Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-02 13:59:03.179 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:52176 10 6452 1 2025-10-02 14:00:03.593 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39964 10 6452 1 2025-10-02 13:55:38.077 00:06:00.297 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 14:01:03.995 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53776 10 6452 1 2025-10-02 14:01:43.392 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 14:01:43.354 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 14:01:43.301 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 14:01:43.390 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 14:01:43.473 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 14:02:04.396 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50940 10 6452 1 2025-10-02 14:03:04.802 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42798 10 6452 1 2025-10-02 13:58:38.080 00:06:00.292 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 14:04:05.206 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51530 10 6452 1 2025-10-02 14:05:05.610 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40034 10 6452 1 2025-10-02 14:06:06.027 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:35330 10 6452 1 2025-10-02 14:06:43.198 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 14:06:43.301 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 14:06:43.337 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 14:06:43.412 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 14:06:43.496 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 14:07:06.397 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:58644 10 6452 1 2025-10-02 14:02:38.077 00:06:00.297 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 14:08:06.837 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:47844 10 6452 1 2025-10-02 14:09:07.226 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42236 10 6452 1 2025-10-02 14:10:07.632 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35612 10 6452 1 2025-10-02 14:05:38.082 00:06:00.291 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 14:11:08.034 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37544 10 6452 1 2025-10-02 14:11:44.051 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 14:11:43.748 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 14:11:43.788 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 14:11:44.013 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 14:11:43.871 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 14:12:08.442 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50046 10 6452 1 2025-10-02 14:13:08.837 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:58044 12 10375 1 2025-10-02 14:14:09.294 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49022 10 6452 1 2025-10-02 14:09:38.079 00:06:00.297 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 14:15:09.698 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41800 10 6452 1 2025-10-02 14:16:10.068 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34620 12 6556 1 2025-10-02 14:16:43.660 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 14:16:43.578 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 14:16:43.422 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 14:16:43.251 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 14:16:43.577 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 14:17:10.480 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56452 10 6452 1 2025-10-02 14:12:38.082 00:06:00.292 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 14:18:10.880 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53664 10 6452 1 2025-10-02 14:19:11.244 00:00:10.577 TCP 1.101.0.1:3000 -> 23.104.0.1:40294 10 6452 1 2025-10-02 14:20:11.858 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58990 10 6452 1 2025-10-02 14:21:12.268 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55720 10 6452 1 2025-10-02 14:16:38.081 00:06:00.298 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 14:21:43.885 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 14:21:43.652 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 14:21:43.805 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 14:21:43.683 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 14:21:43.802 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 14:22:12.634 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38230 10 6452 1 2025-10-02 14:23:13.045 00:00:10.432 TCP 1.101.0.1:3000 -> 23.104.0.1:38494 12 10369 1 2025-10-02 14:24:13.516 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43698 10 6452 1 2025-10-02 14:19:38.084 00:06:00.294 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 14:25:13.917 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53702 10 6452 1 2025-10-02 14:26:14.317 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42290 10 6452 1 2025-10-02 14:26:43.654 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 14:26:43.817 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 14:26:43.556 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 14:26:43.655 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 14:26:43.736 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 14:27:14.726 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58834 10 6452 1 2025-10-02 14:28:15.133 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52700 10 6452 1 2025-10-02 14:23:38.082 00:06:00.301 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 14:29:15.540 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60346 10 6452 1 2025-10-02 14:30:15.942 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:48308 10 6452 1 2025-10-02 14:31:16.368 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:32768 10 6452 1 2025-10-02 14:26:38.085 00:06:00.296 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 14:31:43.715 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 14:31:43.824 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 14:31:43.658 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 14:31:43.903 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 14:31:43.987 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 14:32:16.796 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38946 10 6452 1 2025-10-02 14:33:17.209 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:36474 10 6452 1 2025-10-02 14:34:17.585 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:59684 10 6452 1 2025-10-02 14:35:17.955 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34022 10 6452 1 2025-10-02 14:30:38.083 00:06:00.302 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 14:36:18.360 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:59888 10 6452 1 2025-10-02 14:36:43.957 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 14:36:44.117 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 14:36:44.128 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 14:36:43.945 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 14:36:44.029 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 14:37:18.722 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60524 10 6452 1 2025-10-02 14:38:19.121 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:51516 10 6452 1 2025-10-02 14:33:38.088 00:06:00.295 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 14:39:19.523 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57284 10 6452 1 2025-10-02 14:40:19.885 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:50356 10 6452 1 2025-10-02 14:41:20.311 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51696 10 6452 1 2025-10-02 14:41:44.160 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 14:41:44.153 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 14:41:44.166 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 14:41:44.155 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 14:41:44.239 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 14:42:20.711 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:48338 10 6452 1 2025-10-02 14:37:38.085 00:06:00.300 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 14:43:21.125 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34330 10 6452 1 2025-10-02 14:44:21.526 00:00:10.407 TCP 1.101.0.1:3000 -> 23.104.0.1:46128 10 6452 1 2025-10-02 14:45:21.973 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59168 10 6452 1 2025-10-02 14:40:38.088 00:06:00.297 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 14:46:22.330 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47108 12 6556 1 2025-10-02 14:46:44.105 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 14:46:44.197 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 14:46:44.218 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 14:46:44.255 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 14:46:44.338 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 14:47:22.738 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60872 10 6452 1 2025-10-02 14:48:23.145 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44212 10 6452 1 2025-10-02 14:44:38.087 00:06:00.301 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 14:49:23.544 00:00:17.818 TCP 1.101.0.1:3000 -> 23.104.0.1:35246 10 6452 1 2025-10-02 14:50:31.412 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55504 10 6452 1 2025-10-02 14:51:44.673 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 14:51:44.472 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 14:51:44.403 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 14:51:31.820 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53194 10 6452 1 2025-10-02 14:51:44.700 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 14:51:44.783 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 14:47:38.091 00:06:00.295 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 14:52:32.223 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39000 10 6452 1 2025-10-02 14:53:32.626 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35244 10 6452 1 2025-10-02 14:54:33.029 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35184 10 6452 1 2025-10-02 14:55:33.432 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:51238 10 6452 1 2025-10-02 14:51:38.090 00:06:00.301 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 14:56:44.633 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 14:56:44.703 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 14:56:44.579 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 14:56:33.840 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:40552 10 6452 1 2025-10-02 14:56:44.631 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 14:56:44.713 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 14:57:34.223 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45368 10 6452 1 2025-10-02 14:58:34.621 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40010 10 6452 1 Summary: total flows: 137, total bytes: 424925, total packets: 1026, avg bps: 897, avg pps: 0, avg bpp: 414 Time window: 2025-10-02 13:55:38 - 2025-10-02 14:58:44 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0027s User: 0.0027s Wall: 0.0020s flows/second: 68882.7 Runtime: 0.0020s