Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-02 17:58:48.352 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51074 10 6452 1 2025-10-02 17:59:48.760 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47326 10 6452 1 2025-10-02 18:00:49.174 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56528 10 6452 1 2025-10-02 17:56:38.154 00:06:00.284 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 18:01:48.590 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 18:01:48.367 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 18:01:48.455 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 18:01:48.275 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 18:01:48.508 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 18:01:49.577 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:57534 10 6452 1 2025-10-02 18:02:49.991 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47960 10 6452 1 2025-10-02 18:03:50.397 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:39644 10 6452 1 2025-10-02 18:04:50.823 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52910 10 6452 1 2025-10-02 18:00:38.155 00:06:00.289 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 18:05:51.186 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45102 10 6452 1 2025-10-02 18:06:48.092 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 18:06:48.163 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 18:06:48.259 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 18:06:48.086 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 18:06:48.168 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 18:06:51.594 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53546 10 6452 1 2025-10-02 18:07:51.996 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:38880 10 6452 1 2025-10-02 18:03:38.155 00:06:00.286 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 18:08:52.361 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36808 10 6452 1 2025-10-02 18:09:52.760 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:38064 10 6452 1 2025-10-02 18:10:53.137 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43314 10 6452 1 2025-10-02 18:11:48.358 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 18:11:48.213 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 18:11:48.355 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 18:11:48.334 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 18:11:48.440 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 18:11:53.540 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55206 10 6452 1 2025-10-02 18:07:38.154 00:06:00.290 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 18:12:53.904 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34326 10 6452 1 2025-10-02 18:13:54.313 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53244 10 6452 1 2025-10-02 18:14:54.714 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55242 10 6452 1 2025-10-02 18:10:38.158 00:06:00.284 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 18:15:55.119 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:49104 10 6452 1 2025-10-02 18:16:48.434 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 18:16:48.434 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 18:16:48.353 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 18:16:48.287 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 18:16:48.352 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 18:16:55.482 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56328 10 6452 1 2025-10-02 18:17:55.881 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37666 10 6452 1 2025-10-02 18:18:56.287 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54902 10 6452 1 2025-10-02 18:14:38.157 00:06:00.289 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 18:19:56.714 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36690 10 6452 1 2025-10-02 18:20:57.122 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42832 10 6452 1 2025-10-02 18:21:48.564 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 18:21:48.422 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 18:21:48.458 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 18:21:48.520 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 18:21:48.604 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 18:21:57.528 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34578 10 6452 1 2025-10-02 18:17:38.159 00:06:00.285 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 18:22:57.930 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:39314 10 6452 1 2025-10-02 18:23:58.359 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34530 10 6452 1 2025-10-02 18:24:58.723 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46492 10 6452 1 2025-10-02 18:25:59.133 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58800 10 6452 1 2025-10-02 18:21:38.163 00:06:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 18:26:48.487 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 18:26:48.485 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 18:26:48.524 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 18:26:48.584 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 18:26:48.669 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 18:26:59.540 00:00:14.740 TCP 1.101.0.1:3000 -> 23.104.0.1:39078 10 6452 1 2025-10-02 18:28:04.319 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56608 10 6452 1 2025-10-02 18:29:04.725 00:00:11.057 TCP 1.101.0.1:3000 -> 23.104.0.1:35698 10 6452 1 2025-10-02 18:24:38.166 00:06:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 18:30:05.817 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57846 10 6452 1 2025-10-02 18:31:06.220 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:44962 10 6452 1 2025-10-02 18:31:49.063 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 18:31:48.974 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 18:31:48.980 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 18:31:48.381 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 18:31:48.980 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 18:32:06.584 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34712 10 6452 1 2025-10-02 18:33:06.987 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53846 10 6452 1 2025-10-02 18:28:38.165 00:06:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 18:34:07.391 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37272 10 6452 1 2025-10-02 18:35:07.797 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:57392 10 6452 1 2025-10-02 18:36:08.204 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38970 10 6452 1 2025-10-02 18:31:38.170 00:06:00.278 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 18:36:48.796 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 18:36:48.805 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 18:36:48.848 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 18:36:48.927 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 18:36:49.011 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 18:37:08.613 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:56868 10 6452 1 2025-10-02 18:38:09.029 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:46560 12 10375 1 2025-10-02 18:39:09.508 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44888 10 6452 1 2025-10-02 18:40:09.910 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41768 10 6452 1 2025-10-02 18:35:38.167 00:06:00.283 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 18:41:10.313 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56178 10 6452 1 2025-10-02 18:41:48.964 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 18:41:48.881 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 18:41:48.880 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 18:41:48.879 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 18:41:48.746 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 18:42:10.715 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42128 10 6452 1 2025-10-02 18:43:11.114 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39942 10 6452 1 2025-10-02 18:38:38.170 00:06:00.278 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 18:44:11.519 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57174 10 6452 1 2025-10-02 18:45:11.921 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:53758 10 6452 1 2025-10-02 18:46:12.336 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:53600 10 6452 1 2025-10-02 18:46:49.032 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 18:46:48.944 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 18:46:48.945 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 18:46:49.076 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 18:46:48.948 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 18:47:12.759 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:59130 10 6452 1 2025-10-02 18:42:38.169 00:06:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 18:48:13.145 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:60794 10 6452 1 2025-10-02 18:49:13.529 00:00:11.262 TCP 1.101.0.1:3000 -> 23.104.0.1:39178 10 6452 1 2025-10-02 18:50:14.835 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:57392 10 6452 1 2025-10-02 18:45:38.171 00:06:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 18:51:15.254 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45108 10 6452 1 2025-10-02 18:51:49.474 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 18:51:49.234 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 18:51:49.322 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 18:51:49.330 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 18:51:49.404 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 18:52:15.657 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39410 10 6452 1 2025-10-02 18:53:16.087 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:43102 10 6452 1 2025-10-02 18:54:16.503 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49046 10 6452 1 2025-10-02 18:49:38.169 00:06:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 18:55:16.916 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47654 10 6452 1 2025-10-02 18:56:17.320 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:33490 10 6452 1 2025-10-02 18:56:49.337 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 18:56:49.229 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 18:56:48.908 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 18:56:49.218 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 18:56:49.300 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 18:57:17.726 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:43680 10 6452 1 2025-10-02 18:52:38.172 00:06:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 18:58:18.112 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60222 10 6452 1 Summary: total flows: 137, total bytes: 420800, total packets: 1020, avg bps: 904, avg pps: 0, avg bpp: 412 Time window: 2025-10-02 17:56:38 - 2025-10-02 18:58:38 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0030s User: 0.0020s Wall: 0.0030s flows/second: 45896.1 Runtime: 0.0030s