Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-18 13:58:50.067 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53616 10 6452 1 2025-10-18 13:59:25.574 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 13:59:25.482 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 13:59:25.311 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 13:59:25.491 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 13:59:25.550 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 13:59:50.476 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45444 10 6452 1 2025-10-18 14:00:50.836 00:00:10.661 TCP 1.101.0.1:3000 -> 23.104.0.1:40514 10 6452 1 2025-10-18 13:56:46.238 00:06:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 14:01:51.536 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34936 10 6452 1 2025-10-18 14:02:51.940 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:50954 10 6452 1 2025-10-18 14:03:52.358 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43446 10 6452 1 2025-10-18 14:04:25.498 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 14:04:25.516 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 14:04:25.322 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:04:25.414 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:04:25.399 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 14:04:52.758 00:00:11.029 TCP 1.101.0.1:3000 -> 23.104.0.1:45316 10 6452 1 2025-10-18 14:00:46.242 00:06:00.267 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 14:05:53.828 00:00:10.566 TCP 1.101.0.1:3000 -> 23.104.0.1:43992 10 6452 1 2025-10-18 14:06:54.434 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54272 10 6452 1 2025-10-18 14:07:54.842 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:40480 10 6452 1 2025-10-18 14:03:46.240 00:06:00.272 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 14:08:55.274 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56618 10 6452 1 2025-10-18 14:09:25.626 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 14:09:25.597 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 14:09:25.235 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:09:25.544 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:09:25.700 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 14:09:55.679 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:49716 10 6452 1 2025-10-18 14:10:56.110 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56204 10 6452 1 2025-10-18 14:11:56.519 00:00:10.407 TCP 1.101.0.1:3000 -> 23.104.0.1:59164 10 6452 1 2025-10-18 14:07:46.242 00:06:00.268 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 14:12:56.966 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58696 10 6452 1 2025-10-18 14:13:57.371 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33820 10 6452 1 2025-10-18 14:14:25.802 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 14:14:25.661 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 14:14:25.615 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:14:25.720 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:14:25.661 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 14:14:57.735 00:00:10.987 TCP 1.101.0.1:3000 -> 23.104.0.1:51998 10 6452 1 2025-10-18 14:10:46.240 00:06:00.273 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 14:15:58.758 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:57110 10 6452 1 2025-10-18 14:16:59.174 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38226 10 6452 1 2025-10-18 14:17:59.576 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52848 10 6452 1 2025-10-18 14:18:59.981 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:33262 10 6452 1 2025-10-18 14:19:25.754 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 14:19:25.888 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:19:25.921 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:19:25.840 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 14:19:26.003 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 14:14:46.244 00:06:00.267 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 14:20:00.391 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44548 10 6452 1 2025-10-18 14:21:00.795 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45484 10 6452 1 2025-10-18 14:22:01.204 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52808 10 6452 1 2025-10-18 14:17:46.242 00:06:00.272 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 14:23:01.609 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38032 10 6452 1 2025-10-18 14:24:02.017 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:55882 10 6452 1 2025-10-18 14:24:25.784 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 14:24:25.702 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 14:24:25.762 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:24:25.702 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:24:25.789 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 14:25:02.418 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:59362 10 6452 1 2025-10-18 14:26:02.780 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:50620 10 6452 1 2025-10-18 14:21:46.247 00:06:00.265 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 14:27:03.201 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55434 10 6452 1 2025-10-18 14:28:03.605 00:00:10.446 TCP 1.101.0.1:3000 -> 23.104.0.1:38248 12 10375 1 2025-10-18 14:29:04.124 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39496 10 6452 1 2025-10-18 14:29:25.888 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 14:29:26.126 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 14:29:26.065 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:29:26.043 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:29:26.091 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 14:24:46.245 00:06:00.271 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 14:30:04.530 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41430 10 6452 1 2025-10-18 14:31:04.933 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:50964 10 6452 1 2025-10-18 14:32:05.343 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:46670 10 6452 1 2025-10-18 14:33:05.704 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33932 10 6452 1 2025-10-18 14:28:46.249 00:06:00.267 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 14:34:06.112 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53650 10 6452 1 2025-10-18 14:34:26.214 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:34:26.207 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 14:34:26.261 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 14:34:26.148 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:34:26.295 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 14:35:06.518 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58368 10 6452 1 2025-10-18 14:36:06.926 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:40660 10 6452 1 2025-10-18 14:31:46.247 00:06:00.272 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 14:37:07.344 00:00:10.864 TCP 1.101.0.1:3000 -> 23.104.0.1:45072 10 6452 1 2025-10-18 14:38:08.248 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:54610 10 6452 1 2025-10-18 14:39:08.619 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43902 12 6556 1 2025-10-18 14:39:26.695 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 14:39:26.616 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 14:39:26.461 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:39:26.614 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:39:26.529 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 14:40:09.023 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38512 10 6452 1 2025-10-18 14:35:46.250 00:06:00.266 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 14:41:09.426 00:00:10.503 TCP 1.101.0.1:3000 -> 23.104.0.1:36364 10 6452 1 2025-10-18 14:42:09.966 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41866 10 6452 1 2025-10-18 14:43:10.370 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:49350 10 6452 1 2025-10-18 14:38:46.247 00:06:00.272 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 14:44:10.726 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53626 10 6452 1 2025-10-18 14:44:26.257 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 14:44:26.132 00:00:00.031 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:44:26.374 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:44:26.087 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 14:44:26.456 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 14:45:11.131 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58028 10 6452 1 2025-10-18 14:46:11.491 00:00:10.755 TCP 1.101.0.1:3000 -> 23.104.0.1:33610 10 6452 1 2025-10-18 14:47:12.284 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55742 10 6452 1 2025-10-18 14:42:46.250 00:06:00.267 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 14:48:12.691 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49138 10 6452 1 2025-10-18 14:49:13.052 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49772 10 6452 1 2025-10-18 14:49:26.272 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 14:49:26.397 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:49:26.337 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:49:26.272 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 14:49:26.421 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 14:50:13.458 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:37188 10 6452 1 2025-10-18 14:45:46.248 00:06:00.272 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 14:51:13.859 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:44062 10 6452 1 2025-10-18 14:52:14.227 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33952 10 6452 1 2025-10-18 14:53:14.632 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47794 10 6452 1 2025-10-18 14:54:15.036 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34380 10 6452 1 2025-10-18 14:54:26.645 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 14:54:26.461 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 14:54:26.340 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:54:26.561 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:54:26.589 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 14:49:46.253 00:06:00.266 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 14:55:15.440 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:54378 10 6452 1 2025-10-18 14:56:15.826 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47400 10 6452 1 2025-10-18 14:57:16.228 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37824 10 6452 1 2025-10-18 14:52:46.250 00:06:00.272 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 14:58:16.629 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40416 10 6452 1 Summary: total flows: 137, total bytes: 420904, total packets: 1022, avg bps: 905, avg pps: 0, avg bpp: 411 Time window: 2025-10-18 13:56:46 - 2025-10-18 14:58:46 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0030s User: 0.0015s Wall: 0.0022s flows/second: 61377.9 Runtime: 0.0022s