Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-09 00:59:23.717 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:60006 10 6452 1 2025-10-09 00:59:49.777 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 00:59:49.598 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 00:59:49.702 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 00:59:49.779 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 00:59:49.861 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 01:00:24.107 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:59884 10 6452 1 2025-10-09 01:01:24.528 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47012 10 6452 1 2025-10-09 00:56:41.421 00:06:00.338 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 01:02:24.930 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:47334 10 6452 1 2025-10-09 01:03:25.297 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43000 10 6452 1 2025-10-09 01:04:25.699 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39760 10 6452 1 2025-10-09 00:59:41.425 00:06:00.335 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 01:04:49.971 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 01:04:49.677 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 01:04:49.841 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 01:04:49.721 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 01:04:49.889 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 01:05:26.107 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35572 10 6452 1 2025-10-09 01:06:26.509 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33444 10 6452 1 2025-10-09 01:07:26.911 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45314 10 6452 1 2025-10-09 01:08:27.277 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58230 10 6452 1 2025-10-09 01:03:41.424 00:06:00.342 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 01:09:27.680 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60892 10 6452 1 2025-10-09 01:09:49.776 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 01:09:49.960 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 01:09:49.777 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 01:09:49.814 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 01:09:49.860 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 01:10:28.105 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39480 10 6452 1 2025-10-09 01:11:28.509 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38858 10 6452 1 2025-10-09 01:06:41.426 00:06:00.336 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 01:12:28.913 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:42714 10 6452 1 2025-10-09 01:13:29.271 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52710 10 6452 1 2025-10-09 01:14:29.676 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58888 10 6452 1 2025-10-09 01:14:50.116 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 01:14:50.108 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 01:14:50.189 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 01:14:50.111 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 01:14:50.195 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 01:15:30.110 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58568 10 6452 1 2025-10-09 01:10:41.425 00:06:00.359 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 01:16:30.519 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:35412 10 6452 1 2025-10-09 01:17:30.887 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:51410 10 6452 1 2025-10-09 01:13:41.428 00:06:00.335 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 01:18:31.304 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54540 10 6452 1 2025-10-09 01:19:31.705 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45484 10 6452 1 2025-10-09 01:19:49.888 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 01:19:50.483 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 01:19:50.399 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 01:19:50.636 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 01:19:50.400 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 01:20:32.114 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33392 10 6452 1 2025-10-09 01:21:32.519 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58322 10 6452 1 2025-10-09 01:22:32.921 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57512 10 6452 1 2025-10-09 01:17:41.427 00:06:00.339 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 01:23:33.325 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59150 10 6452 1 2025-10-09 01:24:33.732 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57740 10 6452 1 2025-10-09 01:24:50.429 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 01:24:50.203 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 01:24:50.357 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 01:24:50.367 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 01:24:50.347 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 01:20:41.429 00:06:00.335 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 01:25:34.116 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58024 10 6452 1 2025-10-09 01:26:34.519 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58114 10 6452 1 2025-10-09 01:27:34.920 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:45826 10 6452 1 2025-10-09 01:28:35.289 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51482 10 6452 1 2025-10-09 01:24:41.428 00:06:00.341 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 01:29:35.697 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:57166 10 6452 1 2025-10-09 01:29:50.385 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 01:29:50.389 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 01:29:50.345 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 01:29:50.312 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 01:29:50.395 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 01:30:36.097 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33030 10 6452 1 2025-10-09 01:31:36.501 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:40786 10 6452 1 2025-10-09 01:27:41.431 00:06:00.335 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 01:32:36.882 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38796 12 6556 1 2025-10-09 01:33:37.291 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:56006 10 6452 1 2025-10-09 01:34:37.667 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36202 10 6452 1 2025-10-09 01:34:50.364 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 01:34:50.288 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 01:34:50.502 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 01:34:50.507 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 01:34:50.584 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 01:35:38.097 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:50176 10 6452 1 2025-10-09 01:31:41.429 00:06:00.342 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 01:36:38.490 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38232 10 6452 1 2025-10-09 01:37:38.893 00:00:10.430 TCP 1.101.0.1:3000 -> 23.104.0.1:53704 11 6504 1 2025-10-09 01:38:39.361 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48998 10 6452 1 2025-10-09 01:34:41.433 00:06:00.336 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 01:39:50.633 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 01:39:50.463 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 01:39:50.610 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 01:39:39.722 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:60792 10 6452 1 2025-10-09 01:39:50.632 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 01:39:50.714 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 01:40:40.139 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58258 10 6452 1 2025-10-09 01:41:40.498 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34328 10 6452 1 2025-10-09 01:42:40.906 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41522 10 6452 1 2025-10-09 01:38:41.431 00:06:00.341 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 01:43:41.318 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42110 10 6452 1 2025-10-09 01:44:41.698 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51060 10 6452 1 2025-10-09 01:44:50.526 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 01:44:50.620 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 01:44:50.676 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 01:44:50.744 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 01:44:50.609 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 01:45:42.112 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41082 10 6452 1 2025-10-09 01:41:41.434 00:06:00.336 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 01:46:42.511 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55224 10 6452 1 2025-10-09 01:47:42.919 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60140 10 6452 1 2025-10-09 01:48:43.328 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44790 10 6452 1 2025-10-09 01:49:51.224 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 01:49:50.808 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 01:49:51.147 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 01:49:50.825 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 01:49:43.733 00:00:10.408 TCP 1.101.0.1:3000 -> 23.104.0.1:46302 12 10375 1 2025-10-09 01:49:51.144 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 01:45:41.432 00:06:00.342 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 01:50:44.175 00:00:10.861 TCP 1.101.0.1:3000 -> 23.104.0.1:41186 10 6452 1 2025-10-09 01:51:45.105 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:35574 10 6452 1 2025-10-09 01:52:45.465 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54074 10 6452 1 2025-10-09 01:48:41.434 00:06:00.339 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 01:53:45.874 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44634 10 6452 1 2025-10-09 01:54:50.988 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 01:54:50.801 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 01:54:50.835 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 01:54:51.075 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 01:54:51.158 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 01:54:46.280 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47904 10 6452 1 2025-10-09 01:55:46.683 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40988 10 6452 1 2025-10-09 01:56:47.112 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36150 10 6452 1 2025-10-09 01:52:41.432 00:06:00.344 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 01:57:47.513 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52648 10 6452 1 Summary: total flows: 136, total bytes: 414504, total packets: 1013, avg bps: 891, avg pps: 0, avg bpp: 409 Time window: 2025-10-09 00:56:41 - 2025-10-09 01:58:41 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0035s User: 0.0012s Wall: 0.0026s flows/second: 52875.9 Runtime: 0.0026s