Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-15 17:59:13.388 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51158 10 6452 1 2025-10-15 17:55:44.691 00:05:00.463 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 18:00:13.786 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45140 10 6452 1 2025-10-15 18:01:14.193 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:35264 12 10369 1 2025-10-15 18:02:14.673 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54036 10 6452 1 2025-10-15 18:03:03.701 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 18:03:03.500 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 18:03:03.534 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 18:03:03.619 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 18:03:03.620 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 18:03:15.110 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54860 10 6452 1 2025-10-15 18:04:15.523 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54200 10 6452 1 2025-10-15 18:00:44.696 00:05:00.455 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 18:05:15.921 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52488 10 6452 1 2025-10-15 18:01:44.694 00:05:00.462 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 18:06:16.331 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48008 10 6452 1 2025-10-15 18:07:16.734 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56600 10 6452 1 2025-10-15 18:08:03.903 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 18:08:03.661 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 18:08:03.482 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 18:08:03.820 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 18:08:03.729 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 18:08:17.144 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:43046 10 6452 1 2025-10-15 18:09:17.559 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41216 10 6452 1 2025-10-15 18:10:17.966 00:00:10.548 TCP 1.101.0.1:3000 -> 23.104.0.1:45302 10 6452 1 2025-10-15 18:06:44.700 00:05:00.456 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 18:11:18.546 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:53180 10 6452 1 2025-10-15 18:07:44.697 00:05:00.460 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 18:12:18.913 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:47094 10 6452 1 2025-10-15 18:13:04.094 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 18:13:03.730 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 18:13:03.832 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 18:13:03.977 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 18:13:03.914 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 18:13:19.277 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50338 10 6452 1 2025-10-15 18:14:19.679 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46024 10 6452 1 2025-10-15 18:15:20.110 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48374 10 6452 1 2025-10-15 18:16:20.517 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37948 10 6452 1 2025-10-15 18:12:44.701 00:05:00.456 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 18:17:20.927 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:43260 10 6452 1 2025-10-15 18:13:44.700 00:05:00.459 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 18:18:03.960 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 18:18:03.610 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 18:18:03.795 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 18:18:03.877 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 18:18:03.596 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 18:18:21.341 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:58428 10 6452 1 2025-10-15 18:19:21.700 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:50516 10 6452 1 2025-10-15 18:20:22.078 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53098 10 6452 1 2025-10-15 18:21:22.484 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40952 10 6452 1 2025-10-15 18:22:22.885 00:00:10.404 TCP 1.101.0.1:3000 -> 23.104.0.1:59020 10 6452 1 2025-10-15 18:18:44.712 00:05:00.445 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 18:23:03.888 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 18:23:03.805 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 18:23:03.838 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 18:23:03.806 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 18:23:03.794 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 18:23:23.335 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59986 10 6452 1 2025-10-15 18:19:44.702 00:05:00.457 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 18:24:23.739 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59200 10 6452 1 2025-10-15 18:25:24.145 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34230 10 6452 1 2025-10-15 18:26:24.556 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42042 10 6452 1 2025-10-15 18:27:24.961 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52786 10 6452 1 2025-10-15 18:28:04.157 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 18:28:04.140 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 18:28:04.189 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 18:28:04.104 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 18:28:04.274 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 18:28:25.367 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49762 10 6452 1 2025-10-15 18:24:44.707 00:05:00.451 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 18:29:25.731 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57824 10 6452 1 2025-10-15 18:25:44.704 00:05:00.455 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 18:30:26.141 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39960 10 6452 1 2025-10-15 18:31:26.551 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:52670 10 6452 1 2025-10-15 18:32:26.960 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39814 10 6452 1 2025-10-15 18:33:04.311 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 18:33:04.389 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 18:33:04.357 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 18:33:04.228 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 18:33:04.338 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 18:33:27.364 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59904 10 6452 1 2025-10-15 18:34:27.772 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60714 10 6452 1 2025-10-15 18:30:44.707 00:05:00.451 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 18:35:28.181 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49166 10 6452 1 2025-10-15 18:31:44.705 00:05:00.455 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 18:36:28.585 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:46028 13 10415 1 2025-10-15 18:37:29.096 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56084 10 6452 1 2025-10-15 18:38:04.235 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 18:38:04.247 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 18:38:04.352 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 18:38:04.301 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 18:38:04.436 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 18:38:29.496 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51020 10 6452 1 2025-10-15 18:39:29.896 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:53118 10 6452 1 2025-10-15 18:40:30.268 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48312 10 6452 1 2025-10-15 18:36:44.709 00:05:00.451 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 18:41:30.671 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42024 10 6452 1 2025-10-15 18:37:44.708 00:05:00.456 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 18:42:31.099 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51628 10 6452 1 2025-10-15 18:43:04.223 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 18:43:03.950 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 18:43:04.457 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 18:43:04.454 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 18:43:04.540 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 18:43:31.502 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40292 10 6452 1 2025-10-15 18:44:31.903 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40832 12 6556 1 2025-10-15 18:45:32.309 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36682 10 6452 1 2025-10-15 18:46:32.710 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36196 10 6452 1 2025-10-15 18:42:44.711 00:05:00.451 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 18:43:44.709 00:05:00.457 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 18:47:33.118 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40004 10 6452 1 2025-10-15 18:48:04.445 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 18:48:04.365 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 18:48:04.362 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 18:48:04.439 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 18:48:04.445 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 18:48:33.515 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50372 10 6452 1 2025-10-15 18:49:33.919 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:36866 10 6452 1 2025-10-15 18:50:34.290 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48620 10 6452 1 2025-10-15 18:51:34.690 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35300 10 6452 1 2025-10-15 18:48:44.712 00:05:00.451 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 18:52:35.069 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45252 10 6452 1 2025-10-15 18:53:04.783 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 18:53:04.714 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 18:53:04.621 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 18:53:04.700 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 18:53:04.579 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 18:49:44.709 00:05:00.456 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 18:53:35.435 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:50778 10 6452 1 2025-10-15 18:54:35.799 00:00:10.353 TCP 1.101.0.1:3000 -> 23.104.0.1:55322 10 6452 1 2025-10-15 18:55:36.193 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48548 10 6452 1 2025-10-15 18:56:36.601 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:47636 10 6452 1 2025-10-15 18:57:36.984 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45052 10 6452 1 2025-10-15 18:58:04.910 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 18:58:04.594 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 18:58:04.516 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 18:58:04.826 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 18:58:04.826 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 18:54:44.715 00:05:00.451 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 18:58:37.393 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44584 10 6452 1 Summary: total flows: 140, total bytes: 424984, total packets: 1027, avg bps: 885, avg pps: 0, avg bpp: 413 Time window: 2025-10-15 17:55:44 - 2025-10-15 18:59:45 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0035s User: 0.0012s Wall: 0.0019s flows/second: 72953.5 Runtime: 0.0019s