Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-17 19:58:41.975 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:40736 10 6452 1 2025-10-17 19:59:03.660 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 19:59:03.681 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 19:59:03.550 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 19:59:03.546 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 19:59:03.633 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 19:55:45.842 00:05:00.309 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 19:59:42.351 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48126 10 6452 1 2025-10-17 20:00:42.713 00:00:10.955 TCP 1.101.0.1:3000 -> 23.104.0.1:37664 10 6452 1 2025-10-17 20:01:43.704 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:47024 10 6452 1 2025-10-17 19:58:45.839 00:05:00.313 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 20:02:44.098 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54124 10 6452 1 2025-10-17 20:04:03.874 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 20:04:03.984 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 20:04:03.675 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:04:03.792 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:04:03.953 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 20:03:44.503 00:00:16.677 TCP 1.101.0.1:3000 -> 23.104.0.1:41276 10 6452 1 2025-10-17 20:04:51.237 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:54428 10 6452 1 2025-10-17 20:01:45.842 00:05:00.312 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 20:05:51.636 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59232 10 6452 1 2025-10-17 20:06:52.040 00:00:10.723 TCP 1.101.0.1:3000 -> 23.104.0.1:48362 12 10375 1 2025-10-17 20:07:52.802 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57034 10 6452 1 2025-10-17 20:04:45.839 00:05:00.317 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 20:09:03.916 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 20:09:03.977 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 20:09:03.783 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:09:03.833 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:09:03.837 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 20:08:53.208 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33962 10 6452 1 2025-10-17 20:09:53.613 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39880 10 6452 1 2025-10-17 20:10:53.982 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40446 10 6452 1 2025-10-17 20:07:45.843 00:05:00.311 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 20:11:54.392 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39536 10 6452 1 2025-10-17 20:12:54.793 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45974 10 6452 1 2025-10-17 20:13:55.154 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43730 10 6452 1 2025-10-17 20:14:03.837 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 20:14:03.995 00:00:00.051 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:14:04.108 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:14:04.004 00:00:00.034 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 20:14:04.191 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 20:10:45.842 00:05:00.315 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 20:14:55.557 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43158 10 6452 1 2025-10-17 20:15:55.957 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38548 10 6452 1 2025-10-17 20:16:56.359 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46138 10 6452 1 2025-10-17 20:13:45.845 00:05:00.310 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 20:17:56.759 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34894 10 6452 1 2025-10-17 20:19:04.092 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 20:19:03.812 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:19:04.152 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:19:04.149 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 20:19:04.234 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 20:18:57.163 00:00:10.724 TCP 1.101.0.1:3000 -> 23.104.0.1:54454 10 6452 1 2025-10-17 20:19:57.926 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51984 10 6452 1 2025-10-17 20:16:45.844 00:05:00.315 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 20:20:58.340 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40802 10 6452 1 2025-10-17 20:21:58.768 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41904 10 6452 1 2025-10-17 20:22:59.174 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52948 10 6452 1 2025-10-17 20:19:45.846 00:05:00.310 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 20:24:04.803 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 20:24:04.322 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 20:24:04.479 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:24:04.719 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:24:04.658 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 20:23:59.578 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46524 10 6452 1 2025-10-17 20:24:59.983 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:55522 10 6452 1 2025-10-17 20:26:00.358 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:58166 10 6452 1 2025-10-17 20:22:45.845 00:05:00.317 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 20:27:00.724 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:39324 10 6452 1 2025-10-17 20:28:01.140 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:40238 10 6452 1 2025-10-17 20:29:04.483 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 20:29:04.468 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 20:29:04.253 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:29:04.400 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:29:04.364 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 20:29:01.538 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43558 10 6452 1 2025-10-17 20:25:45.847 00:05:00.312 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 20:30:01.943 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:37010 10 6452 1 2025-10-17 20:31:02.321 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35790 10 6452 1 2025-10-17 20:32:02.726 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33676 10 6452 1 2025-10-17 20:28:45.846 00:05:00.317 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 20:33:03.116 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45912 10 6452 1 2025-10-17 20:34:04.475 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 20:34:04.393 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 20:34:04.258 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:34:04.392 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:34:04.399 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 20:34:03.524 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:42048 10 6452 1 2025-10-17 20:35:03.956 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:50692 10 6452 1 2025-10-17 20:31:45.849 00:05:00.312 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 20:36:04.374 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60128 10 6452 1 2025-10-17 20:37:04.779 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49108 10 6452 1 2025-10-17 20:38:05.189 00:00:10.412 TCP 1.101.0.1:3000 -> 23.104.0.1:50468 11 6504 1 2025-10-17 20:34:45.849 00:05:00.314 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 20:39:04.633 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 20:39:04.553 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 20:39:04.471 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:39:04.550 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:39:04.560 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 20:39:05.642 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45614 10 6452 1 2025-10-17 20:40:06.037 00:00:11.073 TCP 1.101.0.1:3000 -> 23.104.0.1:42768 10 6452 1 2025-10-17 20:41:07.148 00:00:11.439 TCP 1.101.0.1:3000 -> 23.104.0.1:38562 10 6452 1 2025-10-17 20:37:45.852 00:05:00.309 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 20:42:08.618 00:00:10.765 TCP 1.101.0.1:3000 -> 23.104.0.1:49884 10 6452 1 2025-10-17 20:43:09.419 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58512 10 6452 1 2025-10-17 20:44:04.719 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 20:44:04.729 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 20:44:04.466 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:44:04.636 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:44:04.566 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 20:44:09.824 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:57240 10 6452 1 2025-10-17 20:40:45.856 00:05:00.309 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 20:45:10.193 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44782 10 6452 1 2025-10-17 20:46:10.597 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55506 10 6452 1 2025-10-17 20:47:11.012 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:41650 10 6452 1 2025-10-17 20:43:45.860 00:05:00.304 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 20:48:11.456 00:00:10.423 TCP 1.101.0.1:3000 -> 23.104.0.1:48066 11 6504 1 2025-10-17 20:49:04.732 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 20:49:04.809 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 20:49:04.754 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:49:04.649 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:49:04.811 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 20:49:11.917 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53028 10 6452 1 2025-10-17 20:50:12.327 00:00:10.574 TCP 1.101.0.1:3000 -> 23.104.0.1:56840 10 6452 1 2025-10-17 20:46:45.857 00:05:00.311 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 20:51:12.937 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:35366 10 6452 1 2025-10-17 20:52:13.356 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:35726 10 6452 1 2025-10-17 20:53:13.769 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49256 10 6452 1 2025-10-17 20:49:45.860 00:05:00.306 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 20:54:04.955 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 20:54:04.878 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 20:54:04.872 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:54:04.873 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 20:54:04.950 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 20:54:14.177 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48658 10 6452 1 2025-10-17 20:55:14.586 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52792 10 6452 1 2025-10-17 20:56:14.995 00:00:10.686 TCP 1.101.0.1:3000 -> 23.104.0.1:34254 10 6452 1 2025-10-17 20:52:45.858 00:05:00.311 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 20:57:15.717 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:47396 10 6452 1 2025-10-17 20:58:16.137 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56076 10 6452 1 Summary: total flows: 140, total bytes: 421027, total packets: 1024, avg bps: 895, avg pps: 0, avg bpp: 411 Time window: 2025-10-17 19:55:45 - 2025-10-17 20:58:26 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0052s User: 0.0009s Wall: 0.0014s flows/second: 97090.4 Runtime: 0.0015s