Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-31 09:59:17.510 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35856 10 6452 1 2025-10-31 09:55:52.780 00:05:00.440 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 10:00:17.909 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48228 10 6452 1 2025-10-31 10:00:36.466 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 10:00:36.474 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 10:00:36.307 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 10:00:36.127 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 10:00:36.384 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 10:01:18.317 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49848 10 6452 1 2025-10-31 09:57:52.783 00:05:00.435 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 10:02:18.724 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:46660 10 6452 1 2025-10-31 10:03:19.141 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60480 10 6452 1 2025-10-31 10:04:19.545 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:50206 10 6452 1 2025-10-31 10:05:36.400 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 10:05:19.906 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35108 12 6556 1 2025-10-31 10:05:36.563 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 10:05:36.419 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 10:05:36.222 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 10:05:36.318 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 10:01:52.780 00:05:00.441 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 10:06:20.315 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50702 10 6452 1 2025-10-31 10:07:20.728 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47836 10 6452 1 2025-10-31 10:03:52.783 00:05:00.436 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 10:08:21.107 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56004 10 6452 1 2025-10-31 10:09:21.518 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:47468 10 6452 1 2025-10-31 10:10:21.885 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60778 12 6556 1 2025-10-31 10:10:36.599 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 10:10:36.386 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 10:10:36.457 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 10:10:36.586 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 10:10:36.539 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 10:11:22.302 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48144 10 6452 1 2025-10-31 10:07:52.781 00:05:00.442 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 10:12:22.703 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:32928 10 6452 1 2025-10-31 10:13:23.072 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54394 10 6452 1 2025-10-31 10:09:52.785 00:05:00.436 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 10:14:23.476 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45772 10 6452 1 2025-10-31 10:15:23.837 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:42892 10 6452 1 2025-10-31 10:15:36.822 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 10:15:36.866 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 10:15:36.619 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 10:15:36.776 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 10:15:36.702 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 10:16:24.265 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33676 10 6452 1 2025-10-31 10:17:24.667 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51674 10 6452 1 2025-10-31 10:13:52.782 00:05:00.442 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 10:18:25.099 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39304 10 6452 1 2025-10-31 10:19:25.509 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49846 10 6452 1 2025-10-31 10:15:52.786 00:05:00.437 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 10:20:36.812 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 10:20:36.621 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 10:20:36.771 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 10:20:25.913 00:00:11.268 TCP 1.101.0.1:3000 -> 23.104.0.1:41106 10 6452 1 2025-10-31 10:20:36.814 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 10:20:36.896 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 10:21:27.217 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40758 10 6452 1 2025-10-31 10:22:27.618 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:57512 10 6452 1 2025-10-31 10:23:27.987 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:32774 10 6452 1 2025-10-31 10:19:52.784 00:05:00.442 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 10:24:28.420 00:00:10.508 TCP 1.101.0.1:3000 -> 23.104.0.1:34862 11 6504 1 2025-10-31 10:25:37.638 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 10:25:37.820 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 10:25:37.734 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 10:25:28.963 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36188 10 6452 1 2025-10-31 10:25:37.775 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 10:25:37.859 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 10:21:52.786 00:05:00.437 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 10:26:29.371 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47886 10 6452 1 2025-10-31 10:27:29.733 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43992 10 6452 1 2025-10-31 10:28:30.135 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:37286 10 6452 1 2025-10-31 10:29:30.553 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40938 10 6452 1 2025-10-31 10:25:52.785 00:05:00.442 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 10:30:36.853 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 10:30:36.847 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 10:30:36.758 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 10:30:36.847 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 10:30:36.930 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 10:30:30.964 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53068 10 6452 1 2025-10-31 10:31:31.365 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:56306 10 6452 1 2025-10-31 10:27:52.788 00:05:00.436 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 10:32:31.733 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:41096 10 6452 1 2025-10-31 10:33:32.144 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36128 10 6452 1 2025-10-31 10:34:32.550 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35430 10 6452 1 2025-10-31 10:35:37.093 00:00:00.032 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 10:35:37.091 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 10:35:36.757 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 10:35:37.012 00:00:00.031 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 10:35:36.847 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 10:35:32.956 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55914 10 6452 1 2025-10-31 10:31:52.788 00:05:00.440 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 10:36:33.370 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48116 10 6452 1 2025-10-31 10:37:33.734 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39214 10 6452 1 2025-10-31 10:33:52.790 00:05:00.436 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 10:38:34.142 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43270 10 6452 1 2025-10-31 10:39:34.540 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48388 10 6452 1 2025-10-31 10:40:37.118 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 10:40:37.194 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 10:40:36.952 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 10:40:37.240 00:00:00.029 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 10:40:37.331 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 10:40:34.935 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:45294 10 6452 1 2025-10-31 10:41:35.302 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49586 10 6452 1 2025-10-31 10:37:52.789 00:05:00.440 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 10:42:35.709 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60762 10 6452 1 2025-10-31 10:43:36.122 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33494 10 6452 1 2025-10-31 10:39:52.792 00:05:00.443 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 10:44:36.525 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44018 10 6452 1 2025-10-31 10:45:37.255 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 10:45:37.254 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 10:45:37.353 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 10:45:37.021 00:00:00.032 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 10:45:37.104 00:00:00.032 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 10:45:36.950 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58864 10 6452 1 2025-10-31 10:46:37.356 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47484 10 6452 1 2025-10-31 10:47:37.767 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60802 10 6452 1 2025-10-31 10:43:52.789 00:05:00.444 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 10:48:38.181 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:38834 12 10369 1 2025-10-31 10:49:38.653 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51404 10 6452 1 2025-10-31 10:45:52.793 00:05:00.439 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 10:50:37.308 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 10:50:37.122 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 10:50:37.299 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 10:50:37.405 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 10:50:37.488 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 10:50:39.068 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52308 10 6452 1 2025-10-31 10:51:39.476 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41286 10 6452 1 2025-10-31 10:52:39.881 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43350 10 6452 1 2025-10-31 10:49:52.791 00:05:00.443 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 10:53:40.280 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54362 10 6452 1 2025-10-31 10:54:40.642 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58242 10 6452 1 2025-10-31 10:55:37.775 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 10:55:37.693 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 10:55:37.648 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 10:55:37.760 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 10:55:37.669 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 10:51:52.795 00:05:00.437 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 10:55:41.005 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50356 10 6452 1 2025-10-31 10:56:41.407 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:32912 10 6452 1 2025-10-31 10:57:41.812 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58298 10 6452 1 Summary: total flows: 139, total bytes: 414725, total packets: 1017, avg bps: 892, avg pps: 0, avg bpp: 407 Time window: 2025-10-31 09:55:52 - 2025-10-31 10:57:52 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0031s User: 0.0015s Wall: 0.0013s flows/second: 106194.6 Runtime: 0.0013s