Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-09 01:58:47.919 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57858 10 6452 1 2025-10-09 01:59:50.762 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 01:59:50.900 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 01:59:50.818 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 01:59:50.896 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 01:59:50.982 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 01:59:48.320 00:00:10.446 TCP 1.101.0.1:3000 -> 23.104.0.1:40450 12 10369 1 2025-10-09 01:55:41.436 00:06:00.338 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 02:00:48.797 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53154 10 6452 1 2025-10-09 02:01:49.201 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46332 10 6452 1 2025-10-09 02:02:49.558 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33520 10 6452 1 2025-10-09 02:03:49.959 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40410 10 6452 1 2025-10-09 01:59:41.435 00:06:00.346 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 02:04:51.718 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 02:04:51.746 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 02:04:52.070 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 02:04:51.983 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 02:04:52.152 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 02:04:50.325 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:57896 10 6452 1 2025-10-09 02:05:50.762 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:43150 10 6452 1 2025-10-09 02:06:51.140 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:54262 10 6452 1 2025-10-09 02:02:41.438 00:06:00.340 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 02:07:51.579 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:49792 10 6452 1 2025-10-09 02:08:51.989 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58514 10 6452 1 2025-10-09 02:09:51.202 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 02:09:51.202 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 02:09:51.266 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 02:09:50.981 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 02:09:51.119 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 02:09:52.395 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52250 10 6452 1 2025-10-09 02:10:52.794 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:48246 10 6452 1 2025-10-09 02:06:41.435 00:06:00.347 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 02:11:53.201 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:58820 10 6452 1 2025-10-09 02:12:53.561 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45446 10 6452 1 2025-10-09 02:13:53.976 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47802 10 6452 1 2025-10-09 02:09:41.438 00:06:00.342 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 02:14:51.340 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 02:14:51.334 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 02:14:51.269 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 02:14:51.397 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 02:14:51.479 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 02:14:54.390 00:00:10.974 TCP 1.101.0.1:3000 -> 23.104.0.1:39358 13 10415 1 2025-10-09 02:15:55.404 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:59844 10 6452 1 2025-10-09 02:16:55.767 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58618 10 6452 1 2025-10-09 02:17:56.135 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45824 10 6452 1 2025-10-09 02:13:41.436 00:06:00.350 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 02:18:56.541 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42698 10 6452 1 2025-10-09 02:19:51.387 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 02:19:51.385 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 02:19:51.382 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 02:19:51.147 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 02:19:51.305 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 02:19:56.958 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48268 10 6452 1 2025-10-09 02:20:57.367 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:60706 10 6452 1 2025-10-09 02:16:41.438 00:06:00.345 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 02:21:57.729 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45982 10 6452 1 2025-10-09 02:22:58.135 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:42386 10 6452 1 2025-10-09 02:23:58.501 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47356 10 6452 1 2025-10-09 02:24:51.497 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 02:24:51.563 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 02:24:51.300 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 02:24:51.275 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 02:24:51.414 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 02:24:58.904 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47800 10 6452 1 2025-10-09 02:20:41.437 00:06:00.350 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 02:25:59.315 00:00:10.595 TCP 1.101.0.1:3000 -> 23.104.0.1:57118 10 6452 1 2025-10-09 02:26:59.951 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40630 10 6452 1 2025-10-09 02:28:00.360 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:43038 10 6452 1 2025-10-09 02:23:41.441 00:06:00.344 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 02:29:00.713 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45022 10 6452 1 2025-10-09 02:29:51.703 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 02:29:51.750 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 02:29:51.861 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 02:29:51.862 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 02:29:51.944 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 02:30:01.114 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:51466 10 6452 1 2025-10-09 02:31:01.494 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55308 10 6452 1 2025-10-09 02:32:01.896 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37418 10 6452 1 2025-10-09 02:27:41.440 00:06:00.349 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 02:33:02.303 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37674 10 6452 1 2025-10-09 02:34:02.710 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:49466 10 6452 1 2025-10-09 02:34:51.750 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 02:34:51.480 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 02:34:51.801 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 02:34:51.755 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 02:34:51.883 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 02:35:03.164 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:37618 10 6452 1 2025-10-09 02:30:41.443 00:06:00.343 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 02:36:03.585 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47438 10 6452 1 2025-10-09 02:37:03.993 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59252 10 6452 1 2025-10-09 02:38:04.360 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53394 10 6452 1 2025-10-09 02:39:04.773 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59410 10 6452 1 2025-10-09 02:34:41.442 00:06:00.347 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 02:39:51.787 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 02:39:51.499 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 02:39:51.621 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 02:39:51.709 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 02:39:51.792 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 02:40:05.180 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47292 10 6452 1 2025-10-09 02:41:05.587 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49606 10 6452 1 2025-10-09 02:42:05.989 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:44020 10 6452 1 2025-10-09 02:37:41.447 00:06:00.342 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 02:43:06.356 00:00:18.960 TCP 1.101.0.1:3000 -> 23.104.0.1:48918 10 6452 1 2025-10-09 02:44:15.370 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38390 10 6452 1 2025-10-09 02:44:52.130 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 02:44:52.220 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 02:44:52.172 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 02:44:52.204 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 02:44:52.288 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 02:45:15.773 00:00:10.454 TCP 1.101.0.1:3000 -> 23.104.0.1:41062 12 10375 1 2025-10-09 02:46:16.261 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47022 10 6452 1 2025-10-09 02:41:41.445 00:06:00.347 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 02:47:16.666 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58728 10 6452 1 2025-10-09 02:48:17.098 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59296 10 6452 1 2025-10-09 02:49:17.508 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39656 10 6452 1 2025-10-09 02:44:41.447 00:06:00.343 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 02:49:52.001 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 02:49:51.988 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 02:49:51.914 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 02:49:51.933 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 02:49:51.917 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 02:50:17.950 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58744 10 6452 1 2025-10-09 02:51:18.361 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33238 10 6452 1 2025-10-09 02:52:18.723 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50152 10 6452 1 2025-10-09 02:53:19.135 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:55990 10 6452 1 2025-10-09 02:48:41.448 00:06:00.346 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 02:54:19.499 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33706 10 6452 1 2025-10-09 02:54:51.875 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 02:54:51.906 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 02:54:52.121 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 02:54:51.985 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 02:54:52.204 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 02:55:19.905 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40652 12 6556 1 2025-10-09 02:56:20.310 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56822 10 6452 1 2025-10-09 02:51:41.451 00:06:00.345 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 02:57:20.712 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42308 10 6452 1 2025-10-09 02:58:21.115 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53474 10 6452 1 Summary: total flows: 137, total bytes: 428784, total packets: 1027, avg bps: 909, avg pps: 0, avg bpp: 417 Time window: 2025-10-09 01:55:41 - 2025-10-09 02:58:31 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0020s User: 0.0030s Wall: 0.0021s flows/second: 66025.5 Runtime: 0.0021s