Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-19 05:59:17.707 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42262 10 6452 1 2025-10-19 05:59:44.859 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 05:59:44.879 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 05:59:44.788 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 05:59:44.777 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 05:59:44.877 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 06:00:18.112 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43358 10 6452 1 2025-10-19 05:55:46.567 00:06:00.222 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 06:01:18.520 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44788 10 6452 1 2025-10-19 06:02:18.920 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35996 10 6452 1 2025-10-19 06:03:19.320 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40524 10 6452 1 2025-10-19 06:04:19.728 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:58170 10 6452 1 2025-10-19 06:04:44.919 00:00:00.018 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 06:04:44.814 00:00:00.035 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 06:04:44.631 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 06:04:44.837 00:00:00.017 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 06:04:44.935 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 05:59:46.570 00:06:00.216 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 06:05:20.156 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54548 10 6452 1 2025-10-19 06:06:20.566 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57890 10 6452 1 2025-10-19 06:07:20.966 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44908 10 6452 1 2025-10-19 06:02:46.568 00:06:00.222 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 06:08:21.374 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49970 10 6452 1 2025-10-19 06:09:21.778 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41840 10 6452 1 2025-10-19 06:09:44.872 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 06:09:44.496 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 06:09:44.861 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 06:09:44.971 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 06:09:44.944 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 06:10:22.187 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53764 10 6452 1 2025-10-19 06:11:22.552 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48254 10 6452 1 2025-10-19 06:06:46.570 00:06:00.218 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 06:12:22.966 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44154 10 6452 1 2025-10-19 06:13:23.366 00:00:10.774 TCP 1.101.0.1:3000 -> 23.104.0.1:49432 10 6452 1 2025-10-19 06:14:24.178 00:00:10.814 TCP 1.101.0.1:3000 -> 23.104.0.1:53720 10 6452 1 2025-10-19 06:14:44.766 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 06:14:44.667 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 06:14:44.931 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 06:14:44.937 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 06:14:45.015 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 06:09:46.568 00:06:00.223 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 06:15:25.037 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46864 10 6452 1 2025-10-19 06:16:25.439 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:39352 10 6452 1 2025-10-19 06:17:25.860 00:00:10.699 TCP 1.101.0.1:3000 -> 23.104.0.1:39822 10 6452 1 2025-10-19 06:18:26.592 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58786 10 6452 1 2025-10-19 06:13:46.574 00:06:00.215 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 06:19:27.007 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38078 10 6452 1 2025-10-19 06:19:44.971 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 06:19:44.949 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 06:19:44.899 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 06:19:45.088 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 06:19:44.982 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 06:20:27.400 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48376 10 6452 1 2025-10-19 06:21:27.799 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42812 10 6452 1 2025-10-19 06:16:46.572 00:06:00.221 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 06:22:28.202 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:46352 10 6452 1 2025-10-19 06:23:28.624 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44206 10 6452 1 2025-10-19 06:24:29.033 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39334 10 6452 1 2025-10-19 06:24:45.037 00:00:00.034 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 06:24:45.581 00:00:00.039 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 06:24:45.069 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 06:24:44.956 00:00:00.034 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 06:24:45.232 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 06:25:29.436 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:49758 10 6452 1 2025-10-19 06:20:46.577 00:06:00.223 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 06:26:29.843 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:36352 10 6452 1 2025-10-19 06:27:30.218 00:00:10.724 TCP 1.101.0.1:3000 -> 23.104.0.1:53560 10 6452 1 2025-10-19 06:28:30.977 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43984 10 6452 1 2025-10-19 06:23:46.575 00:06:00.224 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 06:29:45.283 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 06:29:45.358 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 06:29:31.382 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48904 10 6452 1 2025-10-19 06:29:44.948 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 06:29:45.202 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 06:29:45.205 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 06:30:31.787 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59374 10 6452 1 2025-10-19 06:31:32.191 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:37680 10 6452 1 2025-10-19 06:27:46.580 00:06:00.218 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 06:32:32.554 00:00:18.539 TCP 1.101.0.1:3000 -> 23.104.0.1:46580 10 6452 1 2025-10-19 06:33:41.133 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57904 10 6452 1 2025-10-19 06:34:45.361 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 06:34:45.390 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 06:34:44.944 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 06:34:45.278 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 06:34:45.391 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 06:34:41.538 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:54398 10 6452 1 2025-10-19 06:30:46.578 00:06:00.224 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 06:35:41.937 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:34318 10 6452 1 2025-10-19 06:36:42.354 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49354 10 6452 1 2025-10-19 06:37:42.762 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:46192 10 6452 1 2025-10-19 06:38:43.185 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:34672 10 6452 1 2025-10-19 06:39:45.553 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 06:39:45.252 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 06:39:45.157 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 06:39:45.470 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 06:39:45.343 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 06:34:46.582 00:06:00.218 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 06:39:43.610 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48018 10 6452 1 2025-10-19 06:40:44.020 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56238 10 6452 1 2025-10-19 06:41:44.429 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43026 10 6452 1 2025-10-19 06:37:46.580 00:06:00.223 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 06:42:44.797 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:32932 10 6452 1 2025-10-19 06:43:45.204 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45972 10 6452 1 2025-10-19 06:44:45.884 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 06:44:45.608 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 06:44:45.889 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 06:44:46.250 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 06:44:46.169 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 06:44:45.608 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46886 10 6452 1 2025-10-19 06:45:46.016 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:32932 10 6452 1 2025-10-19 06:41:46.585 00:06:00.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 06:46:46.419 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48436 10 6452 1 2025-10-19 06:47:46.821 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55504 10 6452 1 2025-10-19 06:48:47.222 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58170 10 6452 1 2025-10-19 06:49:45.803 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 06:49:45.386 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 06:49:45.481 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 06:49:45.648 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 06:49:45.564 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 06:44:46.583 00:06:00.227 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 06:49:47.617 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46906 10 6452 1 2025-10-19 06:50:48.026 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:53618 10 6452 1 2025-10-19 06:51:48.441 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45706 10 6452 1 2025-10-19 06:52:48.844 00:00:10.352 TCP 1.101.0.1:3000 -> 23.104.0.1:35022 10 6452 1 2025-10-19 06:48:46.586 00:06:00.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 06:53:49.235 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55824 10 6452 1 2025-10-19 06:54:45.554 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 06:54:45.285 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 06:54:45.714 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 06:54:45.555 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 06:54:45.797 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 06:54:49.643 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:34746 10 6452 1 2025-10-19 06:55:50.040 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58524 10 6452 1 2025-10-19 06:51:46.587 00:06:00.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 06:56:50.445 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41354 10 6452 1 2025-10-19 06:57:50.844 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:53210 10 6452 1 Summary: total flows: 136, total bytes: 410425, total packets: 1008, avg bps: 879, avg pps: 0, avg bpp: 407 Time window: 2025-10-19 05:55:46 - 2025-10-19 06:58:01 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0036s User: 0.0024s Wall: 0.0021s flows/second: 64215.4 Runtime: 0.0021s