Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-03 17:58:48.525 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48894 10 6452 1 2025-10-03 17:59:48.926 00:00:10.912 TCP 1.101.0.1:3000 -> 23.104.0.1:46146 10 6452 1 2025-10-03 18:00:49.878 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41108 10 6452 1 2025-10-03 17:56:38.666 00:06:00.326 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 18:01:50.237 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36420 10 6452 1 2025-10-03 18:02:17.308 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 18:02:16.985 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 18:02:17.106 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:02:17.225 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:02:17.224 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 18:02:50.646 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48730 10 6452 1 2025-10-03 18:03:51.010 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50498 10 6452 1 2025-10-03 18:04:51.412 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46738 10 6452 1 2025-10-03 18:00:38.663 00:06:00.331 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 18:05:51.815 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:43846 10 6452 1 2025-10-03 18:06:52.231 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58434 10 6452 1 2025-10-03 18:07:17.274 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 18:07:17.204 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 18:07:17.200 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:07:17.191 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:07:17.115 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 18:07:52.638 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52386 10 6452 1 2025-10-03 18:03:38.667 00:06:00.330 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 18:08:53.057 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59382 10 6452 1 2025-10-03 18:09:53.464 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41828 10 6452 1 2025-10-03 18:10:53.867 00:00:10.879 TCP 1.101.0.1:3000 -> 23.104.0.1:39324 10 6452 1 2025-10-03 18:07:38.664 00:05:00.336 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 18:11:54.786 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58616 10 6452 1 2025-10-03 18:12:17.289 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 18:12:17.136 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:12:17.096 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:12:17.123 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 18:12:17.178 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 18:12:55.148 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35818 10 6452 1 2025-10-03 18:13:55.544 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35592 10 6452 1 2025-10-03 18:14:55.945 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:59888 10 6452 1 2025-10-03 18:10:38.674 00:06:00.324 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 18:15:56.363 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44156 10 6452 1 2025-10-03 18:16:56.765 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:32794 10 6452 1 2025-10-03 18:17:17.428 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 18:17:17.377 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:17:17.335 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:17:17.425 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 18:17:17.418 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 18:13:38.679 00:05:00.323 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 18:17:57.176 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:49458 10 6452 1 2025-10-03 18:18:57.539 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:49704 10 6452 1 2025-10-03 18:19:57.903 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58888 12 6556 1 2025-10-03 18:20:58.314 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:59340 10 6452 1 2025-10-03 18:17:38.683 00:05:00.318 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 18:21:58.683 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59412 10 6452 1 2025-10-03 18:22:17.534 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 18:22:17.334 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:22:17.488 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:22:17.479 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 18:22:17.570 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 18:22:59.106 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:34024 10 6452 1 2025-10-03 18:19:38.680 00:05:00.324 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 18:23:59.484 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:37424 10 6452 1 2025-10-03 18:24:59.852 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:58798 10 6452 1 2025-10-03 18:26:00.235 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:32778 10 6452 1 2025-10-03 18:27:00.632 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49010 10 6452 1 2025-10-03 18:27:17.559 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 18:27:17.585 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:27:17.556 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:27:17.622 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 18:27:17.638 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 18:23:38.683 00:05:00.319 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 18:28:01.032 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:52786 10 6452 1 2025-10-03 18:29:01.401 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58704 10 6452 1 2025-10-03 18:25:38.681 00:05:00.355 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 18:30:01.766 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45274 10 6452 1 2025-10-03 18:31:02.179 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36926 10 6452 1 2025-10-03 18:32:02.583 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38450 10 6452 1 2025-10-03 18:32:17.770 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 18:32:17.469 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:32:17.712 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:32:17.879 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 18:32:17.794 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 18:33:02.984 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60602 10 6452 1 2025-10-03 18:29:38.685 00:05:00.351 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 18:34:03.401 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45150 10 6452 1 2025-10-03 18:35:03.804 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:35800 10 6452 1 2025-10-03 18:31:38.682 00:05:00.357 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 18:36:04.211 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:55200 10 6452 1 2025-10-03 18:37:04.645 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35792 10 6452 1 2025-10-03 18:37:17.814 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 18:37:17.891 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:37:17.753 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:37:17.865 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 18:37:17.836 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 18:38:05.013 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53870 10 6452 1 2025-10-03 18:39:05.423 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54442 10 6452 1 2025-10-03 18:35:38.685 00:05:00.353 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 18:40:05.827 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:56298 10 6452 1 2025-10-03 18:41:06.254 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54548 10 6452 1 2025-10-03 18:37:38.683 00:05:00.358 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 18:42:17.871 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 18:42:17.764 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:42:17.937 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:42:17.815 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 18:42:06.662 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34172 10 6452 1 2025-10-03 18:42:18.019 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 18:43:07.082 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34044 10 6452 1 2025-10-03 18:44:07.485 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48374 10 6452 1 2025-10-03 18:45:07.883 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:36344 10 6452 1 2025-10-03 18:41:38.685 00:05:00.353 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 18:46:08.309 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60220 10 6452 1 2025-10-03 18:47:18.069 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 18:47:18.051 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 18:47:17.875 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:47:17.987 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:47:18.043 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 18:47:08.708 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48980 10 6452 1 2025-10-03 18:43:38.684 00:05:00.358 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 18:48:09.113 00:00:10.916 TCP 1.101.0.1:3000 -> 23.104.0.1:43004 10 6452 1 2025-10-03 18:49:10.096 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33330 10 6452 1 2025-10-03 18:50:10.498 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60864 10 6452 1 2025-10-03 18:51:10.903 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:46618 10 6452 1 2025-10-03 18:47:38.687 00:05:00.353 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 18:52:17.977 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 18:52:17.935 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:52:18.085 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:52:17.973 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 18:52:18.169 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 18:52:11.312 00:00:10.884 TCP 1.101.0.1:3000 -> 23.104.0.1:47858 10 6452 1 2025-10-03 18:53:12.233 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60358 10 6452 1 2025-10-03 18:49:38.687 00:05:00.357 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 18:54:12.631 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42142 10 6452 1 2025-10-03 18:55:13.033 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49100 10 6452 1 2025-10-03 18:56:13.393 00:00:10.469 TCP 1.101.0.1:3000 -> 23.104.0.1:44958 10 6452 1 2025-10-03 18:57:18.442 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 18:57:18.304 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 18:57:18.111 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:57:18.359 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:57:18.260 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 18:57:13.901 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:38694 10 6452 1 2025-10-03 18:53:38.691 00:05:00.351 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 18:58:14.268 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:39684 10 6452 1 Summary: total flows: 139, total bytes: 416858, total packets: 1018, avg bps: 896, avg pps: 0, avg bpp: 409 Time window: 2025-10-03 17:56:38 - 2025-10-03 18:58:39 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0018s User: 0.0036s Wall: 0.0018s flows/second: 76500.2 Runtime: 0.0018s