Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-03 12:58:42.366 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:37600 12 10369 1 2025-10-03 12:54:38.557 00:06:00.315 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 12:59:42.845 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:43364 10 6452 1 2025-10-03 13:00:43.268 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45138 10 6452 1 2025-10-03 13:01:43.668 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50264 10 6452 1 2025-10-03 13:02:11.476 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 13:02:11.215 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 13:02:10.928 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 13:02:11.350 00:00:00.031 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 13:02:11.432 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 12:57:38.559 00:06:00.309 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 13:02:44.103 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:55216 10 6452 1 2025-10-03 13:03:44.472 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48356 10 6452 1 2025-10-03 13:04:44.870 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51318 10 6452 1 2025-10-03 13:05:45.282 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34742 10 6452 1 2025-10-03 13:01:38.559 00:06:00.314 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 13:06:45.689 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:36040 10 6452 1 2025-10-03 13:07:10.896 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 13:07:10.897 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 13:07:10.936 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 13:07:10.900 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 13:07:10.982 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 13:07:46.131 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41628 10 6452 1 2025-10-03 13:08:46.534 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40146 10 6452 1 2025-10-03 13:04:38.563 00:06:00.308 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 13:09:46.969 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:38370 10 6452 1 2025-10-03 13:10:47.387 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41256 10 6452 1 2025-10-03 13:11:47.752 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35860 10 6452 1 2025-10-03 13:12:11.378 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 13:12:11.292 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 13:12:11.367 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 13:12:11.328 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 13:12:11.295 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 13:12:48.158 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56146 10 6452 1 2025-10-03 13:08:38.560 00:06:00.318 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 13:13:48.554 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46620 10 6452 1 2025-10-03 13:14:48.958 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:45466 10 6452 1 2025-10-03 13:15:49.351 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33224 10 6452 1 2025-10-03 13:11:38.562 00:06:00.310 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 13:16:49.759 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:35226 10 6452 1 2025-10-03 13:17:11.292 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 13:17:11.368 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 13:17:11.232 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 13:17:11.134 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 13:17:11.218 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 13:17:50.189 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53620 10 6452 1 2025-10-03 13:18:50.550 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52846 10 6452 1 2025-10-03 13:19:50.951 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:38754 10 6452 1 2025-10-03 13:15:38.561 00:06:00.315 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 13:20:51.367 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40002 10 6452 1 2025-10-03 13:21:51.765 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:60524 10 6452 1 2025-10-03 13:22:11.939 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 13:22:12.164 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 13:22:12.004 00:00:00.037 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 13:22:12.117 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 13:22:12.246 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 13:22:52.135 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39390 10 6452 1 2025-10-03 13:18:38.565 00:06:00.314 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 13:23:52.502 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:36716 10 6452 1 2025-10-03 13:24:52.862 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52322 10 6452 1 2025-10-03 13:25:53.272 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:52456 10 6452 1 2025-10-03 13:26:53.640 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:32984 10 6452 1 2025-10-03 13:27:11.572 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 13:27:11.683 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 13:27:11.417 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 13:27:11.681 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 13:27:11.764 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 13:22:38.563 00:06:00.319 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 13:27:54.058 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47282 10 6452 1 2025-10-03 13:28:54.460 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39770 10 6452 1 2025-10-03 13:29:54.861 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:54960 10 6452 1 2025-10-03 13:25:38.565 00:06:00.316 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 13:30:55.275 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37004 10 6452 1 2025-10-03 13:31:55.683 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:40926 10 6452 1 2025-10-03 13:32:11.738 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 13:32:11.805 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 13:32:11.680 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 13:32:11.654 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 13:32:11.736 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 13:32:56.111 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46914 10 6452 1 2025-10-03 13:33:56.516 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:33382 10 6452 1 2025-10-03 13:29:38.563 00:06:00.322 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 13:34:56.880 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51578 10 6452 1 2025-10-03 13:35:57.279 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:59712 10 6452 1 2025-10-03 13:36:57.691 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54806 10 6452 1 2025-10-03 13:37:11.733 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 13:37:11.749 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 13:37:11.857 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 13:37:11.742 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 13:37:11.939 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 13:32:38.569 00:06:00.314 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 13:37:58.116 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:45502 10 6452 1 2025-10-03 13:38:58.545 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60884 10 6452 1 2025-10-03 13:39:58.950 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:37522 10 6452 1 2025-10-03 13:40:59.361 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50488 10 6452 1 2025-10-03 13:36:38.567 00:06:00.319 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 13:42:12.145 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 13:42:11.937 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 13:42:11.879 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 13:42:12.061 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 13:41:59.758 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:53024 10 6452 1 2025-10-03 13:42:12.202 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 13:43:00.127 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34816 10 6452 1 2025-10-03 13:44:00.528 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47544 10 6452 1 2025-10-03 13:39:38.570 00:06:00.317 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 13:45:00.936 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:44774 10 6452 1 2025-10-03 13:46:01.314 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42896 10 6452 1 2025-10-03 13:47:11.941 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 13:47:11.875 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 13:47:11.902 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 13:47:11.797 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 13:47:11.859 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 13:47:01.716 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33354 10 6452 1 2025-10-03 13:48:02.121 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:46572 10 6452 1 2025-10-03 13:43:38.569 00:06:00.320 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 13:49:02.481 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54402 10 6452 1 2025-10-03 13:50:02.882 00:00:10.985 TCP 1.101.0.1:3000 -> 23.104.0.1:34686 10 6452 1 2025-10-03 13:51:03.910 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55728 10 6452 1 2025-10-03 13:46:38.571 00:06:00.335 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 13:52:11.982 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 13:52:12.193 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 13:52:12.007 00:00:00.035 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 13:52:04.317 00:00:10.408 TCP 1.101.0.1:3000 -> 23.104.0.1:45408 10 6452 1 2025-10-03 13:52:12.154 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 13:52:12.237 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 13:53:04.761 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:54322 10 6452 1 2025-10-03 13:54:05.178 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46140 10 6452 1 2025-10-03 13:55:05.578 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:54344 11 6504 1 2025-10-03 13:50:38.570 00:06:00.339 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 13:56:05.996 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:42746 11 6504 1 2025-10-03 13:57:12.230 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 13:57:12.174 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 13:57:11.915 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 13:57:12.174 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 13:57:12.257 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 13:57:06.452 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:53620 10 6452 1 2025-10-03 13:58:06.819 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54922 10 6452 1 2025-10-03 13:53:38.572 00:06:00.335 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 Summary: total flows: 138, total bytes: 421759, total packets: 1036, avg bps: 865, avg pps: 0, avg bpp: 407 Time window: 2025-10-03 12:54:38 - 2025-10-03 13:59:38 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0039s User: 0.0016s Wall: 0.0097s flows/second: 14209.3 Runtime: 0.0097s