Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-15 15:59:12.143 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:39760 10 6452 1 2025-10-15 15:55:44.659 00:05:00.455 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 16:00:12.511 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39630 10 6452 1 2025-10-15 16:01:12.915 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50082 10 6452 1 2025-10-15 16:02:13.318 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47576 10 6452 1 2025-10-15 16:03:00.882 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 16:03:00.969 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 16:03:01.269 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 16:03:01.191 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 16:03:01.188 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 16:03:13.680 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46398 10 6452 1 2025-10-15 16:04:14.108 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44210 10 6452 1 2025-10-15 16:00:44.662 00:05:00.450 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 16:05:14.511 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44836 10 6452 1 2025-10-15 16:01:44.659 00:05:00.456 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 16:06:14.914 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51166 10 6452 1 2025-10-15 16:07:15.314 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43902 10 6452 1 2025-10-15 16:08:01.260 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 16:08:01.197 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 16:08:01.256 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 16:08:01.259 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 16:08:01.339 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 16:08:15.725 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34766 10 6452 1 2025-10-15 16:09:16.109 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:46956 10 6452 1 2025-10-15 16:10:16.479 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:48106 10 6452 1 2025-10-15 16:06:44.663 00:05:00.451 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 16:11:16.846 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:51410 10 6452 1 2025-10-15 16:07:44.660 00:05:00.457 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 16:12:17.266 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44642 10 6452 1 2025-10-15 16:13:01.385 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 16:13:01.448 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 16:13:01.294 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 16:13:01.448 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 16:13:01.377 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 16:13:17.622 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50008 10 6452 1 2025-10-15 16:14:18.032 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46746 10 6452 1 2025-10-15 16:15:18.432 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42596 10 6452 1 2025-10-15 16:16:18.839 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:58936 10 6452 1 2025-10-15 16:12:44.665 00:05:00.451 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 16:17:19.270 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52374 10 6452 1 2025-10-15 16:13:44.663 00:05:00.456 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 16:18:01.698 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 16:18:01.482 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 16:18:01.419 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 16:18:01.616 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 16:18:01.618 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 16:18:19.673 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55776 10 6452 1 2025-10-15 16:19:20.117 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40648 10 6452 1 2025-10-15 16:20:20.520 00:00:10.992 TCP 1.101.0.1:3000 -> 23.104.0.1:50900 10 6452 1 2025-10-15 16:21:21.552 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52310 10 6452 1 2025-10-15 16:22:21.916 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39428 10 6452 1 2025-10-15 16:18:44.666 00:05:00.453 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 16:23:01.637 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 16:23:01.245 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 16:23:01.642 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 16:23:01.568 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 16:23:01.725 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 16:23:22.317 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54660 10 6452 1 2025-10-15 16:19:44.663 00:05:00.458 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 16:24:22.720 00:00:10.844 TCP 1.101.0.1:3000 -> 23.104.0.1:36988 10 6452 1 2025-10-15 16:25:23.604 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52890 10 6452 1 2025-10-15 16:26:23.967 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59728 10 6452 1 2025-10-15 16:27:24.405 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40876 10 6452 1 2025-10-15 16:28:01.770 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 16:28:01.696 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 16:28:01.651 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 16:28:01.686 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 16:28:01.682 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 16:28:24.769 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:41202 10 6452 1 2025-10-15 16:24:44.669 00:05:00.450 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 16:29:25.141 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:60338 10 6452 1 2025-10-15 16:25:44.666 00:05:00.455 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 16:30:25.509 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50196 10 6452 1 2025-10-15 16:31:25.935 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38130 10 6452 1 2025-10-15 16:32:26.348 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48902 10 6452 1 2025-10-15 16:33:02.204 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 16:33:02.237 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 16:33:02.295 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 16:33:02.121 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 16:33:02.119 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 16:33:26.756 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46444 10 6452 1 2025-10-15 16:34:27.156 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44936 10 6452 1 2025-10-15 16:30:44.670 00:05:00.451 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 16:35:27.553 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55656 10 6452 1 2025-10-15 16:31:44.667 00:05:00.456 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 16:36:27.964 00:00:10.421 TCP 1.101.0.1:3000 -> 23.104.0.1:35548 10 6452 1 2025-10-15 16:37:28.422 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38128 10 6452 1 2025-10-15 16:38:01.923 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 16:38:01.622 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 16:38:01.924 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 16:38:01.983 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 16:38:02.011 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 16:38:28.824 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55828 10 6452 1 2025-10-15 16:39:29.226 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:56458 10 6452 1 2025-10-15 16:40:29.584 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36652 10 6452 1 2025-10-15 16:36:44.672 00:05:00.450 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 16:41:29.992 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:47822 12 10375 1 2025-10-15 16:37:44.670 00:05:00.455 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 16:42:30.467 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:38530 10 6452 1 2025-10-15 16:43:01.884 00:00:00.037 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 16:43:01.892 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 16:43:01.638 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 16:43:01.802 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 16:43:01.976 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 16:43:30.867 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:58952 10 6452 1 2025-10-15 16:44:31.234 00:00:15.791 TCP 1.101.0.1:3000 -> 23.104.0.1:50052 10 6452 1 2025-10-15 16:45:37.077 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50156 10 6452 1 2025-10-15 16:42:44.675 00:05:00.450 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 16:46:37.483 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33414 10 6452 1 2025-10-15 16:43:44.671 00:05:00.456 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 16:47:37.885 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:46530 12 6556 1 2025-10-15 16:48:02.085 00:00:00.043 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 16:48:02.109 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 16:48:01.910 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 16:48:02.004 00:00:00.042 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 16:48:01.891 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 16:48:38.303 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43220 10 6452 1 2025-10-15 16:49:38.710 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33410 10 6452 1 2025-10-15 16:50:39.114 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56426 10 6452 1 2025-10-15 16:51:39.520 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60346 10 6452 1 2025-10-15 16:48:44.675 00:05:00.450 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 16:52:39.886 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:46238 10 6452 1 2025-10-15 16:53:02.374 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 16:53:02.220 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 16:53:02.078 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 16:53:02.077 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 16:53:02.161 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 16:49:44.673 00:05:00.457 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 16:53:40.308 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49558 10 6452 1 2025-10-15 16:54:40.705 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:32990 10 6452 1 2025-10-15 16:55:41.069 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53596 10 6452 1 2025-10-15 16:56:41.470 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40104 10 6452 1 2025-10-15 16:57:41.868 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39238 10 6452 1 2025-10-15 16:58:02.211 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 16:58:02.292 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 16:58:02.352 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 16:58:02.219 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 16:58:02.437 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 16:54:44.676 00:05:00.451 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 Summary: total flows: 139, total bytes: 414575, total packets: 1014, avg bps: 863, avg pps: 0, avg bpp: 408 Time window: 2025-10-15 15:55:44 - 2025-10-15 16:59:45 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0041s User: 0.0021s Wall: 0.0021s flows/second: 65286.5 Runtime: 0.0021s