Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-03 22:59:01.155 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34524 10 6452 1 2025-10-03 22:55:38.768 00:05:00.370 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 23:00:01.559 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53714 10 6452 1 2025-10-03 23:01:01.965 00:00:11.000 TCP 1.101.0.1:3000 -> 23.104.0.1:35172 10 6452 1 2025-10-03 22:57:38.766 00:05:00.377 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 23:02:03.006 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38354 10 6452 1 2025-10-03 23:02:23.138 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 23:02:23.350 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 23:02:23.056 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 23:02:22.862 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 23:02:23.056 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 23:03:03.406 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43384 10 6452 1 2025-10-03 23:04:03.769 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47756 10 6452 1 2025-10-03 23:05:04.171 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51318 10 6452 1 2025-10-03 23:01:38.768 00:05:00.372 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 23:06:04.572 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33488 10 6452 1 2025-10-03 23:07:04.995 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33994 10 6452 1 2025-10-03 23:07:23.218 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 23:07:23.212 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 23:07:23.235 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 23:07:23.332 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 23:07:23.415 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 23:03:38.766 00:05:00.376 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 23:08:05.361 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:59514 10 6452 1 2025-10-03 23:09:05.773 00:00:10.427 TCP 1.101.0.1:3000 -> 23.104.0.1:34042 11 6504 1 2025-10-03 23:10:06.242 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:45992 10 6452 1 2025-10-03 23:11:06.614 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59694 10 6452 1 2025-10-03 23:07:38.770 00:05:00.374 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 23:12:07.020 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53778 10 6452 1 2025-10-03 23:12:23.577 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 23:12:23.347 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 23:12:23.502 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 23:12:23.329 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 23:12:23.495 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 23:13:07.427 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49408 10 6452 1 2025-10-03 23:09:38.769 00:05:00.377 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 23:14:07.795 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44456 10 6452 1 2025-10-03 23:15:08.202 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37818 10 6452 1 2025-10-03 23:16:08.604 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40934 10 6452 1 2025-10-03 23:17:23.571 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 23:17:09.013 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:35630 10 6452 1 2025-10-03 23:17:23.594 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 23:17:23.581 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 23:17:23.593 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 23:17:23.489 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 23:13:38.775 00:05:00.370 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 23:18:09.378 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58910 10 6452 1 2025-10-03 23:19:09.782 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:59784 10 6452 1 2025-10-03 23:15:38.772 00:05:00.375 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 23:20:10.150 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:59572 10 6452 1 2025-10-03 23:21:10.515 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:41128 10 6452 1 2025-10-03 23:22:23.769 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 23:22:23.856 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 23:22:23.776 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 23:22:10.876 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56164 10 6452 1 2025-10-03 23:22:23.942 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 23:22:24.036 00:00:00.016 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 23:23:11.273 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41016 10 6452 1 2025-10-03 23:19:38.776 00:05:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 23:24:11.673 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46664 10 6452 1 2025-10-03 23:25:12.097 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:54982 11 6504 1 2025-10-03 23:21:38.772 00:05:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 23:26:12.551 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40572 10 6452 1 2025-10-03 23:27:23.699 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 23:27:23.872 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 23:27:23.607 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 23:27:23.366 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 23:27:23.616 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 23:27:12.951 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:46548 10 6452 1 2025-10-03 23:28:13.368 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53186 10 6452 1 2025-10-03 23:29:13.770 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:35414 10 6452 1 2025-10-03 23:25:38.778 00:05:00.382 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 23:30:14.143 00:00:10.669 TCP 1.101.0.1:3000 -> 23.104.0.1:33920 10 6452 1 2025-10-03 23:31:14.868 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:35766 10 6452 1 2025-10-03 23:27:38.777 00:05:00.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 23:32:23.875 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 23:32:23.829 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 23:32:23.651 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 23:32:23.746 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 23:32:23.828 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 23:32:15.237 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36634 10 6452 1 2025-10-03 23:33:15.641 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:47222 10 6452 1 2025-10-03 23:34:16.011 00:00:10.533 TCP 1.101.0.1:3000 -> 23.104.0.1:40124 10 6452 1 2025-10-03 23:35:16.584 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37994 10 6452 1 2025-10-03 23:31:38.778 00:05:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 23:36:16.946 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:56642 10 6452 1 2025-10-03 23:37:23.688 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 23:37:23.720 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 23:37:23.604 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 23:37:23.642 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 23:37:23.606 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 23:37:17.316 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55970 10 6452 1 2025-10-03 23:33:38.778 00:05:00.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 23:38:17.723 00:00:11.126 TCP 1.101.0.1:3000 -> 23.104.0.1:58300 10 6452 1 2025-10-03 23:39:18.888 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:35212 10 6452 1 2025-10-03 23:40:19.304 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:53488 10 6452 1 2025-10-03 23:41:19.720 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:45806 10 6452 1 2025-10-03 23:37:38.779 00:05:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 23:42:24.157 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 23:42:24.083 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 23:42:23.985 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 23:42:24.075 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 23:42:23.958 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 23:42:20.132 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52446 10 6452 1 2025-10-03 23:43:20.490 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:37580 12 10375 1 2025-10-03 23:39:38.778 00:05:00.391 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 23:44:20.979 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58410 10 6452 1 2025-10-03 23:45:21.388 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:49196 10 6452 1 2025-10-03 23:46:21.747 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36234 10 6452 1 2025-10-03 23:47:23.922 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 23:47:24.008 00:00:00.050 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 23:47:24.057 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 23:47:23.974 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 23:47:23.840 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 23:47:22.149 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50966 10 6452 1 2025-10-03 23:43:38.782 00:05:00.385 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 23:48:22.553 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54848 10 6452 1 2025-10-03 23:49:22.953 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42718 10 6452 1 2025-10-03 23:45:38.780 00:05:00.391 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 23:50:23.362 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39726 10 6452 1 2025-10-03 23:51:23.764 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59460 10 6452 1 2025-10-03 23:52:23.544 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 23:52:23.391 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 23:52:23.547 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 23:52:23.547 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 23:52:23.630 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 23:52:24.178 00:00:10.722 TCP 1.101.0.1:3000 -> 23.104.0.1:60770 10 6452 1 2025-10-03 23:49:38.783 00:05:00.385 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 23:53:24.985 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:46200 10 6452 1 2025-10-03 23:54:25.356 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:37866 10 6452 1 2025-10-03 23:55:25.716 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44864 10 6452 1 2025-10-03 23:51:38.781 00:05:00.391 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 23:56:26.118 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55064 10 6452 1 2025-10-03 23:57:24.209 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 23:57:24.129 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 23:57:24.222 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 23:57:23.960 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 23:57:24.126 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 23:57:26.518 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45154 10 6452 1 2025-10-03 23:58:26.891 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:40636 12 6556 1 Summary: total flows: 140, total bytes: 421131, total packets: 1026, avg bps: 891, avg pps: 0, avg bpp: 410 Time window: 2025-10-03 22:55:38 - 2025-10-03 23:58:37 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0055s User: 0.0000s Wall: 0.0018s flows/second: 79373.1 Runtime: 0.0018s