Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-09 12:58:42.837 00:00:10.641 TCP 1.101.0.1:3000 -> 23.104.0.1:56624 10 6452 1 2025-10-09 12:55:41.632 00:05:00.369 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 12:59:43.515 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:34218 10 6452 1 2025-10-09 13:00:04.167 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 13:00:04.188 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 13:00:04.299 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 13:00:04.349 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 13:00:04.381 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 13:00:43.910 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39294 10 6452 1 2025-10-09 13:01:44.326 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:42746 10 6452 1 2025-10-09 12:58:41.634 00:05:00.367 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 13:02:44.689 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:34952 10 6452 1 2025-10-09 13:03:45.055 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:52920 10 6452 1 2025-10-09 13:04:45.450 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:33304 10 6452 1 2025-10-09 13:05:04.701 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 13:05:04.707 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 13:05:04.379 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 13:05:04.618 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 13:05:04.711 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 13:01:41.632 00:05:00.383 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 13:05:45.848 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:44860 10 6452 1 2025-10-09 13:06:46.229 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:40572 10 6452 1 2025-10-09 13:07:46.630 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42928 10 6452 1 2025-10-09 13:04:41.636 00:05:00.392 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 13:08:47.033 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52110 10 6452 1 2025-10-09 13:09:47.437 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56908 10 6452 1 2025-10-09 13:10:04.376 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 13:10:04.226 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 13:10:04.509 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 13:10:04.381 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 13:10:04.593 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 13:10:47.840 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:48392 10 6452 1 2025-10-09 13:07:41.634 00:05:00.403 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 13:11:48.215 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:51662 10 6452 1 2025-10-09 13:12:48.574 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39130 10 6452 1 2025-10-09 13:13:48.996 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43886 10 6452 1 2025-10-09 13:10:41.636 00:05:00.399 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 13:15:04.678 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 13:14:49.361 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39072 10 6452 1 2025-10-09 13:15:04.457 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 13:15:04.448 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 13:15:04.596 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 13:15:04.662 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 13:15:49.767 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:40524 10 6452 1 2025-10-09 13:16:50.187 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:58556 10 6452 1 2025-10-09 13:13:41.636 00:05:00.401 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 13:17:50.604 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47744 10 6452 1 2025-10-09 13:18:51.010 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:51898 10 6452 1 2025-10-09 13:20:04.645 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 13:20:04.657 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 13:19:51.441 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59382 10 6452 1 2025-10-09 13:20:04.645 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 13:20:04.703 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 13:20:04.728 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 13:16:41.639 00:05:00.396 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 13:20:51.846 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:60782 10 6452 1 2025-10-09 13:21:52.278 00:00:13.516 TCP 1.101.0.1:3000 -> 23.104.0.1:40980 10 6452 1 2025-10-09 13:22:55.859 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:53370 10 6452 1 2025-10-09 13:19:41.639 00:05:00.402 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 13:23:56.273 00:00:10.528 TCP 1.101.0.1:3000 -> 23.104.0.1:41636 10 6452 1 2025-10-09 13:25:05.528 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 13:25:05.263 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 13:25:05.274 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 13:25:05.272 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 13:25:05.356 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 13:24:56.839 00:00:10.896 TCP 1.101.0.1:3000 -> 23.104.0.1:55098 10 6452 1 2025-10-09 13:25:57.777 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51580 10 6452 1 2025-10-09 13:22:41.642 00:05:00.397 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 13:26:58.183 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57932 10 6452 1 2025-10-09 13:27:58.589 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57606 10 6452 1 2025-10-09 13:28:58.988 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:51064 10 6452 1 2025-10-09 13:25:41.641 00:05:00.401 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 13:30:04.753 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 13:30:04.781 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 13:30:04.762 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 13:30:04.766 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 13:30:04.845 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 13:29:59.360 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40044 10 6452 1 2025-10-09 13:30:59.764 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:55526 10 6452 1 2025-10-09 13:32:00.137 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58926 10 6452 1 2025-10-09 13:28:41.644 00:05:00.397 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 13:33:00.537 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34972 10 6452 1 2025-10-09 13:34:00.940 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:49860 10 6452 1 2025-10-09 13:35:04.795 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 13:35:04.465 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 13:35:04.954 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 13:35:04.954 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 13:35:05.037 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 13:35:01.371 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48294 10 6452 1 2025-10-09 13:31:41.646 00:05:00.401 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 13:36:01.777 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:38446 10 6452 1 2025-10-09 13:37:02.144 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34446 10 6452 1 2025-10-09 13:38:02.553 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41458 10 6452 1 2025-10-09 13:34:41.648 00:05:00.396 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 13:39:02.916 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:39426 10 6452 1 2025-10-09 13:40:05.155 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 13:40:04.873 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 13:40:04.868 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 13:40:05.068 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 13:40:04.969 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 13:40:03.285 00:00:10.841 TCP 1.101.0.1:3000 -> 23.104.0.1:54376 10 6452 1 2025-10-09 13:41:04.161 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:47532 10 6452 1 2025-10-09 13:37:41.648 00:05:00.399 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 13:42:04.525 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:46104 10 6452 1 2025-10-09 13:43:04.888 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:55658 10 6452 1 2025-10-09 13:44:05.327 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46998 10 6452 1 2025-10-09 13:40:41.650 00:05:00.395 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 13:45:05.585 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 13:45:04.940 00:00:00.040 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 13:45:05.655 00:00:00.033 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 13:45:05.581 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 13:45:05.738 00:00:00.036 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 13:45:05.741 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:33326 10 6452 1 2025-10-09 13:46:06.114 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:36574 10 6452 1 2025-10-09 13:47:06.538 00:00:10.578 TCP 1.101.0.1:3000 -> 23.104.0.1:56004 10 6452 1 2025-10-09 13:43:41.649 00:05:00.401 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 13:48:07.152 00:00:10.595 TCP 1.101.0.1:3000 -> 23.104.0.1:36958 10 6452 1 2025-10-09 13:49:07.785 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34272 10 6452 1 2025-10-09 13:50:05.224 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 13:50:04.920 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 13:50:04.988 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 13:50:05.280 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 13:50:05.071 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 13:50:08.190 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56892 10 6452 1 2025-10-09 13:46:41.653 00:05:00.396 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 13:51:08.601 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:53776 10 6452 1 2025-10-09 13:52:08.972 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:60500 10 6452 1 2025-10-09 13:53:09.391 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:36958 10 6452 1 2025-10-09 13:49:41.652 00:05:00.403 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-09 13:54:09.750 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37760 10 6452 1 2025-10-09 13:55:05.478 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-09 13:55:05.085 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-09 13:55:05.263 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 13:55:05.394 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-09 13:55:05.390 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-09 13:55:10.155 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:60850 10 6452 1 2025-10-09 13:56:10.552 00:00:11.184 TCP 1.101.0.1:3000 -> 23.104.0.1:58542 10 6452 1 2025-10-09 13:52:41.655 00:05:00.397 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-09 13:57:11.772 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40980 10 6452 1 2025-10-09 13:58:12.182 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34358 10 6452 1 Summary: total flows: 140, total bytes: 417000, total packets: 1020, avg bps: 887, avg pps: 0, avg bpp: 408 Time window: 2025-10-09 12:55:41 - 2025-10-09 13:58:22 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0039s User: 0.0020s Wall: 0.0020s flows/second: 71610.1 Runtime: 0.0020s