Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-14 14:59:40.338 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34946 10 6452 1 2025-10-14 15:00:40.749 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:57934 10 6452 1 2025-10-14 14:56:44.128 00:06:00.445 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-14 15:01:41.179 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55072 10 6452 1 2025-10-14 15:02:30.889 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 15:02:30.892 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 15:02:31.068 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:02:31.115 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:02:31.199 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 15:02:41.582 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37042 10 6452 1 2025-10-14 15:03:41.980 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35374 10 6452 1 2025-10-14 15:04:42.390 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35196 10 6452 1 2025-10-14 15:00:44.127 00:06:00.452 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-14 15:05:42.800 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:58028 11 6492 1 2025-10-14 15:06:43.171 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33492 10 6452 1 2025-10-14 15:07:31.062 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 15:07:31.168 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 15:07:31.099 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:07:30.980 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:07:31.092 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 15:07:43.577 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44776 10 6452 1 2025-10-14 15:03:44.129 00:06:00.447 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-14 15:08:43.975 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49818 10 6452 1 2025-10-14 15:09:44.390 00:00:10.415 TCP 1.101.0.1:3000 -> 23.104.0.1:51648 11 6504 1 2025-10-14 15:10:44.844 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:36256 10 6452 1 2025-10-14 15:11:45.228 00:00:10.720 TCP 1.101.0.1:3000 -> 23.104.0.1:44596 10 6452 1 2025-10-14 15:12:31.552 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 15:12:31.479 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 15:12:31.565 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:12:31.470 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:12:31.833 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 15:07:44.129 00:06:00.452 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-14 15:12:45.982 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50002 12 6556 1 2025-10-14 15:13:46.392 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47776 10 6452 1 2025-10-14 15:14:46.791 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36054 10 6452 1 2025-10-14 15:10:44.132 00:06:00.446 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-14 15:15:47.154 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:52026 10 6452 1 2025-10-14 15:16:47.514 00:00:10.446 TCP 1.101.0.1:3000 -> 23.104.0.1:54234 12 10369 1 2025-10-14 15:17:31.421 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 15:17:31.434 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 15:17:31.393 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:17:31.339 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:17:31.153 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 15:17:48.001 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:58072 10 6452 1 2025-10-14 15:18:48.362 00:00:10.422 TCP 1.101.0.1:3000 -> 23.104.0.1:54614 10 6452 1 2025-10-14 15:14:44.133 00:06:00.452 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-14 15:19:48.820 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:54630 10 6452 1 2025-10-14 15:20:49.184 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40208 10 6452 1 2025-10-14 15:21:49.543 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33470 10 6452 1 2025-10-14 15:22:31.531 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 15:22:31.578 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:22:31.529 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:22:31.571 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 15:22:31.612 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 15:17:44.136 00:06:00.444 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-14 15:22:49.948 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55228 10 6452 1 2025-10-14 15:23:50.358 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39110 10 6452 1 2025-10-14 15:24:50.758 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:60728 10 6452 1 2025-10-14 15:25:51.181 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52624 10 6452 1 2025-10-14 15:21:44.134 00:06:00.450 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-14 15:26:51.591 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33276 10 6452 1 2025-10-14 15:27:31.755 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 15:27:31.638 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 15:27:31.574 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:27:31.671 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:27:31.632 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 15:27:52.003 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56204 10 6452 1 2025-10-14 15:28:52.408 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46686 10 6452 1 2025-10-14 15:24:44.142 00:06:00.440 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-14 15:29:52.823 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:35940 10 6452 1 2025-10-14 15:30:53.233 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47792 10 6452 1 2025-10-14 15:31:53.633 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:36130 10 6452 1 2025-10-14 15:32:31.626 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 15:32:31.819 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 15:32:31.476 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:32:31.544 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:32:31.767 00:00:00.032 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 15:32:54.071 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33382 10 6452 1 2025-10-14 15:28:44.138 00:06:00.449 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-14 15:33:54.432 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53546 10 6452 1 2025-10-14 15:34:54.836 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:60758 10 6452 1 2025-10-14 15:35:55.264 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57790 10 6452 1 2025-10-14 15:31:44.140 00:06:00.445 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-14 15:36:55.678 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40540 10 6452 1 2025-10-14 15:37:32.024 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 15:37:31.931 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 15:37:31.673 00:00:00.029 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:37:31.940 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:37:31.968 00:00:00.036 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 15:37:56.108 00:00:10.521 TCP 1.101.0.1:3000 -> 23.104.0.1:33302 10 6452 1 2025-10-14 15:38:56.669 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34774 10 6452 1 2025-10-14 15:39:57.106 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51164 10 6452 1 2025-10-14 15:35:44.139 00:06:00.450 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-14 15:40:57.507 00:00:10.427 TCP 1.101.0.1:3000 -> 23.104.0.1:45918 12 10375 1 2025-10-14 15:41:57.947 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:47216 10 6452 1 2025-10-14 15:42:31.807 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 15:42:31.751 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:42:31.888 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:42:31.809 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 15:42:31.972 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 15:42:58.375 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53726 10 6452 1 2025-10-14 15:38:44.142 00:06:00.446 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-14 15:43:58.743 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52198 10 6452 1 2025-10-14 15:44:59.150 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:41230 12 6556 1 2025-10-14 15:45:59.545 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50626 10 6452 1 2025-10-14 15:46:59.949 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:47382 11 6504 1 2025-10-14 15:47:31.867 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 15:47:31.911 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:47:32.098 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:47:31.797 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 15:47:32.181 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 15:42:44.142 00:06:00.449 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-14 15:48:00.365 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59870 10 6452 1 2025-10-14 15:49:00.771 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51582 10 6452 1 2025-10-14 15:50:01.184 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48212 10 6452 1 2025-10-14 15:45:44.147 00:06:00.444 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-14 15:51:01.587 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36160 10 6452 1 2025-10-14 15:52:01.990 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44908 10 6452 1 2025-10-14 15:52:31.912 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 15:52:32.117 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 15:52:32.085 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:52:31.829 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:52:31.956 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 15:53:02.393 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57318 10 6452 1 2025-10-14 15:54:02.795 00:00:10.404 TCP 1.101.0.1:3000 -> 23.104.0.1:35604 11 6504 1 2025-10-14 15:49:44.145 00:06:00.453 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-14 15:55:03.242 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51406 10 6452 1 2025-10-14 15:56:03.644 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46520 10 6452 1 2025-10-14 15:57:04.062 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:39832 10 6452 1 2025-10-14 15:57:32.603 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 15:57:32.505 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 15:57:32.073 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:57:32.520 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 15:57:32.409 00:00:00.030 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 15:52:44.148 00:06:00.447 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-14 15:58:04.475 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58098 10 6452 1 Summary: total flows: 136, total bytes: 418669, total packets: 1020, avg bps: 900, avg pps: 0, avg bpp: 410 Time window: 2025-10-14 14:56:44 - 2025-10-14 15:58:44 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0042s User: 0.0010s Wall: 0.0021s flows/second: 64917.0 Runtime: 0.0021s