Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-03 09:59:23.589 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59990 10 6452 1 2025-10-03 10:00:23.994 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59152 10 6452 1 2025-10-03 10:01:24.395 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48576 10 6452 1 2025-10-03 10:02:07.685 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 10:02:07.636 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 10:02:07.467 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 10:02:07.602 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 10:02:07.558 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 10:02:24.795 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:53692 10 6452 1 2025-10-03 09:57:38.503 00:06:00.276 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 10:03:25.210 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36192 10 6452 1 2025-10-03 10:04:25.617 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:60612 10 6452 1 2025-10-03 10:00:38.506 00:06:00.271 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 10:05:25.977 00:00:15.839 TCP 1.101.0.1:3000 -> 23.104.0.1:34864 10 6452 1 2025-10-03 10:06:31.876 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50014 10 6452 1 2025-10-03 10:07:07.520 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 10:07:07.437 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 10:07:07.338 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 10:07:07.438 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 10:07:07.694 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 10:07:32.297 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39796 10 6452 1 2025-10-03 10:08:32.713 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46544 11 6492 1 2025-10-03 10:04:38.503 00:06:00.279 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 10:09:33.126 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53460 10 6452 1 2025-10-03 10:10:33.528 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55924 10 6452 1 2025-10-03 10:11:33.937 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:53656 10 6452 1 2025-10-03 10:12:07.628 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 10:12:07.527 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 10:12:07.623 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 10:12:07.713 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 10:12:07.707 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 10:07:38.507 00:06:00.274 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 10:12:34.313 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60100 10 6452 1 2025-10-03 10:13:34.718 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:57246 10 6452 1 2025-10-03 10:14:35.133 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44714 10 6452 1 2025-10-03 10:15:35.541 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40536 10 6452 1 2025-10-03 10:11:38.504 00:06:00.280 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 10:16:35.944 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:59266 10 6452 1 2025-10-03 10:17:08.093 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 10:17:07.949 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 10:17:07.916 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 10:17:08.010 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 10:17:07.790 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 10:17:36.368 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:55424 11 6492 1 2025-10-03 10:18:36.780 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:41622 12 10375 1 2025-10-03 10:14:38.508 00:06:00.299 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 10:19:37.265 00:00:11.001 TCP 1.101.0.1:3000 -> 23.104.0.1:55544 11 6504 1 2025-10-03 10:20:38.310 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35090 10 6452 1 2025-10-03 10:21:38.671 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55490 10 6452 1 2025-10-03 10:22:07.942 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 10:22:07.823 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 10:22:07.941 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 10:22:07.854 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 10:22:08.026 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 10:22:39.098 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57730 10 6452 1 2025-10-03 10:18:38.507 00:06:00.303 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 10:23:39.502 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46346 10 6452 1 2025-10-03 10:24:39.865 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47128 10 6452 1 2025-10-03 10:25:40.274 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55556 10 6452 1 2025-10-03 10:21:38.511 00:06:00.296 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 10:26:40.642 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:53322 10 6452 1 2025-10-03 10:27:08.203 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 10:27:07.967 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 10:27:07.905 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 10:27:08.120 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 10:27:07.885 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 10:27:40.993 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48940 10 6452 1 2025-10-03 10:28:41.398 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:39324 11 6504 1 2025-10-03 10:29:41.815 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36328 10 6452 1 2025-10-03 10:25:38.510 00:06:00.303 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 10:30:42.225 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55604 10 6452 1 2025-10-03 10:31:42.630 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53972 10 6452 1 2025-10-03 10:32:08.113 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 10:32:07.872 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 10:32:08.324 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 10:32:08.365 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 10:32:08.407 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 10:32:43.031 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:41948 10 6452 1 2025-10-03 10:28:38.513 00:06:00.299 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 10:33:43.428 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:35038 10 6452 1 2025-10-03 10:34:43.786 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34514 10 6452 1 2025-10-03 10:35:44.189 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36806 10 6452 1 2025-10-03 10:36:44.599 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59366 10 6452 1 2025-10-03 10:37:08.394 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 10:37:08.294 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 10:37:08.604 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 10:37:08.601 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 10:37:08.686 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 10:32:38.514 00:06:00.301 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 10:37:45.009 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40794 10 6452 1 2025-10-03 10:38:45.416 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59800 10 6452 1 2025-10-03 10:39:45.818 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:33978 10 6452 1 2025-10-03 10:35:38.518 00:06:00.295 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 10:40:46.191 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:56184 10 6452 1 2025-10-03 10:41:46.595 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49890 10 6452 1 2025-10-03 10:42:08.287 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 10:42:08.211 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 10:42:08.378 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 10:42:08.205 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 10:42:08.386 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 10:42:47.013 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42430 10 6452 1 2025-10-03 10:43:47.377 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54776 10 6452 1 2025-10-03 10:39:38.516 00:06:00.299 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 10:44:47.781 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58892 10 6452 1 2025-10-03 10:45:48.178 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:56468 10 6452 1 2025-10-03 10:46:48.541 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47794 10 6452 1 2025-10-03 10:47:08.487 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 10:47:08.485 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 10:47:08.089 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 10:47:08.403 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 10:47:08.484 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 10:42:38.519 00:06:00.296 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 10:47:48.942 00:00:10.409 TCP 1.101.0.1:3000 -> 23.104.0.1:51912 12 10375 1 2025-10-03 10:48:49.395 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60810 10 6452 1 2025-10-03 10:49:49.803 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48880 10 6452 1 2025-10-03 10:50:50.206 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44132 10 6452 1 2025-10-03 10:46:38.519 00:06:00.301 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 10:51:50.609 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35388 10 6452 1 2025-10-03 10:52:08.424 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 10:52:08.465 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 10:52:08.619 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 10:52:08.429 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 10:52:08.702 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 10:52:51.015 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50644 10 6452 1 2025-10-03 10:53:51.410 00:00:10.973 TCP 1.101.0.1:3000 -> 23.104.0.1:38040 10 6452 1 2025-10-03 10:49:38.522 00:06:00.298 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 10:54:52.419 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40934 10 6452 1 2025-10-03 10:55:52.787 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51302 10 6452 1 2025-10-03 10:56:53.197 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48582 10 6452 1 2025-10-03 10:57:08.660 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 10:57:08.450 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 10:57:08.443 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 10:57:08.611 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 10:57:08.525 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 10:57:53.594 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36866 10 6452 1 2025-10-03 10:53:38.519 00:06:00.305 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 Summary: total flows: 136, total bytes: 418455, total packets: 1016, avg bps: 899, avg pps: 0, avg bpp: 411 Time window: 2025-10-03 09:57:38 - 2025-10-03 10:59:38 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0053s User: 0.0000s Wall: 0.0019s flows/second: 70431.6 Runtime: 0.0020s