Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-16 19:59:22.423 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39866 10 6452 1 2025-10-16 20:00:22.784 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42460 10 6452 1 2025-10-16 20:01:23.188 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48936 10 6452 1 2025-10-16 20:02:23.596 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:39832 10 6452 1 2025-10-16 19:58:45.288 00:04:00.354 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 20:03:34.758 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 20:03:34.798 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 20:03:34.822 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 20:03:34.829 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 20:03:23.966 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43482 10 6452 1 2025-10-16 20:03:34.905 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 19:59:45.284 00:04:00.359 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 20:04:24.368 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51132 10 6452 1 2025-10-16 20:05:24.775 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:49418 10 6452 1 2025-10-16 20:06:25.195 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:41522 10 6452 1 2025-10-16 20:07:25.592 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38750 10 6452 1 2025-10-16 20:03:45.288 00:04:00.354 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 20:08:34.912 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 20:08:34.916 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 20:08:34.932 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 20:08:34.830 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 20:08:35.055 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 20:08:25.996 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:33190 11 6504 1 2025-10-16 20:04:45.286 00:04:00.358 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 20:09:26.415 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:55188 10 6452 1 2025-10-16 20:10:26.778 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58014 10 6452 1 2025-10-16 20:11:27.188 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55028 10 6452 1 2025-10-16 20:12:27.614 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:33764 10 6452 1 2025-10-16 20:08:45.292 00:04:00.353 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 20:13:34.953 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 20:13:34.928 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 20:13:35.088 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 20:13:35.094 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 20:13:35.171 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 20:13:27.976 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:40558 10 6452 1 2025-10-16 20:09:45.288 00:04:00.358 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 20:14:28.390 00:00:11.041 TCP 1.101.0.1:3000 -> 23.104.0.1:54680 10 6452 1 2025-10-16 20:15:29.472 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55922 10 6452 1 2025-10-16 20:14:45.289 00:01:00.358 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-16 20:16:29.874 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59988 10 6452 1 2025-10-16 20:17:30.280 00:00:10.868 TCP 1.101.0.1:3000 -> 23.104.0.1:59338 10 6452 1 2025-10-16 20:13:45.292 00:04:00.353 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 20:18:35.087 00:00:00.052 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 20:18:35.005 00:00:00.043 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 20:18:35.058 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 20:18:35.004 00:00:00.051 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 20:18:35.134 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 20:16:45.288 00:02:00.359 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-16 20:18:31.179 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60116 10 6452 1 2025-10-16 20:19:31.581 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:44430 10 6452 1 2025-10-16 20:18:45.292 00:01:00.353 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-16 20:19:45.289 00:01:00.359 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-16 20:20:31.942 00:00:10.741 TCP 1.101.0.1:3000 -> 23.104.0.1:44912 10 6452 1 2025-10-16 20:21:32.722 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:33516 10 6452 1 2025-10-16 20:22:33.137 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:42880 12 10375 1 2025-10-16 20:20:45.292 00:02:00.353 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-16 20:23:35.429 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 20:23:34.991 00:00:00.053 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 20:23:35.258 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 20:23:35.256 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 20:23:35.341 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 20:21:45.290 00:02:00.359 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-16 20:23:33.582 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36510 10 6452 1 2025-10-16 20:24:33.987 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:59074 10 6452 1 2025-10-16 20:23:45.293 00:01:00.353 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-16 20:24:45.291 00:01:00.358 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-16 20:25:34.403 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:48032 10 6452 1 2025-10-16 20:26:34.772 00:00:10.892 TCP 1.101.0.1:3000 -> 23.104.0.1:56654 10 6452 1 2025-10-16 20:25:45.294 00:02:00.354 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-16 20:27:35.707 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52116 10 6452 1 2025-10-16 20:28:35.725 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 20:28:35.551 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 20:28:35.372 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 20:28:35.643 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 20:28:35.690 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 20:26:45.292 00:02:00.360 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-16 20:28:36.112 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:48012 10 6452 1 2025-10-16 20:28:45.296 00:01:00.354 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-16 20:29:36.548 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41396 10 6452 1 2025-10-16 20:29:45.291 00:01:00.361 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-16 20:30:36.948 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:44712 10 6452 1 2025-10-16 20:31:37.361 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52144 10 6452 1 2025-10-16 20:30:45.296 00:02:00.359 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-16 20:32:37.768 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:60398 10 6452 1 2025-10-16 20:33:35.612 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 20:33:35.584 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 20:33:35.397 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 20:33:35.530 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 20:33:35.582 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 20:33:38.149 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51170 10 6452 1 2025-10-16 20:33:45.296 00:01:00.359 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-16 20:34:38.555 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39092 10 6452 1 2025-10-16 20:31:45.292 00:04:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 20:35:38.961 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36564 10 6452 1 2025-10-16 20:36:39.364 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46304 10 6452 1 2025-10-16 20:37:39.772 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43144 10 6452 1 2025-10-16 20:38:35.599 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 20:38:35.519 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 20:38:35.522 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 20:38:35.516 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 20:38:35.574 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 20:38:40.185 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56150 10 6452 1 2025-10-16 20:35:45.304 00:04:00.352 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 20:39:40.595 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35684 10 6452 1 2025-10-16 20:36:45.302 00:04:00.357 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 20:40:41.005 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44946 10 6452 1 2025-10-16 20:41:41.410 00:00:10.915 TCP 1.101.0.1:3000 -> 23.104.0.1:38516 14 14286 1 2025-10-16 20:42:42.365 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49380 10 6452 1 2025-10-16 20:43:35.644 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 20:43:35.449 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 20:43:35.720 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 20:43:35.545 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 20:43:35.803 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 20:43:42.769 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:52672 10 6452 1 2025-10-16 20:40:45.305 00:04:00.352 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 20:44:43.185 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54696 10 6452 1 2025-10-16 20:41:45.303 00:04:00.358 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 20:45:43.589 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37256 10 6452 1 2025-10-16 20:46:43.991 00:00:10.633 TCP 1.101.0.1:3000 -> 23.104.0.1:51112 10 6452 1 2025-10-16 20:46:45.305 00:01:00.356 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-16 20:47:44.668 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59350 10 6452 1 2025-10-16 20:48:35.857 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 20:48:35.845 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 20:48:35.900 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 20:48:35.776 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 20:48:35.773 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 20:48:45.030 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56510 10 6452 1 2025-10-16 20:45:45.308 00:04:00.351 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 20:49:45.436 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45310 10 6452 1 2025-10-16 20:48:45.306 00:02:00.355 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-16 20:50:45.840 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39176 10 6452 1 2025-10-16 20:50:45.309 00:01:00.351 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-16 20:51:46.255 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49712 10 6452 1 2025-10-16 20:51:45.307 00:01:00.355 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-16 20:52:46.659 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52488 10 6452 1 2025-10-16 20:53:35.787 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 20:53:35.457 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 20:53:35.947 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 20:53:35.865 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 20:53:36.031 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 20:53:47.070 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:41946 10 6452 1 2025-10-16 20:52:45.310 00:02:00.350 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-16 20:54:47.431 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38506 10 6452 1 2025-10-16 20:53:45.307 00:02:00.355 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-16 20:55:47.832 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:54872 10 6452 1 2025-10-16 20:55:45.310 00:01:00.352 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-16 20:56:48.215 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56738 10 6452 1 2025-10-16 20:56:45.309 00:01:00.355 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-16 20:57:48.619 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57860 10 6452 1 2025-10-16 20:58:35.724 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 20:58:35.936 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 20:58:36.178 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 20:58:36.104 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 20:58:36.095 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 Summary: total flows: 154, total bytes: 422111, total packets: 1013, avg bps: 940, avg pps: 0, avg bpp: 416 Time window: 2025-10-16 19:58:45 - 2025-10-16 20:58:36 Total flows processed: 154, passed: 154, Blocks skipped: 0, Bytes read: 16080 Sys: 0.0031s User: 0.0021s Wall: 0.0026s flows/second: 59669.5 Runtime: 0.0026s