Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-22 14:59:04.817 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55640 10 6452 1 2025-10-22 15:00:05.224 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57380 10 6452 1 2025-10-22 15:01:22.014 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 15:01:05.628 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:49614 10 6452 1 2025-10-22 15:01:22.224 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 15:01:22.123 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 15:01:21.997 00:00:00.048 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:01:21.931 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 14:56:48.273 00:06:00.294 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 15:02:06.010 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:60668 10 6452 1 2025-10-22 15:03:06.367 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:60606 10 6452 1 2025-10-22 15:04:06.740 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33368 10 6452 1 2025-10-22 14:59:48.275 00:06:00.290 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 15:05:07.150 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41880 10 6452 1 2025-10-22 15:06:07.514 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41452 10 6452 1 2025-10-22 15:06:22.318 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 15:06:22.047 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 15:06:22.365 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:06:22.451 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:06:22.534 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 15:07:07.922 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:38254 10 6452 1 2025-10-22 15:08:08.337 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36160 10 6452 1 2025-10-22 15:03:48.274 00:06:00.294 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 15:09:08.738 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37672 10 6452 1 2025-10-22 15:10:09.143 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:37126 10 6452 1 2025-10-22 15:11:22.419 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 15:11:09.520 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43706 10 6452 1 2025-10-22 15:11:22.177 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 15:11:22.345 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 15:11:22.003 00:00:00.045 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:11:22.338 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:06:48.280 00:06:00.288 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 15:12:09.923 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:50372 10 6452 1 2025-10-22 15:13:10.331 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37186 10 6452 1 2025-10-22 15:14:10.731 00:00:10.411 TCP 1.101.0.1:3000 -> 23.104.0.1:38150 12 10375 1 2025-10-22 15:15:11.183 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34818 10 6452 1 2025-10-22 15:10:48.278 00:06:00.293 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 15:16:22.607 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 15:16:22.487 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 15:16:22.242 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 15:16:11.585 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53038 10 6452 1 2025-10-22 15:16:22.306 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:16:22.523 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:17:11.992 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39906 10 6452 1 2025-10-22 15:18:12.395 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51356 10 6452 1 2025-10-22 15:13:48.281 00:06:00.289 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 15:19:12.796 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:53470 10 6452 1 2025-10-22 15:20:13.155 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51262 10 6452 1 2025-10-22 15:21:22.580 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 15:21:22.581 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 15:21:13.553 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46722 10 6452 1 2025-10-22 15:21:22.355 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:21:22.522 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:21:22.606 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 15:22:13.964 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56714 10 6452 1 2025-10-22 15:17:48.284 00:06:00.290 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 15:23:14.379 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43920 10 6452 1 2025-10-22 15:24:14.783 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:35074 10 6452 1 2025-10-22 15:25:15.194 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:55624 10 6452 1 2025-10-22 15:20:48.286 00:06:00.286 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 15:26:22.778 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 15:26:22.650 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 15:26:22.577 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:26:22.580 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:26:22.662 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 15:26:15.568 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58276 10 6452 1 2025-10-22 15:27:15.971 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:55332 10 6452 1 2025-10-22 15:28:16.402 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34108 10 6452 1 2025-10-22 15:29:16.806 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57990 10 6452 1 2025-10-22 15:24:48.285 00:06:00.290 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 15:30:17.212 00:00:10.646 TCP 1.101.0.1:3000 -> 23.104.0.1:40746 10 6452 1 2025-10-22 15:31:22.996 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 15:31:22.740 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 15:31:22.730 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 15:31:22.734 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:31:22.912 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:31:17.892 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:54240 10 6452 1 2025-10-22 15:32:18.263 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35944 10 6452 1 2025-10-22 15:27:48.293 00:06:00.283 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 15:33:18.666 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53422 10 6452 1 2025-10-22 15:34:19.100 00:00:10.523 TCP 1.101.0.1:3000 -> 23.104.0.1:40402 14 14292 1 2025-10-22 15:35:19.662 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35072 10 6452 1 2025-10-22 15:36:23.065 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 15:36:22.982 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 15:36:23.004 00:00:00.042 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:36:22.984 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:36:22.984 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 15:36:20.099 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37210 10 6452 1 2025-10-22 15:31:48.287 00:06:00.291 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 15:37:20.499 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47690 10 6452 1 2025-10-22 15:38:20.905 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43998 10 6452 1 2025-10-22 15:39:21.318 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33644 10 6452 1 2025-10-22 15:34:48.290 00:06:00.285 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 15:40:21.724 00:00:10.663 TCP 1.101.0.1:3000 -> 23.104.0.1:36348 10 6452 1 2025-10-22 15:41:23.153 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 15:41:23.145 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 15:41:23.117 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:41:23.268 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:41:23.352 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 15:41:22.425 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51338 10 6452 1 2025-10-22 15:42:22.835 00:00:10.404 TCP 1.101.0.1:3000 -> 23.104.0.1:56314 10 6452 1 2025-10-22 15:43:23.281 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36178 10 6452 1 2025-10-22 15:38:48.288 00:06:00.293 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 15:44:23.690 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48498 10 6452 1 2025-10-22 15:45:24.109 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49424 10 6452 1 2025-10-22 15:46:23.351 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 15:46:23.131 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 15:46:22.993 00:00:00.040 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:46:23.136 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:46:23.219 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 15:46:24.511 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59822 10 6452 1 2025-10-22 15:41:48.291 00:06:00.288 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 15:47:24.915 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:55616 10 6452 1 2025-10-22 15:48:25.288 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41940 10 6452 1 2025-10-22 15:49:25.702 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54192 10 6452 1 2025-10-22 15:50:26.114 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47756 10 6452 1 2025-10-22 15:45:48.291 00:06:00.295 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 15:51:23.138 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 15:51:22.959 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 15:51:22.789 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:51:23.144 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:51:23.226 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 15:51:26.522 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52334 10 6452 1 2025-10-22 15:52:26.927 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:46988 10 6452 1 2025-10-22 15:53:27.355 00:00:10.610 TCP 1.101.0.1:3000 -> 23.104.0.1:34804 10 6452 1 2025-10-22 15:48:48.294 00:06:00.290 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 15:54:28.004 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54186 10 6452 1 2025-10-22 15:55:28.407 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34290 10 6452 1 2025-10-22 15:56:23.281 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 15:56:23.269 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 15:56:23.201 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 15:56:23.212 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:56:23.200 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 15:56:28.805 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:60580 10 6452 1 2025-10-22 15:57:29.184 00:00:10.642 TCP 1.101.0.1:3000 -> 23.104.0.1:60098 10 6452 1 2025-10-22 15:52:48.292 00:06:00.295 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 15:58:29.865 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:36402 10 6452 1 Summary: total flows: 137, total bytes: 428640, total packets: 1024, avg bps: 921, avg pps: 0, avg bpp: 418 Time window: 2025-10-22 14:56:48 - 2025-10-22 15:58:48 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0019s User: 0.0028s Wall: 0.0035s flows/second: 39686.4 Runtime: 0.0035s