Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-08 12:59:20.931 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:46290 10 6452 1 2025-10-08 12:59:35.346 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 12:59:35.289 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 12:59:35.266 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 12:59:35.290 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 12:59:35.374 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 13:00:21.350 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48792 10 6452 1 2025-10-08 12:55:41.195 00:06:00.312 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 13:01:21.761 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41518 10 6452 1 2025-10-08 13:02:22.174 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39544 10 6452 1 2025-10-08 13:03:22.579 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51132 10 6452 1 2025-10-08 12:58:41.199 00:06:00.307 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 13:04:22.982 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40052 10 6452 1 2025-10-08 13:04:35.626 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 13:04:35.540 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 13:04:35.227 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 13:04:35.187 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 13:04:35.543 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 13:05:23.390 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60438 10 6452 1 2025-10-08 13:06:23.793 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:43410 10 6452 1 2025-10-08 13:07:24.153 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38738 10 6452 1 2025-10-08 13:02:41.197 00:06:00.313 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 13:08:24.563 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:44914 10 6452 1 2025-10-08 13:09:24.958 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45382 10 6452 1 2025-10-08 13:09:35.252 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 13:09:35.513 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 13:09:35.412 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 13:09:35.624 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 13:09:35.706 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 13:10:25.362 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:52542 10 6452 1 2025-10-08 13:05:41.200 00:06:00.311 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 13:11:25.758 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:50982 10 6452 1 2025-10-08 13:12:26.168 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53790 10 6452 1 2025-10-08 13:13:26.571 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:52924 10 6452 1 2025-10-08 13:14:35.474 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 13:14:35.571 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 13:14:35.311 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 13:14:26.939 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38940 10 6452 1 2025-10-08 13:14:35.578 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 13:14:35.661 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 13:09:41.199 00:06:00.316 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 13:15:27.352 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40852 10 6452 1 2025-10-08 13:16:27.755 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51058 10 6452 1 2025-10-08 13:17:28.162 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:32814 10 6452 1 2025-10-08 13:12:41.207 00:06:00.308 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 13:18:28.562 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47426 10 6452 1 2025-10-08 13:19:35.790 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 13:19:35.915 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 13:19:35.806 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 13:19:28.965 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60764 10 6452 1 2025-10-08 13:19:35.794 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 13:19:35.876 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 13:20:29.332 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34294 10 6452 1 2025-10-08 13:16:41.206 00:06:00.313 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 13:21:29.734 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44838 10 6452 1 2025-10-08 13:22:30.137 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42452 10 6452 1 2025-10-08 13:23:30.538 00:00:10.569 TCP 1.101.0.1:3000 -> 23.104.0.1:51152 10 6452 1 2025-10-08 13:24:35.614 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 13:24:35.601 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 13:24:35.787 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 13:24:35.806 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 13:24:35.532 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 13:19:41.208 00:06:00.307 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 13:24:31.156 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:55292 12 10369 1 2025-10-08 13:25:31.592 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50218 10 6452 1 2025-10-08 13:26:32.000 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33136 10 6452 1 2025-10-08 13:27:32.412 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43136 10 6452 1 2025-10-08 13:23:41.206 00:06:00.313 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 13:28:32.821 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:60314 10 6452 1 2025-10-08 13:29:36.167 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 13:29:35.690 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 13:29:36.077 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 13:29:35.824 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 13:29:36.084 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 13:29:33.188 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35326 10 6452 1 2025-10-08 13:30:33.592 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42824 10 6452 1 2025-10-08 13:26:41.209 00:06:00.308 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 13:31:34.002 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43220 10 6452 1 2025-10-08 13:32:34.402 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42740 10 6452 1 2025-10-08 13:33:34.803 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53612 10 6452 1 2025-10-08 13:34:36.087 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 13:34:36.135 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 13:34:35.719 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 13:34:35.971 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 13:34:36.055 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 13:34:35.205 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52710 10 6452 1 2025-10-08 13:30:41.211 00:06:00.309 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 13:35:35.613 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52830 10 6452 1 2025-10-08 13:36:36.016 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49220 10 6452 1 2025-10-08 13:37:36.417 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:47398 10 6452 1 2025-10-08 13:33:41.213 00:06:00.306 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 13:38:36.782 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39444 10 6452 1 2025-10-08 13:39:36.036 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 13:39:35.954 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 13:39:36.070 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 13:39:36.076 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 13:39:36.083 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 13:39:37.149 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49310 10 6452 1 2025-10-08 13:40:37.565 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41220 10 6452 1 2025-10-08 13:41:37.972 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54804 10 6452 1 2025-10-08 13:37:41.212 00:06:00.311 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 13:42:38.380 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57550 10 6452 1 2025-10-08 13:43:38.776 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51598 10 6452 1 2025-10-08 13:44:36.311 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 13:44:36.104 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 13:44:36.102 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 13:44:36.112 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 13:44:36.229 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 13:44:39.181 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59230 10 6452 1 2025-10-08 13:40:41.215 00:06:00.312 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 13:45:39.587 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46396 10 6452 1 2025-10-08 13:46:39.995 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44376 10 6452 1 2025-10-08 13:47:40.394 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59462 10 6452 1 2025-10-08 13:48:40.795 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45096 10 6452 1 2025-10-08 13:49:36.759 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 13:49:37.178 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 13:49:36.800 00:00:00.029 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 13:49:36.784 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 13:49:37.262 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 13:44:41.212 00:06:00.317 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 13:49:41.206 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37510 10 6452 1 2025-10-08 13:50:41.607 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41112 10 6452 1 2025-10-08 13:51:42.011 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33068 10 6452 1 2025-10-08 13:47:41.214 00:06:00.314 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 13:52:42.418 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37058 10 6452 1 2025-10-08 13:53:42.820 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:35126 10 6452 1 2025-10-08 13:54:36.346 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 13:54:36.420 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 13:54:36.415 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 13:54:36.186 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 13:54:36.264 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 13:54:43.199 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45324 10 6452 1 2025-10-08 13:55:43.602 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38666 10 6452 1 2025-10-08 13:51:41.213 00:06:00.319 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 13:56:44.010 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55194 10 6452 1 2025-10-08 13:57:44.426 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44556 10 6452 1 Summary: total flows: 136, total bytes: 414342, total packets: 1010, avg bps: 887, avg pps: 0, avg bpp: 410 Time window: 2025-10-08 12:55:41 - 2025-10-08 13:57:54 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0041s User: 0.0010s Wall: 0.0020s flows/second: 67794.8 Runtime: 0.0020s