Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-16 18:58:57.510 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:59196 10 6452 1 2025-10-16 18:55:45.264 00:04:00.363 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 18:59:57.947 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38718 10 6452 1 2025-10-16 19:00:58.361 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56584 10 6452 1 2025-10-16 19:01:58.770 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:54598 10 6452 1 2025-10-16 19:02:59.143 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:37222 10 6452 1 2025-10-16 19:03:34.144 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 19:03:33.890 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 19:03:34.145 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 19:03:34.151 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 19:03:34.228 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 18:59:45.266 00:04:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 19:03:59.531 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58474 10 6452 1 2025-10-16 19:00:45.264 00:04:00.364 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 19:04:59.933 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:58970 10 6452 1 2025-10-16 19:06:00.360 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:52840 10 6452 1 2025-10-16 19:07:00.782 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60392 10 6452 1 2025-10-16 19:08:01.191 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38728 10 6452 1 2025-10-16 19:08:34.021 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 19:08:33.845 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 19:08:33.735 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 19:08:33.938 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 19:08:33.843 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 19:04:45.269 00:04:00.358 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 19:09:01.598 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34932 10 6452 1 2025-10-16 19:05:45.265 00:04:00.364 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 19:10:02.006 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40168 10 6452 1 2025-10-16 19:11:02.411 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:42110 10 6452 1 2025-10-16 19:10:45.268 00:01:00.361 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-16 19:12:02.822 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35064 10 6452 1 2025-10-16 19:13:03.228 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45854 10 6452 1 2025-10-16 19:13:33.889 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 19:13:33.806 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 19:13:33.563 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 19:13:33.804 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 19:13:33.804 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 19:09:45.268 00:04:00.358 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 19:14:03.628 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44036 10 6452 1 2025-10-16 19:12:45.269 00:02:00.361 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-16 19:15:04.035 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46902 11 6492 1 2025-10-16 19:14:45.273 00:01:00.354 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-16 19:16:04.438 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40178 10 6452 1 2025-10-16 19:15:45.272 00:01:00.359 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-16 19:17:04.843 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:46588 10 6452 1 2025-10-16 19:18:05.260 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51370 10 6452 1 2025-10-16 19:18:34.054 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 19:18:33.674 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 19:18:33.784 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 19:18:33.970 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 19:18:33.975 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 19:16:45.273 00:02:00.354 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-16 19:19:05.661 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59802 10 6452 1 2025-10-16 19:17:45.271 00:02:00.359 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-16 19:20:06.078 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:51212 10 6452 1 2025-10-16 19:19:45.274 00:01:00.354 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-16 19:21:06.439 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58172 10 6452 1 2025-10-16 19:20:45.272 00:01:00.359 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-16 19:22:06.806 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45264 10 6452 1 2025-10-16 19:23:07.215 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:33482 10 6452 1 2025-10-16 19:23:34.149 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 19:23:34.070 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 19:23:34.088 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 19:23:34.067 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 19:23:34.068 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 19:21:45.274 00:02:00.354 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-16 19:24:07.589 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50954 12 6556 1 2025-10-16 19:25:07.998 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57708 10 6452 1 2025-10-16 19:24:45.277 00:01:00.352 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-16 19:26:08.409 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50158 10 6452 1 2025-10-16 19:22:45.273 00:04:00.361 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 19:27:08.819 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51454 10 6452 1 2025-10-16 19:28:09.224 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52960 10 6452 1 2025-10-16 19:28:34.298 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 19:28:34.436 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 19:28:34.296 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 19:28:34.448 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 19:28:34.381 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 19:29:09.583 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:37552 10 6452 1 2025-10-16 19:30:09.982 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52426 10 6452 1 2025-10-16 19:26:45.277 00:04:00.355 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 19:31:10.388 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49250 10 6452 1 2025-10-16 19:27:45.274 00:04:00.360 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 19:32:10.788 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:40170 12 10369 1 2025-10-16 19:33:11.266 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39338 10 6452 1 2025-10-16 19:33:34.467 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 19:33:34.250 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 19:33:34.183 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 19:33:34.385 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 19:33:34.372 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 19:34:11.670 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:49778 10 6452 1 2025-10-16 19:35:12.063 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33814 10 6452 1 2025-10-16 19:31:45.277 00:04:00.355 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 19:36:12.469 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49016 11 6504 1 2025-10-16 19:32:45.275 00:04:00.359 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 19:37:12.907 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:51178 10 6452 1 2025-10-16 19:38:13.319 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59670 10 6452 1 2025-10-16 19:38:34.261 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 19:38:34.385 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 19:38:34.264 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 19:38:34.540 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 19:38:34.347 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 19:39:13.729 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48690 10 6452 1 2025-10-16 19:40:14.136 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43708 10 6452 1 2025-10-16 19:36:45.286 00:04:00.347 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 19:41:14.499 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51944 10 6452 1 2025-10-16 19:37:45.280 00:04:00.356 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 19:42:14.863 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45922 10 6452 1 2025-10-16 19:43:15.274 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48844 10 6452 1 2025-10-16 19:43:34.530 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 19:43:34.510 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 19:43:34.898 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 19:43:34.809 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 19:43:34.981 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 19:42:45.283 00:01:00.353 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-16 19:44:15.676 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46308 10 6452 1 2025-10-16 19:45:16.153 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59172 10 6452 1 2025-10-16 19:41:45.284 00:04:00.351 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 19:46:16.557 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:32874 10 6452 1 2025-10-16 19:44:45.282 00:02:00.355 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-16 19:47:16.965 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52802 10 6452 1 2025-10-16 19:46:45.286 00:01:00.350 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-16 19:48:17.367 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:43892 10 6452 1 2025-10-16 19:48:34.826 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 19:48:34.646 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 19:48:34.644 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 19:48:34.742 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 19:48:34.741 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 19:47:45.283 00:01:00.356 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-16 19:49:17.778 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:54042 10 6452 1 2025-10-16 19:50:18.194 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36452 10 6452 1 2025-10-16 19:48:45.286 00:02:00.352 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-16 19:51:18.597 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51674 10 6452 1 2025-10-16 19:49:45.282 00:02:00.357 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-16 19:52:19.003 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49668 10 6452 1 2025-10-16 19:51:45.287 00:01:00.351 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-16 19:53:34.894 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 19:53:19.407 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58632 10 6452 1 2025-10-16 19:53:34.694 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 19:53:34.685 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 19:53:34.810 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 19:53:34.690 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 19:52:45.284 00:01:00.356 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-16 19:54:19.778 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:58012 10 6452 1 2025-10-16 19:55:20.199 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50714 10 6452 1 2025-10-16 19:53:45.287 00:02:00.351 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-16 19:56:20.599 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52786 10 6452 1 2025-10-16 19:57:20.999 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:34786 12 10369 1 2025-10-16 19:56:45.287 00:01:00.351 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-16 19:58:34.861 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 19:58:34.740 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 19:58:34.862 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 19:58:34.806 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 19:58:21.469 00:00:10.917 TCP 1.101.0.1:3000 -> 23.104.0.1:56912 10 6452 1 2025-10-16 19:58:34.944 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 19:54:45.285 00:04:00.356 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 Summary: total flows: 155, total bytes: 425399, total packets: 1034, avg bps: 900, avg pps: 0, avg bpp: 411 Time window: 2025-10-16 18:55:45 - 2025-10-16 19:58:45 Total flows processed: 155, passed: 155, Blocks skipped: 0, Bytes read: 16184 Sys: 0.0028s User: 0.0019s Wall: 0.0020s flows/second: 79041.6 Runtime: 0.0020s