Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-12 04:59:38.617 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58882 10 6452 1 2025-10-12 05:00:39.020 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57384 10 6452 1 2025-10-12 05:01:20.966 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:01:20.926 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:01:21.009 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 05:01:21.310 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 05:01:21.155 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 05:01:39.383 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59736 10 6452 1 2025-10-12 04:58:42.876 00:05:00.477 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 05:02:39.782 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:60410 10 6452 1 2025-10-12 05:03:40.201 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40162 10 6452 1 2025-10-12 05:00:42.874 00:05:00.482 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 05:04:40.602 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42064 10 6452 1 2025-10-12 05:05:41.004 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57022 10 6452 1 2025-10-12 05:06:21.370 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 05:06:21.289 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:06:21.362 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 05:06:21.349 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 05:06:21.119 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:06:41.419 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42760 10 6452 1 2025-10-12 05:07:41.826 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:46578 10 6452 1 2025-10-12 05:04:42.876 00:05:00.479 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 05:08:42.232 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44476 10 6452 1 2025-10-12 05:09:42.640 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:40274 10 6452 1 2025-10-12 05:06:42.877 00:05:00.482 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 05:10:43.070 00:00:10.614 TCP 1.101.0.1:3000 -> 23.104.0.1:57360 12 10369 1 2025-10-12 05:11:21.448 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 05:11:21.324 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:11:21.265 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:11:21.361 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 05:11:21.349 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 05:11:43.722 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40978 10 6452 1 2025-10-12 05:12:44.133 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39604 10 6452 1 2025-10-12 05:13:44.536 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:43892 10 6452 1 2025-10-12 05:10:42.879 00:05:00.479 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 05:14:44.904 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34872 10 6452 1 2025-10-12 05:15:45.313 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33214 10 6452 1 2025-10-12 05:16:21.549 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 05:16:21.805 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:16:21.540 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:16:21.546 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 05:16:21.623 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 05:12:42.876 00:05:00.485 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 05:16:45.736 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34226 10 6452 1 2025-10-12 05:17:46.140 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:35080 10 6452 1 2025-10-12 05:18:46.498 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52528 10 6452 1 2025-10-12 05:19:46.911 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:43290 10 6452 1 2025-10-12 05:16:42.882 00:05:00.477 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 05:20:47.318 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35876 10 6452 1 2025-10-12 05:21:21.705 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 05:21:21.541 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 05:21:21.443 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:21:21.623 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:21:21.538 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 05:21:47.723 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47294 10 6452 1 2025-10-12 05:18:42.880 00:05:00.481 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 05:22:48.130 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43102 10 6452 1 2025-10-12 05:23:48.536 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45508 10 6452 1 2025-10-12 05:24:48.899 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:46076 10 6452 1 2025-10-12 05:25:49.319 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42948 10 6452 1 2025-10-12 05:26:21.647 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 05:26:21.798 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 05:26:21.762 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:26:21.566 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:26:21.807 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 05:22:42.883 00:05:00.477 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 05:26:49.727 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36982 10 6452 1 2025-10-12 05:27:50.147 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:43990 10 6452 1 2025-10-12 05:24:42.883 00:05:00.480 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 05:28:50.571 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44912 10 6452 1 2025-10-12 05:29:50.975 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33178 10 6452 1 2025-10-12 05:30:51.383 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:53238 12 10375 1 2025-10-12 05:31:21.806 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 05:31:21.803 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 05:31:21.871 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:31:21.725 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:31:21.853 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 05:31:51.866 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:37614 10 6452 1 2025-10-12 05:28:42.888 00:05:00.475 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 05:32:52.277 00:00:10.797 TCP 1.101.0.1:3000 -> 23.104.0.1:50964 10 6452 1 2025-10-12 05:33:53.121 00:00:13.166 TCP 1.101.0.1:3000 -> 23.104.0.1:49700 10 6452 1 2025-10-12 05:30:42.888 00:05:00.479 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 05:34:56.429 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:33034 10 6452 1 2025-10-12 05:35:56.794 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49724 10 6452 1 2025-10-12 05:36:21.977 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 05:36:21.751 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:36:21.846 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:36:21.964 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 05:36:21.929 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 05:36:57.202 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37930 10 6452 1 2025-10-12 05:37:57.608 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49492 10 6452 1 2025-10-12 05:34:42.891 00:05:00.476 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 05:38:58.016 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:36312 10 6452 1 2025-10-12 05:39:58.374 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58482 10 6452 1 2025-10-12 05:36:42.888 00:05:00.482 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 05:40:58.780 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:50252 10 6452 1 2025-10-12 05:41:22.080 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 05:41:22.075 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:41:22.118 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:41:21.977 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 05:41:22.203 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 05:41:59.191 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:39200 10 6452 1 2025-10-12 05:42:59.611 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60870 10 6452 1 2025-10-12 05:44:00.017 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44056 10 6452 1 2025-10-12 05:40:42.889 00:05:00.478 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 05:45:00.419 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49778 10 6452 1 2025-10-12 05:46:00.784 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56024 10 6452 1 2025-10-12 05:46:22.384 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 05:46:22.303 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:46:22.300 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 05:46:22.202 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 05:46:21.977 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:42:42.887 00:05:00.492 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 05:47:01.187 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41094 10 6452 1 2025-10-12 05:48:01.586 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:58568 10 6452 1 2025-10-12 05:49:01.947 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52188 10 6452 1 2025-10-12 05:50:02.353 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:53216 10 6452 1 2025-10-12 05:46:42.894 00:05:00.477 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 05:51:02.726 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:60158 10 6452 1 2025-10-12 05:51:22.115 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 05:51:22.428 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 05:51:22.203 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:51:22.032 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:51:22.437 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 05:52:03.141 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:47630 10 6452 1 2025-10-12 05:48:42.890 00:05:00.483 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 05:53:03.506 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:44382 10 6452 1 2025-10-12 05:54:03.868 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53142 10 6452 1 2025-10-12 05:55:04.281 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45812 10 6452 1 2025-10-12 05:56:04.682 00:00:10.714 TCP 1.101.0.1:3000 -> 23.104.0.1:60224 10 6452 1 2025-10-12 05:56:22.582 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 05:56:22.303 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 05:56:22.241 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:56:22.500 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 05:56:22.491 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 05:52:42.893 00:05:00.479 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 05:57:05.433 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:46600 10 6452 1 2025-10-12 05:58:05.806 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37696 10 6452 1 2025-10-12 05:54:42.890 00:05:00.484 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 Summary: total flows: 139, total bytes: 418388, total packets: 1014, avg bps: 914, avg pps: 0, avg bpp: 412 Time window: 2025-10-12 04:58:42 - 2025-10-12 05:59:43 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0023s User: 0.0023s Wall: 0.0019s flows/second: 72621.9 Runtime: 0.0019s