Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-09 18:55:41.769 00:05:00.396 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 18:59:35.993 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49848 10 6452 1 2025-10-09 19:00:11.436 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 19:00:11.352 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 19:00:11.376 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:00:11.354 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:00:11.421 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 19:00:36.402 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44024 10 6452 1 2025-10-09 19:01:36.806 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:42124 10 6452 1 2025-10-09 18:58:41.773 00:05:00.390 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 19:02:37.175 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:52890 10 6452 1 2025-10-09 19:03:37.576 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41940 10 6452 1 2025-10-09 19:04:37.984 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44728 10 6452 1 2025-10-09 19:05:11.373 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 19:05:11.633 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 19:05:11.471 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:05:11.286 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:05:11.411 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 19:01:41.770 00:05:00.399 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 19:05:38.389 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52588 10 6452 1 2025-10-09 19:06:38.788 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49832 10 6452 1 2025-10-09 19:07:39.198 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:33804 10 6452 1 2025-10-09 19:04:41.774 00:05:00.394 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 19:08:39.566 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53468 10 6452 1 2025-10-09 19:09:39.971 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53672 10 6452 1 2025-10-09 19:10:11.477 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 19:10:11.430 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:10:11.644 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:10:11.573 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 19:10:11.727 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 19:10:40.379 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:46112 10 6452 1 2025-10-09 19:07:41.771 00:05:00.398 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 19:11:40.742 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:47420 10 6452 1 2025-10-09 19:12:41.109 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52596 10 6452 1 2025-10-09 19:13:41.519 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38180 10 6452 1 2025-10-09 19:10:41.777 00:05:00.391 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 19:14:41.920 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40220 10 6452 1 2025-10-09 19:15:11.538 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 19:15:11.778 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 19:15:11.697 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:15:11.455 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:15:11.820 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 19:15:42.334 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39934 10 6452 1 2025-10-09 19:16:42.739 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52570 10 6452 1 2025-10-09 19:13:41.775 00:05:00.396 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 19:17:43.144 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:36936 10 6452 1 2025-10-09 19:18:43.502 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:37144 10 6452 1 2025-10-09 19:19:43.926 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49814 10 6452 1 2025-10-09 19:20:11.748 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 19:20:11.555 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:20:11.890 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:20:11.887 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 19:20:11.972 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 19:16:41.779 00:05:00.390 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 19:20:44.298 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57970 10 6452 1 2025-10-09 19:21:44.664 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55762 10 6452 1 2025-10-09 19:22:45.097 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57292 10 6452 1 2025-10-09 19:19:41.778 00:05:00.394 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 19:23:45.499 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50834 10 6452 1 2025-10-09 19:24:45.903 00:00:10.407 TCP 1.101.0.1:3000 -> 23.104.0.1:39262 12 10375 1 2025-10-09 19:25:11.997 00:00:00.044 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:25:12.171 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:25:12.137 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 19:25:12.212 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 19:25:12.254 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 19:25:46.348 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43676 10 6452 1 2025-10-09 19:22:41.781 00:05:00.390 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 19:26:46.756 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56820 10 6452 1 2025-10-09 19:27:47.161 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:45006 10 6452 1 2025-10-09 19:28:47.577 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35622 10 6452 1 2025-10-09 19:25:41.779 00:05:00.397 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 19:29:47.943 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52040 10 6452 1 2025-10-09 19:30:12.256 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 19:30:11.760 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 19:30:11.744 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:30:12.174 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:30:11.966 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 19:30:48.356 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54262 10 6452 1 2025-10-09 19:31:48.763 00:00:12.874 TCP 1.101.0.1:3000 -> 23.104.0.1:42374 10 6452 1 2025-10-09 19:28:41.782 00:05:00.392 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 19:32:51.651 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44974 10 6452 1 2025-10-09 19:33:52.059 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51732 10 6452 1 2025-10-09 19:34:52.472 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:54030 10 6452 1 2025-10-09 19:35:12.109 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 19:35:12.151 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 19:35:11.855 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:35:12.026 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:35:11.938 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 19:31:41.781 00:05:00.397 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 19:35:52.833 00:00:10.460 TCP 1.101.0.1:3000 -> 23.104.0.1:46400 11 6504 1 2025-10-09 19:36:53.305 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41812 10 6452 1 2025-10-09 19:37:53.711 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60466 10 6452 1 2025-10-09 19:34:41.783 00:05:00.392 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 19:38:54.097 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33058 10 6452 1 2025-10-09 19:39:54.501 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32924 10 6452 1 2025-10-09 19:40:12.371 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 19:40:12.517 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 19:40:12.057 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:40:12.289 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:40:12.298 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 19:40:54.912 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44508 10 6452 1 2025-10-09 19:37:41.781 00:05:00.397 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 19:41:55.315 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40214 10 6452 1 2025-10-09 19:42:55.713 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:58034 10 6452 1 2025-10-09 19:43:56.136 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39232 10 6452 1 2025-10-09 19:40:41.785 00:05:00.392 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 19:44:56.541 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38020 10 6452 1 2025-10-09 19:45:12.627 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 19:45:12.543 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:45:12.313 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 19:45:12.387 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 19:45:12.465 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:45:56.906 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45276 10 6452 1 2025-10-09 19:46:57.274 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51974 10 6452 1 2025-10-09 19:43:41.782 00:05:00.398 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 19:47:57.677 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53772 10 6452 1 2025-10-09 19:48:58.105 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:44742 10 6452 1 2025-10-09 19:49:58.480 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41844 12 6556 1 2025-10-09 19:50:12.443 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 19:50:12.492 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 19:50:12.310 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:50:12.358 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:50:12.487 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 19:46:41.786 00:05:00.392 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 19:50:58.885 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59202 12 6556 1 2025-10-09 19:51:59.310 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:51242 10 6452 1 2025-10-09 19:52:59.672 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35266 10 6452 1 2025-10-09 19:49:41.783 00:05:00.397 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 19:54:00.110 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:36512 10 6452 1 2025-10-09 19:55:12.623 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 19:55:00.522 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37768 10 6452 1 2025-10-09 19:55:12.538 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 19:55:12.447 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:55:12.541 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 19:55:12.545 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 19:56:00.884 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:58010 10 6452 1 2025-10-09 19:52:41.787 00:05:00.393 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 19:57:01.266 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51622 10 6452 1 2025-10-09 19:58:01.670 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52176 10 6452 1 Summary: total flows: 139, total bytes: 414731, total packets: 1017, avg bps: 884, avg pps: 0, avg bpp: 407 Time window: 2025-10-09 18:55:41 - 2025-10-09 19:58:12 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0039s User: 0.0013s Wall: 0.0016s flows/second: 84702.6 Runtime: 0.0017s