.630 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59366 10 6452 1 2025-10-29 16:39:12.032 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55654 10 6452 1 2025-10-29 16:39:46.758 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 16:39:46.734 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 16:39:46.681 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 16:39:46.503 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:39:46.675 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:40:12.430 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52550 10 6452 1 2025-10-29 16:41:12.795 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51544 10 6452 1 2025-10-29 16:42:13.199 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45436 10 6452 1 2025-10-29 16:38:51.899 00:05:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 16:43:13.570 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:40998 10 6452 1 2025-10-29 16:39:51.895 00:05:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 16:44:13.926 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:35694 10 6452 1 2025-10-29 16:44:46.933 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 16:44:46.758 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 16:44:46.666 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 16:44:46.825 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:44:46.850 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:45:14.357 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:33698 10 6452 1 2025-10-29 16:46:14.779 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41974 10 6452 1 2025-10-29 16:47:15.191 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56646 10 6452 1 2025-10-29 16:48:15.597 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35978 10 6452 1 2025-10-29 16:44:51.899 00:05:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 16:49:16.016 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42754 10 6452 1 2025-10-29 16:49:46.797 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 16:49:46.798 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 16:49:46.766 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:49:46.650 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:49:46.732 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 16:45:51.897 00:05:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 16:50:16.418 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:38892 10 6452 1 2025-10-29 16:51:16.831 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46640 10 6452 1 2025-10-29 16:52:17.232 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56642 10 6452 1 2025-10-29 16:53:17.634 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:37062 10 6452 1 2025-10-29 16:54:18.050 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:58182 10 6452 1 2025-10-29 16:54:47.067 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 16:54:46.985 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:54:46.857 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 16:54:46.600 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 16:54:46.629 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:50:51.899 00:05:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 16:55:18.423 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35136 10 6452 1 2025-10-29 16:51:51.897 00:05:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 16:56:18.831 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46122 10 6452 1 2025-10-29 16:57:19.230 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:58062 10 6452 1 2025-10-29 16:58:19.630 00:00:10.588 TCP 1.101.0.1:3000 -> 23.104.0.1:57274 10 6452 1 Summary: total flows: 140, total bytes: 417000, total packets: 1020, avg bps: 902, avg pps: 0, avg bpp: 408 Time window: 2025-10-29 15:56:51 - 2025-10-29 16:58:30 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0051s User: 0.0010s Wall: 0.0016s flows/second: 89580.9 Runtime: 0.0016s