Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-29 15:58:41.993 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54790 10 6452 1 2025-10-29 15:59:45.815 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 15:59:45.732 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 15:59:45.408 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 15:59:45.733 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 15:59:45.729 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 15:55:51.880 00:05:00.383 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 15:59:42.395 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49628 10 6452 1 2025-10-29 16:00:42.799 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40560 10 6452 1 2025-10-29 16:01:43.200 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46692 10 6452 1 2025-10-29 16:02:43.608 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45334 10 6452 1 2025-10-29 15:58:51.883 00:05:00.377 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 16:03:44.017 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45564 10 6452 1 2025-10-29 16:04:45.892 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 16:04:45.801 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:04:45.820 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 16:04:46.061 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:04:46.144 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 16:04:44.419 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:55688 10 6452 1 2025-10-29 16:01:51.882 00:05:00.382 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 16:05:44.778 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37140 10 6452 1 2025-10-29 16:06:45.140 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:47116 10 6452 1 2025-10-29 16:07:45.507 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53836 10 6452 1 2025-10-29 16:04:51.889 00:05:00.375 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 16:08:45.871 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54814 10 6452 1 2025-10-29 16:09:45.674 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 16:09:45.914 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:09:45.794 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:09:45.886 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 16:09:45.877 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 16:09:46.283 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38800 10 6452 1 2025-10-29 16:10:46.688 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51148 10 6452 1 2025-10-29 16:07:51.886 00:05:00.380 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 16:11:47.115 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43162 10 6452 1 2025-10-29 16:12:47.522 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60228 10 6452 1 2025-10-29 16:13:47.923 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60708 10 6452 1 2025-10-29 16:14:46.442 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 16:14:46.014 00:00:00.039 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:14:46.168 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:14:46.059 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 16:14:46.251 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 16:10:51.889 00:05:00.374 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 16:14:48.335 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38392 10 6452 1 2025-10-29 16:15:48.734 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38046 10 6452 1 2025-10-29 16:16:49.140 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56890 10 6452 1 2025-10-29 16:13:51.888 00:05:00.380 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 16:17:49.561 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51570 10 6452 1 2025-10-29 16:18:49.933 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:33444 10 6452 1 2025-10-29 16:19:46.419 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 16:19:46.337 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 16:19:46.181 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:19:46.336 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:19:46.387 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 16:19:50.406 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:51916 10 6452 1 2025-10-29 16:16:51.893 00:05:00.373 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 16:20:50.774 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:53146 10 6452 1 2025-10-29 16:21:51.143 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59844 10 6452 1 2025-10-29 16:22:51.551 00:00:23.242 TCP 1.101.0.1:3000 -> 23.104.0.1:52546 10 6452 1 2025-10-29 16:19:51.889 00:05:00.379 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 16:24:04.837 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:60220 10 6452 1 2025-10-29 16:24:46.121 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 16:24:45.992 00:00:00.052 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:24:46.345 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:24:46.220 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 16:24:46.429 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 16:25:05.256 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41574 10 6452 1 2025-10-29 16:26:05.656 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57776 10 6452 1 2025-10-29 16:22:51.894 00:05:00.372 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 16:27:06.028 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56906 10 6452 1 2025-10-29 16:28:06.431 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60736 10 6452 1 2025-10-29 16:29:06.839 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:58264 10 6452 1 2025-10-29 16:29:46.668 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 16:29:46.762 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 16:29:46.396 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:29:46.586 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:29:46.718 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 16:25:51.893 00:05:00.378 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 16:30:07.224 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55592 10 6452 1 2025-10-29 16:31:07.626 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:36840 10 6452 1 2025-10-29 16:32:07.985 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46892 10 6452 1 2025-10-29 16:28:51.895 00:05:00.373 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 16:33:08.386 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42436 10 6452 1 2025-10-29 16:34:08.749 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56092 10 6452 1 2025-10-29 16:34:46.509 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 16:34:46.154 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:34:46.509 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:34:46.331 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 16:34:46.592 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 16:35:09.155 00:00:11.624 TCP 1.101.0.1:3000 -> 23.104.0.1:36284 10 6452 1 2025-10-29 16:31:51.893 00:05:00.386 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 16:36:10.824 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58754 10 6452 1 2025-10-29 16:37:11.227 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47240 10 6452 1 2025-10-29 16:38:11.630 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59366 10 6452 1 2025-10-29 16:34:51.896 00:05:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 16:39:12.032 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55654 10 6452 1 2025-10-29 16:39:46.734 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 16:39:46.503 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:39:46.675 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:39:46.682 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 16:39:46.758 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 16:40:12.430 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52550 10 6452 1 2025-10-29 16:41:12.795 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51544 10 6452 1 2025-10-29 16:37:51.896 00:05:00.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 16:42:13.197 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45436 10 6452 1 2025-10-29 16:43:13.570 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:40998 10 6452 1 2025-10-29 16:44:13.925 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:35694 10 6452 1 2025-10-29 16:44:46.851 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:44:46.666 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 16:44:46.758 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 16:44:46.825 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:44:46.933 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 16:40:51.897 00:05:00.384 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 16:45:14.357 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:33698 10 6452 1 2025-10-29 16:46:14.780 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41974 10 6452 1 2025-10-29 16:47:15.190 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56646 10 6452 1 2025-10-29 16:43:51.896 00:05:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 16:48:15.597 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35978 10 6452 1 2025-10-29 16:49:16.015 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42754 10 6452 1 2025-10-29 16:49:46.733 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 16:49:46.651 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:49:46.799 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 16:49:46.798 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 16:49:46.767 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:50:16.419 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38892 10 6452 1 2025-10-29 16:46:51.900 00:05:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 16:51:16.830 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46640 10 6452 1 2025-10-29 16:52:17.231 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56642 10 6452 1 2025-10-29 16:53:17.635 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:37062 10 6452 1 2025-10-29 16:49:51.896 00:05:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-29 16:54:18.051 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:58182 10 6452 1 2025-10-29 16:54:46.858 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-29 16:54:46.629 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:54:46.985 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-29 16:54:46.600 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-29 16:54:47.068 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-29 16:55:18.424 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35136 10 6452 1 2025-10-29 16:56:18.831 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46122 10 6452 1 2025-10-29 16:52:51.899 00:05:00.384 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-29 16:57:19.229 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58062 10 6452 1 2025-10-29 16:58:19.628 00:00:10.589 TCP 1.101.0.1:3000 -> 23.104.0.1:57274 10 6452 1 Summary: total flows: 140, total bytes: 417000, total packets: 1020, avg bps: 887, avg pps: 0, avg bpp: 408 Time window: 2025-10-29 15:55:51 - 2025-10-29 16:58:30 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0039s User: 0.0020s Wall: 0.0022s flows/second: 64541.9 Runtime: 0.0022s