Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-02 10:58:46.035 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35456 10 6452 1 2025-10-02 10:59:46.436 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51312 10 6452 1 2025-10-02 11:00:46.835 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:41140 10 6452 1 2025-10-02 11:01:39.742 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 11:01:39.701 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 11:01:39.480 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 11:01:39.516 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 11:01:39.597 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 11:01:47.251 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:44864 10 6452 1 2025-10-02 10:58:37.969 00:05:00.334 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-02 11:02:47.649 00:00:10.454 TCP 1.101.0.1:3000 -> 23.104.0.1:44744 12 10369 1 2025-10-02 11:03:48.141 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38324 10 6452 1 2025-10-02 11:00:37.972 00:05:00.329 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-02 11:04:48.546 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50590 10 6452 1 2025-10-02 11:05:48.955 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40990 10 6452 1 2025-10-02 11:06:39.848 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 11:06:39.735 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 11:06:39.757 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 11:06:39.744 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 11:06:39.827 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 11:06:49.370 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54104 10 6452 1 2025-10-02 11:07:49.776 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40684 10 6452 1 2025-10-02 11:04:37.973 00:05:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-02 11:08:50.187 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36692 12 6556 1 2025-10-02 11:09:50.589 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45310 10 6452 1 2025-10-02 11:06:37.976 00:05:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-02 11:10:50.971 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57022 10 6452 1 2025-10-02 11:11:39.777 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 11:11:39.715 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 11:11:39.665 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 11:11:39.714 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 11:11:39.797 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 11:11:51.390 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37308 10 6452 1 2025-10-02 11:12:51.753 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47896 10 6452 1 2025-10-02 11:13:52.155 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40084 10 6452 1 2025-10-02 11:10:37.993 00:05:00.312 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-02 11:14:52.558 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50768 10 6452 1 2025-10-02 11:15:52.957 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55654 10 6452 1 2025-10-02 11:16:39.875 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 11:12:37.995 00:05:00.308 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-02 11:16:39.874 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 11:16:39.777 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 11:16:39.678 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 11:16:39.762 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 11:16:53.363 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:54790 10 6452 1 2025-10-02 11:17:53.725 00:00:10.446 TCP 1.101.0.1:3000 -> 23.104.0.1:42664 12 10375 1 2025-10-02 11:18:54.208 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:57290 10 6452 1 2025-10-02 11:19:54.573 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38820 10 6452 1 2025-10-02 11:16:37.995 00:05:00.314 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-02 11:20:54.982 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:47160 10 6452 1 2025-10-02 11:21:39.915 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 11:21:39.978 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 11:21:40.011 00:00:00.037 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 11:21:39.982 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 11:21:40.065 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 11:21:55.349 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45492 10 6452 1 2025-10-02 11:18:37.997 00:05:00.311 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-02 11:22:55.759 00:00:10.412 TCP 1.101.0.1:3000 -> 23.104.0.1:44924 12 10369 1 2025-10-02 11:23:56.208 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50412 10 6452 1 2025-10-02 11:24:56.615 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55228 10 6452 1 2025-10-02 11:25:57.029 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41324 10 6452 1 2025-10-02 11:26:39.886 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 11:26:39.931 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 11:22:37.995 00:05:00.318 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-02 11:26:39.994 00:00:00.048 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 11:26:40.139 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 11:26:40.223 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 11:26:57.447 00:00:10.540 TCP 1.101.0.1:3000 -> 23.104.0.1:46132 10 6452 1 2025-10-02 11:27:58.033 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49632 10 6452 1 2025-10-02 11:28:58.437 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:42360 10 6452 1 2025-10-02 11:24:38.001 00:06:00.310 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 11:29:58.863 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:40574 10 6452 1 2025-10-02 11:30:59.280 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38546 10 6452 1 2025-10-02 11:31:40.206 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 11:31:40.277 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 11:31:40.204 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 11:31:40.209 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 11:31:40.287 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 11:31:59.681 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:39124 10 6452 1 2025-10-02 11:33:00.122 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45980 10 6452 1 2025-10-02 11:28:37.999 00:06:00.315 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 11:34:00.485 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54158 10 6452 1 2025-10-02 11:35:00.891 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35756 10 6452 1 2025-10-02 11:36:01.295 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33236 10 6452 1 2025-10-02 11:31:38.003 00:06:00.311 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 11:36:40.533 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 11:36:40.532 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 11:36:40.473 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 11:36:40.535 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 11:36:40.618 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 11:37:01.660 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56912 10 6452 1 2025-10-02 11:38:02.087 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54544 10 6452 1 2025-10-02 11:39:02.488 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38872 10 6452 1 2025-10-02 11:40:02.903 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55410 10 6452 1 2025-10-02 11:35:38.018 00:06:00.299 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 11:41:03.313 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35776 10 6452 1 2025-10-02 11:41:40.503 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 11:41:40.528 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 11:41:40.477 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 11:41:40.346 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 11:41:40.420 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 11:42:03.730 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34110 10 6452 1 2025-10-02 11:43:04.145 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39756 10 6452 1 2025-10-02 11:38:38.033 00:06:00.282 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 11:44:04.547 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49390 10 6452 1 2025-10-02 11:45:04.948 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38372 10 6452 1 2025-10-02 11:46:05.357 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35336 10 6452 1 2025-10-02 11:46:40.513 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 11:46:40.627 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 11:46:40.671 00:00:00.031 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 11:46:40.512 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 11:46:40.595 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 11:47:05.762 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:52178 10 6452 1 2025-10-02 11:42:38.024 00:06:00.297 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 11:48:06.131 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59820 10 6452 1 2025-10-02 11:49:06.534 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47310 10 6452 1 2025-10-02 11:50:06.935 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:38008 10 6452 1 2025-10-02 11:45:38.037 00:06:00.291 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 11:51:07.359 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43296 10 6452 1 2025-10-02 11:51:40.721 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 11:51:40.858 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 11:51:40.723 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 11:51:40.621 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 11:51:40.803 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 11:52:07.764 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:54536 10 6452 1 2025-10-02 11:53:08.180 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:32832 10 6452 1 2025-10-02 11:54:08.597 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47870 10 6452 1 2025-10-02 11:49:38.035 00:06:00.298 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 11:55:08.997 00:00:10.660 TCP 1.101.0.1:3000 -> 23.104.0.1:58292 10 6452 1 2025-10-02 11:56:09.700 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:58448 10 6452 1 2025-10-02 11:56:41.541 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 11:56:41.271 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 11:56:41.431 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 11:56:41.458 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 11:56:41.278 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 11:57:10.118 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60320 10 6452 1 2025-10-02 11:52:38.039 00:06:00.293 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 11:58:10.526 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:45856 12 10369 1 Summary: total flows: 138, total bytes: 432409, total packets: 1024, avg bps: 960, avg pps: 0, avg bpp: 422 Time window: 2025-10-02 10:58:37 - 2025-10-02 11:58:38 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0029s User: 0.0019s Wall: 0.0018s flows/second: 77433.3 Runtime: 0.0018s