Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-01 06:59:01.673 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:55496 10 6452 1 2025-10-01 06:54:37.466 00:06:00.179 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 07:00:02.112 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:39158 10 6452 1 2025-10-01 07:01:05.987 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 07:01:05.781 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 07:01:05.970 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 07:01:05.896 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 07:01:05.864 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 07:01:02.477 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:43332 10 6452 1 2025-10-01 07:02:02.842 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:50540 10 6452 1 2025-10-01 07:03:03.261 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47774 10 6452 1 2025-10-01 07:04:03.662 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53164 10 6452 1 2025-10-01 06:59:37.465 00:06:00.183 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 07:05:04.101 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45178 10 6452 1 2025-10-01 07:06:06.197 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 07:06:05.944 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 07:06:06.285 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 07:06:06.142 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 07:06:06.368 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 07:06:04.512 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:51116 10 6452 1 2025-10-01 07:01:37.468 00:06:00.178 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 07:07:04.920 00:00:11.045 TCP 1.101.0.1:3000 -> 23.104.0.1:47186 10 6452 1 2025-10-01 07:08:06.008 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:53600 10 6452 1 2025-10-01 07:09:06.408 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50486 10 6452 1 2025-10-01 07:10:06.813 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38700 10 6452 1 2025-10-01 07:11:06.162 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 07:11:05.970 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 07:11:06.518 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 07:11:05.736 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 07:11:06.246 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 07:11:07.225 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50626 10 6452 1 2025-10-01 07:06:37.467 00:06:00.183 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 07:12:07.632 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58540 10 6452 1 2025-10-01 07:13:08.016 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45076 10 6452 1 2025-10-01 07:08:37.469 00:06:00.178 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 07:14:08.424 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41976 10 6452 1 2025-10-01 07:15:08.832 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:59812 10 6452 1 2025-10-01 07:16:06.395 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 07:16:06.288 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 07:16:06.082 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 07:16:06.086 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 07:16:06.165 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 07:16:09.222 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60906 10 6452 1 2025-10-01 07:17:09.628 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59228 10 6452 1 2025-10-01 07:18:10.034 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35410 10 6452 1 2025-10-01 07:13:37.468 00:06:00.184 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 07:19:10.435 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50018 10 6452 1 2025-10-01 07:20:10.846 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:40602 10 6452 1 2025-10-01 07:15:37.471 00:06:00.179 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 07:21:06.645 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 07:21:06.562 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 07:21:06.528 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 07:21:06.533 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 07:21:06.161 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 07:21:11.264 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49938 10 6452 1 2025-10-01 07:22:11.667 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:60706 10 6452 1 2025-10-01 07:23:12.031 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:54748 12 10375 1 2025-10-01 07:24:12.505 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54736 10 6452 1 2025-10-01 07:25:12.907 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:59476 10 6452 1 2025-10-01 07:20:37.470 00:06:00.191 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 07:26:06.648 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 07:26:06.585 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 07:26:06.541 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 07:26:06.646 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 07:26:06.728 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 07:26:13.278 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:38904 10 6452 1 2025-10-01 07:27:13.644 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33754 10 6452 1 2025-10-01 07:22:37.472 00:06:00.188 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 07:28:14.037 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41810 10 6452 1 2025-10-01 07:29:14.442 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34044 10 6452 1 2025-10-01 07:30:14.844 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:50470 10 6452 1 2025-10-01 07:31:06.666 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 07:31:06.875 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 07:31:06.710 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 07:31:06.743 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 07:31:06.827 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 07:31:15.275 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42044 10 6452 1 2025-10-01 07:32:15.680 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35774 10 6452 1 2025-10-01 07:27:37.470 00:06:00.193 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 07:33:16.108 00:00:11.049 TCP 1.101.0.1:3000 -> 23.104.0.1:34700 10 6452 1 2025-10-01 07:34:17.194 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:60658 10 6452 1 2025-10-01 07:29:37.475 00:06:00.188 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 07:35:17.591 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48242 10 6452 1 2025-10-01 07:36:06.772 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 07:36:06.931 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 07:36:06.603 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 07:36:06.628 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 07:36:06.690 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 07:36:17.996 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37032 10 6452 1 2025-10-01 07:37:18.402 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47876 10 6452 1 2025-10-01 07:38:18.803 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:34116 10 6452 1 2025-10-01 07:39:19.193 00:00:11.201 TCP 1.101.0.1:3000 -> 23.104.0.1:44670 10 6452 1 2025-10-01 07:34:37.472 00:06:00.194 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 07:40:20.432 00:00:11.171 TCP 1.101.0.1:3000 -> 23.104.0.1:47022 10 6452 1 2025-10-01 07:41:07.026 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 07:41:06.874 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 07:41:07.033 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 07:41:06.655 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 07:41:06.943 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 07:41:21.641 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36052 10 6452 1 2025-10-01 07:36:37.476 00:06:00.188 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 07:42:22.051 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:50318 10 6452 1 2025-10-01 07:43:22.471 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52168 10 6452 1 2025-10-01 07:44:22.835 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53354 10 6452 1 2025-10-01 07:45:23.245 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45806 10 6452 1 2025-10-01 07:46:07.342 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 07:46:06.928 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 07:46:07.157 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 07:46:06.880 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 07:46:07.260 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 07:46:23.650 00:00:10.463 TCP 1.101.0.1:3000 -> 23.104.0.1:56642 10 6452 1 2025-10-01 07:41:37.474 00:06:00.194 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 07:47:24.148 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47820 10 6452 1 2025-10-01 07:48:24.550 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43514 10 6452 1 2025-10-01 07:43:37.477 00:06:00.187 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 07:49:24.957 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54490 10 6452 1 2025-10-01 07:50:25.365 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:59984 10 6452 1 2025-10-01 07:51:06.967 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 07:51:07.171 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 07:51:06.975 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 07:51:06.970 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 07:51:07.054 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 07:51:25.777 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51928 10 6452 1 2025-10-01 07:52:26.189 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56898 10 6452 1 2025-10-01 07:53:26.593 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:43188 10 6452 1 2025-10-01 07:48:37.475 00:06:00.193 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 07:54:26.957 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50622 10 6452 1 2025-10-01 07:50:37.479 00:06:00.188 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 07:55:27.360 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:47924 10 6452 1 2025-10-01 07:56:07.297 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 07:56:07.240 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 07:56:06.869 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 07:56:07.301 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 07:56:07.384 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 07:56:27.774 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:35598 10 6452 1 2025-10-01 07:57:28.136 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41268 10 6452 1 2025-10-01 07:58:28.543 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34674 10 6452 1 Summary: total flows: 137, total bytes: 420800, total packets: 1020, avg bps: 876, avg pps: 0, avg bpp: 412 Time window: 2025-10-01 06:54:37 - 2025-10-01 07:58:38 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0025s User: 0.0017s Wall: 0.0021s flows/second: 65670.8 Runtime: 0.0021s