Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-23 04:59:35.725 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40152 10 6452 1 2025-10-23 05:00:36.133 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47858 10 6452 1 2025-10-23 05:01:39.179 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 05:01:39.105 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 05:01:38.847 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:01:39.098 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:01:39.003 00:00:00.048 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 05:01:36.539 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36324 10 6452 1 2025-10-23 04:56:48.538 00:06:00.322 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 05:02:36.941 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:37274 10 6452 1 2025-10-23 05:03:37.318 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:56564 10 6452 1 2025-10-23 04:59:48.541 00:06:00.318 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 05:04:37.678 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:58970 10 6452 1 2025-10-23 05:05:38.104 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41764 10 6452 1 2025-10-23 05:06:39.375 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 05:06:39.298 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 05:06:39.253 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 05:06:39.122 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:06:39.292 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:06:38.462 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40298 10 6452 1 2025-10-23 05:07:38.857 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:42728 10 6452 1 2025-10-23 05:03:48.540 00:06:00.324 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 05:08:39.280 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55772 10 6452 1 2025-10-23 05:09:39.680 00:00:10.529 TCP 1.101.0.1:3000 -> 23.104.0.1:51274 10 6452 1 2025-10-23 05:10:40.250 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42496 10 6452 1 2025-10-23 05:11:39.263 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 05:11:39.094 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 05:11:39.201 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:11:39.308 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:11:39.390 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 05:06:48.543 00:06:00.318 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 05:11:40.666 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60360 10 6452 1 2025-10-23 05:12:41.093 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:58514 10 6452 1 2025-10-23 05:13:41.459 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42166 10 6452 1 2025-10-23 05:14:41.825 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:60612 12 10375 1 2025-10-23 05:10:48.541 00:06:00.323 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 05:15:42.308 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33676 10 6452 1 2025-10-23 05:16:39.412 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 05:16:39.411 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 05:16:39.309 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 05:16:39.090 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:16:39.330 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:16:42.714 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34442 10 6452 1 2025-10-23 05:17:43.114 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:45944 10 6452 1 2025-10-23 05:13:48.544 00:06:00.318 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 05:18:43.533 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36378 12 6556 1 2025-10-23 05:19:43.941 00:00:10.429 TCP 1.101.0.1:3000 -> 23.104.0.1:51516 11 6504 1 2025-10-23 05:20:44.404 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:60918 10 6452 1 2025-10-23 05:21:39.748 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 05:21:39.532 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 05:21:39.666 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 05:21:39.267 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:21:39.666 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:21:44.802 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34956 10 6452 1 2025-10-23 05:17:48.544 00:06:00.321 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 05:22:45.169 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:54494 10 6452 1 2025-10-23 05:23:45.570 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46664 12 6556 1 2025-10-23 05:24:45.971 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38264 10 6452 1 2025-10-23 05:20:48.547 00:06:00.318 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 05:25:46.391 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50528 10 6452 1 2025-10-23 05:26:39.768 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 05:26:39.808 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 05:26:39.687 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 05:26:39.849 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:26:39.686 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:26:46.764 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45416 10 6452 1 2025-10-23 05:27:47.179 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:46018 10 6452 1 2025-10-23 05:28:47.540 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41934 10 6452 1 2025-10-23 05:24:48.544 00:06:00.324 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 05:29:47.946 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36972 12 6556 1 2025-10-23 05:30:48.352 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54956 10 6452 1 2025-10-23 05:31:40.075 00:00:00.035 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 05:31:39.932 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 05:31:39.840 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 05:31:39.884 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:31:39.992 00:00:00.036 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:31:48.764 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:51046 10 6452 1 2025-10-23 05:27:48.548 00:06:00.320 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 05:32:49.181 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45160 10 6452 1 2025-10-23 05:33:49.582 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48746 10 6452 1 2025-10-23 05:34:49.945 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:37164 10 6452 1 2025-10-23 05:35:50.320 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54678 10 6452 1 2025-10-23 05:36:39.604 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:36:39.516 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 05:36:39.518 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 05:36:39.617 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:36:39.687 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 05:31:48.546 00:06:00.327 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 05:36:50.684 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48866 10 6452 1 2025-10-23 05:37:51.107 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:36266 10 6452 1 2025-10-23 05:38:51.538 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42740 10 6452 1 2025-10-23 05:34:48.549 00:06:00.321 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 05:39:51.943 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:56314 10 6452 1 2025-10-23 05:40:52.354 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49306 10 6452 1 2025-10-23 05:41:39.686 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 05:41:39.574 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 05:41:39.709 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:41:39.921 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:41:40.005 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 05:41:52.752 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39484 10 6452 1 2025-10-23 05:42:53.150 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56104 10 6452 1 2025-10-23 05:38:48.546 00:06:00.326 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 05:43:53.558 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56392 10 6452 1 2025-10-23 05:44:53.961 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37178 10 6452 1 2025-10-23 05:45:54.363 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38876 10 6452 1 2025-10-23 05:46:40.166 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 05:46:39.890 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 05:46:39.806 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:46:40.129 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 05:46:40.083 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:41:48.550 00:06:00.321 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 05:46:54.765 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:35274 10 6452 1 2025-10-23 05:47:55.131 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36590 10 6452 1 2025-10-23 05:48:55.535 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44880 10 6452 1 2025-10-23 05:49:55.937 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:50312 10 6452 1 2025-10-23 05:45:48.550 00:06:00.324 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 05:50:56.360 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53208 10 6452 1 2025-10-23 05:51:39.897 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 05:51:39.814 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:51:40.114 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 05:51:39.990 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 05:51:40.061 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:51:56.757 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:45198 10 6452 1 2025-10-23 05:52:57.174 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52834 10 6452 1 2025-10-23 05:48:48.553 00:06:00.320 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 05:53:57.536 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53522 10 6452 1 2025-10-23 05:54:57.943 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:57726 10 6452 1 2025-10-23 05:55:58.319 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:40754 10 6452 1 2025-10-23 05:56:40.230 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 05:56:40.006 00:00:00.041 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 05:56:40.122 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:56:40.022 00:00:00.041 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:56:40.104 00:00:00.041 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 05:56:58.694 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54590 10 6452 1 2025-10-23 05:52:48.556 00:06:00.322 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 05:57:59.119 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44348 10 6452 1 Summary: total flows: 136, total bytes: 414712, total packets: 1017, avg bps: 891, avg pps: 0, avg bpp: 407 Time window: 2025-10-23 04:56:48 - 2025-10-23 05:58:48 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0013s User: 0.0038s Wall: 0.0022s flows/second: 61594.4 Runtime: 0.0022s