Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-19 19:58:55.714 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:47946 10 6452 1 2025-10-19 20:00:01.534 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 20:00:01.265 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 20:00:01.586 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 20:00:01.589 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 20:00:01.669 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 19:59:56.104 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33924 10 6452 1 2025-10-19 19:56:46.841 00:05:00.262 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 20:00:56.511 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41090 10 6452 1 2025-10-19 20:01:56.878 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:38552 10 6452 1 2025-10-19 20:02:57.304 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:44176 10 6452 1 2025-10-19 20:03:57.669 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58792 10 6452 1 2025-10-19 20:00:46.844 00:05:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 20:05:01.972 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 20:05:01.803 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 20:05:01.575 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 20:05:02.117 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 20:05:01.657 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 20:04:58.030 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54558 10 6452 1 2025-10-19 20:05:58.434 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:52196 10 6452 1 2025-10-19 20:02:46.843 00:05:00.261 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 20:06:58.796 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41002 10 6452 1 2025-10-19 20:07:59.200 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:52650 12 10375 1 2025-10-19 20:08:59.676 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45104 10 6452 1 2025-10-19 20:10:01.771 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 20:10:01.429 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 20:10:01.729 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 20:10:01.780 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 20:10:01.811 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 20:10:00.048 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35084 10 6452 1 2025-10-19 20:06:46.846 00:05:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 20:11:00.451 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39134 10 6452 1 2025-10-19 20:12:00.854 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:36798 10 6452 1 2025-10-19 20:08:46.845 00:05:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 20:13:01.275 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:40202 12 10369 1 2025-10-19 20:14:01.758 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:55488 10 6452 1 2025-10-19 20:15:01.707 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 20:15:01.761 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 20:15:01.827 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 20:15:01.717 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 20:15:01.911 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 20:15:02.179 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34908 10 6452 1 2025-10-19 20:16:02.588 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59306 10 6452 1 2025-10-19 20:12:46.851 00:05:00.256 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 20:17:02.994 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37560 10 6452 1 2025-10-19 20:18:03.395 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50546 10 6452 1 2025-10-19 20:14:46.848 00:05:00.261 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 20:19:03.800 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:33990 10 6452 1 2025-10-19 20:20:01.840 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 20:20:01.795 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 20:20:01.840 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 20:20:01.759 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 20:20:01.923 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 20:20:04.172 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60718 10 6452 1 2025-10-19 20:21:04.575 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33700 10 6452 1 2025-10-19 20:22:04.937 00:00:10.607 TCP 1.101.0.1:3000 -> 23.104.0.1:56150 10 6452 1 2025-10-19 20:18:46.851 00:05:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 20:23:05.591 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:34894 10 6452 1 2025-10-19 20:24:06.008 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33208 10 6452 1 2025-10-19 20:20:46.849 00:05:00.260 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 20:25:02.729 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 20:25:02.647 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 20:25:02.700 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 20:25:02.691 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 20:25:02.572 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 20:25:06.409 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43560 10 6452 1 2025-10-19 20:26:06.827 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53336 10 6452 1 2025-10-19 20:27:07.231 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50854 10 6452 1 2025-10-19 20:28:07.635 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34066 10 6452 1 2025-10-19 20:24:46.852 00:05:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 20:29:08.055 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35966 10 6452 1 2025-10-19 20:30:01.903 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 20:30:01.738 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 20:30:02.123 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 20:30:02.123 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 20:30:02.206 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 20:30:08.460 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56058 10 6452 1 2025-10-19 20:26:46.851 00:05:00.260 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 20:31:08.872 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:56792 10 6452 1 2025-10-19 20:32:09.256 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50288 10 6452 1 2025-10-19 20:33:09.658 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:44190 12 10375 1 2025-10-19 20:34:10.148 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47318 10 6452 1 2025-10-19 20:30:46.857 00:05:00.251 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 20:35:02.228 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 20:35:02.068 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 20:35:01.968 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 20:35:02.116 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 20:35:02.051 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 20:35:10.558 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:53450 10 6452 1 2025-10-19 20:36:10.961 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55252 10 6452 1 2025-10-19 20:32:46.855 00:05:00.257 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 20:37:11.327 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:57468 10 6452 1 2025-10-19 20:38:11.723 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:41840 10 6452 1 2025-10-19 20:39:12.147 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56366 10 6452 1 2025-10-19 20:40:02.272 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 20:40:02.174 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 20:40:02.276 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 20:40:02.458 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 20:40:02.358 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 20:40:12.555 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56408 10 6452 1 2025-10-19 20:36:46.859 00:05:00.252 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 20:41:12.920 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:60138 10 6452 1 2025-10-19 20:42:13.283 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53596 10 6452 1 2025-10-19 20:38:46.855 00:05:00.259 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 20:43:13.688 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33718 10 6452 1 2025-10-19 20:44:14.062 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40292 10 6452 1 2025-10-19 20:45:02.568 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 20:45:02.435 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 20:45:02.292 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 20:45:02.486 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 20:45:02.435 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 20:45:14.468 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56566 10 6452 1 2025-10-19 20:46:14.873 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42952 10 6452 1 2025-10-19 20:42:46.862 00:05:00.250 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 20:47:15.279 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52324 10 6452 1 2025-10-19 20:48:15.639 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36828 10 6452 1 2025-10-19 20:44:46.860 00:05:00.255 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 20:49:16.040 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34934 10 6452 1 2025-10-19 20:50:02.473 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 20:50:02.387 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 20:50:02.624 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 20:50:02.551 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 20:50:02.707 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 20:50:16.441 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54366 10 6452 1 2025-10-19 20:51:16.851 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:43232 10 6452 1 2025-10-19 20:52:17.229 00:00:10.471 TCP 1.101.0.1:3000 -> 23.104.0.1:45890 10 6452 1 2025-10-19 20:48:46.864 00:05:00.250 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-19 20:53:17.747 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52910 10 6452 1 2025-10-19 20:54:18.149 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:49414 10 6452 1 2025-10-19 20:50:46.862 00:05:00.254 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-19 20:55:02.663 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-19 20:55:02.568 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 20:55:02.658 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-19 20:55:02.658 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-19 20:55:02.740 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-19 20:55:18.564 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42698 10 6452 1 2025-10-19 20:56:18.972 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:42308 10 6452 1 2025-10-19 20:57:19.351 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50942 10 6452 1 2025-10-19 20:58:19.715 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:47920 10 6452 1 2025-10-19 20:54:46.866 00:05:00.250 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 Summary: total flows: 140, total bytes: 428763, total packets: 1026, avg bps: 907, avg pps: 0, avg bpp: 417 Time window: 2025-10-19 19:56:46 - 2025-10-19 20:59:47 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0043s User: 0.0011s Wall: 0.0019s flows/second: 75186.0 Runtime: 0.0019s