Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-23 15:59:36.531 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37804 10 6452 1 2025-10-23 15:55:48.769 00:05:00.345 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 16:00:36.938 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:41304 10 6452 1 2025-10-23 16:01:37.350 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:53600 11 6504 1 2025-10-23 16:01:52.299 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 16:01:52.194 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 16:01:52.229 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 16:01:52.296 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 16:01:52.312 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 16:02:37.803 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39048 10 6452 1 2025-10-23 16:03:38.211 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36910 10 6452 1 2025-10-23 16:04:38.613 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42348 10 6452 1 2025-10-23 16:00:48.767 00:05:00.351 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 16:05:39.013 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41056 10 6452 1 2025-10-23 16:01:48.771 00:05:00.345 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 16:06:52.456 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 16:06:39.412 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54592 10 6452 1 2025-10-23 16:06:52.325 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 16:06:52.226 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 16:06:52.373 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 16:06:52.377 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 16:07:39.819 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33998 10 6452 1 2025-10-23 16:08:40.224 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37080 10 6452 1 2025-10-23 16:09:40.586 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57834 10 6452 1 2025-10-23 16:06:48.769 00:05:00.351 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 16:10:40.988 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:59052 10 6452 1 2025-10-23 16:07:48.771 00:05:00.345 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 16:11:52.155 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 16:11:52.369 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 16:11:52.494 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 16:11:52.441 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 16:11:41.352 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51626 10 6452 1 2025-10-23 16:11:52.576 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 16:12:41.760 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:46554 10 6452 1 2025-10-23 16:13:42.224 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56040 10 6452 1 2025-10-23 16:14:42.630 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43458 10 6452 1 2025-10-23 16:15:43.042 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44202 10 6452 1 2025-10-23 16:16:43.449 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48678 10 6452 1 2025-10-23 16:16:52.443 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 16:16:52.477 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 16:16:52.587 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 16:16:52.440 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 16:12:48.768 00:05:00.351 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 16:16:52.672 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 16:13:48.772 00:05:00.346 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 16:17:43.858 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:52296 10 6452 1 2025-10-23 16:18:44.274 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59038 10 6452 1 2025-10-23 16:19:44.676 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41330 10 6452 1 2025-10-23 16:20:45.108 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36094 10 6452 1 2025-10-23 16:21:52.684 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 16:21:52.391 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 16:21:52.681 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 16:21:52.554 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 16:21:45.505 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:53254 10 6452 1 2025-10-23 16:21:52.764 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 16:18:48.771 00:05:00.350 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 16:22:45.868 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:42172 10 6452 1 2025-10-23 16:19:48.775 00:05:00.345 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 16:23:46.284 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:59740 10 6452 1 2025-10-23 16:24:46.679 00:00:10.460 TCP 1.101.0.1:3000 -> 23.104.0.1:57972 12 10375 1 2025-10-23 16:25:47.179 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47680 10 6452 1 2025-10-23 16:26:52.809 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 16:26:52.381 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 16:26:52.557 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 16:26:52.729 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 16:26:52.640 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 16:26:47.584 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60162 10 6452 1 2025-10-23 16:27:47.986 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36968 10 6452 1 2025-10-23 16:24:48.773 00:05:00.349 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 16:28:48.389 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40184 10 6452 1 2025-10-23 16:25:48.776 00:05:00.345 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 16:29:48.755 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:49574 10 6452 1 2025-10-23 16:30:49.176 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:34722 10 6452 1 2025-10-23 16:31:53.405 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 16:31:53.365 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 16:31:53.100 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 16:31:53.321 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 16:31:53.235 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 16:31:49.536 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59626 10 6452 1 2025-10-23 16:32:49.938 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:51726 10 6452 1 2025-10-23 16:33:50.365 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52662 10 6452 1 2025-10-23 16:30:48.774 00:05:00.350 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 16:34:50.785 00:00:10.521 TCP 1.101.0.1:3000 -> 23.104.0.1:51694 10 6452 1 2025-10-23 16:31:48.779 00:05:00.343 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 16:35:51.359 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44928 10 6452 1 2025-10-23 16:36:52.897 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 16:36:52.841 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 16:36:52.890 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 16:36:52.983 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 16:36:52.973 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 16:36:51.766 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49750 10 6452 1 2025-10-23 16:37:52.178 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:53074 10 6452 1 2025-10-23 16:38:52.538 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47384 10 6452 1 2025-10-23 16:39:52.941 00:00:14.104 TCP 1.101.0.1:3000 -> 23.104.0.1:39756 10 6452 1 2025-10-23 16:36:48.777 00:05:00.348 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 16:40:57.108 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36988 10 6452 1 2025-10-23 16:37:48.781 00:05:00.341 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 16:41:53.004 00:00:00.037 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 16:41:52.929 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 16:41:52.988 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 16:41:52.948 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 16:41:53.085 00:00:00.038 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 16:41:57.517 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58468 10 6452 1 2025-10-23 16:42:57.919 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:49556 10 6452 1 2025-10-23 16:43:58.291 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:47522 10 6452 1 2025-10-23 16:44:58.686 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51514 10 6452 1 2025-10-23 16:45:59.109 00:00:10.486 TCP 1.101.0.1:3000 -> 23.104.0.1:33926 10 6452 1 2025-10-23 16:46:53.098 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 16:46:53.009 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 16:46:53.228 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 16:46:53.167 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 16:42:48.784 00:05:00.343 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 16:46:53.310 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 16:46:59.630 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48600 10 6452 1 2025-10-23 16:43:48.786 00:05:00.338 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 16:48:00.031 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:50928 10 6452 1 2025-10-23 16:49:00.392 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:44398 10 6452 1 2025-10-23 16:50:00.750 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52236 10 6452 1 2025-10-23 16:51:01.157 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54342 10 6452 1 2025-10-23 16:51:53.480 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 16:51:53.131 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 16:51:53.048 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 16:51:52.825 00:00:00.037 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 16:51:53.398 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 16:52:01.562 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:59648 10 6452 1 2025-10-23 16:48:48.786 00:05:00.342 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 16:53:01.935 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:46740 10 6452 1 2025-10-23 16:49:48.789 00:05:00.336 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 16:54:02.378 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49218 10 6452 1 2025-10-23 16:55:02.785 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:52820 10 6452 1 2025-10-23 16:56:03.152 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45430 10 6452 1 2025-10-23 16:56:54.536 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 16:56:54.540 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 16:56:54.191 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 16:56:54.453 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 16:56:54.601 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 16:57:03.549 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39654 10 6452 1 2025-10-23 16:58:03.951 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44138 10 6452 1 2025-10-23 16:54:48.788 00:05:00.341 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 Summary: total flows: 139, total bytes: 414523, total packets: 1013, avg bps: 863, avg pps: 0, avg bpp: 409 Time window: 2025-10-23 15:55:48 - 2025-10-23 16:59:49 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0052s User: 0.0009s Wall: 0.0035s flows/second: 40163.1 Runtime: 0.0035s