Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-08 11:58:55.443 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53588 10 6452 1 2025-10-08 11:59:34.235 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 11:59:34.154 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 11:59:34.106 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 11:59:34.041 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 11:59:33.699 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 11:59:55.865 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:60378 10 6452 1 2025-10-08 11:55:41.162 00:06:00.321 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 12:00:56.283 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59840 10 6452 1 2025-10-08 12:01:56.688 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60274 10 6452 1 2025-10-08 12:02:57.103 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37632 10 6452 1 2025-10-08 12:03:57.467 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48624 10 6452 1 2025-10-08 12:04:34.220 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 12:04:34.311 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 12:04:34.219 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 12:04:34.060 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 12:04:34.144 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 11:59:41.165 00:06:00.322 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 12:04:57.868 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:55696 10 6452 1 2025-10-08 12:05:58.231 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48364 10 6452 1 2025-10-08 12:06:58.638 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:53954 10 6452 1 2025-10-08 12:02:41.168 00:06:00.318 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 12:07:59.004 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40878 10 6452 1 2025-10-08 12:08:59.404 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:32994 10 6452 1 2025-10-08 12:09:34.237 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 12:09:34.317 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 12:09:34.257 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 12:09:34.503 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 12:09:34.587 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 12:09:59.818 00:00:10.415 TCP 1.101.0.1:3000 -> 23.104.0.1:55044 12 10375 1 2025-10-08 12:11:00.292 00:00:10.542 TCP 1.101.0.1:3000 -> 23.104.0.1:53352 10 6452 1 2025-10-08 12:06:41.169 00:06:00.322 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 12:12:00.891 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:44158 10 6452 1 2025-10-08 12:13:01.338 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:34378 10 6452 1 2025-10-08 12:14:01.740 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38392 10 6452 1 2025-10-08 12:14:34.614 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 12:14:34.821 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 12:14:34.723 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 12:14:34.833 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 12:14:34.915 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 12:09:41.173 00:06:00.317 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 12:15:02.152 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38372 10 6452 1 2025-10-08 12:16:02.554 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39880 10 6452 1 2025-10-08 12:17:02.958 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:32790 10 6452 1 2025-10-08 12:18:03.366 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52816 10 6452 1 2025-10-08 12:13:41.171 00:06:00.323 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 12:19:03.772 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:50048 10 6452 1 2025-10-08 12:19:34.597 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 12:19:34.466 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 12:19:34.458 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 12:19:34.478 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 12:19:34.561 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 12:20:04.145 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60260 10 6452 1 2025-10-08 12:21:04.552 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36920 10 6452 1 2025-10-08 12:16:41.172 00:06:00.319 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 12:22:04.958 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54294 10 6452 1 2025-10-08 12:23:05.373 00:00:10.951 TCP 1.101.0.1:3000 -> 23.104.0.1:57608 10 6452 1 2025-10-08 12:24:06.359 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35702 10 6452 1 2025-10-08 12:24:34.710 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 12:24:34.557 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 12:24:34.494 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 12:24:34.476 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 12:24:34.560 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 12:25:06.765 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:55412 10 6452 1 2025-10-08 12:20:41.185 00:06:00.311 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 12:26:07.134 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52372 10 6452 1 2025-10-08 12:27:07.536 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47704 10 6452 1 2025-10-08 12:28:07.938 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:37810 10 6452 1 2025-10-08 12:23:41.189 00:06:00.307 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 12:29:08.353 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:47280 10 6452 1 2025-10-08 12:29:34.775 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 12:29:34.716 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 12:29:34.547 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 12:29:34.777 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 12:29:34.860 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 12:30:08.714 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59568 10 6452 1 2025-10-08 12:31:09.114 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54996 10 6452 1 2025-10-08 12:32:09.475 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43100 10 6452 1 2025-10-08 12:27:41.186 00:06:00.313 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 12:33:09.842 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:57264 10 6452 1 2025-10-08 12:34:10.221 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47666 10 6452 1 2025-10-08 12:34:34.421 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 12:34:35.113 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 12:34:35.143 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 12:34:35.121 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 12:34:35.204 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 12:35:10.624 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:56274 10 6452 1 2025-10-08 12:30:41.189 00:06:00.311 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 12:36:11.020 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47070 10 6452 1 2025-10-08 12:37:11.420 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38718 10 6452 1 2025-10-08 12:38:11.822 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:38172 10 6452 1 2025-10-08 12:39:12.198 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:33184 10 6452 1 2025-10-08 12:39:34.937 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 12:39:34.734 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 12:39:34.808 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 12:39:34.893 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 12:39:34.987 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 12:34:41.188 00:06:00.314 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 12:40:12.577 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51252 10 6452 1 2025-10-08 12:41:12.984 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46326 10 6452 1 2025-10-08 12:42:13.393 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:47662 10 6452 1 2025-10-08 12:37:41.191 00:06:00.309 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 12:43:13.810 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37062 10 6452 1 2025-10-08 12:44:14.215 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36542 10 6452 1 2025-10-08 12:44:34.834 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 12:44:34.914 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 12:44:34.762 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 12:44:34.917 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 12:44:35.001 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 12:45:14.574 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:59466 10 6452 1 2025-10-08 12:46:14.936 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56682 10 6452 1 2025-10-08 12:41:41.191 00:06:00.313 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 12:47:15.305 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:52478 10 6452 1 2025-10-08 12:48:15.671 00:00:11.112 TCP 1.101.0.1:3000 -> 23.104.0.1:38874 10 6452 1 2025-10-08 12:49:16.822 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49082 10 6452 1 2025-10-08 12:49:34.833 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 12:49:35.075 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 12:49:35.069 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 12:49:35.164 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 12:49:35.153 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 12:44:41.194 00:06:00.309 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 12:50:17.220 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40142 10 6452 1 2025-10-08 12:51:17.628 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54430 10 6452 1 2025-10-08 12:52:18.034 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59052 10 6452 1 2025-10-08 12:53:18.438 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34538 10 6452 1 2025-10-08 12:48:41.195 00:06:00.312 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 12:54:18.845 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:48404 10 6452 1 2025-10-08 12:54:35.204 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 12:54:35.211 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 12:54:35.283 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 12:54:35.077 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 12:54:35.120 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 12:55:19.271 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34960 10 6452 1 2025-10-08 12:56:19.686 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:51540 10 6452 1 2025-10-08 12:51:41.195 00:06:00.309 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 12:57:20.133 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55658 10 6452 1 2025-10-08 12:58:20.502 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:48794 10 6452 1 Summary: total flows: 137, total bytes: 420800, total packets: 1020, avg bps: 893, avg pps: 0, avg bpp: 412 Time window: 2025-10-08 11:55:41 - 2025-10-08 12:58:30 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0034s User: 0.0011s Wall: 0.0022s flows/second: 61136.3 Runtime: 0.0023s