Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-12 03:59:00.115 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:38518 10 6452 1 2025-10-12 04:00:00.514 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50476 10 6452 1 2025-10-12 04:01:19.969 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 04:01:00.923 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:55118 10 6452 1 2025-10-12 04:01:20.091 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 04:01:19.922 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:01:19.885 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:01:20.093 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 04:02:01.340 00:00:10.673 TCP 1.101.0.1:3000 -> 23.104.0.1:59676 10 6452 1 2025-10-12 03:58:42.853 00:05:00.484 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 04:03:02.058 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45810 10 6452 1 2025-10-12 04:04:02.459 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:42030 10 6452 1 2025-10-12 04:00:42.852 00:05:00.489 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 04:05:02.864 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:44518 10 6452 1 2025-10-12 04:06:03.275 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:33404 10 6452 1 2025-10-12 04:06:20.257 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 04:06:19.870 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:06:20.212 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:06:19.992 00:00:00.051 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 04:06:20.294 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 04:07:03.637 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49036 10 6452 1 2025-10-12 04:08:04.050 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:53374 10 6452 1 2025-10-12 04:04:42.854 00:05:00.484 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 04:09:04.426 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38420 10 6452 1 2025-10-12 04:10:04.831 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:45608 10 6452 1 2025-10-12 04:06:42.853 00:05:00.488 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 04:11:05.298 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47546 10 6452 1 2025-10-12 04:11:20.308 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 04:11:20.414 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 04:11:20.329 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:11:20.225 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:11:20.227 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 04:12:05.706 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60274 10 6452 1 2025-10-12 04:13:06.119 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59060 10 6452 1 2025-10-12 04:14:06.515 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53792 10 6452 1 2025-10-12 04:10:42.856 00:05:00.483 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 04:15:06.917 00:00:10.464 TCP 1.101.0.1:3000 -> 23.104.0.1:41496 10 6452 1 2025-10-12 04:16:20.326 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 04:16:20.142 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 04:16:20.262 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:16:20.244 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:16:07.427 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56430 10 6452 1 2025-10-12 04:16:20.327 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 04:12:42.856 00:05:00.486 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 04:17:07.825 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59862 10 6452 1 2025-10-12 04:18:08.234 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57206 10 6452 1 2025-10-12 04:19:08.633 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47938 10 6452 1 2025-10-12 04:20:09.032 00:00:23.642 TCP 1.101.0.1:3000 -> 23.104.0.1:38218 10 6452 1 2025-10-12 04:16:42.861 00:05:00.481 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 04:21:20.329 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 04:21:20.361 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:21:20.482 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:21:20.425 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 04:21:20.564 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 04:21:22.718 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35318 10 6452 1 2025-10-12 04:22:23.118 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49444 10 6452 1 2025-10-12 04:18:42.858 00:05:00.485 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 04:23:23.523 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45998 10 6452 1 2025-10-12 04:24:23.945 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:53378 10 6452 1 2025-10-12 04:25:24.360 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40938 10 6452 1 2025-10-12 04:26:20.660 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 04:26:20.378 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 04:26:20.524 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:26:20.578 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:26:20.529 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 04:26:24.764 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54044 10 6452 1 2025-10-12 04:22:42.863 00:05:00.478 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 04:27:25.172 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37954 10 6452 1 2025-10-12 04:28:25.574 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:58396 10 6452 1 2025-10-12 04:24:42.861 00:05:00.484 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 04:29:25.938 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53796 10 6452 1 2025-10-12 04:30:26.346 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34864 10 6452 1 2025-10-12 04:31:20.557 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 04:31:20.570 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 04:31:20.608 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:31:20.476 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:31:20.573 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 04:31:26.752 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52346 10 6452 1 2025-10-12 04:32:27.163 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43638 10 6452 1 2025-10-12 04:28:42.863 00:05:00.479 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 04:33:27.527 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39264 10 6452 1 2025-10-12 04:34:27.925 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:59264 10 6452 1 2025-10-12 04:30:42.861 00:05:00.484 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 04:35:28.295 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34068 10 6452 1 2025-10-12 04:36:20.769 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 04:36:20.688 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 04:36:20.400 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:36:20.686 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:36:20.582 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 04:36:28.701 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47488 10 6452 1 2025-10-12 04:37:29.114 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:51862 10 6452 1 2025-10-12 04:38:29.539 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58032 10 6452 1 2025-10-12 04:34:42.868 00:05:00.476 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 04:39:29.951 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36706 10 6452 1 2025-10-12 04:40:30.366 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39226 10 6452 1 2025-10-12 04:36:42.866 00:05:00.481 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 04:41:20.676 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 04:41:20.888 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:41:20.675 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:41:20.868 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 04:41:20.758 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 04:41:30.763 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57964 10 6452 1 2025-10-12 04:42:31.176 00:00:10.451 TCP 1.101.0.1:3000 -> 23.104.0.1:45948 10 6452 1 2025-10-12 04:43:31.671 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:44204 10 6452 1 2025-10-12 04:40:42.868 00:05:00.477 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 04:44:32.108 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50598 10 6452 1 2025-10-12 04:45:32.511 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:52288 12 10375 1 2025-10-12 04:46:21.061 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 04:46:20.987 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 04:46:21.005 00:00:00.031 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:46:20.979 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:46:21.084 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 04:46:32.989 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38524 10 6452 1 2025-10-12 04:42:42.866 00:05:00.486 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 04:47:33.394 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:50344 10 6452 1 2025-10-12 04:48:33.759 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54466 10 6452 1 2025-10-12 04:49:34.166 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46846 10 6452 1 2025-10-12 04:50:34.527 00:00:10.423 TCP 1.101.0.1:3000 -> 23.104.0.1:41890 11 6504 1 2025-10-12 04:46:42.870 00:05:00.477 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 04:51:21.426 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 04:51:20.925 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:51:21.262 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 04:51:21.343 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:51:21.181 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 04:51:34.989 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48368 10 6452 1 2025-10-12 04:48:42.871 00:05:00.482 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 04:52:35.395 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:32816 10 6452 1 2025-10-12 04:53:35.797 00:00:10.784 TCP 1.101.0.1:3000 -> 23.104.0.1:38732 10 6452 1 2025-10-12 04:54:36.618 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50524 10 6452 1 2025-10-12 04:55:36.978 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46834 10 6452 1 2025-10-12 04:56:20.959 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:56:21.195 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 04:56:21.113 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 04:56:21.112 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:56:21.157 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 04:52:42.875 00:05:00.478 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 04:56:37.386 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34748 10 6452 1 2025-10-12 04:57:37.788 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:57996 10 6452 1 2025-10-12 04:54:42.871 00:05:00.483 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 04:58:38.214 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42124 10 6452 1 Summary: total flows: 140, total bytes: 420975, total packets: 1023, avg bps: 920, avg pps: 0, avg bpp: 411 Time window: 2025-10-12 03:58:42 - 2025-10-12 04:59:43 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0028s User: 0.0019s Wall: 0.0019s flows/second: 71829.1 Runtime: 0.0020s