Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-28 12:58:52.953 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:37306 10 6452 1 2025-10-28 12:59:13.486 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 12:59:13.495 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 12:59:13.389 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 12:59:13.501 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 12:59:13.585 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 12:59:53.328 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35316 10 6452 1 2025-10-28 12:55:51.384 00:06:00.335 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 13:00:53.733 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34760 10 6452 1 2025-10-28 13:01:54.145 00:00:14.253 TCP 1.101.0.1:3000 -> 23.104.0.1:47218 10 6452 1 2025-10-28 13:02:58.441 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40354 10 6452 1 2025-10-28 13:03:58.808 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33362 10 6452 1 2025-10-28 13:04:13.570 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 13:04:13.423 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:04:13.430 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:04:13.214 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:04:13.488 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 12:59:51.387 00:06:00.330 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 13:04:59.227 00:00:10.857 TCP 1.101.0.1:3000 -> 23.104.0.1:52762 10 6452 1 2025-10-28 13:06:00.115 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48496 10 6452 1 2025-10-28 13:07:00.521 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38524 10 6452 1 2025-10-28 13:02:51.385 00:06:00.335 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 13:08:00.881 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54948 10 6452 1 2025-10-28 13:09:13.580 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:09:13.337 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:09:13.553 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:09:13.547 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:09:01.289 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43218 10 6452 1 2025-10-28 13:09:13.635 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 13:10:01.696 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40232 10 6452 1 2025-10-28 13:11:02.113 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34846 10 6452 1 2025-10-28 13:06:51.389 00:06:00.329 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 13:12:02.518 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43632 10 6452 1 2025-10-28 13:13:02.920 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:36702 10 6452 1 2025-10-28 13:14:13.804 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 13:14:13.646 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:14:13.645 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:14:13.581 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:14:13.721 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:14:03.359 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51946 10 6452 1 2025-10-28 13:09:51.388 00:06:00.334 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 13:15:03.757 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:39230 10 6452 1 2025-10-28 13:16:04.128 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43766 10 6452 1 2025-10-28 13:17:04.531 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:52284 10 6452 1 2025-10-28 13:18:04.898 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:44494 10 6452 1 2025-10-28 13:13:51.393 00:06:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 13:19:13.637 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:19:13.634 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:19:13.574 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:19:13.637 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:19:13.720 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 13:19:05.320 00:00:10.719 TCP 1.101.0.1:3000 -> 23.104.0.1:33806 10 6452 1 2025-10-28 13:20:06.107 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37390 10 6452 1 2025-10-28 13:21:06.511 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:47314 10 6452 1 2025-10-28 13:16:51.390 00:06:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 13:22:06.924 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:40602 10 6452 1 2025-10-28 13:23:07.300 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:59998 10 6452 1 2025-10-28 13:24:13.580 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:24:13.794 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:24:13.825 00:00:00.031 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:24:13.991 00:00:00.049 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:24:14.074 00:00:00.050 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 13:24:07.673 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:54042 10 6452 1 2025-10-28 13:25:08.123 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54522 10 6452 1 2025-10-28 13:20:51.394 00:06:00.326 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 13:26:08.536 00:00:18.151 TCP 1.101.0.1:3000 -> 23.104.0.1:38346 10 6452 1 2025-10-28 13:27:16.758 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:32848 10 6452 1 2025-10-28 13:28:17.172 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54550 10 6452 1 2025-10-28 13:23:51.392 00:06:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 13:29:13.861 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:29:13.862 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:29:13.804 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:29:13.915 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:29:13.999 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 13:29:17.576 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60186 10 6452 1 2025-10-28 13:30:17.975 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44846 10 6452 1 2025-10-28 13:31:18.381 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47542 10 6452 1 2025-10-28 13:32:18.787 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:42112 12 10375 1 2025-10-28 13:27:51.399 00:06:00.323 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 13:33:19.267 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54520 10 6452 1 2025-10-28 13:34:13.993 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 13:34:14.142 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:34:14.062 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:34:13.765 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:34:13.910 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:34:19.672 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50912 10 6452 1 2025-10-28 13:35:20.101 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60766 10 6452 1 2025-10-28 13:30:51.397 00:06:00.328 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 13:36:20.506 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47822 10 6452 1 2025-10-28 13:37:20.870 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56286 10 6452 1 2025-10-28 13:38:21.274 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36666 10 6452 1 2025-10-28 13:39:14.172 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:39:14.172 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:39:14.007 00:00:00.046 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:39:14.070 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:39:14.253 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 13:39:21.644 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:40364 10 6452 1 2025-10-28 13:34:51.401 00:06:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 13:40:22.117 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59688 10 6452 1 2025-10-28 13:41:22.525 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55172 10 6452 1 2025-10-28 13:42:22.936 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43268 10 6452 1 2025-10-28 13:37:51.399 00:06:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 13:43:23.341 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49238 10 6452 1 2025-10-28 13:44:14.147 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:44:14.144 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:44:13.890 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:44:14.218 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:44:14.301 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 13:44:23.746 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35840 10 6452 1 2025-10-28 13:45:24.156 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36356 10 6452 1 2025-10-28 13:46:24.560 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33172 10 6452 1 2025-10-28 13:41:51.402 00:06:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 13:47:24.968 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47788 10 6452 1 2025-10-28 13:48:25.375 00:00:10.315 TCP 1.101.0.1:3000 -> 23.104.0.1:46802 10 6452 1 2025-10-28 13:49:14.348 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 13:49:14.267 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:49:14.115 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:49:14.292 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:49:14.266 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:49:25.726 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:56362 10 6452 1 2025-10-28 13:44:51.400 00:06:00.331 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 13:50:26.112 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37882 10 6452 1 2025-10-28 13:51:26.511 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44660 10 6452 1 2025-10-28 13:52:26.918 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:44100 12 10375 1 2025-10-28 13:53:27.399 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52334 10 6452 1 2025-10-28 13:48:51.403 00:06:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 13:54:14.602 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 13:54:14.433 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 13:54:14.571 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 13:54:14.223 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:54:14.519 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 13:54:27.804 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:54882 10 6452 1 2025-10-28 13:55:28.189 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39100 10 6452 1 2025-10-28 13:56:28.602 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52990 10 6452 1 2025-10-28 13:51:51.402 00:06:00.331 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 13:57:29.000 00:00:10.413 TCP 1.101.0.1:3000 -> 23.104.0.1:57322 11 6504 1 2025-10-28 13:58:29.451 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41986 10 6452 1 Summary: total flows: 137, total bytes: 424775, total packets: 1023, avg bps: 901, avg pps: 0, avg bpp: 415 Time window: 2025-10-28 12:55:51 - 2025-10-28 13:58:39 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0020s User: 0.0030s Wall: 0.0012s flows/second: 110228.2 Runtime: 0.0013s