Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-08 01:59:04.400 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38688 10 6452 1 2025-10-08 01:59:22.135 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 01:59:22.060 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 01:59:22.213 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 01:59:21.841 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 01:59:22.053 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:00:04.804 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:39578 10 6452 1 2025-10-08 02:01:05.219 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53316 10 6452 1 2025-10-08 02:02:05.628 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51452 10 6452 1 2025-10-08 01:58:40.935 00:05:00.343 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 02:03:06.045 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48774 10 6452 1 2025-10-08 01:59:40.937 00:05:00.337 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 02:04:06.455 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46990 10 6452 1 2025-10-08 02:04:22.243 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 02:04:22.243 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 02:04:22.147 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:04:22.243 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:04:22.327 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 02:05:06.866 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:45344 10 6452 1 2025-10-08 02:06:07.235 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41426 10 6452 1 2025-10-08 02:07:07.600 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60886 10 6452 1 2025-10-08 02:08:07.995 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:36848 10 6452 1 2025-10-08 02:04:40.936 00:05:00.343 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 02:09:08.403 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:55908 10 6452 1 2025-10-08 02:09:22.713 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 02:09:22.339 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 02:09:22.354 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 02:09:22.091 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:09:22.632 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:05:40.939 00:05:00.338 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 02:10:08.774 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:47398 10 6452 1 2025-10-08 02:11:09.192 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51220 10 6452 1 2025-10-08 02:12:09.597 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42648 10 6452 1 2025-10-08 02:13:10.001 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49850 10 6452 1 2025-10-08 02:14:22.437 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 02:14:22.396 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 02:14:22.446 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:14:10.406 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:51914 10 6452 1 2025-10-08 02:14:22.474 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:14:22.556 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 02:10:40.942 00:05:00.340 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 02:15:10.785 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54696 10 6452 1 2025-10-08 02:11:40.944 00:05:00.334 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 02:16:11.185 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37698 10 6452 1 2025-10-08 02:17:11.590 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47588 10 6452 1 2025-10-08 02:18:12.005 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:35414 10 6452 1 2025-10-08 02:19:22.714 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 02:19:22.630 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 02:19:22.625 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 02:19:12.364 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47238 10 6452 1 2025-10-08 02:19:22.460 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:19:22.632 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:20:12.774 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56202 10 6452 1 2025-10-08 02:16:40.943 00:05:00.339 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 02:21:13.146 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56646 10 6452 1 2025-10-08 02:17:40.946 00:05:00.334 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 02:22:13.555 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44124 10 6452 1 2025-10-08 02:23:13.964 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54742 10 6452 1 2025-10-08 02:24:22.646 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 02:24:22.565 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:24:22.661 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 02:24:22.661 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 02:24:22.599 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:24:14.325 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:51630 10 6452 1 2025-10-08 02:25:14.732 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40976 10 6452 1 2025-10-08 02:26:15.141 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:37744 10 6452 1 2025-10-08 02:22:40.946 00:05:00.338 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 02:27:15.505 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48216 10 6452 1 2025-10-08 02:23:40.959 00:05:00.322 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 02:28:15.911 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35508 10 6452 1 2025-10-08 02:29:22.928 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 02:29:22.632 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 02:29:22.532 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 02:29:22.707 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:29:22.845 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:29:16.314 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:32874 10 6452 1 2025-10-08 02:30:16.724 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55762 10 6452 1 2025-10-08 02:31:17.139 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49444 10 6452 1 2025-10-08 02:32:17.505 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43890 10 6452 1 2025-10-08 02:28:40.957 00:05:00.328 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 02:33:17.909 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:59912 10 6452 1 2025-10-08 02:29:40.959 00:05:00.323 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 02:34:22.946 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 02:34:22.881 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 02:34:22.597 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:34:22.798 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:34:22.880 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 02:34:18.273 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56782 10 6452 1 2025-10-08 02:35:18.681 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33480 10 6452 1 2025-10-08 02:36:19.114 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:46236 10 6452 1 2025-10-08 02:37:19.522 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54850 10 6452 1 2025-10-08 02:38:19.930 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:60976 10 6452 1 2025-10-08 02:34:40.957 00:05:00.328 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 02:39:23.711 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 02:39:23.629 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:39:23.405 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 02:39:23.405 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 02:39:23.428 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:39:20.361 00:00:10.861 TCP 1.101.0.1:3000 -> 23.104.0.1:52050 12 10375 1 2025-10-08 02:35:40.960 00:05:00.323 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 02:40:21.271 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:46246 10 6452 1 2025-10-08 02:41:21.633 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60128 10 6452 1 2025-10-08 02:42:22.049 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42112 10 6452 1 2025-10-08 02:43:22.414 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47448 10 6452 1 2025-10-08 02:44:22.923 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 02:44:22.804 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 02:44:22.869 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:44:22.830 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:44:22.913 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 02:44:22.818 00:00:10.413 TCP 1.101.0.1:3000 -> 23.104.0.1:34286 11 6504 1 2025-10-08 02:40:40.959 00:05:00.327 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 02:45:23.268 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58026 10 6452 1 2025-10-08 02:41:40.962 00:05:00.323 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 02:46:23.671 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37160 10 6452 1 2025-10-08 02:47:24.098 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33236 10 6452 1 2025-10-08 02:48:24.504 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58592 10 6452 1 2025-10-08 02:49:23.098 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 02:49:22.902 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 02:49:22.916 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:49:23.229 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:49:23.311 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 02:49:24.912 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42480 10 6452 1 2025-10-08 02:50:25.320 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39284 10 6452 1 2025-10-08 02:46:40.961 00:05:00.328 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 02:51:25.724 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40160 10 6452 1 2025-10-08 02:47:40.963 00:05:00.323 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 02:52:26.132 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:34164 10 6452 1 2025-10-08 02:53:26.506 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35140 10 6452 1 2025-10-08 02:54:23.351 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 02:54:23.200 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 02:54:23.307 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 02:54:23.201 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:54:23.270 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:54:26.907 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:34596 10 6452 1 2025-10-08 02:55:27.329 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39826 10 6452 1 2025-10-08 02:56:27.731 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34062 10 6452 1 2025-10-08 02:52:40.963 00:05:00.327 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 02:57:28.105 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47386 10 6452 1 2025-10-08 02:53:40.965 00:05:00.322 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 02:58:28.506 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45122 10 6452 1 Summary: total flows: 140, total bytes: 420975, total packets: 1023, avg bps: 935, avg pps: 0, avg bpp: 411 Time window: 2025-10-08 01:58:40 - 2025-10-08 02:58:41 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0044s User: 0.0009s Wall: 0.0021s flows/second: 66156.2 Runtime: 0.0021s