Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-17 21:58:41.926 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:58828 10 6452 1 2025-10-17 21:59:05.962 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 21:59:06.045 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 21:59:06.133 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 21:59:06.071 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 21:59:06.207 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 21:55:45.885 00:05:00.298 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 21:59:42.366 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50030 10 6452 1 2025-10-17 22:00:42.767 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35896 10 6452 1 2025-10-17 22:01:43.184 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57984 10 6452 1 2025-10-17 21:58:45.881 00:05:00.304 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 22:02:43.588 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42458 10 6452 1 2025-10-17 22:03:43.991 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36794 10 6452 1 2025-10-17 22:04:06.294 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 22:04:06.053 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 22:04:06.178 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:04:06.210 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:04:06.215 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 22:04:44.354 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45786 10 6452 1 2025-10-17 22:01:45.892 00:05:00.292 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 22:05:44.755 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:48806 10 6452 1 2025-10-17 22:06:45.173 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:50462 10 6452 1 2025-10-17 22:07:45.538 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43632 10 6452 1 2025-10-17 22:04:45.884 00:05:00.303 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 22:08:45.937 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:52946 10 6452 1 2025-10-17 22:09:06.320 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 22:09:06.229 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 22:09:06.305 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:09:06.236 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:09:06.418 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 22:09:46.353 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34484 10 6452 1 2025-10-17 22:10:46.754 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33516 10 6452 1 2025-10-17 22:07:45.887 00:05:00.298 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 22:11:47.167 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:36408 10 6452 1 2025-10-17 22:12:47.561 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40708 10 6452 1 2025-10-17 22:13:47.966 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34128 10 6452 1 2025-10-17 22:14:06.554 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 22:14:06.320 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 22:14:06.359 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:14:06.472 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:14:06.472 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 22:10:45.886 00:05:00.303 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 22:14:48.329 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52286 10 6452 1 2025-10-17 22:15:48.735 00:00:10.952 TCP 1.101.0.1:3000 -> 23.104.0.1:40538 10 6452 1 2025-10-17 22:16:49.726 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:56542 10 6452 1 2025-10-17 22:13:45.888 00:05:00.298 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 22:17:50.142 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:32958 10 6452 1 2025-10-17 22:18:50.546 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49796 10 6452 1 2025-10-17 22:19:06.678 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 22:19:06.382 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 22:19:06.474 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:19:06.596 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:19:06.522 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 22:19:50.952 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:40674 10 6452 1 2025-10-17 22:16:45.887 00:05:00.303 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 22:20:51.362 00:00:11.102 TCP 1.101.0.1:3000 -> 23.104.0.1:57874 10 6452 1 2025-10-17 22:21:52.500 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34220 10 6452 1 2025-10-17 22:22:52.902 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35396 10 6452 1 2025-10-17 22:19:45.890 00:05:00.297 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 22:23:53.315 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36716 10 6452 1 2025-10-17 22:24:06.587 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 22:24:06.520 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 22:24:06.674 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:24:06.504 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:24:06.588 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 22:24:53.721 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35270 10 6452 1 2025-10-17 22:25:54.129 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45432 10 6452 1 2025-10-17 22:22:45.893 00:05:00.297 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 22:26:54.531 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49500 10 6452 1 2025-10-17 22:27:54.928 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:35066 10 6452 1 2025-10-17 22:29:06.992 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 22:28:55.360 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58062 10 6452 1 2025-10-17 22:29:06.803 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 22:29:06.624 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:29:06.909 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:29:06.860 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 22:25:45.896 00:05:00.292 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 22:29:55.769 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:36988 10 6452 1 2025-10-17 22:30:56.154 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39704 10 6452 1 2025-10-17 22:31:56.558 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:55424 10 6452 1 2025-10-17 22:28:45.895 00:05:00.296 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 22:32:56.932 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:53036 10 6452 1 2025-10-17 22:34:06.828 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 22:34:06.775 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 22:34:06.854 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:34:06.746 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:34:06.825 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 22:33:57.363 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43556 10 6452 1 2025-10-17 22:34:57.777 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47166 10 6452 1 2025-10-17 22:31:45.897 00:05:00.292 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 22:35:58.186 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41808 10 6452 1 2025-10-17 22:36:58.588 00:00:11.265 TCP 1.101.0.1:3000 -> 23.104.0.1:57792 10 6452 1 2025-10-17 22:37:59.892 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57072 12 6556 1 2025-10-17 22:34:45.900 00:05:00.292 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 22:39:07.011 00:00:00.041 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:39:06.924 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 22:39:00.307 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:51714 10 6452 1 2025-10-17 22:39:06.921 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 22:39:07.004 00:00:00.032 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:39:07.091 00:00:00.042 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 22:40:00.679 00:00:10.899 TCP 1.101.0.1:3000 -> 23.104.0.1:41404 10 6452 1 2025-10-17 22:41:01.617 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:52562 10 6452 1 2025-10-17 22:37:45.907 00:05:00.285 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 22:42:01.989 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:59484 10 6452 1 2025-10-17 22:43:02.349 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42818 10 6452 1 2025-10-17 22:44:06.915 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 22:44:06.915 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:44:07.146 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:44:07.000 00:00:00.030 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 22:44:07.229 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 22:44:02.759 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:38626 10 6452 1 2025-10-17 22:40:45.906 00:05:00.291 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 22:45:03.183 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34056 10 6452 1 2025-10-17 22:46:03.591 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36308 10 6452 1 2025-10-17 22:47:03.994 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:56780 10 6452 1 2025-10-17 22:43:45.909 00:05:00.287 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 22:48:04.355 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41104 10 6452 1 2025-10-17 22:49:07.743 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 22:49:07.968 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:49:08.157 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:49:07.858 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 22:49:08.241 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 22:49:04.755 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:46406 10 6452 1 2025-10-17 22:50:05.119 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39712 10 6452 1 2025-10-17 22:46:45.906 00:05:00.292 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 22:51:05.530 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58396 10 6452 1 2025-10-17 22:52:05.892 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55254 12 6556 1 2025-10-17 22:53:06.302 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59436 10 6452 1 2025-10-17 22:49:45.910 00:05:00.286 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 22:54:07.215 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 22:54:07.134 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 22:54:06.953 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:54:07.133 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 22:54:07.245 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 22:54:06.719 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:58490 10 6452 1 2025-10-17 22:55:07.111 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47450 10 6452 1 2025-10-17 22:56:07.520 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42076 10 6452 1 2025-10-17 22:52:45.907 00:05:00.291 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 22:57:07.924 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38702 10 6452 1 2025-10-17 22:58:08.329 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:52428 10 6452 1 Summary: total flows: 140, total bytes: 417208, total packets: 1024, avg bps: 889, avg pps: 0, avg bpp: 407 Time window: 2025-10-17 21:55:45 - 2025-10-17 22:58:18 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0040s User: 0.0010s Wall: 0.0022s flows/second: 63923.6 Runtime: 0.0022s