Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-02 21:59:21.872 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37036 10 6452 1 2025-10-02 22:00:22.239 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37854 10 6452 1 2025-10-02 21:56:38.256 00:06:00.279 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 22:01:22.645 00:00:26.122 TCP 1.101.0.1:3000 -> 23.104.0.1:37656 10 6452 1 2025-10-02 22:01:52.884 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 22:01:52.817 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 22:01:52.843 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 22:01:52.801 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 22:01:52.705 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 22:02:38.815 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:34234 10 6452 1 2025-10-02 22:03:39.185 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51910 10 6452 1 2025-10-02 21:59:38.260 00:06:00.273 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 22:04:39.589 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34734 10 6452 1 2025-10-02 22:05:39.994 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38280 10 6452 1 2025-10-02 22:06:53.347 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 22:06:53.392 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 22:06:53.206 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 22:06:40.397 00:00:10.817 TCP 1.101.0.1:3000 -> 23.104.0.1:52462 10 6452 1 2025-10-02 22:06:53.265 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 22:06:53.392 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 22:07:41.254 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45944 10 6452 1 2025-10-02 22:03:38.260 00:06:00.278 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 22:08:41.658 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50754 10 6452 1 2025-10-02 22:09:42.098 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45026 10 6452 1 2025-10-02 22:10:42.502 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36402 10 6452 1 2025-10-02 22:06:38.262 00:06:00.274 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 22:11:53.174 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 22:11:53.013 00:00:00.045 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 22:11:42.907 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:53480 10 6452 1 2025-10-02 22:11:53.092 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 22:11:52.962 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 22:11:52.961 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 22:12:43.269 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:44324 10 6452 1 2025-10-02 22:13:43.638 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41916 10 6452 1 2025-10-02 22:14:44.040 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36210 10 6452 1 2025-10-02 22:10:38.262 00:06:00.283 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 22:15:44.444 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39650 10 6452 1 2025-10-02 22:16:53.259 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 22:16:53.271 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 22:16:53.182 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 22:16:53.176 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 22:16:52.979 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 22:16:44.809 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40470 10 6452 1 2025-10-02 22:17:45.222 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55304 10 6452 1 2025-10-02 22:13:38.264 00:06:00.274 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 22:18:45.628 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:42484 10 6452 1 2025-10-02 22:19:45.992 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39590 10 6452 1 2025-10-02 22:20:46.387 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51398 10 6452 1 2025-10-02 22:21:53.396 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 22:21:53.319 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 22:21:53.343 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 22:21:53.314 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 22:21:53.320 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 22:21:46.749 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46914 10 6452 1 2025-10-02 22:17:38.263 00:06:00.280 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 22:22:47.153 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36434 10 6452 1 2025-10-02 22:23:47.555 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43764 10 6452 1 2025-10-02 22:24:47.958 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43084 10 6452 1 2025-10-02 22:20:38.265 00:06:00.276 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 22:25:48.360 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48424 10 6452 1 2025-10-02 22:26:54.221 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 22:26:54.111 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 22:26:54.090 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 22:26:54.089 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 22:26:54.173 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 22:26:48.763 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:50606 10 6452 1 2025-10-02 22:27:49.183 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37662 10 6452 1 2025-10-02 22:28:49.547 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:39788 10 6452 1 2025-10-02 22:24:38.263 00:06:00.281 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 22:29:49.919 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:57398 10 6452 1 2025-10-02 22:30:50.288 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39310 10 6452 1 2025-10-02 22:31:53.650 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 22:31:53.269 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 22:31:53.602 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 22:31:53.593 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 22:31:53.684 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 22:31:50.702 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57256 10 6452 1 2025-10-02 22:27:38.267 00:06:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 22:32:51.113 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:53298 10 6452 1 2025-10-02 22:33:51.538 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:59450 10 6452 1 2025-10-02 22:34:51.908 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56332 10 6452 1 2025-10-02 22:35:52.311 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56532 10 6452 1 2025-10-02 22:31:38.265 00:06:00.287 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 22:36:53.808 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 22:36:53.729 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 22:36:53.589 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 22:36:53.726 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 22:36:53.436 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 22:36:52.717 00:00:10.810 TCP 1.101.0.1:3000 -> 23.104.0.1:40872 10 6452 1 2025-10-02 22:37:53.560 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:39696 10 6452 1 2025-10-02 22:38:53.923 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34404 10 6452 1 2025-10-02 22:34:38.269 00:06:00.282 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 22:39:54.329 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45528 10 6452 1 2025-10-02 22:40:54.738 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58824 10 6452 1 2025-10-02 22:41:53.737 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 22:41:53.660 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 22:41:53.672 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 22:41:53.735 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 22:41:53.755 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 22:41:55.146 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40402 10 6452 1 2025-10-02 22:42:55.508 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43494 10 6452 1 2025-10-02 22:38:38.271 00:06:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 22:43:55.872 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60000 10 6452 1 2025-10-02 22:44:56.277 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42076 10 6452 1 2025-10-02 22:45:56.634 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36370 10 6452 1 2025-10-02 22:41:38.272 00:06:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 22:46:53.861 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 22:46:53.467 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 22:46:53.685 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 22:46:53.801 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 22:46:53.768 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 22:46:57.041 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:34022 10 6452 1 2025-10-02 22:47:57.447 00:00:10.402 TCP 1.101.0.1:3000 -> 23.104.0.1:52740 12 10375 1 2025-10-02 22:48:57.882 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:44086 10 6452 1 2025-10-02 22:49:58.267 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41034 10 6452 1 2025-10-02 22:45:38.272 00:06:00.283 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 22:50:58.629 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58656 10 6452 1 2025-10-02 22:51:53.839 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 22:51:53.833 00:00:00.042 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 22:51:54.266 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 22:51:54.277 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 22:51:54.349 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 22:51:58.994 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38642 10 6452 1 2025-10-02 22:52:59.396 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38778 10 6452 1 2025-10-02 22:48:38.274 00:06:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-02 22:53:59.796 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60556 10 6452 1 2025-10-02 22:55:00.198 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:59180 10 6452 1 2025-10-02 22:56:00.616 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35712 10 6452 1 2025-10-02 22:56:54.066 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 22:56:53.708 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 22:56:54.147 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 22:56:54.152 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 22:56:54.230 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 22:57:01.036 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53458 10 6452 1 2025-10-02 22:52:38.274 00:06:00.282 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-02 22:58:01.439 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42734 10 6452 1 Summary: total flows: 136, total bytes: 414348, total packets: 1010, avg bps: 890, avg pps: 0, avg bpp: 410 Time window: 2025-10-02 21:56:38 - 2025-10-02 22:58:38 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0024s User: 0.0024s Wall: 0.0022s flows/second: 62760.0 Runtime: 0.0022s