Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-08 21:59:04.228 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54360 10 6452 1 2025-10-08 21:54:41.367 00:06:00.337 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 21:59:46.221 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 21:59:46.156 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 21:59:45.900 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 21:59:46.212 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 21:59:46.295 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 22:00:04.591 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:49984 10 6452 1 2025-10-08 22:01:04.993 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47086 10 6452 1 2025-10-08 22:02:05.400 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52466 10 6452 1 2025-10-08 21:57:41.372 00:06:00.330 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 22:03:05.803 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35194 10 6452 1 2025-10-08 22:04:06.201 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:33380 10 6452 1 2025-10-08 22:04:46.238 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 22:04:46.240 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 22:04:45.867 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 22:04:46.238 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 22:04:46.321 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 22:05:06.571 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47828 10 6452 1 2025-10-08 22:06:06.977 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:43716 10 6452 1 2025-10-08 22:01:41.371 00:06:00.336 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 22:07:07.393 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43810 10 6452 1 2025-10-08 22:08:07.801 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:41114 10 6452 1 2025-10-08 22:09:08.181 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56044 10 6452 1 2025-10-08 22:04:41.373 00:06:00.333 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 22:09:46.487 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 22:09:46.220 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 22:09:46.337 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 22:09:46.331 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 22:09:46.404 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 22:10:08.581 00:00:10.521 TCP 1.101.0.1:3000 -> 23.104.0.1:40914 14 14298 1 2025-10-08 22:11:09.141 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:58740 10 6452 1 2025-10-08 22:12:09.542 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:60480 10 6452 1 2025-10-08 22:13:09.908 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:42928 10 6452 1 2025-10-08 22:08:41.373 00:06:00.338 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 22:14:10.273 00:00:10.703 TCP 1.101.0.1:3000 -> 23.104.0.1:49262 10 6452 1 2025-10-08 22:14:46.530 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 22:14:46.479 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 22:14:46.448 00:00:00.049 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 22:14:46.134 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 22:14:46.448 00:00:00.031 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 22:15:11.019 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50116 10 6452 1 2025-10-08 22:16:11.422 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51578 10 6452 1 2025-10-08 22:11:41.375 00:06:00.332 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 22:17:11.784 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56710 10 6452 1 2025-10-08 22:18:12.197 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50002 10 6452 1 2025-10-08 22:19:12.594 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58946 10 6452 1 2025-10-08 22:19:46.591 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 22:19:46.591 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 22:19:46.890 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 22:19:46.803 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 22:19:46.886 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 22:20:13.006 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38342 10 6452 1 2025-10-08 22:15:41.375 00:06:00.337 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 22:21:13.410 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38014 10 6452 1 2025-10-08 22:22:13.812 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44048 10 6452 1 2025-10-08 22:23:14.222 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41586 10 6452 1 2025-10-08 22:18:41.377 00:06:00.331 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 22:24:14.630 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49972 10 6452 1 2025-10-08 22:24:46.768 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 22:24:46.716 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 22:24:46.540 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 22:24:46.754 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 22:24:46.838 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 22:25:15.032 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:38708 10 6452 1 2025-10-08 22:26:15.441 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56420 10 6452 1 2025-10-08 22:27:15.845 00:00:10.411 TCP 1.101.0.1:3000 -> 23.104.0.1:52340 10 6452 1 2025-10-08 22:22:41.378 00:06:00.335 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 22:28:16.273 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:52660 10 6452 1 2025-10-08 22:29:16.669 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50964 10 6452 1 2025-10-08 22:29:46.896 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 22:29:46.823 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 22:29:46.787 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 22:29:46.895 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 22:29:46.978 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 22:30:17.096 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:47126 10 6452 1 2025-10-08 22:25:41.383 00:06:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 22:31:17.516 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36084 10 6452 1 2025-10-08 22:32:17.880 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52402 10 6452 1 2025-10-08 22:33:18.281 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56616 10 6452 1 2025-10-08 22:34:18.685 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36892 10 6452 1 2025-10-08 22:34:47.067 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 22:34:46.710 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 22:34:46.569 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 22:34:47.072 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 22:29:41.382 00:06:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 22:34:47.155 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 22:35:19.108 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51286 10 6452 1 2025-10-08 22:36:19.510 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:57576 10 6452 1 2025-10-08 22:37:19.929 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:36200 10 6452 1 2025-10-08 22:32:41.384 00:06:00.329 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 22:38:20.300 00:00:10.425 TCP 1.101.0.1:3000 -> 23.104.0.1:42896 10 6452 1 2025-10-08 22:39:20.768 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:38216 10 6452 1 2025-10-08 22:39:47.062 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 22:39:46.976 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 22:39:46.921 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 22:39:46.914 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 22:39:46.996 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 22:40:21.182 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33714 10 6452 1 2025-10-08 22:41:21.589 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38480 10 6452 1 2025-10-08 22:36:41.383 00:06:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 22:42:21.993 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46702 10 6452 1 2025-10-08 22:43:22.399 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59592 10 6452 1 2025-10-08 22:44:22.813 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55050 10 6452 1 2025-10-08 22:39:41.387 00:06:00.326 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 22:44:47.069 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 22:44:46.990 00:00:00.050 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 22:44:46.866 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 22:44:46.994 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 22:44:46.987 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 22:45:23.216 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:58360 10 6452 1 2025-10-08 22:46:23.574 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44560 10 6452 1 2025-10-08 22:47:23.980 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45140 10 6452 1 2025-10-08 22:48:24.385 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:56822 11 6504 1 2025-10-08 22:43:41.385 00:06:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 22:49:24.840 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:59420 10 6452 1 2025-10-08 22:49:47.270 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 22:49:46.990 00:00:00.032 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 22:49:47.286 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 22:49:46.898 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 22:49:47.188 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 22:50:25.264 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49970 10 6452 1 2025-10-08 22:51:25.666 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52354 10 6452 1 2025-10-08 22:46:41.387 00:06:00.328 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 22:52:26.099 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59738 10 6452 1 2025-10-08 22:53:26.500 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51856 10 6452 1 2025-10-08 22:54:26.904 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:51308 14 10479 1 2025-10-08 22:54:47.620 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 22:54:47.576 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 22:54:47.532 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 22:54:47.333 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 22:54:47.538 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 22:55:27.386 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54366 10 6452 1 2025-10-08 22:50:41.386 00:06:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 22:56:27.788 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34062 10 6452 1 2025-10-08 22:57:28.192 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41090 10 6452 1 2025-10-08 22:58:28.594 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:44828 10 6452 1 2025-10-08 22:53:41.390 00:06:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 Summary: total flows: 138, total bytes: 429663, total packets: 1041, avg bps: 881, avg pps: 0, avg bpp: 412 Time window: 2025-10-08 21:54:41 - 2025-10-08 22:59:41 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0034s User: 0.0011s Wall: 0.0025s flows/second: 56010.6 Runtime: 0.0025s