Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-08 22:59:28.954 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48248 10 6452 1 2025-10-08 22:59:47.391 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 22:59:47.327 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 22:59:47.096 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 22:59:47.307 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 22:59:47.209 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 23:00:29.360 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39128 10 6452 1 2025-10-08 22:55:41.388 00:06:00.331 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 23:01:29.762 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:38026 10 6452 1 2025-10-08 23:02:30.187 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49184 10 6452 1 2025-10-08 23:03:30.590 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:32986 10 6452 1 2025-10-08 22:58:41.393 00:06:00.325 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 23:04:30.998 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60948 10 6452 1 2025-10-08 23:04:47.562 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 23:04:47.532 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 23:04:47.238 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 23:04:47.479 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 23:04:47.394 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 23:05:31.396 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47928 10 6452 1 2025-10-08 23:06:31.796 00:00:10.911 TCP 1.101.0.1:3000 -> 23.104.0.1:54834 10 6452 1 2025-10-08 23:07:32.759 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:39424 10 6452 1 2025-10-08 23:02:41.391 00:06:00.331 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 23:08:33.176 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48936 10 6452 1 2025-10-08 23:09:33.580 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52414 10 6452 1 2025-10-08 23:09:47.753 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 23:09:47.504 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 23:09:47.633 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 23:09:47.576 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 23:09:47.716 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 23:10:33.993 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:58794 11 6504 1 2025-10-08 23:05:41.394 00:06:00.326 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 23:11:34.458 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:50378 10 6452 1 2025-10-08 23:12:34.909 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:43534 10 6452 1 2025-10-08 23:13:35.277 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34480 10 6452 1 2025-10-08 23:09:41.392 00:06:00.331 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 23:14:47.754 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 23:14:47.735 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 23:14:35.678 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37436 10 6452 1 2025-10-08 23:14:47.382 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 23:14:47.671 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 23:14:47.731 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 23:15:36.110 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44710 10 6452 1 2025-10-08 23:16:36.512 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55292 10 6452 1 2025-10-08 23:12:41.394 00:06:00.326 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 23:17:36.921 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49790 10 6452 1 2025-10-08 23:18:37.330 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50588 10 6452 1 2025-10-08 23:19:47.939 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 23:19:48.215 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 23:19:37.734 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:51918 10 6452 1 2025-10-08 23:19:48.067 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 23:19:47.857 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 23:19:48.127 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 23:20:38.111 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53090 10 6452 1 2025-10-08 23:16:41.393 00:06:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 23:21:38.513 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:47388 10 6452 1 2025-10-08 23:22:38.881 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:41422 12 6556 1 2025-10-08 23:23:39.297 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59702 10 6452 1 2025-10-08 23:24:47.923 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 23:19:41.397 00:06:00.325 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 23:24:47.958 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 23:24:47.928 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 23:24:47.841 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 23:24:47.832 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 23:24:39.701 00:00:15.921 TCP 1.101.0.1:3000 -> 23.104.0.1:57758 10 6452 1 2025-10-08 23:25:45.661 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58760 10 6452 1 2025-10-08 23:26:46.084 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58650 10 6452 1 2025-10-08 23:27:46.484 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50766 10 6452 1 2025-10-08 23:23:41.395 00:06:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 23:28:46.882 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:41760 10 6452 1 2025-10-08 23:29:47.870 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 23:29:47.829 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 23:29:47.974 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 23:29:47.795 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 23:29:48.057 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 23:29:47.297 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58622 10 6452 1 2025-10-08 23:30:47.703 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39450 10 6452 1 2025-10-08 23:26:41.397 00:06:00.328 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 23:31:48.114 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50226 10 6452 1 2025-10-08 23:32:48.519 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:46310 10 6452 1 2025-10-08 23:33:48.878 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:35122 10 6452 1 2025-10-08 23:34:48.076 00:00:00.050 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 23:34:48.096 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 23:34:48.120 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 23:34:47.993 00:00:00.051 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 23:34:48.190 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 23:34:49.240 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57866 10 6452 1 2025-10-08 23:30:41.397 00:06:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 23:35:49.652 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60936 10 6452 1 2025-10-08 23:36:50.063 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43038 10 6452 1 2025-10-08 23:37:50.504 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50188 10 6452 1 2025-10-08 23:33:41.398 00:06:00.329 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 23:38:50.908 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:55614 10 6452 1 2025-10-08 23:39:48.535 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 23:39:48.305 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 23:39:48.151 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 23:39:48.451 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 23:39:48.313 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 23:39:51.321 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52290 10 6452 1 2025-10-08 23:40:51.724 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:56560 10 6452 1 2025-10-08 23:41:52.142 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33654 10 6452 1 2025-10-08 23:37:41.397 00:06:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 23:42:52.545 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56622 10 6452 1 2025-10-08 23:43:52.962 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36990 10 6452 1 2025-10-08 23:44:48.206 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 23:44:48.236 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 23:44:48.326 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 23:44:48.274 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 23:44:48.409 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 23:44:53.387 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33406 10 6452 1 2025-10-08 23:40:41.401 00:06:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 23:45:53.784 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:46046 10 6452 1 2025-10-08 23:46:54.154 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41008 10 6452 1 2025-10-08 23:47:54.561 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38252 10 6452 1 2025-10-08 23:48:54.970 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:44026 10 6452 1 2025-10-08 23:44:41.402 00:06:00.331 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 23:49:48.451 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 23:49:48.374 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 23:49:48.390 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 23:49:48.370 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 23:49:48.363 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 23:49:55.342 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43924 10 6452 1 2025-10-08 23:50:55.707 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51660 10 6452 1 2025-10-08 23:51:56.117 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57942 10 6452 1 2025-10-08 23:47:41.404 00:06:00.326 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-08 23:52:56.523 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42864 10 6452 1 2025-10-08 23:53:56.923 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48518 10 6452 1 2025-10-08 23:54:48.459 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 23:54:48.479 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 23:54:48.544 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 23:54:48.397 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 23:54:48.627 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 23:54:57.333 00:00:10.514 TCP 1.101.0.1:3000 -> 23.104.0.1:54846 14 14292 1 2025-10-08 23:55:57.883 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50610 12 6556 1 2025-10-08 23:51:41.403 00:06:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-08 23:56:58.292 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36730 10 6452 1 2025-10-08 23:57:58.696 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50782 10 6452 1 Summary: total flows: 136, total bytes: 418525, total packets: 1017, avg bps: 893, avg pps: 0, avg bpp: 411 Time window: 2025-10-08 22:55:41 - 2025-10-08 23:58:09 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0034s User: 0.0011s Wall: 0.0020s flows/second: 68858.7 Runtime: 0.0020s