Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-09 08:58:45.133 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41898 10 6452 1 2025-10-09 08:59:45.535 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57752 10 6452 1 2025-10-09 08:59:59.464 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 08:59:59.515 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 08:59:59.551 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 08:59:59.550 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 08:59:59.635 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 09:00:45.941 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:52414 10 6452 1 2025-10-09 09:01:46.355 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35136 10 6452 1 2025-10-09 08:57:41.551 00:06:00.364 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 09:02:46.758 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:34830 10 6452 1 2025-10-09 09:03:47.129 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50172 10 6452 1 2025-10-09 09:04:59.635 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 09:04:59.500 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 09:04:47.528 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34390 10 6452 1 2025-10-09 09:04:59.240 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 09:04:59.552 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 09:04:59.436 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 09:00:41.553 00:06:00.365 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 09:05:47.932 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:41962 10 6452 1 2025-10-09 09:06:48.349 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47756 10 6452 1 2025-10-09 09:07:48.756 00:00:10.463 TCP 1.101.0.1:3000 -> 23.104.0.1:60208 10 6452 1 2025-10-09 09:08:49.258 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57666 10 6452 1 2025-10-09 09:04:41.554 00:06:00.367 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 09:09:59.440 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 09:09:59.490 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 09:09:49.660 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:39722 10 6452 1 2025-10-09 09:09:59.656 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 09:09:59.334 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 09:09:59.739 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 09:10:50.070 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:42476 10 6452 1 2025-10-09 09:11:50.507 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51068 10 6452 1 2025-10-09 09:07:41.560 00:06:00.362 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 09:12:50.915 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:44770 10 6452 1 2025-10-09 09:13:51.278 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37554 10 6452 1 2025-10-09 09:14:59.791 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 09:14:59.644 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 09:14:59.518 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 09:14:59.709 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 09:14:59.651 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 09:14:51.681 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39358 10 6452 1 2025-10-09 09:15:52.041 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56900 10 6452 1 2025-10-09 09:11:41.564 00:06:00.363 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 09:16:52.449 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:56304 10 6452 1 2025-10-09 09:17:52.823 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:42490 10 6452 1 2025-10-09 09:18:53.189 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58742 10 6452 1 2025-10-09 09:14:41.568 00:06:00.356 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 09:19:59.800 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 09:19:59.829 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 09:19:59.866 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 09:19:59.808 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 09:19:59.951 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 09:19:53.588 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59644 10 6452 1 2025-10-09 09:20:53.994 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:36856 10 6452 1 2025-10-09 09:21:54.349 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54558 10 6452 1 2025-10-09 09:22:54.710 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:48298 10 6452 1 2025-10-09 09:18:41.567 00:06:00.361 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 09:23:55.103 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37742 10 6452 1 2025-10-09 09:25:00.089 00:00:00.043 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 09:24:59.965 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 09:24:59.926 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 09:25:00.007 00:00:00.042 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 09:24:59.727 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 09:24:55.509 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:53510 10 6452 1 2025-10-09 09:25:55.870 00:00:12.140 TCP 1.101.0.1:3000 -> 23.104.0.1:38474 10 6452 1 2025-10-09 09:21:41.571 00:06:00.357 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 09:26:58.058 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54662 10 6452 1 2025-10-09 09:27:58.464 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51146 10 6452 1 2025-10-09 09:28:58.861 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:42528 10 6452 1 2025-10-09 09:30:00.003 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 09:29:59.920 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 09:29:59.876 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 09:29:59.921 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 09:30:00.003 00:00:00.034 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 09:29:59.233 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:54700 13 13943 1 2025-10-09 09:25:41.569 00:06:00.362 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 09:30:59.713 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38900 10 6452 1 2025-10-09 09:32:00.103 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:44818 10 6452 1 2025-10-09 09:33:00.500 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45884 10 6452 1 2025-10-09 09:28:41.571 00:06:00.357 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 09:34:00.905 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54836 10 6452 1 2025-10-09 09:35:00.423 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 09:35:00.084 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 09:35:00.012 00:00:00.042 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 09:35:00.340 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 09:35:00.080 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 09:35:01.315 00:00:10.402 TCP 1.101.0.1:3000 -> 23.104.0.1:50090 13 13949 1 2025-10-09 09:36:01.755 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38562 10 6452 1 2025-10-09 09:37:02.156 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46678 10 6452 1 2025-10-09 09:32:41.571 00:06:00.361 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 09:38:02.556 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44614 10 6452 1 2025-10-09 09:39:02.964 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34156 10 6452 1 2025-10-09 09:40:00.374 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 09:40:00.149 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 09:40:00.071 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 09:40:00.292 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 09:40:00.282 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 09:40:03.369 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36592 10 6452 1 2025-10-09 09:35:41.573 00:06:00.358 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 09:41:03.731 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:35672 10 6452 1 2025-10-09 09:42:04.148 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36116 10 6452 1 2025-10-09 09:43:04.555 00:00:10.553 TCP 1.101.0.1:3000 -> 23.104.0.1:55096 10 6452 1 2025-10-09 09:44:05.199 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53224 10 6452 1 2025-10-09 09:39:41.571 00:06:00.363 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 09:45:00.325 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 09:45:00.189 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 09:45:00.396 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 09:45:00.383 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 09:45:00.479 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 09:45:05.605 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:32800 10 6452 1 2025-10-09 09:46:05.969 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42874 10 6452 1 2025-10-09 09:47:06.384 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58598 10 6452 1 2025-10-09 09:42:41.576 00:06:00.358 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 09:48:06.789 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36722 10 6452 1 2025-10-09 09:49:07.200 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46952 10 6452 1 2025-10-09 09:50:00.351 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 09:50:00.447 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 09:50:00.352 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 09:50:00.423 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 09:50:00.436 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 09:50:07.601 00:00:10.505 TCP 1.101.0.1:3000 -> 23.104.0.1:59690 10 6452 1 2025-10-09 09:51:08.143 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38260 10 6452 1 2025-10-09 09:46:41.578 00:06:00.359 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-09 09:52:08.543 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47984 10 6452 1 2025-10-09 09:53:08.950 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57870 10 6452 1 2025-10-09 09:54:09.364 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57620 10 6452 1 2025-10-09 09:49:41.583 00:06:00.352 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-09 09:55:00.612 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 09:55:00.443 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 09:55:00.473 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 09:55:00.529 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 09:55:00.522 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 09:55:09.771 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:44008 10 6452 1 2025-10-09 09:56:10.183 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53862 10 6452 1 2025-10-09 09:57:10.581 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56856 10 6452 1 2025-10-09 09:58:10.943 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52956 10 6452 1 2025-10-09 09:53:41.581 00:06:00.357 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 Summary: total flows: 137, total bytes: 431865, total packets: 1024, avg bps: 928, avg pps: 0, avg bpp: 421 Time window: 2025-10-09 08:57:41 - 2025-10-09 09:59:41 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0036s User: 0.0009s Wall: 0.0019s flows/second: 73218.6 Runtime: 0.0019s