Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-01 09:59:18.981 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50902 10 6452 1 2025-10-01 09:54:37.525 00:06:00.184 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 10:00:19.383 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:54750 10 6452 1 2025-10-01 10:01:09.808 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 10:01:09.688 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 10:01:09.612 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 10:01:09.807 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 10:01:09.891 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 10:01:19.796 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50518 10 6452 1 2025-10-01 09:56:37.528 00:06:00.180 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 10:02:20.199 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43842 10 6452 1 2025-10-01 10:03:20.608 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:34046 10 6452 1 2025-10-01 10:04:20.975 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38406 10 6452 1 2025-10-01 10:05:21.389 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58990 10 6452 1 2025-10-01 10:06:09.964 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 10:06:09.760 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 10:06:09.762 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 10:06:09.937 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 10:06:09.881 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 10:06:21.800 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:42942 10 6452 1 2025-10-01 10:01:37.526 00:06:00.184 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 10:07:22.169 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37052 10 6452 1 2025-10-01 10:08:22.573 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35784 10 6452 1 2025-10-01 10:03:37.529 00:06:00.180 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 10:09:22.972 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60268 10 6452 1 2025-10-01 10:10:23.373 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:43390 10 6452 1 2025-10-01 10:11:09.971 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 10:11:09.935 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 10:11:10.019 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 10:11:10.155 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 10:11:10.059 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 10:11:23.768 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37210 10 6452 1 2025-10-01 10:12:24.131 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:51584 10 6452 1 2025-10-01 10:13:24.502 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43032 12 6556 1 2025-10-01 10:08:37.530 00:06:00.193 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 10:14:24.904 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33366 10 6452 1 2025-10-01 10:15:25.333 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57516 10 6452 1 2025-10-01 10:10:37.534 00:06:00.188 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 10:16:09.953 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 10:16:10.228 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 10:16:10.123 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 10:16:10.133 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 10:16:10.146 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 10:16:25.691 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46698 10 6452 1 2025-10-01 10:17:26.112 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41918 10 6452 1 2025-10-01 10:18:26.479 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49344 10 6452 1 2025-10-01 10:19:26.882 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53916 10 6452 1 2025-10-01 10:15:37.530 00:06:00.193 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 10:20:27.283 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35842 10 6452 1 2025-10-01 10:21:09.894 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 10:21:09.893 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 10:21:10.151 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 10:21:10.147 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 10:21:09.977 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 10:21:27.680 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40228 10 6452 1 2025-10-01 10:17:37.533 00:06:00.188 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 10:22:28.114 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36204 10 6452 1 2025-10-01 10:23:28.518 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60116 10 6452 1 2025-10-01 10:24:28.922 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37222 10 6452 1 2025-10-01 10:25:29.328 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:54214 10 6452 1 2025-10-01 10:26:10.118 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 10:26:10.217 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 10:26:10.078 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 10:26:10.266 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 10:26:10.348 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 10:26:29.751 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59272 10 6452 1 2025-10-01 10:22:37.532 00:06:00.193 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 10:27:30.152 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:56968 10 6452 1 2025-10-01 10:28:30.520 00:00:10.700 TCP 1.101.0.1:3000 -> 23.104.0.1:36030 10 6452 1 2025-10-01 10:24:37.535 00:06:00.190 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 10:29:31.271 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39118 10 6452 1 2025-10-01 10:30:31.686 00:00:10.546 TCP 1.101.0.1:3000 -> 23.104.0.1:47514 10 6452 1 2025-10-01 10:31:10.493 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 10:31:10.325 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 10:31:10.106 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 10:31:10.148 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 10:31:10.410 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 10:31:32.274 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34514 10 6452 1 2025-10-01 10:32:32.679 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37016 10 6452 1 2025-10-01 10:33:33.108 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34608 10 6452 1 2025-10-01 10:29:37.533 00:06:00.196 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 10:34:33.516 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50708 10 6452 1 2025-10-01 10:35:33.924 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60150 10 6452 1 2025-10-01 10:36:10.452 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 10:36:10.182 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 10:36:10.196 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 10:36:10.239 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 10:36:10.369 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 10:31:37.537 00:06:00.190 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 10:36:34.328 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38226 10 6452 1 2025-10-01 10:37:34.731 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:40892 10 6452 1 2025-10-01 10:38:35.117 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43270 10 6452 1 2025-10-01 10:39:35.513 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58958 10 6452 1 2025-10-01 10:40:35.916 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54450 10 6452 1 2025-10-01 10:41:10.437 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 10:41:10.510 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 10:41:10.601 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 10:41:10.451 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 10:41:10.534 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 10:36:37.536 00:06:00.195 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 10:41:36.319 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:44654 10 6452 1 2025-10-01 10:42:36.724 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:56384 10 6452 1 2025-10-01 10:38:37.539 00:06:00.189 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 10:43:37.142 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36146 10 6452 1 2025-10-01 10:44:37.548 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58754 10 6452 1 2025-10-01 10:45:37.952 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:36234 10 6452 1 2025-10-01 10:46:10.563 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 10:46:10.481 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 10:46:10.481 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 10:46:10.496 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 10:46:10.481 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 10:46:38.315 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56662 10 6452 1 2025-10-01 10:47:38.721 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:46012 10 6452 1 2025-10-01 10:43:37.538 00:06:00.196 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 10:48:39.108 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51758 10 6452 1 2025-10-01 10:49:39.510 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45186 10 6452 1 2025-10-01 10:45:37.540 00:06:00.191 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 10:50:39.914 00:00:10.710 TCP 1.101.0.1:3000 -> 23.104.0.1:55320 10 6452 1 2025-10-01 10:51:10.631 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 10:51:10.635 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 10:51:10.656 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 10:51:10.747 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 10:51:10.829 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 10:51:40.663 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:35898 10 6452 1 2025-10-01 10:52:41.114 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:46292 12 10375 1 2025-10-01 10:53:41.547 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57722 10 6452 1 2025-10-01 10:54:41.960 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:38790 10 6452 1 2025-10-01 10:50:37.541 00:06:00.194 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 10:55:42.344 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:47312 10 6452 1 2025-10-01 10:56:10.914 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 10:56:11.045 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 10:56:10.666 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 10:56:10.866 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 10:56:10.831 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 10:56:42.712 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48322 10 6452 1 2025-10-01 10:52:37.542 00:06:00.190 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 10:57:43.117 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52996 10 6452 1 Summary: total flows: 137, total bytes: 415313, total packets: 1026, avg bps: 865, avg pps: 0, avg bpp: 404 Time window: 2025-10-01 09:54:37 - 2025-10-01 10:58:37 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0045s User: 0.0009s Wall: 0.0024s flows/second: 57398.8 Runtime: 0.0024s