Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-03 14:59:32.589 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49526 10 6452 1 2025-10-03 15:00:32.995 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56876 10 6452 1 2025-10-03 14:56:38.597 00:06:00.332 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 15:01:33.402 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56920 10 6452 1 2025-10-03 15:02:13.581 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 15:02:13.503 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 15:02:13.509 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 15:02:13.413 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:02:13.498 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:02:33.805 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46536 12 6556 1 2025-10-03 15:03:34.209 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42134 10 6452 1 2025-10-03 15:04:34.616 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:36850 10 6452 1 2025-10-03 15:00:38.597 00:06:00.340 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 15:05:34.975 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60218 10 6452 1 2025-10-03 15:06:35.380 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41488 10 6452 1 2025-10-03 15:07:13.754 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 15:07:13.582 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 15:07:13.664 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 15:07:13.477 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:07:13.671 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:07:35.787 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:56700 10 6452 1 2025-10-03 15:03:38.607 00:06:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 15:08:36.149 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:39604 10 6452 1 2025-10-03 15:09:36.507 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45526 10 6452 1 2025-10-03 15:10:36.915 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45968 10 6452 1 2025-10-03 15:11:37.314 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58822 10 6452 1 2025-10-03 15:12:13.771 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 15:12:13.686 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 15:12:13.769 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:12:13.837 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:12:13.920 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 15:07:38.595 00:06:00.341 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 15:12:37.714 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:44348 10 6452 1 2025-10-03 15:13:38.129 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59314 10 6452 1 2025-10-03 15:14:38.533 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36292 10 6452 1 2025-10-03 15:10:38.600 00:06:00.335 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 15:15:38.938 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:50956 10 6452 1 2025-10-03 15:16:39.360 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58804 10 6452 1 2025-10-03 15:17:13.865 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 15:17:13.811 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 15:17:13.830 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:17:13.743 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:17:13.828 00:00:00.030 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 15:17:39.762 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33000 10 6452 1 2025-10-03 15:18:40.170 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59798 10 6452 1 2025-10-03 15:14:38.599 00:06:00.339 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 15:19:40.575 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60102 10 6452 1 2025-10-03 15:20:40.980 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36830 10 6452 1 2025-10-03 15:21:41.398 00:00:11.180 TCP 1.101.0.1:3000 -> 23.104.0.1:38898 10 6452 1 2025-10-03 15:22:13.956 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 15:22:13.787 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 15:22:13.961 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:22:13.960 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:22:14.042 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 15:17:38.603 00:06:00.334 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 15:22:42.627 00:00:10.406 TCP 1.101.0.1:3000 -> 23.104.0.1:49154 10 6452 1 2025-10-03 15:23:43.100 00:00:10.908 TCP 1.101.0.1:3000 -> 23.104.0.1:38840 10 6452 1 2025-10-03 15:24:44.047 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46880 10 6452 1 2025-10-03 15:25:44.449 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39826 10 6452 1 2025-10-03 15:21:38.603 00:06:00.338 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 15:26:44.857 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:50458 10 6452 1 2025-10-03 15:27:14.708 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 15:27:14.514 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 15:27:14.533 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:27:14.539 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:27:14.623 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 15:27:45.268 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58532 10 6452 1 2025-10-03 15:28:45.673 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:54706 10 6452 1 2025-10-03 15:24:38.606 00:06:00.332 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 15:29:46.033 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55474 10 6452 1 2025-10-03 15:30:46.438 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40324 10 6452 1 2025-10-03 15:31:46.844 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:44888 10 6452 1 2025-10-03 15:32:13.920 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 15:32:13.917 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 15:32:13.939 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:32:13.926 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:32:14.009 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 15:32:47.232 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53372 10 6452 1 2025-10-03 15:28:38.604 00:06:00.337 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 15:33:47.639 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59078 10 6452 1 2025-10-03 15:34:48.075 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33526 10 6452 1 2025-10-03 15:35:48.477 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48422 10 6452 1 2025-10-03 15:31:38.608 00:06:00.333 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 15:36:48.875 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59280 10 6452 1 2025-10-03 15:37:14.214 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:37:14.270 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 15:37:14.212 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 15:37:14.078 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:37:14.298 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 15:37:49.280 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52914 10 6452 1 2025-10-03 15:38:49.682 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58250 10 6452 1 2025-10-03 15:39:50.039 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60312 10 6452 1 2025-10-03 15:35:38.605 00:06:00.339 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 15:40:50.445 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37872 10 6452 1 2025-10-03 15:41:50.807 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46948 10 6452 1 2025-10-03 15:42:14.516 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 15:42:14.430 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 15:42:14.276 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 15:42:14.042 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:42:14.433 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:42:51.209 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34224 10 6452 1 2025-10-03 15:38:38.608 00:06:00.333 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 15:43:51.613 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:40872 10 6452 1 2025-10-03 15:44:51.994 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36912 10 6452 1 2025-10-03 15:45:52.398 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49240 10 6452 1 2025-10-03 15:46:52.797 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:52244 10 6452 1 2025-10-03 15:47:14.388 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 15:47:14.142 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:47:14.306 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:47:14.222 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 15:47:14.296 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 15:42:38.606 00:06:00.340 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 15:47:53.176 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45796 10 6452 1 2025-10-03 15:48:53.581 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49938 10 6452 1 2025-10-03 15:49:53.988 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:54028 10 6452 1 2025-10-03 15:45:38.608 00:06:00.339 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 15:50:54.402 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36880 10 6452 1 2025-10-03 15:51:54.820 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54790 10 6452 1 2025-10-03 15:52:14.640 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 15:52:14.441 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 15:52:14.285 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:52:14.704 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:52:14.786 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 15:52:55.224 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:39496 10 6452 1 2025-10-03 15:53:55.589 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46846 10 6452 1 2025-10-03 15:49:38.609 00:06:00.345 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 15:54:55.996 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52776 10 6452 1 2025-10-03 15:55:56.403 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44096 10 6452 1 2025-10-03 15:56:56.806 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57006 10 6452 1 2025-10-03 15:57:14.769 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 15:57:14.688 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:57:14.576 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 15:57:14.638 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 15:57:14.621 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 15:52:38.611 00:06:00.340 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 15:57:57.218 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:38316 13 13955 1 Summary: total flows: 136, total bytes: 418032, total packets: 1013, avg bps: 898, avg pps: 0, avg bpp: 412 Time window: 2025-10-03 14:56:38 - 2025-10-03 15:58:38 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0029s User: 0.0010s Wall: 0.0064s flows/second: 21091.7 Runtime: 0.0065s