Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-16 16:59:05.107 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37234 10 6452 1 2025-10-16 17:00:05.474 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47542 10 6452 1 2025-10-16 16:56:45.217 00:04:00.373 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 17:01:05.851 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:39678 10 6452 1 2025-10-16 16:57:45.214 00:04:00.378 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 17:02:06.272 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49512 10 6452 1 2025-10-16 17:03:06.682 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46874 10 6452 1 2025-10-16 17:03:31.340 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 17:03:31.312 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 17:03:31.331 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 17:03:31.256 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 17:03:31.316 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 17:04:07.114 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50054 10 6452 1 2025-10-16 17:05:07.484 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57108 10 6452 1 2025-10-16 17:01:45.218 00:04:00.375 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 17:06:07.918 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47792 10 6452 1 2025-10-16 17:07:08.320 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55762 10 6452 1 2025-10-16 17:02:45.216 00:06:00.380 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 17:06:45.221 00:01:00.372 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-16 17:08:08.728 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:51562 10 6452 1 2025-10-16 17:08:31.412 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 17:08:31.436 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 17:08:31.409 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 17:08:31.414 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 17:08:31.492 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 17:09:09.143 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50632 10 6452 1 2025-10-16 17:10:09.546 00:00:11.029 TCP 1.101.0.1:3000 -> 23.104.0.1:51834 10 6452 1 2025-10-16 17:08:45.224 00:02:00.367 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-16 17:11:10.612 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46252 10 6452 1 2025-10-16 17:12:11.016 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:40468 10 6452 1 2025-10-16 17:11:45.225 00:01:00.367 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-16 17:13:11.416 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36240 10 6452 1 2025-10-16 17:13:31.601 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 17:13:31.524 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 17:13:31.557 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 17:13:31.367 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 17:13:31.642 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 17:09:45.222 00:04:00.375 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 17:14:11.821 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:54330 10 6452 1 2025-10-16 17:15:12.185 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:50278 10 6452 1 2025-10-16 17:16:12.542 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49558 10 6452 1 2025-10-16 17:17:12.948 00:00:10.406 TCP 1.101.0.1:3000 -> 23.104.0.1:35964 12 10369 1 2025-10-16 17:13:45.226 00:04:00.366 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 17:18:13.397 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54594 10 6452 1 2025-10-16 17:18:32.158 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 17:18:31.745 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 17:18:32.085 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 17:18:31.908 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 17:18:32.169 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 17:14:45.223 00:04:00.372 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 17:19:13.802 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49150 10 6452 1 2025-10-16 17:20:14.205 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:44748 10 6452 1 2025-10-16 17:21:14.571 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:36832 10 6452 1 2025-10-16 17:22:14.932 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:42454 10 6452 1 2025-10-16 17:18:45.227 00:04:00.369 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 17:23:15.354 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:55668 10 6452 1 2025-10-16 17:23:31.490 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 17:23:31.415 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 17:23:31.635 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 17:23:31.636 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 17:23:31.717 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 17:19:45.224 00:04:00.374 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 17:24:15.717 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55382 10 6452 1 2025-10-16 17:25:16.122 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49310 10 6452 1 2025-10-16 17:26:16.525 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:42154 10 6452 1 2025-10-16 17:27:16.899 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:34996 10 6452 1 2025-10-16 17:23:45.229 00:04:00.371 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 17:28:17.308 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58402 10 6452 1 2025-10-16 17:28:31.824 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 17:28:31.863 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 17:28:31.669 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 17:28:31.740 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 17:28:31.796 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 17:24:45.229 00:04:00.374 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 17:29:17.713 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:47822 10 6452 1 2025-10-16 17:30:18.133 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:52942 10 6452 1 2025-10-16 17:31:18.559 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40642 10 6452 1 2025-10-16 17:32:18.962 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42878 10 6452 1 2025-10-16 17:28:45.231 00:04:00.370 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 17:33:19.366 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52402 10 6452 1 2025-10-16 17:33:31.904 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 17:33:31.818 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 17:33:31.850 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 17:33:31.821 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 17:33:31.819 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 17:29:45.228 00:04:00.375 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 17:34:19.768 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:32800 10 6452 1 2025-10-16 17:35:20.178 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:57618 10 6452 1 2025-10-16 17:34:45.238 00:01:00.366 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-16 17:36:20.535 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52046 10 6452 1 2025-10-16 17:37:20.934 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:35586 10 6452 1 2025-10-16 17:33:45.240 00:04:00.361 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 17:38:32.034 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 17:38:31.845 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 17:38:21.354 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53060 10 6452 1 2025-10-16 17:38:32.328 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 17:38:32.337 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 17:38:32.410 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 17:36:45.238 00:02:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-16 17:39:21.756 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:55882 10 6452 1 2025-10-16 17:38:45.241 00:01:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-16 17:40:22.121 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:35784 10 6452 1 2025-10-16 17:39:45.239 00:01:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-16 17:41:22.555 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39378 10 6452 1 2025-10-16 17:42:22.959 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58902 10 6452 1 2025-10-16 17:40:45.241 00:02:00.361 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-16 17:43:32.204 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 17:43:32.166 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 17:43:32.202 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 17:43:32.296 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 17:43:23.363 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43862 10 6452 1 2025-10-16 17:43:32.284 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 17:44:23.768 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38154 10 6452 1 2025-10-16 17:43:45.242 00:01:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-16 17:45:24.184 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51574 10 6452 1 2025-10-16 17:41:45.239 00:04:00.367 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 17:46:24.551 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54214 10 6452 1 2025-10-16 17:47:24.955 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49660 10 6452 1 2025-10-16 17:48:32.489 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 17:48:32.244 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 17:48:32.566 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 17:48:32.570 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 17:48:25.367 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35752 10 6452 1 2025-10-16 17:48:32.648 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 17:49:25.771 00:00:10.748 TCP 1.101.0.1:3000 -> 23.104.0.1:42874 10 6452 1 2025-10-16 17:45:45.243 00:04:00.362 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 17:50:26.560 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45942 10 6452 1 2025-10-16 17:46:45.241 00:04:00.367 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 17:51:26.963 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51682 10 6452 1 2025-10-16 17:52:27.371 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35314 10 6452 1 2025-10-16 17:53:32.486 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 17:53:32.334 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 17:53:32.415 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 17:53:32.403 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 17:53:32.032 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 17:53:27.772 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43920 10 6452 1 2025-10-16 17:54:28.183 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53522 10 6452 1 2025-10-16 17:50:45.244 00:04:00.363 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 17:55:28.586 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:49764 10 6452 1 2025-10-16 17:51:45.241 00:04:00.368 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 17:56:28.987 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:38250 10 6452 1 2025-10-16 17:57:29.412 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:43618 10 6452 1 2025-10-16 17:58:32.848 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 17:58:32.874 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 17:58:33.080 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 17:58:32.985 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 17:58:33.162 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 17:58:29.781 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42206 10 6452 1 Summary: total flows: 148, total bytes: 420671, total packets: 1018, avg bps: 905, avg pps: 0, avg bpp: 413 Time window: 2025-10-16 16:56:45 - 2025-10-16 17:58:40 Total flows processed: 148, passed: 148, Blocks skipped: 0, Bytes read: 15456 Sys: 0.0039s User: 0.0010s Wall: 0.0022s flows/second: 68675.4 Runtime: 0.0022s