Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-22 15:59:30.277 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58248 10 6452 1 2025-10-22 16:00:30.683 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:41872 10 6452 1 2025-10-22 15:55:48.296 00:06:00.291 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 16:01:23.433 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 16:01:23.321 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 16:01:23.161 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 16:01:23.243 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 16:01:23.327 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 16:01:31.113 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46360 10 6452 1 2025-10-22 16:02:31.519 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39642 10 6452 1 2025-10-22 16:03:31.922 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:50380 10 6452 1 2025-10-22 16:04:32.337 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49082 10 6452 1 2025-10-22 15:59:48.293 00:06:00.295 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 16:05:32.752 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60652 10 6452 1 2025-10-22 16:06:24.170 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 16:06:24.111 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 16:06:23.973 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 16:06:24.222 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 16:06:24.305 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 16:06:33.115 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36282 10 6452 1 2025-10-22 16:07:33.520 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41762 10 6452 1 2025-10-22 16:02:48.296 00:06:00.294 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 16:08:33.934 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:35004 10 6452 1 2025-10-22 16:09:34.369 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39622 10 6452 1 2025-10-22 16:10:34.780 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:46078 10 6452 1 2025-10-22 16:11:23.377 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 16:11:23.590 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 16:11:23.484 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 16:11:23.506 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 16:11:23.460 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 16:06:48.294 00:06:00.302 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 16:11:35.198 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60064 10 6452 1 2025-10-22 16:12:35.604 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58202 10 6452 1 2025-10-22 16:13:36.015 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55160 10 6452 1 2025-10-22 16:09:48.297 00:06:00.296 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 16:14:36.418 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:54280 10 6452 1 2025-10-22 16:15:36.817 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37502 10 6452 1 2025-10-22 16:16:23.775 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 16:16:23.751 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 16:16:23.315 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 16:16:23.751 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 16:16:23.834 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 16:16:37.219 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:53794 10 6452 1 2025-10-22 16:17:37.608 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:44100 10 6452 1 2025-10-22 16:13:48.295 00:06:00.303 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 16:18:37.978 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47932 10 6452 1 2025-10-22 16:19:38.394 00:00:10.625 TCP 1.101.0.1:3000 -> 23.104.0.1:42256 12 10375 1 2025-10-22 16:20:39.083 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43216 10 6452 1 2025-10-22 16:21:23.985 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 16:21:23.888 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 16:21:23.667 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 16:21:23.600 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 16:21:23.681 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 16:16:48.301 00:06:00.295 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 16:21:39.483 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45866 10 6452 1 2025-10-22 16:22:39.890 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:55454 10 6452 1 2025-10-22 16:23:40.259 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45322 10 6452 1 2025-10-22 16:24:40.665 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:40132 12 10369 1 2025-10-22 16:20:48.300 00:06:00.301 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 16:25:41.111 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43938 10 6452 1 2025-10-22 16:26:24.221 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 16:26:23.901 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 16:26:23.990 00:00:00.048 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 16:26:23.624 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 16:26:24.304 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 16:26:41.517 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33484 10 6452 1 2025-10-22 16:27:41.925 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:42736 10 6452 1 2025-10-22 16:23:48.302 00:06:00.297 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 16:28:42.350 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57242 10 6452 1 2025-10-22 16:29:42.747 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54484 10 6452 1 2025-10-22 16:30:43.152 00:00:10.471 TCP 1.101.0.1:3000 -> 23.104.0.1:49872 10 6452 1 2025-10-22 16:31:23.942 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 16:31:23.943 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 16:31:24.079 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 16:31:23.879 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 16:31:23.963 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 16:31:43.661 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54428 10 6452 1 2025-10-22 16:27:48.300 00:06:00.302 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 16:32:44.092 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59328 10 6452 1 2025-10-22 16:33:44.496 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59956 10 6452 1 2025-10-22 16:34:44.899 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43530 12 6556 1 2025-10-22 16:30:48.302 00:06:00.298 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 16:35:45.310 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58118 10 6452 1 2025-10-22 16:36:24.176 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 16:36:24.063 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 16:36:24.097 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 16:36:24.067 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 16:36:24.094 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 16:36:45.778 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:42634 10 6452 1 2025-10-22 16:37:46.195 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60088 10 6452 1 2025-10-22 16:38:46.597 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47134 10 6452 1 2025-10-22 16:34:48.303 00:06:00.301 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 16:39:47.003 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:58370 12 10375 1 2025-10-22 16:40:47.489 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46918 10 6452 1 2025-10-22 16:41:25.565 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 16:41:25.514 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 16:41:25.403 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 16:41:25.530 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 16:41:25.648 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 16:41:47.902 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:54734 10 6452 1 2025-10-22 16:37:48.305 00:06:00.299 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 16:42:48.317 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50028 10 6452 1 2025-10-22 16:43:48.725 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:49922 10 6452 1 2025-10-22 16:44:49.139 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39988 10 6452 1 2025-10-22 16:45:49.501 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39224 10 6452 1 2025-10-22 16:46:24.332 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 16:46:24.274 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 16:46:24.305 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 16:46:24.176 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 16:46:24.260 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 16:41:48.305 00:06:00.302 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 16:46:49.910 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:34690 10 6452 1 2025-10-22 16:47:50.275 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38676 10 6452 1 2025-10-22 16:48:50.676 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:43346 12 6556 1 2025-10-22 16:44:48.310 00:06:00.294 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 16:49:51.106 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56906 10 6452 1 2025-10-22 16:50:51.507 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:37172 10 6452 1 2025-10-22 16:51:24.341 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 16:51:24.206 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 16:51:24.324 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 16:51:24.055 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 16:51:24.406 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 16:51:51.866 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59982 10 6452 1 2025-10-22 16:52:52.277 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40664 10 6452 1 2025-10-22 16:48:48.309 00:06:00.301 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 16:53:52.684 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36164 10 6452 1 2025-10-22 16:54:53.112 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59164 10 6452 1 2025-10-22 16:55:53.519 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40506 10 6452 1 2025-10-22 16:56:24.486 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 16:56:24.390 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 16:56:24.234 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 16:56:24.633 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 16:56:24.737 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 16:51:48.312 00:06:00.295 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 16:56:53.927 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:40722 10 6452 1 2025-10-22 16:57:54.350 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46288 10 6452 1 Summary: total flows: 136, total bytes: 422396, total packets: 1018, avg bps: 904, avg pps: 0, avg bpp: 414 Time window: 2025-10-22 15:55:48 - 2025-10-22 16:58:04 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0052s User: 0.0007s Wall: 0.0021s flows/second: 65042.8 Runtime: 0.0021s