Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-02 20:59:36.727 00:00:10.834 TCP 1.101.0.1:3000 -> 23.104.0.1:54818 10 6452 1 2025-10-02 21:00:37.595 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33308 10 6452 1 2025-10-02 20:56:38.243 00:06:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 21:01:52.032 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 21:01:37.996 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55920 10 6452 1 2025-10-02 21:01:52.058 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 21:01:51.615 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 21:01:51.948 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 21:01:51.775 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 21:02:38.411 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46990 10 6452 1 2025-10-02 21:03:38.814 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50652 10 6452 1 2025-10-02 21:04:39.221 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60984 10 6452 1 2025-10-02 21:00:38.240 00:06:00.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 21:05:39.629 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37674 10 6452 1 2025-10-02 21:06:40.032 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35974 10 6452 1 2025-10-02 21:06:51.822 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 21:06:51.812 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 21:06:51.522 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 21:06:51.739 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 21:06:51.747 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 21:07:40.435 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41878 10 6452 1 2025-10-02 21:03:38.244 00:06:00.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 21:08:40.831 00:00:10.415 TCP 1.101.0.1:3000 -> 23.104.0.1:52892 10 6452 1 2025-10-02 21:09:41.257 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51062 10 6452 1 2025-10-02 21:10:41.657 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54026 10 6452 1 2025-10-02 21:11:52.095 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 21:11:51.737 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 21:11:51.893 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 21:11:51.960 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 21:11:42.087 00:00:10.651 TCP 1.101.0.1:3000 -> 23.104.0.1:56396 10 6452 1 2025-10-02 21:11:51.975 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 21:07:38.241 00:06:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 21:12:42.778 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:49800 12 10369 1 2025-10-02 21:13:43.262 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58488 10 6452 1 2025-10-02 21:14:43.636 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:54342 10 6452 1 2025-10-02 21:10:38.244 00:06:00.264 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 21:15:44.064 00:00:27.207 TCP 1.101.0.1:3000 -> 23.104.0.1:46076 11 6504 1 2025-10-02 21:16:51.904 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 21:16:51.687 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 21:16:51.989 00:00:00.049 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 21:16:52.150 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 21:16:52.074 00:00:00.049 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 21:17:01.357 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41124 10 6452 1 2025-10-02 21:18:01.757 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:33218 10 6452 1 2025-10-02 21:19:02.173 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47278 10 6452 1 2025-10-02 21:14:38.244 00:06:00.272 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 21:20:02.578 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52736 10 6452 1 2025-10-02 21:21:02.981 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42084 10 6452 1 2025-10-02 21:21:52.253 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 21:21:52.175 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 21:21:52.128 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 21:21:52.171 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 21:21:52.176 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 21:22:03.382 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:38246 10 6452 1 2025-10-02 21:17:38.246 00:06:00.267 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 21:23:03.747 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:59062 10 6452 1 2025-10-02 21:24:04.119 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59412 10 6452 1 2025-10-02 21:25:04.522 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:34186 10 6452 1 2025-10-02 21:26:04.934 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:50450 10 6452 1 2025-10-02 21:21:38.246 00:06:00.271 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 21:26:52.243 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 21:26:52.398 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 21:26:52.395 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 21:26:52.456 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 21:26:52.479 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 21:27:05.361 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43438 10 6452 1 2025-10-02 21:28:05.758 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54030 10 6452 1 2025-10-02 21:29:06.125 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:42932 10 6452 1 2025-10-02 21:24:38.249 00:06:00.266 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 21:30:06.536 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46292 10 6452 1 2025-10-02 21:31:06.941 00:00:11.057 TCP 1.101.0.1:3000 -> 23.104.0.1:32922 10 6452 1 2025-10-02 21:31:52.278 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 21:31:52.319 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 21:31:52.369 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 21:31:52.374 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 21:31:52.451 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 21:32:08.027 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39568 10 6452 1 2025-10-02 21:33:08.430 00:00:11.009 TCP 1.101.0.1:3000 -> 23.104.0.1:54364 10 6452 1 2025-10-02 21:28:38.246 00:06:00.272 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 21:34:09.476 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48202 10 6452 1 2025-10-02 21:35:09.879 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55356 10 6452 1 2025-10-02 21:36:10.241 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33784 10 6452 1 2025-10-02 21:31:38.261 00:06:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 21:36:52.628 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 21:36:52.545 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 21:36:52.325 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 21:36:52.546 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 21:36:52.540 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 21:37:10.648 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:32796 10 6452 1 2025-10-02 21:38:11.055 00:00:10.404 TCP 1.101.0.1:3000 -> 23.104.0.1:57496 12 10375 1 2025-10-02 21:39:11.495 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57184 10 6452 1 2025-10-02 21:40:11.891 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:49320 10 6452 1 2025-10-02 21:35:38.248 00:06:00.274 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 21:41:12.277 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50954 10 6452 1 2025-10-02 21:41:52.564 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 21:41:52.308 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 21:41:52.617 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 21:41:52.560 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 21:41:52.698 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 21:42:12.641 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52572 10 6452 1 2025-10-02 21:43:13.058 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33436 10 6452 1 2025-10-02 21:38:38.254 00:06:00.268 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 21:44:13.469 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:40964 10 6452 1 2025-10-02 21:45:13.889 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:56280 10 6452 1 2025-10-02 21:46:14.259 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43774 10 6452 1 2025-10-02 21:46:52.676 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 21:46:52.593 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 21:46:52.564 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 21:46:52.627 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 21:46:52.649 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 21:47:14.662 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46046 10 6452 1 2025-10-02 21:42:38.252 00:06:00.274 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 21:48:15.082 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49978 10 6452 1 2025-10-02 21:49:15.480 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36638 10 6452 1 2025-10-02 21:50:15.885 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:54530 10 6452 1 2025-10-02 21:45:38.256 00:06:00.267 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 21:51:16.309 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55206 10 6452 1 2025-10-02 21:51:53.151 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 21:51:53.062 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 21:51:52.632 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 21:51:53.069 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 21:51:53.073 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 21:52:16.714 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:36558 10 6452 1 2025-10-02 21:53:17.138 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34144 10 6452 1 2025-10-02 21:54:17.539 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35086 10 6452 1 2025-10-02 21:49:38.256 00:06:00.275 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 21:55:17.951 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:36032 10 6452 1 2025-10-02 21:56:18.367 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:57128 10 6452 1 2025-10-02 21:56:52.993 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 21:56:52.938 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 21:56:52.661 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 21:56:52.910 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 21:56:52.694 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 21:57:18.761 00:00:12.662 TCP 1.101.0.1:3000 -> 23.104.0.1:56512 10 6452 1 2025-10-02 21:52:38.258 00:06:00.273 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 21:58:21.465 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36236 10 6452 1 Summary: total flows: 136, total bytes: 418317, total packets: 1013, avg bps: 899, avg pps: 0, avg bpp: 412 Time window: 2025-10-02 20:56:38 - 2025-10-02 21:58:38 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0024s User: 0.0016s Wall: 0.0016s flows/second: 83640.1 Runtime: 0.0016s