Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-19 12:59:25.930 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:42052 10 6452 1 2025-10-19 12:59:53.358 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 12:59:52.963 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 12:59:53.152 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 12:59:53.276 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 12:59:53.283 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 13:00:26.358 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56852 10 6452 1 2025-10-19 12:55:46.716 00:06:00.209 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 13:01:26.759 00:00:10.788 TCP 1.101.0.1:3000 -> 23.104.0.1:46804 10 6452 1 2025-10-19 13:02:27.583 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56620 10 6452 1 2025-10-19 13:03:27.988 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:45442 10 6452 1 2025-10-19 13:04:53.327 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 13:04:28.412 00:00:15.191 TCP 1.101.0.1:3000 -> 23.104.0.1:57074 10 6452 1 2025-10-19 12:59:46.720 00:06:00.206 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 13:04:53.192 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 13:04:53.064 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 13:04:53.245 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 13:04:53.195 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 13:05:33.690 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57764 10 6452 1 2025-10-19 13:06:34.113 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:36234 10 6452 1 2025-10-19 13:02:46.720 00:06:00.212 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 13:07:34.484 00:00:11.833 TCP 1.101.0.1:3000 -> 23.104.0.1:51728 10 6452 1 2025-10-19 13:08:36.351 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54700 10 6452 1 2025-10-19 13:09:36.763 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:43522 10 6452 1 2025-10-19 13:09:53.409 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 13:09:53.327 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 13:09:53.311 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 13:09:53.045 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 13:09:53.183 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 13:10:37.135 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34486 10 6452 1 2025-10-19 13:11:37.503 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33288 10 6452 1 2025-10-19 13:06:46.722 00:06:00.218 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 13:12:37.906 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59064 10 6452 1 2025-10-19 13:13:38.317 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:52294 10 6452 1 2025-10-19 13:09:46.720 00:06:00.222 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 13:14:38.691 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43448 10 6452 1 2025-10-19 13:14:53.674 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 13:14:53.594 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 13:14:53.707 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 13:14:53.704 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 13:14:53.791 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 13:15:39.073 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:41646 10 6452 1 2025-10-19 13:16:39.444 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51106 10 6452 1 2025-10-19 13:17:39.806 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:44920 10 6452 1 2025-10-19 13:18:40.188 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:53324 10 6452 1 2025-10-19 13:13:46.723 00:06:00.217 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 13:19:40.551 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:58634 11 6504 1 2025-10-19 13:19:53.643 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 13:19:53.412 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 13:19:53.566 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 13:19:53.427 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 13:19:53.649 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 13:20:40.967 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54370 10 6452 1 2025-10-19 13:16:46.720 00:06:00.223 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 13:21:41.368 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34938 10 6452 1 2025-10-19 13:22:41.774 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:51242 10 6452 1 2025-10-19 13:23:42.189 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36780 10 6452 1 2025-10-19 13:24:53.404 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 13:24:42.591 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:48154 10 6452 1 2025-10-19 13:24:53.563 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 13:24:53.591 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 13:24:53.518 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 13:24:53.674 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 13:20:46.723 00:06:00.219 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 13:25:42.951 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59112 10 6452 1 2025-10-19 13:26:43.356 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:35246 10 6452 1 2025-10-19 13:27:43.761 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35970 10 6452 1 2025-10-19 13:23:46.721 00:06:00.223 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 13:28:44.166 00:00:13.061 TCP 1.101.0.1:3000 -> 23.104.0.1:57690 10 6452 1 2025-10-19 13:29:53.756 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 13:29:53.719 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 13:29:53.659 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 13:29:53.674 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 13:29:53.594 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 13:29:47.272 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52768 10 6452 1 2025-10-19 13:30:47.633 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52158 10 6452 1 2025-10-19 13:31:48.040 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53356 10 6452 1 2025-10-19 13:27:46.726 00:06:00.216 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 13:32:48.441 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50294 10 6452 1 2025-10-19 13:33:48.848 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:53942 10 6452 1 2025-10-19 13:34:53.950 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 13:34:53.784 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 13:34:53.771 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 13:34:53.867 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 13:34:53.853 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 13:34:49.300 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48020 10 6452 1 2025-10-19 13:30:46.724 00:06:00.223 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 13:35:49.711 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38346 10 6452 1 2025-10-19 13:36:50.118 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38698 10 6452 1 2025-10-19 13:37:50.522 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:40552 10 6452 1 2025-10-19 13:38:50.883 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:38378 12 6556 1 2025-10-19 13:39:53.934 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 13:34:46.728 00:06:00.216 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 13:39:53.763 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 13:39:53.728 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 13:39:53.851 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 13:39:53.843 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 13:39:51.314 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48574 10 6452 1 2025-10-19 13:40:51.721 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:59132 10 6452 1 2025-10-19 13:41:52.137 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52616 10 6452 1 2025-10-19 13:37:46.726 00:06:00.222 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 13:42:52.494 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57184 10 6452 1 2025-10-19 13:43:52.898 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:45022 12 6556 1 2025-10-19 13:44:54.094 00:00:00.032 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 13:44:53.889 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 13:44:54.061 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 13:44:54.011 00:00:00.032 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 13:44:53.964 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 13:44:53.321 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:35922 10 6452 1 2025-10-19 13:45:53.682 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43694 10 6452 1 2025-10-19 13:41:46.730 00:06:00.216 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 13:46:54.109 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42774 10 6452 1 2025-10-19 13:47:54.504 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:53206 10 6452 1 2025-10-19 13:48:54.863 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37136 10 6452 1 2025-10-19 13:44:46.731 00:06:00.220 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 13:49:54.138 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 13:49:54.056 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 13:49:53.853 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 13:49:54.056 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 13:49:53.882 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 13:49:55.280 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55210 10 6452 1 2025-10-19 13:50:55.691 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35388 10 6452 1 2025-10-19 13:51:56.115 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:48082 10 6452 1 2025-10-19 13:52:56.512 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37626 10 6452 1 2025-10-19 13:48:46.733 00:06:00.218 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 13:53:56.916 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:46988 10 6452 1 2025-10-19 13:54:54.327 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 13:54:54.199 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 13:54:53.986 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 13:54:54.244 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 13:54:54.200 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 13:54:57.274 00:00:17.705 TCP 1.101.0.1:3000 -> 23.104.0.1:57550 12 6556 1 2025-10-19 13:56:05.023 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56882 10 6452 1 2025-10-19 13:51:46.731 00:06:00.224 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 13:57:05.428 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55014 10 6452 1 2025-10-19 13:58:05.828 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36352 10 6452 1 Summary: total flows: 136, total bytes: 410789, total packets: 1015, avg bps: 876, avg pps: 0, avg bpp: 404 Time window: 2025-10-19 12:55:46 - 2025-10-19 13:58:16 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0034s User: 0.0008s Wall: 0.0013s flows/second: 108466.5 Runtime: 0.0013s