Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-11 00:58:50.316 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54182 10 6452 1 2025-10-11 00:59:50.721 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47064 10 6452 1 2025-10-11 01:00:47.423 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 01:00:47.569 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 01:00:47.441 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 01:00:47.443 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 01:00:47.525 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 01:00:51.097 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36838 10 6452 1 2025-10-11 01:01:51.501 00:00:10.479 TCP 1.101.0.1:3000 -> 23.104.0.1:51558 10 6452 1 2025-10-11 01:02:52.016 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56288 10 6452 1 2025-10-11 00:58:42.362 00:06:00.399 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-11 01:03:52.381 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:54116 10 6452 1 2025-10-11 01:04:52.780 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:54656 10 6452 1 2025-10-11 01:05:47.417 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 01:05:47.637 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 01:05:47.706 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 01:05:47.721 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 01:00:42.360 00:06:00.404 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-11 01:05:47.788 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 01:05:53.154 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:45834 10 6452 1 2025-10-11 01:06:53.522 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34110 10 6452 1 2025-10-11 01:07:53.884 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57118 10 6452 1 2025-10-11 01:08:54.288 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48722 10 6452 1 2025-10-11 01:09:54.693 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50230 10 6452 1 2025-10-11 01:05:42.366 00:06:00.397 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-11 01:10:47.826 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 01:10:47.738 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 01:10:47.658 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 01:10:47.744 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 01:10:47.851 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 01:10:55.116 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:38324 10 6452 1 2025-10-11 01:11:55.480 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52370 10 6452 1 2025-10-11 01:07:42.363 00:06:00.403 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-11 01:12:55.879 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40812 10 6452 1 2025-10-11 01:13:56.284 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40160 10 6452 1 2025-10-11 01:14:56.692 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56204 10 6452 1 2025-10-11 01:15:47.810 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 01:15:47.875 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 01:15:47.649 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 01:15:47.727 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 01:15:47.898 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 01:15:57.111 00:00:10.452 TCP 1.101.0.1:3000 -> 23.104.0.1:36490 12 10375 1 2025-10-11 01:16:57.597 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:55128 10 6452 1 2025-10-11 01:12:42.366 00:06:00.398 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-11 01:17:57.993 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:38846 10 6452 1 2025-10-11 01:18:58.364 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53370 10 6452 1 2025-10-11 01:14:42.365 00:06:00.403 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-11 01:19:58.774 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48530 10 6452 1 2025-10-11 01:20:47.820 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 01:20:47.970 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 01:20:47.971 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 01:20:47.971 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 01:20:48.053 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 01:20:59.180 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44940 10 6452 1 2025-10-11 01:21:59.584 00:00:10.697 TCP 1.101.0.1:3000 -> 23.104.0.1:54668 10 6452 1 2025-10-11 01:23:00.333 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33140 10 6452 1 2025-10-11 01:24:00.742 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40142 10 6452 1 2025-10-11 01:19:42.368 00:06:00.400 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-11 01:25:01.151 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42152 10 6452 1 2025-10-11 01:25:48.323 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 01:25:48.138 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 01:25:47.766 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 01:25:48.239 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 01:25:47.971 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 01:26:01.557 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:39080 12 10375 1 2025-10-11 01:21:42.365 00:06:00.405 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-11 01:27:02.036 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:38576 11 6504 1 2025-10-11 01:28:02.455 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48900 10 6452 1 2025-10-11 01:29:02.861 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:46108 10 6452 1 2025-10-11 01:30:03.275 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:34966 10 6452 1 2025-10-11 01:30:48.177 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 01:30:48.137 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 01:30:48.159 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 01:30:48.095 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 01:30:48.132 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 01:31:03.704 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:39844 10 6452 1 2025-10-11 01:26:42.369 00:06:00.401 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-11 01:32:04.094 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55896 10 6452 1 2025-10-11 01:33:04.498 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41204 10 6452 1 2025-10-11 01:28:42.367 00:06:00.406 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-11 01:34:04.860 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36774 10 6452 1 2025-10-11 01:35:05.272 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34726 10 6452 1 2025-10-11 01:35:48.406 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 01:35:48.448 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 01:35:48.180 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 01:35:48.324 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 01:35:48.605 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 01:36:05.677 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:34694 10 6452 1 2025-10-11 01:37:06.069 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36288 10 6452 1 2025-10-11 01:38:06.472 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42088 10 6452 1 2025-10-11 01:33:42.370 00:06:00.401 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-11 01:39:06.875 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37308 10 6452 1 2025-10-11 01:40:07.281 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48746 10 6452 1 2025-10-11 01:40:48.316 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 01:40:48.342 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 01:40:48.387 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 01:40:48.257 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 01:35:42.368 00:06:00.406 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-11 01:40:48.470 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 01:41:07.685 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60828 10 6452 1 2025-10-11 01:42:08.111 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53380 10 6452 1 2025-10-11 01:43:08.522 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35334 10 6452 1 2025-10-11 01:44:08.929 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:56164 10 6452 1 2025-10-11 01:45:09.307 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43256 10 6452 1 2025-10-11 01:40:42.376 00:06:00.396 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-11 01:45:48.552 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 01:45:48.388 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 01:45:48.413 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 01:45:48.469 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 01:45:48.194 00:00:00.030 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 01:46:09.710 00:00:10.981 TCP 1.101.0.1:3000 -> 23.104.0.1:48708 10 6452 1 2025-10-11 01:47:10.727 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45962 10 6452 1 2025-10-11 01:42:42.371 00:06:00.405 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-11 01:48:11.111 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60576 10 6452 1 2025-10-11 01:49:11.516 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:40636 10 6452 1 2025-10-11 01:50:11.875 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:58122 12 10375 1 2025-10-11 01:50:48.487 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 01:50:48.559 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 01:50:48.577 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 01:50:48.404 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 01:50:48.500 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 01:51:12.357 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51802 10 6452 1 2025-10-11 01:52:12.761 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:44518 10 6452 1 2025-10-11 01:47:42.373 00:06:00.400 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-11 01:53:13.128 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43368 10 6452 1 2025-10-11 01:54:13.535 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34214 10 6452 1 2025-10-11 01:49:42.373 00:06:00.405 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-11 01:55:13.939 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:39896 10 6452 1 2025-10-11 01:55:48.647 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 01:55:48.449 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 01:55:48.796 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 01:55:48.594 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 01:55:48.878 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 01:56:14.363 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48902 10 6452 1 2025-10-11 01:57:14.725 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49386 10 6452 1 2025-10-11 01:58:15.113 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35962 10 6452 1 Summary: total flows: 136, total bytes: 427837, total packets: 1011, avg bps: 955, avg pps: 0, avg bpp: 423 Time window: 2025-10-11 00:58:42 - 2025-10-11 01:58:25 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0046s User: 0.0008s Wall: 0.0021s flows/second: 65355.8 Runtime: 0.0021s