Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-14 15:59:04.845 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:40968 10 6452 1 2025-10-14 16:00:05.245 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:43290 10 6452 1 2025-10-14 16:01:05.671 00:00:10.464 TCP 1.101.0.1:3000 -> 23.104.0.1:56718 12 10369 1 2025-10-14 15:56:44.147 00:06:00.451 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-14 16:02:06.173 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:43566 10 6452 1 2025-10-14 16:02:32.396 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 16:02:32.308 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 16:02:32.140 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:02:32.313 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:02:32.254 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 16:03:06.594 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:48964 10 6452 1 2025-10-14 16:04:06.971 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:47478 10 6452 1 2025-10-14 15:59:44.151 00:06:00.445 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-14 16:05:07.355 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:39280 10 6452 1 2025-10-14 16:06:07.721 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:55410 10 6452 1 2025-10-14 16:07:08.136 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39776 10 6452 1 2025-10-14 16:07:32.306 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 16:07:32.454 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 16:07:32.257 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:07:32.225 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:07:32.502 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 16:08:08.499 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48454 10 6452 1 2025-10-14 16:03:44.148 00:06:00.454 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-14 16:09:08.910 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48030 10 6452 1 2025-10-14 16:10:09.315 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46978 10 6452 1 2025-10-14 16:11:09.719 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54230 10 6452 1 2025-10-14 16:06:44.151 00:06:00.449 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-14 16:12:10.131 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54962 10 6452 1 2025-10-14 16:12:32.493 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 16:12:32.571 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 16:12:32.287 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:12:32.410 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:12:32.332 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 16:13:10.537 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47838 10 6452 1 2025-10-14 16:14:10.938 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:53080 10 6452 1 2025-10-14 16:15:11.360 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50056 10 6452 1 2025-10-14 16:10:44.149 00:06:00.455 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-14 16:16:11.766 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48252 10 6452 1 2025-10-14 16:17:12.176 00:00:11.072 TCP 1.101.0.1:3000 -> 23.104.0.1:48386 10 6452 1 2025-10-14 16:17:32.298 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 16:17:32.329 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:17:32.384 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:17:32.493 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 16:17:32.467 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 16:18:13.285 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34776 10 6452 1 2025-10-14 16:13:44.155 00:06:00.448 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-14 16:19:13.685 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48306 10 6452 1 2025-10-14 16:20:14.111 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32932 10 6452 1 2025-10-14 16:21:14.514 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40784 10 6452 1 2025-10-14 16:22:14.880 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41842 10 6452 1 2025-10-14 16:22:33.077 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 16:22:33.066 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:22:32.995 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:22:32.810 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 16:22:32.997 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 16:17:44.152 00:06:00.454 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-14 16:23:15.280 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:55430 10 6452 1 2025-10-14 16:24:15.693 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55142 10 6452 1 2025-10-14 16:25:16.107 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51042 10 6452 1 2025-10-14 16:20:44.158 00:06:00.446 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-14 16:26:16.507 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34758 10 6452 1 2025-10-14 16:27:32.745 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 16:27:16.911 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57106 10 6452 1 2025-10-14 16:27:32.910 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 16:27:32.721 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:27:32.662 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:27:32.851 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 16:28:17.322 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56218 10 6452 1 2025-10-14 16:29:17.728 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:42724 10 6452 1 2025-10-14 16:24:44.154 00:06:00.454 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-14 16:30:18.142 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51922 10 6452 1 2025-10-14 16:31:18.548 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43788 10 6452 1 2025-10-14 16:32:33.012 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 16:32:18.968 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:32840 10 6452 1 2025-10-14 16:32:32.837 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 16:32:32.653 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:32:32.928 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:32:32.996 00:00:00.030 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 16:27:44.158 00:06:00.449 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-14 16:33:19.397 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49082 10 6452 1 2025-10-14 16:34:19.800 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34104 10 6452 1 2025-10-14 16:35:20.202 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58472 10 6452 1 2025-10-14 16:36:20.615 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57614 10 6452 1 2025-10-14 16:31:44.157 00:06:00.454 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-14 16:37:33.059 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 16:37:32.974 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 16:37:32.924 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:37:32.976 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:37:33.048 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 16:37:20.985 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:39024 10 6452 1 2025-10-14 16:38:21.398 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57822 10 6452 1 2025-10-14 16:39:21.802 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50280 10 6452 1 2025-10-14 16:34:44.159 00:06:00.450 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-14 16:40:22.205 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37192 10 6452 1 2025-10-14 16:41:22.610 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46728 10 6452 1 2025-10-14 16:42:33.292 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 16:42:32.913 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:42:33.077 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:42:33.089 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 16:42:23.020 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:55962 10 6452 1 2025-10-14 16:42:33.159 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 16:43:23.415 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58992 10 6452 1 2025-10-14 16:38:44.157 00:06:00.456 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-14 16:44:23.819 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:43208 10 6452 1 2025-10-14 16:45:24.191 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59770 10 6452 1 2025-10-14 16:46:24.592 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43716 10 6452 1 2025-10-14 16:41:44.161 00:06:00.450 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-14 16:47:33.043 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 16:47:33.105 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:47:33.244 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:47:33.075 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 16:47:24.993 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50232 10 6452 1 2025-10-14 16:47:33.327 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 16:48:25.397 00:00:11.040 TCP 1.101.0.1:3000 -> 23.104.0.1:49116 10 6452 1 2025-10-14 16:49:26.480 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49124 10 6452 1 2025-10-14 16:50:26.843 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:50180 10 6452 1 2025-10-14 16:45:44.159 00:06:00.456 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-14 16:51:27.262 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60478 10 6452 1 2025-10-14 16:52:33.349 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 16:52:33.318 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:52:33.405 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:52:33.358 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 16:52:33.488 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 16:52:27.668 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44544 10 6452 1 2025-10-14 16:53:28.103 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:42094 10 6452 1 2025-10-14 16:48:44.162 00:06:00.450 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-14 16:54:28.468 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41688 10 6452 1 2025-10-14 16:55:28.837 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:39648 10 6452 1 2025-10-14 16:56:29.262 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55990 10 6452 1 2025-10-14 16:57:33.499 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 16:57:33.422 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:57:33.497 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 16:57:33.263 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 16:57:33.580 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 16:57:29.663 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40208 10 6452 1 2025-10-14 16:52:44.178 00:06:00.438 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-14 16:58:30.101 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34116 10 6452 1 Summary: total flows: 137, total bytes: 420794, total packets: 1020, avg bps: 904, avg pps: 0, avg bpp: 412 Time window: 2025-10-14 15:56:44 - 2025-10-14 16:58:44 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0029s User: 0.0019s Wall: 0.0081s flows/second: 16909.5 Runtime: 0.0081s