Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-09 11:59:09.506 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51942 10 6452 1 2025-10-09 11:54:41.615 00:06:00.361 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 12:00:03.260 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 12:00:02.815 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 12:00:02.945 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 12:00:02.748 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 12:00:03.176 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 12:00:09.909 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48404 10 6452 1 2025-10-09 12:01:10.314 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36882 10 6452 1 2025-10-09 12:02:10.711 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34638 10 6452 1 2025-10-09 11:57:41.619 00:06:00.357 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 12:03:11.115 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54818 10 6452 1 2025-10-09 12:04:11.521 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49696 10 6452 1 2025-10-09 12:05:03.239 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 12:05:03.217 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 12:05:03.099 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 12:05:02.961 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 12:05:03.156 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 12:05:11.925 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:50748 10 6452 1 2025-10-09 12:06:12.341 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49784 10 6452 1 2025-10-09 12:01:41.616 00:06:00.362 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 12:07:12.748 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57102 10 6452 1 2025-10-09 12:08:13.160 00:00:10.642 TCP 1.101.0.1:3000 -> 23.104.0.1:47018 10 6452 1 2025-10-09 12:09:13.844 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:60390 10 6452 1 2025-10-09 12:04:41.620 00:06:00.358 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 12:10:03.402 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 12:10:03.325 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 12:10:03.407 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 12:10:03.013 00:00:00.035 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 12:10:03.483 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 12:10:14.222 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47536 10 6452 1 2025-10-09 12:11:14.631 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58944 10 6452 1 2025-10-09 12:12:15.040 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51726 10 6452 1 2025-10-09 12:13:15.446 00:00:10.659 TCP 1.101.0.1:3000 -> 23.104.0.1:38286 10 6452 1 2025-10-09 12:08:41.617 00:06:00.362 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 12:14:16.141 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53116 10 6452 1 2025-10-09 12:15:03.418 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 12:15:03.377 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 12:15:03.467 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 12:15:03.297 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 12:15:03.334 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 12:15:16.507 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33736 10 6452 1 2025-10-09 12:16:16.911 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:37858 10 6452 1 2025-10-09 12:11:41.620 00:06:00.357 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 12:17:17.277 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37992 10 6452 1 2025-10-09 12:18:17.684 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57776 10 6452 1 2025-10-09 12:19:18.109 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48452 10 6452 1 2025-10-09 12:20:03.486 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 12:20:03.572 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 12:20:03.164 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 12:20:03.489 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 12:20:03.572 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 12:20:18.511 00:00:18.839 TCP 1.101.0.1:3000 -> 23.104.0.1:49648 10 6452 1 2025-10-09 12:15:41.620 00:06:00.362 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 12:21:27.398 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57604 10 6452 1 2025-10-09 12:22:27.762 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:44428 10 6452 1 2025-10-09 12:23:28.182 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47048 10 6452 1 2025-10-09 12:18:41.624 00:06:00.356 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 12:24:28.582 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:36102 10 6452 1 2025-10-09 12:25:03.558 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 12:25:03.373 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 12:25:03.490 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 12:25:03.433 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 12:25:03.476 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 12:25:28.947 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46484 10 6452 1 2025-10-09 12:26:29.356 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36790 10 6452 1 2025-10-09 12:22:41.623 00:06:00.362 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 12:27:29.767 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49646 10 6452 1 2025-10-09 12:28:30.169 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:52690 10 6452 1 2025-10-09 12:29:30.530 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33930 10 6452 1 2025-10-09 12:30:03.602 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 12:30:03.505 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 12:30:03.783 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 12:30:03.718 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 12:30:03.686 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 12:25:41.629 00:06:00.355 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 12:30:30.947 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:49400 10 6452 1 2025-10-09 12:31:31.322 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42948 10 6452 1 2025-10-09 12:32:31.731 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41700 10 6452 1 2025-10-09 12:33:32.154 00:00:11.078 TCP 1.101.0.1:3000 -> 23.104.0.1:56322 10 6452 1 2025-10-09 12:34:33.280 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38948 10 6452 1 2025-10-09 12:29:41.626 00:06:00.362 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 12:35:03.878 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 12:35:03.698 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 12:35:03.782 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 12:35:03.757 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 12:35:03.961 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 12:35:33.682 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:58308 10 6452 1 2025-10-09 12:36:34.063 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39654 10 6452 1 2025-10-09 12:32:41.628 00:06:00.357 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 12:37:34.464 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:40820 10 6452 1 2025-10-09 12:38:34.825 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36026 10 6452 1 2025-10-09 12:39:35.232 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51036 10 6452 1 2025-10-09 12:40:03.836 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 12:40:03.782 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 12:40:03.757 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 12:40:03.834 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 12:40:03.839 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 12:40:35.636 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38136 10 6452 1 2025-10-09 12:36:41.629 00:06:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 12:41:36.042 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41318 10 6452 1 2025-10-09 12:42:36.449 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49996 10 6452 1 2025-10-09 12:43:36.852 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:39818 10 6452 1 2025-10-09 12:39:41.631 00:06:00.362 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 12:44:37.277 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:51610 10 6452 1 2025-10-09 12:45:04.052 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 12:45:03.974 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 12:45:03.973 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 12:45:03.775 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 12:45:03.970 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 12:45:37.691 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:53952 10 6452 1 2025-10-09 12:46:38.064 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:35776 10 6452 1 2025-10-09 12:47:38.446 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47170 10 6452 1 2025-10-09 12:43:41.629 00:06:00.367 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 12:48:38.858 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:51274 10 6452 1 2025-10-09 12:49:39.240 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52482 10 6452 1 2025-10-09 12:50:04.337 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 12:50:04.076 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 12:50:04.252 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 12:50:04.128 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 12:50:04.254 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 12:50:39.644 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:35656 12 10375 1 2025-10-09 12:46:41.633 00:06:00.363 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 12:51:40.118 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34028 10 6452 1 2025-10-09 12:52:40.530 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45218 10 6452 1 2025-10-09 12:53:40.930 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:45180 10 6452 1 2025-10-09 12:54:41.306 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:35044 10 6452 1 2025-10-09 12:55:04.131 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 12:55:04.080 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 12:55:04.087 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 12:55:03.933 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 12:55:04.016 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 12:50:41.631 00:06:00.367 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 12:55:41.704 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:55792 10 6452 1 2025-10-09 12:56:42.077 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37406 10 6452 1 2025-10-09 12:57:42.430 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36260 10 6452 1 2025-10-09 12:53:41.633 00:06:00.363 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 Summary: total flows: 137, total bytes: 415209, total packets: 1024, avg bps: 851, avg pps: 0, avg bpp: 405 Time window: 2025-10-09 11:54:41 - 2025-10-09 12:59:41 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0031s User: 0.0020s Wall: 0.0023s flows/second: 59435.2 Runtime: 0.0023s