Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-01 12:59:35.759 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:36720 10 6452 1 2025-10-01 13:00:36.134 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52484 10 6452 1 2025-10-01 13:01:13.411 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 13:01:13.460 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 13:01:13.312 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 13:01:13.478 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 13:01:13.395 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 12:56:37.579 00:06:00.198 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 13:01:36.539 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38962 10 6452 1 2025-10-01 13:02:36.940 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:44522 10 6452 1 2025-10-01 12:58:37.582 00:06:00.193 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 13:03:37.358 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:45374 10 6452 1 2025-10-01 13:04:37.757 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:57206 10 6452 1 2025-10-01 13:05:38.183 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:57302 10 6452 1 2025-10-01 13:06:13.396 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 13:06:13.440 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 13:06:13.460 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 13:06:13.323 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 13:06:13.406 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 13:06:38.578 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34344 10 6452 1 2025-10-01 13:07:38.982 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56554 10 6452 1 2025-10-01 13:03:37.580 00:06:00.199 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 13:08:39.382 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57298 10 6452 1 2025-10-01 13:09:39.795 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51204 10 6452 1 2025-10-01 13:05:37.583 00:06:00.193 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 13:10:40.203 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56434 10 6452 1 2025-10-01 13:11:13.603 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 13:11:13.641 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 13:11:13.568 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 13:11:13.462 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 13:11:13.521 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 13:11:40.611 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54270 10 6452 1 2025-10-01 13:12:40.970 00:00:10.421 TCP 1.101.0.1:3000 -> 23.104.0.1:54352 11 6504 1 2025-10-01 13:13:41.430 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51538 10 6452 1 2025-10-01 13:14:41.793 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:59908 10 6452 1 2025-10-01 13:10:37.583 00:06:00.196 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 13:15:42.153 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48100 10 6452 1 2025-10-01 13:16:13.440 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 13:16:13.358 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 13:16:13.438 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 13:16:13.395 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 13:16:13.358 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 13:16:42.556 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:48698 10 6452 1 2025-10-01 13:12:37.587 00:06:00.190 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 13:17:42.967 00:00:10.791 TCP 1.101.0.1:3000 -> 23.104.0.1:58160 10 6452 1 2025-10-01 13:18:43.804 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:56428 10 6452 1 2025-10-01 13:19:44.224 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51486 10 6452 1 2025-10-01 13:20:44.630 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59204 10 6452 1 2025-10-01 13:21:14.003 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 13:21:13.920 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 13:21:13.968 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 13:21:13.967 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 13:21:13.935 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 13:21:45.029 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:55306 10 6452 1 2025-10-01 13:17:37.588 00:06:00.207 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 13:22:45.458 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38236 10 6452 1 2025-10-01 13:23:45.870 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:40492 10 6452 1 2025-10-01 13:19:37.589 00:06:00.203 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 13:24:46.241 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40552 10 6452 1 2025-10-01 13:25:46.647 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:55084 10 6452 1 2025-10-01 13:26:14.018 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 13:26:13.812 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 13:26:13.807 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 13:26:13.865 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 13:26:13.935 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 13:26:47.017 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42792 10 6452 1 2025-10-01 13:27:47.381 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37260 10 6452 1 2025-10-01 13:28:47.745 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44406 10 6452 1 2025-10-01 13:24:37.587 00:06:00.209 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 13:29:48.145 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:57976 10 6452 1 2025-10-01 13:30:48.511 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44190 10 6452 1 2025-10-01 13:31:13.872 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 13:31:13.707 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 13:31:13.690 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 13:31:13.626 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 13:31:13.954 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 13:26:37.590 00:06:00.204 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 13:31:48.918 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51552 10 6452 1 2025-10-01 13:32:49.316 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:52630 12 10375 1 2025-10-01 13:33:49.793 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42330 10 6452 1 2025-10-01 13:34:50.203 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:58148 10 6452 1 2025-10-01 13:35:50.570 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:40984 10 6452 1 2025-10-01 13:36:13.753 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 13:36:13.752 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 13:36:13.623 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 13:36:13.975 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 13:36:14.058 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 13:31:37.589 00:06:00.209 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 13:36:50.993 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33304 10 6452 1 2025-10-01 13:37:51.394 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54986 10 6452 1 2025-10-01 13:33:37.593 00:06:00.202 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 13:38:51.794 00:00:10.830 TCP 1.101.0.1:3000 -> 23.104.0.1:37798 10 6452 1 2025-10-01 13:39:52.660 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50396 10 6452 1 2025-10-01 13:40:53.084 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:46558 10 6452 1 2025-10-01 13:41:14.679 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 13:41:14.576 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 13:41:14.586 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 13:41:14.479 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 13:41:14.597 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 13:41:53.449 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35440 10 6452 1 2025-10-01 13:42:53.849 00:00:10.453 TCP 1.101.0.1:3000 -> 23.104.0.1:43172 12 10375 1 2025-10-01 13:38:37.595 00:06:00.205 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 13:43:54.343 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50758 10 6452 1 2025-10-01 13:44:54.750 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36954 10 6452 1 2025-10-01 13:40:37.598 00:06:00.199 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 13:45:55.151 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33990 10 6452 1 2025-10-01 13:46:14.394 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 13:46:14.266 00:00:00.029 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 13:46:14.231 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 13:46:14.313 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 13:46:14.269 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 13:46:55.522 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45198 10 6452 1 2025-10-01 13:47:55.879 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:58256 10 6452 1 2025-10-01 13:48:56.289 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:51574 10 6452 1 2025-10-01 13:49:56.656 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:47888 10 6452 1 2025-10-01 13:45:37.596 00:06:00.206 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 13:50:57.097 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49248 10 6452 1 2025-10-01 13:51:14.355 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 13:51:14.198 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 13:51:14.322 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 13:51:14.207 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 13:51:14.272 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 13:51:57.521 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47646 10 6452 1 2025-10-01 13:47:37.598 00:06:00.201 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 13:52:57.935 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:35090 10 6452 1 2025-10-01 13:53:58.367 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42030 10 6452 1 2025-10-01 13:54:58.784 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:58858 10 6452 1 2025-10-01 13:55:59.155 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43968 10 6452 1 2025-10-01 13:56:14.380 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 13:56:14.357 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 13:56:14.264 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 13:56:14.432 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 13:56:14.441 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 13:56:59.560 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:55058 10 6452 1 2025-10-01 13:52:37.597 00:06:00.206 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 13:57:59.920 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37532 10 6452 1 Summary: total flows: 136, total bytes: 418323, total packets: 1013, avg bps: 899, avg pps: 0, avg bpp: 412 Time window: 2025-10-01 12:56:37 - 2025-10-01 13:58:37 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0019s User: 0.0019s Wall: 0.0012s flows/second: 112955.5 Runtime: 0.0012s