Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-22 12:59:01.115 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:55346 10 6452 1 2025-10-22 13:00:01.515 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43636 10 6452 1 2025-10-22 13:01:01.892 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:33790 12 6556 1 2025-10-22 13:01:19.762 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 13:01:19.715 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 13:01:19.687 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:01:19.650 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:01:19.733 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 13:02:02.317 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:45404 10 6452 1 2025-10-22 12:57:48.236 00:06:00.299 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 13:03:02.698 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36422 10 6452 1 2025-10-22 13:04:03.109 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52712 10 6452 1 2025-10-22 13:05:03.519 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43820 10 6452 1 2025-10-22 13:00:48.240 00:06:00.293 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 13:06:03.883 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:44590 10 6452 1 2025-10-22 13:06:19.883 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 13:06:19.771 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 13:06:19.684 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:06:19.884 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:06:19.969 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 13:07:04.294 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38076 10 6452 1 2025-10-22 13:08:04.701 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54354 10 6452 1 2025-10-22 13:09:05.118 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47686 10 6452 1 2025-10-22 13:04:48.237 00:06:00.299 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 13:10:05.519 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57746 10 6452 1 2025-10-22 13:11:05.922 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:39624 10 6452 1 2025-10-22 13:11:19.753 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:11:20.258 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:11:20.259 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 13:11:20.343 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 13:11:20.342 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 13:12:06.345 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49054 10 6452 1 2025-10-22 13:07:48.241 00:06:00.293 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 13:13:06.760 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:32852 10 6452 1 2025-10-22 13:14:07.182 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:38204 12 10375 1 2025-10-22 13:15:07.660 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58666 10 6452 1 2025-10-22 13:16:19.941 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:16:08.084 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50070 10 6452 1 2025-10-22 13:16:19.741 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:16:19.823 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 13:16:20.191 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 13:16:20.149 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 13:11:48.240 00:06:00.297 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 13:17:08.488 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36736 10 6452 1 2025-10-22 13:18:08.892 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:44306 10 6452 1 2025-10-22 13:19:09.267 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:37714 12 10369 1 2025-10-22 13:14:48.244 00:06:00.291 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 13:20:09.745 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42184 10 6452 1 2025-10-22 13:21:19.720 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:21:20.301 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 13:21:20.064 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 13:21:20.186 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 13:21:10.153 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59998 10 6452 1 2025-10-22 13:21:20.218 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:22:10.555 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58952 10 6452 1 2025-10-22 13:23:10.957 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53222 10 6452 1 2025-10-22 13:18:48.242 00:06:00.296 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 13:24:11.361 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41598 10 6452 1 2025-10-22 13:25:11.767 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:54652 10 6452 1 2025-10-22 13:26:20.150 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 13:26:20.332 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 13:26:20.360 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 13:26:20.129 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:26:12.185 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40586 10 6452 1 2025-10-22 13:26:20.068 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:21:48.245 00:06:00.291 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 13:27:12.606 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45052 10 6452 1 2025-10-22 13:28:13.014 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41170 10 6452 1 2025-10-22 13:29:13.423 00:00:10.316 TCP 1.101.0.1:3000 -> 23.104.0.1:43920 10 6452 1 2025-10-22 13:30:13.779 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42870 10 6452 1 2025-10-22 13:25:48.243 00:06:00.298 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 13:31:20.530 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 13:31:14.187 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58302 10 6452 1 2025-10-22 13:31:20.286 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 13:31:20.420 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:31:20.290 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:31:20.372 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 13:32:14.586 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42968 10 6452 1 2025-10-22 13:33:14.946 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:60138 10 6452 1 2025-10-22 13:28:48.249 00:06:00.290 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 13:34:15.355 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:39678 12 10375 1 2025-10-22 13:35:15.837 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:57990 10 6452 1 2025-10-22 13:36:20.452 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 13:36:20.452 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 13:36:20.407 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:36:20.547 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:36:20.630 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 13:36:16.264 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40220 10 6452 1 2025-10-22 13:37:16.675 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40992 10 6452 1 2025-10-22 13:32:48.246 00:06:00.296 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 13:38:17.031 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49456 10 6452 1 2025-10-22 13:39:17.436 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59838 10 6452 1 2025-10-22 13:40:17.843 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:44158 10 6452 1 2025-10-22 13:35:48.249 00:06:00.291 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 13:41:20.851 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 13:41:20.685 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 13:41:20.769 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 13:41:20.697 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:41:20.770 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:41:18.262 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39326 10 6452 1 2025-10-22 13:42:18.646 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53370 10 6452 1 2025-10-22 13:43:19.012 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45128 10 6452 1 2025-10-22 13:44:19.417 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:47248 10 6452 1 2025-10-22 13:39:48.250 00:06:00.294 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 13:45:19.774 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48626 10 6452 1 2025-10-22 13:46:20.714 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 13:46:20.723 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 13:46:20.569 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 13:46:20.663 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:46:20.631 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:46:20.182 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36694 10 6452 1 2025-10-22 13:47:20.589 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39988 10 6452 1 2025-10-22 13:42:48.258 00:06:00.288 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 13:48:20.992 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43002 10 6452 1 2025-10-22 13:49:21.395 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:54610 12 10369 1 2025-10-22 13:50:21.865 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38436 10 6452 1 2025-10-22 13:51:20.726 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 13:51:20.731 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 13:51:20.593 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:51:20.653 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:51:20.738 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 13:51:22.273 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58158 10 6452 1 2025-10-22 13:46:48.258 00:06:00.291 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 13:52:22.680 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60708 10 6452 1 2025-10-22 13:53:23.109 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58064 12 6556 1 2025-10-22 13:54:23.515 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33928 10 6452 1 2025-10-22 13:49:48.260 00:06:00.287 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 13:55:23.881 00:00:10.708 TCP 1.101.0.1:3000 -> 23.104.0.1:57636 10 6452 1 2025-10-22 13:56:21.152 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 13:56:20.634 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 13:56:21.002 00:00:00.045 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 13:56:20.782 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:56:21.070 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:56:24.624 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50704 12 6556 1 2025-10-22 13:57:25.031 00:00:10.632 TCP 1.101.0.1:3000 -> 23.104.0.1:60640 10 6452 1 2025-10-22 13:58:25.701 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51510 10 6452 1 2025-10-22 13:53:48.261 00:06:00.289 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 Summary: total flows: 137, total bytes: 432869, total packets: 1032, avg bps: 930, avg pps: 0, avg bpp: 419 Time window: 2025-10-22 12:57:48 - 2025-10-22 13:59:48 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0046s User: 0.0009s Wall: 0.0020s flows/second: 67388.3 Runtime: 0.0021s