Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-08 05:58:43.754 00:00:10.746 TCP 1.101.0.1:3000 -> 23.104.0.1:33016 10 6452 1 2025-10-08 05:59:26.862 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 05:59:26.943 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 05:59:27.013 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 05:59:27.132 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 05:59:27.215 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 05:59:44.543 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37168 10 6452 1 2025-10-08 05:55:41.065 00:06:00.288 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 06:00:44.944 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:40916 10 6452 1 2025-10-08 06:01:45.356 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:34226 10 6452 1 2025-10-08 06:02:45.770 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:42984 10 6452 1 2025-10-08 05:58:41.068 00:06:00.283 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 06:03:46.191 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:48998 10 6452 1 2025-10-08 06:04:27.258 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 06:04:26.900 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 06:04:26.606 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 06:04:26.892 00:00:00.020 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 06:04:26.975 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 06:04:46.587 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43570 10 6452 1 2025-10-08 06:05:46.995 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59006 10 6452 1 2025-10-08 06:06:47.405 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40430 10 6452 1 2025-10-08 06:02:41.066 00:06:00.289 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 06:07:47.808 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:37792 10 6452 1 2025-10-08 06:08:48.214 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53158 10 6452 1 2025-10-08 06:09:27.368 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 06:09:27.367 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 06:09:27.283 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 06:09:27.066 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 06:09:27.285 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 06:09:48.613 00:00:11.060 TCP 1.101.0.1:3000 -> 23.104.0.1:55720 10 6452 1 2025-10-08 06:05:41.069 00:06:00.284 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 06:10:49.707 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36134 10 6452 1 2025-10-08 06:11:50.114 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39492 10 6452 1 2025-10-08 06:12:50.520 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59758 10 6452 1 2025-10-08 06:13:50.924 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:38420 10 6452 1 2025-10-08 06:14:27.123 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 06:14:27.182 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 06:14:27.211 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 06:14:27.185 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 06:14:27.268 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 06:09:41.067 00:06:00.291 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 06:14:51.340 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:54970 12 10375 1 2025-10-08 06:15:51.818 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51664 10 6452 1 2025-10-08 06:16:52.219 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60024 10 6452 1 2025-10-08 06:12:41.071 00:06:00.287 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 06:17:52.624 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52512 10 6452 1 2025-10-08 06:18:53.029 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39174 10 6452 1 2025-10-08 06:19:27.424 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 06:19:27.342 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 06:19:27.301 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 06:19:27.335 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 06:19:27.082 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 06:19:53.429 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57328 10 6452 1 2025-10-08 06:20:53.839 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:60992 10 6452 1 2025-10-08 06:16:41.069 00:06:00.291 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 06:21:54.219 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:41588 10 6452 1 2025-10-08 06:22:54.579 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:35536 10 6452 1 2025-10-08 06:23:54.993 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56628 10 6452 1 2025-10-08 06:24:27.342 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 06:24:27.548 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 06:24:27.352 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 06:24:27.344 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 06:24:27.427 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 06:19:41.071 00:06:00.287 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 06:24:55.397 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:54548 12 10375 1 2025-10-08 06:25:55.880 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50056 10 6452 1 2025-10-08 06:26:56.283 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56124 10 6452 1 2025-10-08 06:27:56.701 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33668 10 6452 1 2025-10-08 06:23:41.070 00:06:00.291 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 06:28:57.117 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:40058 10 6452 1 2025-10-08 06:29:27.797 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 06:29:27.649 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 06:29:27.723 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 06:29:27.530 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 06:29:27.714 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 06:29:57.487 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:45016 10 6452 1 2025-10-08 06:30:57.859 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59304 10 6452 1 2025-10-08 06:26:41.075 00:06:00.287 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 06:31:58.274 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43478 10 6452 1 2025-10-08 06:32:58.681 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56450 10 6452 1 2025-10-08 06:33:59.113 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44018 10 6452 1 2025-10-08 06:34:28.276 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 06:34:28.358 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 06:34:28.275 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 06:34:27.982 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 06:34:28.194 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 06:34:59.526 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:52398 10 6452 1 2025-10-08 06:30:41.074 00:06:00.290 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 06:35:59.893 00:00:10.710 TCP 1.101.0.1:3000 -> 23.104.0.1:55126 12 6556 1 2025-10-08 06:37:00.641 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40390 10 6452 1 2025-10-08 06:38:01.004 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45570 10 6452 1 2025-10-08 06:33:41.077 00:06:00.286 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 06:39:01.414 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53080 10 6452 1 2025-10-08 06:39:27.901 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 06:39:27.814 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 06:39:27.762 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 06:39:27.710 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 06:39:27.817 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 06:40:01.831 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:50950 10 6452 1 2025-10-08 06:41:02.254 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:52858 10 6452 1 2025-10-08 06:42:02.635 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:47026 10 6452 1 2025-10-08 06:37:41.075 00:06:00.293 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 06:43:03.004 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34146 10 6452 1 2025-10-08 06:44:03.370 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35470 10 6452 1 2025-10-08 06:44:27.841 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 06:44:27.635 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 06:44:27.788 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 06:44:27.716 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 06:44:27.799 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 06:45:03.771 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:40904 10 6452 1 2025-10-08 06:40:41.084 00:06:00.282 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 06:46:04.201 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:54918 10 6452 1 2025-10-08 06:47:04.600 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:56148 10 6452 1 2025-10-08 06:48:04.971 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:60810 10 6452 1 2025-10-08 06:49:05.387 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50148 10 6452 1 2025-10-08 06:49:27.710 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 06:49:27.864 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 06:49:27.794 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 06:49:27.792 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 06:49:27.946 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 06:44:41.081 00:06:00.289 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 06:50:05.793 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37332 10 6452 1 2025-10-08 06:51:06.196 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55480 10 6452 1 2025-10-08 06:52:06.594 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56436 10 6452 1 2025-10-08 06:47:41.085 00:06:00.284 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 06:53:06.997 00:00:10.791 TCP 1.101.0.1:3000 -> 23.104.0.1:49012 10 6452 1 2025-10-08 06:54:07.831 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:59630 10 6452 1 2025-10-08 06:54:27.933 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 06:54:27.922 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 06:54:27.942 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 06:54:28.088 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 06:54:28.170 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 06:55:08.257 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56486 10 6452 1 2025-10-08 06:56:08.678 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47194 10 6452 1 2025-10-08 06:51:41.082 00:06:00.300 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 06:57:09.106 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47636 10 6452 1 2025-10-08 06:58:09.516 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38978 10 6452 1 Summary: total flows: 137, total bytes: 424827, total packets: 1024, avg bps: 904, avg pps: 0, avg bpp: 414 Time window: 2025-10-08 05:55:41 - 2025-10-08 06:58:19 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0012s User: 0.0036s Wall: 0.0022s flows/second: 61103.7 Runtime: 0.0023s