Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-01 05:59:36.843 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:33464 10 6452 1 2025-10-01 06:00:37.252 00:00:10.412 TCP 1.101.0.1:3000 -> 23.104.0.1:38202 12 6556 1 2025-10-01 06:01:04.922 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 06:01:04.716 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 06:01:04.791 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 06:01:04.769 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 06:01:04.840 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 05:56:37.449 00:06:00.182 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 06:01:37.710 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45946 10 6452 1 2025-10-01 06:02:38.120 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:44224 11 6504 1 2025-10-01 05:58:37.451 00:06:00.178 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 06:03:38.603 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44544 10 6452 1 2025-10-01 06:04:39.010 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:49070 10 6452 1 2025-10-01 06:05:39.370 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41224 10 6452 1 2025-10-01 06:06:04.827 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 06:06:04.673 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 06:06:04.717 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 06:06:04.671 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 06:06:04.753 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 06:06:39.771 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:43486 10 6452 1 2025-10-01 06:07:40.187 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43936 10 6452 1 2025-10-01 06:03:37.451 00:06:00.183 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 06:08:40.588 00:00:10.831 TCP 1.101.0.1:3000 -> 23.104.0.1:49694 10 6452 1 2025-10-01 06:09:41.461 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37488 10 6452 1 2025-10-01 06:05:37.455 00:06:00.177 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 06:10:41.828 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53086 10 6452 1 2025-10-01 06:11:04.951 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 06:11:04.854 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 06:11:05.005 00:00:00.048 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 06:11:05.094 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 06:11:05.175 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 06:11:42.192 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49552 10 6452 1 2025-10-01 06:12:42.598 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50272 10 6452 1 2025-10-01 06:13:43.005 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54196 10 6452 1 2025-10-01 06:14:43.407 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49652 10 6452 1 2025-10-01 06:10:37.453 00:06:00.185 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 06:15:43.808 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56520 10 6452 1 2025-10-01 06:16:04.887 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 06:16:05.059 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 06:16:05.116 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 06:16:05.070 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 06:16:05.199 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 06:16:44.209 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42622 10 6452 1 2025-10-01 06:12:37.457 00:06:00.177 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 06:17:44.616 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40446 10 6452 1 2025-10-01 06:18:45.032 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:49454 10 6452 1 2025-10-01 06:19:45.456 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42728 10 6452 1 2025-10-01 06:20:45.864 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:58916 11 6504 1 2025-10-01 06:21:04.904 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 06:21:05.273 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 06:21:05.279 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 06:21:05.275 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 06:21:05.359 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 06:21:46.290 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33506 10 6452 1 2025-10-01 06:17:37.456 00:06:00.182 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 06:22:46.694 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:52542 10 6452 1 2025-10-01 06:23:47.084 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42418 10 6452 1 2025-10-01 06:19:37.459 00:06:00.177 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 06:24:47.490 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44924 10 6452 1 2025-10-01 06:25:47.896 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:48820 12 6556 1 2025-10-01 06:26:05.390 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 06:26:05.297 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 06:26:05.440 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 06:26:05.390 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 06:26:05.472 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 06:26:48.311 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57824 10 6452 1 2025-10-01 06:27:48.710 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:39586 10 6452 1 2025-10-01 06:28:49.114 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:56448 10 6452 1 2025-10-01 06:24:37.458 00:06:00.184 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 06:29:49.476 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:35816 10 6452 1 2025-10-01 06:30:49.877 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:55172 10 6452 1 2025-10-01 06:31:05.464 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 06:31:05.386 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 06:31:05.103 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 06:31:05.315 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 06:31:05.381 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 06:26:37.459 00:06:00.179 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 06:31:50.299 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:50842 10 6452 1 2025-10-01 06:32:50.725 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:45008 10 6452 1 2025-10-01 06:33:51.107 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43510 10 6452 1 2025-10-01 06:34:51.521 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:59054 10 6452 1 2025-10-01 06:35:51.931 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:59248 10 6452 1 2025-10-01 06:36:05.390 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 06:36:05.596 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 06:36:05.282 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 06:36:05.465 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 06:36:05.548 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 06:31:37.458 00:06:00.184 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 06:36:52.363 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47656 10 6452 1 2025-10-01 06:37:52.768 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38300 10 6452 1 2025-10-01 06:33:37.461 00:06:00.180 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 06:38:53.178 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52370 10 6452 1 2025-10-01 06:39:53.543 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52536 10 6452 1 2025-10-01 06:40:53.948 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:44328 10 6452 1 2025-10-01 06:41:05.695 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 06:41:05.534 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 06:41:05.433 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 06:41:05.542 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 06:41:05.612 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 06:41:54.374 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41124 10 6452 1 2025-10-01 06:42:54.780 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58698 10 6452 1 2025-10-01 06:38:37.459 00:06:00.185 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 06:43:55.185 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39002 10 6452 1 2025-10-01 06:44:55.591 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:56776 10 6452 1 2025-10-01 06:40:37.464 00:06:00.178 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 06:45:55.959 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58448 10 6452 1 2025-10-01 06:46:05.673 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 06:46:05.518 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 06:46:05.518 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 06:46:05.642 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 06:46:05.757 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 06:46:56.322 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51304 10 6452 1 2025-10-01 06:47:56.688 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60988 10 6452 1 2025-10-01 06:48:57.110 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51458 10 6452 1 2025-10-01 06:49:57.511 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40340 10 6452 1 2025-10-01 06:45:37.463 00:06:00.184 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 06:51:05.912 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 06:51:05.962 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 06:51:05.959 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 06:50:57.913 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56968 10 6452 1 2025-10-01 06:51:05.920 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 06:51:06.004 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 06:51:58.277 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38326 10 6452 1 2025-10-01 06:47:37.465 00:06:00.178 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 06:52:58.683 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:40084 10 6452 1 2025-10-01 06:53:59.110 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38126 10 6452 1 2025-10-01 06:54:59.485 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54722 10 6452 1 2025-10-01 06:56:05.804 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 06:56:05.721 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 06:56:05.791 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 06:56:05.863 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 06:56:05.721 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 06:55:59.891 00:00:10.975 TCP 1.101.0.1:3000 -> 23.104.0.1:34466 12 6556 1 2025-10-01 06:57:00.900 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38994 10 6452 1 2025-10-01 06:52:37.464 00:06:00.183 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 06:58:01.265 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42900 10 6452 1 Summary: total flows: 136, total bytes: 410841, total packets: 1016, avg bps: 883, avg pps: 0, avg bpp: 404 Time window: 2025-10-01 05:56:37 - 2025-10-01 06:58:37 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0036s User: 0.0000s Wall: 0.0071s flows/second: 19042.7 Runtime: 0.0072s