Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-16 17:59:30.193 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:54906 10 6452 1 2025-10-16 17:55:45.243 00:04:00.364 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 18:00:30.559 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40640 10 6452 1 2025-10-16 17:56:45.243 00:04:00.367 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 18:01:30.960 00:00:10.851 TCP 1.101.0.1:3000 -> 23.104.0.1:36242 10 6452 1 2025-10-16 18:02:31.859 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:36696 10 6452 1 2025-10-16 18:03:32.664 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 18:03:32.417 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 18:03:32.766 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:03:32.576 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:03:32.838 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 18:03:32.271 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:59518 10 6452 1 2025-10-16 18:04:32.638 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52086 10 6452 1 2025-10-16 18:00:45.248 00:04:00.362 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 18:01:45.245 00:04:00.367 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 18:05:33.040 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:60184 10 6452 1 2025-10-16 18:06:33.397 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:43614 10 6452 1 2025-10-16 18:07:33.806 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41308 10 6452 1 2025-10-16 18:06:45.246 00:01:00.366 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-16 18:08:32.745 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 18:08:32.663 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 18:08:32.257 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:08:32.663 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:08:32.762 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 18:08:34.209 00:00:11.003 TCP 1.101.0.1:3000 -> 23.104.0.1:52616 10 6452 1 2025-10-16 18:05:45.251 00:04:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 18:09:35.247 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51700 10 6452 1 2025-10-16 18:08:45.247 00:02:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-16 18:10:35.653 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:57660 10 6452 1 2025-10-16 18:10:45.249 00:01:00.361 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-16 18:11:36.016 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59660 10 6452 1 2025-10-16 18:11:45.247 00:01:00.368 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-16 18:12:36.412 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50124 10 6452 1 2025-10-16 18:13:32.717 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 18:13:32.657 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:13:32.517 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:13:32.517 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 18:13:32.599 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 18:13:36.817 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39646 10 6452 1 2025-10-16 18:12:45.252 00:02:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-16 18:14:37.222 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47060 10 6452 1 2025-10-16 18:15:37.621 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49122 10 6452 1 2025-10-16 18:15:45.250 00:01:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-16 18:16:38.023 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:59682 10 6452 1 2025-10-16 18:13:45.250 00:04:00.366 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 18:17:38.378 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52270 10 6452 1 2025-10-16 18:18:33.273 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 18:18:33.009 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 18:18:32.936 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:18:33.191 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:18:33.291 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 18:18:38.777 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56770 10 6452 1 2025-10-16 18:19:39.181 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57488 10 6452 1 2025-10-16 18:20:39.544 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37706 10 6452 1 2025-10-16 18:17:45.251 00:04:00.362 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 18:21:39.944 00:00:10.824 TCP 1.101.0.1:3000 -> 23.104.0.1:33598 10 6452 1 2025-10-16 18:18:45.249 00:04:00.367 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 18:22:40.803 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50440 10 6452 1 2025-10-16 18:23:32.826 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 18:23:32.907 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 18:23:32.927 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:23:32.737 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:23:32.854 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 18:23:41.208 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34750 10 6452 1 2025-10-16 18:24:41.575 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59950 10 6452 1 2025-10-16 18:25:41.990 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:46276 10 6452 1 2025-10-16 18:22:45.254 00:04:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 18:26:42.367 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50604 10 6452 1 2025-10-16 18:23:45.252 00:04:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 18:27:42.775 00:00:10.782 TCP 1.101.0.1:3000 -> 23.104.0.1:55462 10 6452 1 2025-10-16 18:28:32.999 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 18:28:32.928 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:28:32.995 00:00:00.046 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:28:33.000 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 18:28:33.078 00:00:00.046 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 18:28:43.598 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33402 10 6452 1 2025-10-16 18:29:44.003 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56226 10 6452 1 2025-10-16 18:30:44.415 00:00:10.890 TCP 1.101.0.1:3000 -> 23.104.0.1:56514 10 6452 1 2025-10-16 18:27:45.256 00:04:00.361 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 18:31:45.354 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58824 10 6452 1 2025-10-16 18:28:45.254 00:04:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 18:32:45.759 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57002 10 6452 1 2025-10-16 18:33:33.278 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 18:33:33.072 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 18:33:32.832 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:33:33.196 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:33:32.922 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 18:33:46.168 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42342 10 6452 1 2025-10-16 18:34:46.570 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49892 10 6452 1 2025-10-16 18:35:46.982 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34036 10 6452 1 2025-10-16 18:32:45.258 00:04:00.361 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 18:36:47.389 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40674 10 6452 1 2025-10-16 18:33:45.255 00:04:00.367 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 18:37:47.789 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54676 10 6452 1 2025-10-16 18:38:33.317 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 18:38:33.183 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 18:38:32.916 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:38:33.236 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:38:33.280 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 18:38:48.192 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52476 10 6452 1 2025-10-16 18:39:48.596 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53834 10 6452 1 2025-10-16 18:40:48.995 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36290 10 6452 1 2025-10-16 18:37:45.258 00:04:00.363 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 18:41:49.400 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39858 10 6452 1 2025-10-16 18:38:45.256 00:04:00.368 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 18:42:49.803 00:00:11.024 TCP 1.101.0.1:3000 -> 23.104.0.1:47044 10 6452 1 2025-10-16 18:43:33.664 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 18:43:33.036 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:43:33.579 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:43:33.496 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 18:43:33.663 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 18:42:45.259 00:01:00.362 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-16 18:43:50.863 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:60322 10 6452 1 2025-10-16 18:43:45.256 00:01:00.367 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-16 18:44:51.281 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58782 10 6452 1 2025-10-16 18:45:51.683 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45174 10 6452 1 2025-10-16 18:44:45.260 00:02:00.361 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-16 18:46:52.115 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41050 10 6452 1 2025-10-16 18:45:45.257 00:02:00.367 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-16 18:47:52.519 00:00:10.896 TCP 1.101.0.1:3000 -> 23.104.0.1:41822 10 6452 1 2025-10-16 18:48:33.491 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 18:48:33.324 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 18:48:33.234 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:48:33.409 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:48:33.404 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 18:47:45.262 00:01:00.361 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-16 18:48:53.462 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45082 10 6452 1 2025-10-16 18:48:45.258 00:01:00.366 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-16 18:49:53.864 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:36138 10 6452 1 2025-10-16 18:50:54.275 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52796 10 6452 1 2025-10-16 18:49:45.263 00:02:00.361 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-16 18:51:54.673 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34304 10 6452 1 2025-10-16 18:52:55.100 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34028 10 6452 1 2025-10-16 18:53:33.437 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 18:53:33.429 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 18:53:33.130 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:53:33.355 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:53:33.623 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 18:52:45.266 00:01:00.357 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-16 18:53:55.462 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53144 10 6452 1 2025-10-16 18:50:45.260 00:04:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 18:54:55.867 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52976 10 6452 1 2025-10-16 18:55:56.278 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48782 10 6452 1 2025-10-16 18:56:56.681 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47048 10 6452 1 2025-10-16 18:57:57.104 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59168 10 6452 1 2025-10-16 18:58:33.851 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 18:58:33.450 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 18:58:33.497 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:58:33.768 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 18:58:33.628 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 18:54:45.266 00:04:00.358 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 Summary: total flows: 151, total bytes: 410917, total packets: 1016, avg bps: 869, avg pps: 0, avg bpp: 404 Time window: 2025-10-16 17:55:45 - 2025-10-16 18:58:45 Total flows processed: 151, passed: 151, Blocks skipped: 0, Bytes read: 15768 Sys: 0.0031s User: 0.0021s Wall: 0.0022s flows/second: 67383.8 Runtime: 0.0023s