Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-03 16:59:23.714 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:36554 10 6452 1 2025-10-03 17:00:24.102 00:00:10.620 TCP 1.101.0.1:3000 -> 23.104.0.1:34318 10 6452 1 2025-10-03 17:01:24.761 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:52384 10 6452 1 2025-10-03 17:02:15.858 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 17:02:15.573 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 17:02:15.846 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 17:02:15.898 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 17:02:15.928 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 17:02:25.187 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35254 10 6452 1 2025-10-03 16:57:38.633 00:06:00.341 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 17:03:25.593 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51764 10 6452 1 2025-10-03 17:04:26.011 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46994 12 6556 1 2025-10-03 17:00:38.635 00:06:00.336 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 17:05:26.418 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55348 10 6452 1 2025-10-03 17:06:26.820 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33664 10 6452 1 2025-10-03 17:07:16.483 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 17:07:16.401 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 17:07:16.136 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 17:07:16.400 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 17:07:16.074 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 17:07:27.220 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49566 10 6452 1 2025-10-03 17:08:27.627 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39564 10 6452 1 2025-10-03 17:09:28.026 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:52602 10 6452 1 2025-10-03 17:04:38.640 00:06:00.340 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 17:10:28.424 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56744 10 6452 1 2025-10-03 17:11:28.833 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41386 10 6452 1 2025-10-03 17:12:15.919 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 17:12:15.898 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 17:12:16.085 00:00:00.045 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 17:12:16.114 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 17:12:16.002 00:00:00.045 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 17:12:29.240 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50114 10 6452 1 2025-10-03 17:07:38.642 00:06:00.334 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 17:13:29.655 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:45148 10 6452 1 2025-10-03 17:14:30.093 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:38244 10 6452 1 2025-10-03 17:15:30.452 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44546 10 6452 1 2025-10-03 17:11:38.648 00:06:00.331 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 17:16:30.853 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:52152 10 6452 1 2025-10-03 17:17:16.219 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 17:17:16.298 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 17:17:16.223 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 17:17:16.370 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 17:17:16.307 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 17:17:31.291 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56264 10 6452 1 2025-10-03 17:18:31.695 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47258 10 6452 1 2025-10-03 17:14:38.651 00:06:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 17:19:32.114 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58496 10 6452 1 2025-10-03 17:20:32.521 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43402 10 6452 1 2025-10-03 17:21:32.930 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:47988 10 6452 1 2025-10-03 17:22:16.283 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 17:22:16.334 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 17:22:16.194 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 17:22:16.013 00:00:00.044 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 17:22:16.367 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 17:22:33.361 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59780 10 6452 1 2025-10-03 17:18:38.649 00:06:00.331 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 17:23:33.765 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:41154 10 6452 1 2025-10-03 17:24:34.178 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60144 10 6452 1 2025-10-03 17:25:34.578 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:43494 10 6452 1 2025-10-03 17:21:38.654 00:06:00.325 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 17:26:34.992 00:00:10.875 TCP 1.101.0.1:3000 -> 23.104.0.1:44776 10 6452 1 2025-10-03 17:27:16.606 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 17:27:16.471 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 17:27:16.709 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 17:27:16.530 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 17:27:16.793 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 17:27:35.906 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41574 10 6452 1 2025-10-03 17:28:36.268 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54086 10 6452 1 2025-10-03 17:29:36.673 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:48074 10 6452 1 2025-10-03 17:25:38.652 00:06:00.331 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 17:30:37.097 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40704 10 6452 1 2025-10-03 17:31:37.497 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40200 10 6452 1 2025-10-03 17:32:16.663 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 17:32:16.271 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 17:32:16.665 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 17:32:16.457 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 17:32:16.749 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 17:32:37.910 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47078 12 6556 1 2025-10-03 17:28:38.655 00:06:00.326 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 17:33:38.315 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45864 10 6452 1 2025-10-03 17:34:38.717 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:54770 10 6452 1 2025-10-03 17:35:39.131 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44006 10 6452 1 2025-10-03 17:36:39.539 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55740 10 6452 1 2025-10-03 17:37:16.551 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 17:37:16.548 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 17:37:16.618 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 17:37:16.622 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 17:37:16.701 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 17:32:38.653 00:06:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 17:37:39.940 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:47342 10 6452 1 2025-10-03 17:38:40.359 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39680 10 6452 1 2025-10-03 17:39:40.772 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:35038 10 6452 1 2025-10-03 17:35:38.657 00:06:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 17:40:41.191 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58858 10 6452 1 2025-10-03 17:41:41.589 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34166 10 6452 1 2025-10-03 17:42:16.642 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 17:42:16.740 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 17:42:16.582 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 17:42:16.559 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 17:42:16.671 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 17:42:41.992 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35600 10 6452 1 2025-10-03 17:43:42.396 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:46074 10 6452 1 2025-10-03 17:39:38.656 00:06:00.331 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 17:44:42.763 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:38748 10 6452 1 2025-10-03 17:45:43.179 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:46174 10 6452 1 2025-10-03 17:46:43.537 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49324 10 6452 1 2025-10-03 17:47:16.822 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 17:47:16.834 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 17:47:16.961 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 17:47:16.640 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 17:47:17.043 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 17:42:38.659 00:06:00.326 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 17:47:43.942 00:00:10.480 TCP 1.101.0.1:3000 -> 23.104.0.1:43698 10 6452 1 2025-10-03 17:48:44.462 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39042 10 6452 1 2025-10-03 17:49:44.826 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36908 10 6452 1 2025-10-03 17:50:45.229 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38150 10 6452 1 2025-10-03 17:46:38.659 00:06:00.331 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 17:51:45.632 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:58688 10 6452 1 2025-10-03 17:52:17.209 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 17:52:17.062 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 17:52:16.860 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 17:52:17.126 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 17:52:17.255 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 17:52:46.060 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58704 10 6452 1 2025-10-03 17:53:46.467 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50002 10 6452 1 2025-10-03 17:49:38.664 00:06:00.324 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 17:54:46.875 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:55200 10 6452 1 2025-10-03 17:55:47.303 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51542 10 6452 1 2025-10-03 17:56:47.705 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60666 10 6452 1 2025-10-03 17:57:16.768 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 17:57:16.982 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 17:57:16.845 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 17:57:16.685 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 17:57:17.080 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 17:57:48.120 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52432 10 6452 1 2025-10-03 17:53:38.662 00:06:00.331 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 Summary: total flows: 136, total bytes: 410633, total packets: 1012, avg bps: 882, avg pps: 0, avg bpp: 405 Time window: 2025-10-03 16:57:38 - 2025-10-03 17:59:38 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0042s User: 0.0010s Wall: 0.0016s flows/second: 84520.0 Runtime: 0.0016s