Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-21 20:58:52.694 00:00:10.451 TCP 1.101.0.1:3000 -> 23.104.0.1:60710 12 10375 1 2025-10-21 20:59:53.183 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39468 10 6452 1 2025-10-21 20:56:47.905 00:05:00.306 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-21 20:56:47.908 00:05:00.301 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-21 21:01:00.585 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 21:01:00.594 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 21:01:00.380 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 21:01:00.503 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 21:01:00.500 00:00:00.033 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 21:00:53.586 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36546 10 6452 1 2025-10-21 21:01:53.990 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49202 10 6452 1 2025-10-21 21:02:54.397 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39616 10 6452 1 2025-10-21 21:03:54.810 00:00:10.470 TCP 1.101.0.1:3000 -> 23.104.0.1:59044 12 10375 1 2025-10-21 21:04:55.320 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39810 10 6452 1 2025-10-21 21:06:00.631 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 21:06:00.598 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 21:06:00.587 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 21:06:00.674 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 21:06:00.671 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 21:05:55.728 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44824 10 6452 1 2025-10-21 21:02:47.908 00:05:00.302 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-21 21:02:47.906 00:05:00.307 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-21 21:06:56.112 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:38858 10 6452 1 2025-10-21 21:07:56.474 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44614 10 6452 1 2025-10-21 21:08:56.883 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:39610 10 6452 1 2025-10-21 21:09:57.256 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60724 10 6452 1 2025-10-21 21:11:00.739 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 21:11:00.581 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 21:11:00.870 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 21:11:00.908 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 21:11:00.953 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 21:10:57.657 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41788 10 6452 1 2025-10-21 21:11:58.064 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33596 10 6452 1 2025-10-21 21:08:47.912 00:05:00.302 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-21 21:08:47.908 00:05:00.307 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-21 21:12:58.479 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51250 10 6452 1 2025-10-21 21:13:58.909 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51210 10 6452 1 2025-10-21 21:14:59.312 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52666 10 6452 1 2025-10-21 21:16:02.074 00:00:00.039 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 21:16:01.993 00:00:00.044 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 21:16:01.934 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 21:16:01.992 00:00:00.038 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 21:16:02.176 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 21:15:59.724 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53296 10 6452 1 2025-10-21 21:17:00.139 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42120 10 6452 1 2025-10-21 21:18:00.546 00:00:10.882 TCP 1.101.0.1:3000 -> 23.104.0.1:43578 10 6452 1 2025-10-21 21:14:47.910 00:05:00.311 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-21 21:14:47.912 00:05:00.306 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-21 21:19:01.470 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:55888 10 6452 1 2025-10-21 21:20:01.889 00:00:10.752 TCP 1.101.0.1:3000 -> 23.104.0.1:56036 10 6452 1 2025-10-21 21:21:00.828 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 21:21:00.715 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 21:21:00.888 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 21:21:00.825 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 21:21:00.970 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 21:21:02.686 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35084 10 6452 1 2025-10-21 21:22:03.113 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48476 10 6452 1 2025-10-21 21:23:03.525 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47658 10 6452 1 2025-10-21 21:24:03.930 00:00:18.094 TCP 1.101.0.1:3000 -> 23.104.0.1:55536 10 6452 1 2025-10-21 21:20:47.911 00:05:00.318 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-21 21:20:47.913 00:05:00.312 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-21 21:25:12.103 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34988 10 6452 1 2025-10-21 21:26:00.886 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 21:26:00.835 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 21:26:00.947 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 21:26:01.221 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 21:26:01.138 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 21:26:12.505 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38502 10 6452 1 2025-10-21 21:27:12.912 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57752 10 6452 1 2025-10-21 21:28:13.314 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35156 10 6452 1 2025-10-21 21:29:13.722 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:51466 10 6452 1 2025-10-21 21:30:14.137 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34210 10 6452 1 2025-10-21 21:26:47.914 00:05:00.319 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-21 21:26:47.913 00:05:00.323 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-21 21:31:00.942 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 21:31:00.922 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 21:31:01.006 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 21:31:01.225 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 21:31:01.147 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 21:31:14.537 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57850 10 6452 1 2025-10-21 21:32:14.951 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:49988 10 6452 1 2025-10-21 21:33:15.311 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48770 10 6452 1 2025-10-21 21:34:15.714 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:50634 10 6452 1 2025-10-21 21:35:16.133 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40048 10 6452 1 2025-10-21 21:36:01.768 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 21:36:01.431 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 21:36:01.574 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 21:36:01.686 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 21:36:01.288 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 21:36:16.544 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:37982 10 6452 1 2025-10-21 21:32:47.917 00:05:00.318 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-21 21:32:47.915 00:05:00.324 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-21 21:37:16.899 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57562 10 6452 1 2025-10-21 21:38:17.321 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51122 10 6452 1 2025-10-21 21:39:17.725 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37556 10 6452 1 2025-10-21 21:40:18.131 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54478 10 6452 1 2025-10-21 21:41:01.389 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 21:41:01.067 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 21:41:01.335 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 21:41:01.220 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 21:41:01.417 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 21:41:18.533 00:00:10.703 TCP 1.101.0.1:3000 -> 23.104.0.1:42568 10 6452 1 2025-10-21 21:42:19.277 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56570 10 6452 1 2025-10-21 21:38:47.918 00:05:00.320 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-21 21:38:47.915 00:05:00.325 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-21 21:43:19.678 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41010 10 6452 1 2025-10-21 21:44:20.113 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:57546 12 10375 1 2025-10-21 21:45:20.590 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48364 10 6452 1 2025-10-21 21:46:01.408 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 21:46:01.511 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 21:46:01.159 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 21:46:01.324 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 21:46:01.327 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 21:46:20.987 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:38392 10 6452 1 2025-10-21 21:47:21.352 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52666 10 6452 1 2025-10-21 21:48:21.757 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:45190 10 6452 1 2025-10-21 21:44:47.916 00:05:00.327 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-21 21:44:47.919 00:05:00.322 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-21 21:49:22.189 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50688 10 6452 1 2025-10-21 21:50:22.594 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33214 10 6452 1 2025-10-21 21:51:02.515 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 21:51:02.313 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 21:51:02.519 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 21:51:02.498 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 21:51:02.599 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 21:51:23.001 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33238 10 6452 1 2025-10-21 21:52:23.405 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:38610 10 6452 1 2025-10-21 21:53:23.766 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:56232 10 6452 1 2025-10-21 21:54:24.135 00:00:10.540 TCP 1.101.0.1:3000 -> 23.104.0.1:43654 10 6452 1 2025-10-21 21:50:47.917 00:05:00.348 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-21 21:50:47.920 00:05:00.323 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-21 21:55:24.711 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:52264 10 6452 1 2025-10-21 21:56:01.599 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 21:56:01.544 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 21:56:01.418 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 21:56:01.526 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 21:56:01.501 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 21:56:25.116 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45738 10 6452 1 2025-10-21 21:57:25.526 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36618 10 6452 1 2025-10-21 21:58:25.885 00:00:10.506 TCP 1.101.0.1:3000 -> 23.104.0.1:47908 10 6452 1 Summary: total flows: 140, total bytes: 428769, total packets: 1026, avg bps: 924, avg pps: 0, avg bpp: 417 Time window: 2025-10-21 20:56:47 - 2025-10-21 21:58:36 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0028s User: 0.0028s Wall: 0.0026s flows/second: 53270.7 Runtime: 0.0026s