Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-22 08:59:12.022 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34312 10 6452 1 2025-10-22 09:00:12.381 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47904 10 6452 1 2025-10-22 08:55:48.163 00:06:00.303 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 09:01:14.828 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 09:01:14.892 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 09:01:14.649 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:01:14.933 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:01:15.018 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 09:01:12.785 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52200 10 6452 1 2025-10-22 09:02:13.190 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34796 10 6452 1 2025-10-22 09:03:13.557 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50396 10 6452 1 2025-10-22 09:04:13.960 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36070 10 6452 1 2025-10-22 08:59:48.162 00:06:00.308 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 09:05:14.318 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:53624 10 6452 1 2025-10-22 09:06:14.934 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 09:06:14.829 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 09:06:14.698 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:06:14.935 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:06:15.018 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 09:06:14.715 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46678 10 6452 1 2025-10-22 09:07:15.114 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33420 10 6452 1 2025-10-22 09:02:48.166 00:06:00.301 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 09:08:15.516 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51786 10 6452 1 2025-10-22 09:09:15.924 00:00:10.462 TCP 1.101.0.1:3000 -> 23.104.0.1:43658 12 10375 1 2025-10-22 09:10:16.433 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55120 10 6452 1 2025-10-22 09:11:15.207 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 09:11:15.122 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:11:15.302 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:11:15.314 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 09:11:15.385 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 09:11:16.842 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:42666 12 6556 1 2025-10-22 09:06:48.165 00:06:00.306 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 09:12:17.274 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57440 10 6452 1 2025-10-22 09:13:17.688 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46466 10 6452 1 2025-10-22 09:14:18.115 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38154 10 6452 1 2025-10-22 09:09:48.167 00:06:00.302 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 09:15:18.486 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38762 10 6452 1 2025-10-22 09:16:15.248 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 09:16:15.058 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 09:16:15.338 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 09:16:15.186 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:16:15.166 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:16:18.898 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:40792 10 6452 1 2025-10-22 09:17:19.274 00:00:10.874 TCP 1.101.0.1:3000 -> 23.104.0.1:34676 10 6452 1 2025-10-22 09:18:20.187 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58142 10 6452 1 2025-10-22 09:13:48.166 00:06:00.308 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 09:19:20.591 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48434 10 6452 1 2025-10-22 09:20:20.955 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34446 10 6452 1 2025-10-22 09:21:15.394 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 09:21:15.301 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 09:21:15.053 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:21:15.357 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:21:15.440 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 09:21:21.364 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39850 10 6452 1 2025-10-22 09:16:48.168 00:06:00.304 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 09:22:21.764 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40422 10 6452 1 2025-10-22 09:23:22.179 00:00:10.467 TCP 1.101.0.1:3000 -> 23.104.0.1:59848 10 6452 1 2025-10-22 09:24:22.686 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43450 10 6452 1 2025-10-22 09:25:23.112 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33664 10 6452 1 2025-10-22 09:20:48.165 00:06:00.309 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 09:26:15.481 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:26:15.485 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 09:26:15.390 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 09:26:15.488 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:26:15.563 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 09:26:23.514 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:56808 10 6452 1 2025-10-22 09:27:23.879 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56900 10 6452 1 2025-10-22 09:28:24.281 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57698 10 6452 1 2025-10-22 09:23:48.169 00:06:00.303 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 09:29:24.685 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37348 10 6452 1 2025-10-22 09:30:25.107 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60368 10 6452 1 2025-10-22 09:31:15.642 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:31:15.700 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 09:31:15.642 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 09:31:15.633 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:31:15.738 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 09:31:25.508 00:00:10.835 TCP 1.101.0.1:3000 -> 23.104.0.1:59344 10 6452 1 2025-10-22 09:32:26.385 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36550 10 6452 1 2025-10-22 09:27:48.166 00:06:00.309 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 09:33:26.794 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:58046 10 6452 1 2025-10-22 09:34:27.207 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41312 10 6452 1 2025-10-22 09:35:27.615 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46290 10 6452 1 2025-10-22 09:30:48.170 00:06:00.303 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 09:36:15.542 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 09:36:15.791 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 09:36:15.567 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:36:15.608 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:36:15.691 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 09:36:28.022 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:34024 10 6452 1 2025-10-22 09:37:28.440 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45596 10 6452 1 2025-10-22 09:38:28.804 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:42398 10 6452 1 2025-10-22 09:39:29.178 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47824 10 6452 1 2025-10-22 09:34:48.170 00:06:00.307 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 09:40:29.578 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52134 10 6452 1 2025-10-22 09:41:15.932 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 09:41:15.789 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 09:41:15.683 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:41:15.849 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:41:15.563 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 09:41:29.984 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:52546 11 6504 1 2025-10-22 09:42:30.436 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58196 10 6452 1 2025-10-22 09:37:48.173 00:06:00.302 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 09:43:30.839 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:36654 10 6452 1 2025-10-22 09:44:31.264 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52676 10 6452 1 2025-10-22 09:45:31.681 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:49366 10 6452 1 2025-10-22 09:46:15.888 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 09:46:15.861 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 09:46:15.799 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 09:46:15.570 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:46:15.804 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:46:32.065 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51430 10 6452 1 2025-10-22 09:41:48.171 00:06:00.309 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 09:47:32.469 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:60520 11 6504 1 2025-10-22 09:48:32.925 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40546 10 6452 1 2025-10-22 09:49:33.341 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:41546 10 6452 1 2025-10-22 09:44:48.175 00:06:00.303 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 09:50:33.707 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:59918 10 6452 1 2025-10-22 09:51:15.782 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 09:51:15.839 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 09:51:15.692 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:51:15.924 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:51:16.007 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 09:51:34.116 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54454 10 6452 1 2025-10-22 09:52:34.516 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40980 10 6452 1 2025-10-22 09:53:34.880 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37468 10 6452 1 2025-10-22 09:48:48.176 00:06:00.306 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 09:54:35.280 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35156 10 6452 1 2025-10-22 09:55:35.643 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50586 10 6452 1 2025-10-22 09:56:16.135 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 09:56:16.164 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 09:56:15.867 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:56:16.008 00:00:00.034 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 09:56:16.090 00:00:00.036 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 09:51:48.177 00:06:00.302 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 09:56:36.059 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46330 10 6452 1 2025-10-22 09:57:36.417 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:35668 10 6452 1 2025-10-22 09:58:36.786 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:60850 10 6452 1 Summary: total flows: 137, total bytes: 421008, total packets: 1024, avg bps: 891, avg pps: 0, avg bpp: 411 Time window: 2025-10-22 08:55:48 - 2025-10-22 09:58:47 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0048s User: 0.0010s Wall: 0.0020s flows/second: 68562.2 Runtime: 0.0020s