Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-14 08:59:04.354 00:00:11.630 TCP 1.101.0.1:3000 -> 23.104.0.1:53314 10 6452 1 2025-10-14 09:00:06.024 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43036 10 6452 1 2025-10-14 09:01:06.422 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:42510 10 6452 1 2025-10-14 09:02:06.784 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40228 10 6452 1 2025-10-14 09:02:23.726 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 09:02:23.874 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 09:02:23.878 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 09:02:23.864 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 09:02:23.947 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 08:58:43.983 00:05:00.478 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 09:03:07.191 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50912 10 6452 1 2025-10-14 08:59:43.986 00:05:00.472 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 09:04:07.591 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:58976 10 6452 1 2025-10-14 09:05:07.993 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59420 10 6452 1 2025-10-14 09:06:08.397 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:44308 10 6452 1 2025-10-14 09:07:08.815 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36092 10 6452 1 2025-10-14 09:07:23.886 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 09:07:24.180 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 09:07:23.710 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 09:07:24.128 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 09:07:24.212 00:00:00.034 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 09:08:09.214 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:59754 10 6452 1 2025-10-14 09:04:43.984 00:05:00.485 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 09:09:09.626 00:00:10.316 TCP 1.101.0.1:3000 -> 23.104.0.1:54424 10 6452 1 2025-10-14 09:05:43.988 00:05:00.473 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 09:10:09.984 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:58656 10 6452 1 2025-10-14 09:11:10.392 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57318 10 6452 1 2025-10-14 09:12:24.087 00:00:00.041 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 09:12:24.005 00:00:00.040 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 09:12:10.795 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:50320 10 6452 1 2025-10-14 09:12:24.088 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 09:12:24.089 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 09:12:24.049 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 09:13:11.213 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35196 10 6452 1 2025-10-14 09:14:11.619 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:49902 10 6452 1 2025-10-14 09:10:43.987 00:05:00.476 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 09:15:11.983 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:36702 12 6556 1 2025-10-14 09:11:43.990 00:05:00.471 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 09:16:12.400 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44220 10 6452 1 2025-10-14 09:17:24.280 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 09:17:24.323 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 09:17:23.961 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 09:17:24.165 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 09:17:24.197 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 09:17:12.772 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:48982 10 6452 1 2025-10-14 09:18:13.190 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50088 10 6452 1 2025-10-14 09:19:13.592 00:00:10.458 TCP 1.101.0.1:3000 -> 23.104.0.1:51034 10 6452 1 2025-10-14 09:20:14.110 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45290 10 6452 1 2025-10-14 09:16:43.989 00:05:00.474 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 09:21:14.522 00:00:15.872 TCP 1.101.0.1:3000 -> 23.104.0.1:60516 10 6452 1 2025-10-14 09:17:43.992 00:05:00.470 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 09:22:24.342 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 09:22:24.309 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 09:22:24.308 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 09:22:24.262 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 09:22:24.259 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 09:22:20.463 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54770 10 6452 1 2025-10-14 09:23:20.826 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45586 10 6452 1 2025-10-14 09:24:21.230 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53718 10 6452 1 2025-10-14 09:25:21.632 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:56566 10 6452 1 2025-10-14 09:26:21.989 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51802 10 6452 1 2025-10-14 09:22:43.992 00:05:00.478 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 09:27:24.438 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 09:27:24.488 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 09:27:24.441 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 09:27:24.449 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 09:27:24.355 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 09:27:22.395 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58640 10 6452 1 2025-10-14 09:23:43.995 00:05:00.474 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 09:28:22.798 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:48832 10 6452 1 2025-10-14 09:29:23.169 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46378 10 6452 1 2025-10-14 09:30:23.573 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58514 10 6452 1 2025-10-14 09:31:23.943 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40464 10 6452 1 2025-10-14 09:32:24.534 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 09:32:24.454 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 09:32:24.632 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 09:32:24.520 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 09:32:24.451 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 09:32:24.356 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49108 10 6452 1 2025-10-14 09:28:43.993 00:05:00.479 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 09:33:24.761 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51224 10 6452 1 2025-10-14 09:29:43.996 00:05:00.473 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 09:34:25.179 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40822 10 6452 1 2025-10-14 09:35:25.581 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40876 10 6452 1 2025-10-14 09:36:25.992 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47666 10 6452 1 2025-10-14 09:37:24.662 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 09:37:24.661 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 09:37:24.460 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 09:37:24.608 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 09:37:24.689 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 09:37:26.395 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:60374 10 6452 1 2025-10-14 09:38:26.797 00:00:11.017 TCP 1.101.0.1:3000 -> 23.104.0.1:41962 10 6452 1 2025-10-14 09:34:43.995 00:05:00.477 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 09:39:27.856 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:60248 10 6452 1 2025-10-14 09:40:28.269 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56796 10 6452 1 2025-10-14 09:35:44.001 00:06:00.470 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-14 09:41:28.637 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43448 10 6452 1 2025-10-14 09:42:24.905 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 09:42:24.906 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 09:42:24.504 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 09:42:25.061 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 09:42:25.145 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 09:42:29.052 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47402 10 6452 1 2025-10-14 09:43:29.415 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:48904 10 6452 1 2025-10-14 09:44:29.777 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:35464 10 6452 1 2025-10-14 09:40:43.998 00:05:00.476 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 09:45:30.188 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44508 10 6452 1 2025-10-14 09:46:30.587 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:52024 10 6452 1 2025-10-14 09:47:24.832 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 09:47:24.677 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 09:47:24.561 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 09:47:24.841 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 09:47:24.644 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 09:47:30.955 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:51378 10 6452 1 2025-10-14 09:42:44.000 00:06:00.472 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-14 09:48:31.368 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39360 10 6452 1 2025-10-14 09:49:31.788 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59670 10 6452 1 2025-10-14 09:50:32.199 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:57590 10 6452 1 2025-10-14 09:46:43.999 00:05:00.480 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 09:51:32.577 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56102 10 6452 1 2025-10-14 09:52:24.895 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 09:52:24.928 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 09:52:24.814 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 09:52:24.809 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 09:52:24.814 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 09:52:32.977 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46226 10 6452 1 2025-10-14 09:53:33.385 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56786 10 6452 1 2025-10-14 09:49:44.004 00:06:00.033 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-10-14 09:54:33.781 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:38540 10 6452 1 2025-10-14 09:55:34.142 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47560 10 6452 1 2025-10-14 09:56:34.547 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35712 10 6452 1 2025-10-14 09:57:24.943 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 09:57:24.907 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 09:57:24.895 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 09:57:24.860 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 09:57:25.064 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 09:52:44.001 00:06:00.482 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-14 09:57:34.959 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47976 10 6452 1 2025-10-14 09:58:35.368 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59680 10 6452 1 Summary: total flows: 139, total bytes: 416787, total packets: 1017, avg bps: 925, avg pps: 0, avg bpp: 409 Time window: 2025-10-14 08:58:43 - 2025-10-14 09:58:45 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0027s User: 0.0027s Wall: 0.0018s flows/second: 76500.2 Runtime: 0.0018s