Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-19 14:59:30.745 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:32784 10 6452 1 2025-10-19 14:54:46.750 00:06:00.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 14:59:55.647 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 14:59:55.401 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 14:59:55.439 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 14:59:55.564 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 14:59:55.306 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 15:00:31.150 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47564 10 6452 1 2025-10-19 15:01:31.556 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35936 10 6452 1 2025-10-19 15:02:31.963 00:00:10.509 TCP 1.101.0.1:3000 -> 23.104.0.1:47026 10 6452 1 2025-10-19 15:03:32.510 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39156 10 6452 1 2025-10-19 14:58:46.754 00:06:00.221 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 15:04:32.870 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43372 10 6452 1 2025-10-19 15:04:55.653 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 15:04:55.508 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 15:04:55.397 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 15:04:55.571 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 15:04:55.381 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 15:05:33.274 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:58214 10 6452 1 2025-10-19 15:06:33.635 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60396 10 6452 1 2025-10-19 15:01:46.751 00:06:00.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 15:07:34.040 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46426 10 6452 1 2025-10-19 15:08:34.445 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56386 10 6452 1 2025-10-19 15:09:34.846 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:51860 10 6452 1 2025-10-19 15:09:55.580 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 15:09:55.513 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 15:09:55.708 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 15:09:55.659 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 15:09:55.792 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 15:10:35.270 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:39726 10 6452 1 2025-10-19 15:05:46.757 00:06:00.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 15:11:35.659 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39198 10 6452 1 2025-10-19 15:12:36.084 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34800 10 6452 1 2025-10-19 15:08:46.756 00:06:00.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 15:13:36.492 00:00:10.421 TCP 1.101.0.1:3000 -> 23.104.0.1:52228 11 6504 1 2025-10-19 15:14:36.948 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60802 10 6452 1 2025-10-19 15:14:55.727 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 15:14:55.670 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 15:14:55.853 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 15:14:55.725 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 15:14:55.936 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 15:15:37.361 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:53278 10 6452 1 2025-10-19 15:16:37.747 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59880 10 6452 1 2025-10-19 15:12:46.759 00:06:00.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 15:17:38.156 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:39996 10 6452 1 2025-10-19 15:18:38.522 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:46736 12 10375 1 2025-10-19 15:19:38.958 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55718 10 6452 1 2025-10-19 15:19:55.879 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 15:19:55.916 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 15:19:55.812 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 15:19:55.797 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 15:19:55.870 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 15:15:46.757 00:06:00.231 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 15:20:39.363 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39546 10 6452 1 2025-10-19 15:21:39.765 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:48400 10 6452 1 2025-10-19 15:22:40.198 00:00:10.718 TCP 1.101.0.1:3000 -> 23.104.0.1:35448 10 6452 1 2025-10-19 15:23:40.957 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46136 10 6452 1 2025-10-19 15:19:46.759 00:06:00.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 15:24:41.364 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60896 10 6452 1 2025-10-19 15:24:55.935 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 15:24:56.115 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 15:24:56.202 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 15:24:56.126 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 15:24:56.210 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 15:25:41.769 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60814 10 6452 1 2025-10-19 15:26:42.180 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50808 10 6452 1 2025-10-19 15:22:46.758 00:06:00.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 15:27:42.581 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34428 10 6452 1 2025-10-19 15:28:42.990 00:00:11.067 TCP 1.101.0.1:3000 -> 23.104.0.1:51434 12 10369 1 2025-10-19 15:29:55.899 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 15:29:44.107 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41876 10 6452 1 2025-10-19 15:29:56.202 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 15:29:56.084 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 15:29:56.120 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 15:29:56.084 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 15:30:44.506 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49014 10 6452 1 2025-10-19 15:26:46.760 00:06:00.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 15:31:44.911 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:53234 10 6452 1 2025-10-19 15:32:45.272 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44792 10 6452 1 2025-10-19 15:33:45.676 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:45468 10 6452 1 2025-10-19 15:29:46.758 00:06:00.233 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 15:34:55.972 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 15:34:56.372 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 15:34:56.109 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 15:34:56.125 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 15:34:46.037 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57826 10 6452 1 2025-10-19 15:34:56.290 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 15:35:46.440 00:00:10.354 TCP 1.101.0.1:3000 -> 23.104.0.1:41324 10 6452 1 2025-10-19 15:36:46.835 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:60584 10 6452 1 2025-10-19 15:37:47.267 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50406 10 6452 1 2025-10-19 15:33:46.761 00:06:00.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 15:38:47.671 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:49140 10 6452 1 2025-10-19 15:39:56.402 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 15:39:56.387 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 15:39:56.211 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 15:39:56.319 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 15:39:56.261 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 15:39:48.098 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37410 10 6452 1 2025-10-19 15:40:48.498 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47462 10 6452 1 2025-10-19 15:36:46.758 00:06:00.239 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 15:41:48.900 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45740 10 6452 1 2025-10-19 15:42:49.316 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49284 10 6452 1 2025-10-19 15:43:49.720 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57454 10 6452 1 2025-10-19 15:44:56.430 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 15:44:56.257 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 15:44:56.373 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 15:44:56.381 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 15:44:50.157 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58070 10 6452 1 2025-10-19 15:44:56.457 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 15:40:46.761 00:06:00.234 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 15:45:50.565 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46424 10 6452 1 2025-10-19 15:46:50.973 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35250 10 6452 1 2025-10-19 15:47:51.333 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56448 10 6452 1 2025-10-19 15:43:46.764 00:06:00.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-19 15:48:51.739 00:00:10.411 TCP 1.101.0.1:3000 -> 23.104.0.1:37896 10 6452 1 2025-10-19 15:49:56.739 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 15:49:56.540 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 15:49:56.347 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 15:49:56.657 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 15:49:56.714 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 15:49:52.186 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45588 10 6452 1 2025-10-19 15:50:52.595 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:46598 10 6452 1 2025-10-19 15:51:52.993 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58818 10 6452 1 2025-10-19 15:47:46.768 00:06:00.229 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-19 15:52:53.399 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:39020 12 10375 1 2025-10-19 15:53:53.874 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41878 10 6452 1 2025-10-19 15:50:46.767 00:05:00.235 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 15:54:56.606 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 15:54:56.657 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 15:54:56.624 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 15:54:56.523 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 15:54:56.609 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 15:54:54.273 00:00:10.446 TCP 1.101.0.1:3000 -> 23.104.0.1:54892 10 6452 1 2025-10-19 15:55:54.760 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:43852 10 6452 1 2025-10-19 15:56:55.132 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42266 10 6452 1 2025-10-19 15:57:55.532 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40480 10 6452 1 2025-10-19 15:54:46.772 00:05:00.229 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 Summary: total flows: 137, total bytes: 422855, total packets: 1025, avg bps: 867, avg pps: 0, avg bpp: 412 Time window: 2025-10-19 14:54:46 - 2025-10-19 15:59:47 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0051s User: 0.0009s Wall: 0.0019s flows/second: 70618.1 Runtime: 0.0020s