Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-20 14:58:57.401 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36072 10 6452 1 2025-10-20 14:59:57.803 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44122 10 6452 1 2025-10-20 15:00:24.346 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 15:00:24.269 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 15:00:24.389 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 15:00:24.264 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 15:00:24.261 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 15:00:58.211 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36676 10 6452 1 2025-10-20 14:56:47.249 00:06:00.251 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 15:01:58.613 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39446 10 6452 1 2025-10-20 15:02:59.020 00:00:10.407 TCP 1.101.0.1:3000 -> 23.104.0.1:55766 12 10375 1 2025-10-20 14:58:47.248 00:06:00.255 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 15:03:59.466 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:49318 10 6452 1 2025-10-20 15:04:59.821 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49100 10 6452 1 2025-10-20 15:05:24.641 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 15:05:24.699 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 15:05:24.642 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 15:05:24.559 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 15:05:24.559 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 15:06:00.225 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52596 10 6452 1 2025-10-20 15:07:00.627 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:60682 10 6452 1 2025-10-20 15:08:01.077 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:51690 10 6452 1 2025-10-20 15:03:47.251 00:06:00.250 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 15:09:01.501 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43688 10 6452 1 2025-10-20 15:10:01.868 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40652 10 6452 1 2025-10-20 15:10:24.577 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 15:10:24.481 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 15:10:24.600 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 15:10:24.370 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 15:10:24.682 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 15:05:47.250 00:06:00.254 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 15:11:02.275 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45546 10 6452 1 2025-10-20 15:12:02.642 00:00:10.621 TCP 1.101.0.1:3000 -> 23.104.0.1:52304 10 6452 1 2025-10-20 15:13:03.301 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57930 10 6452 1 2025-10-20 15:14:03.705 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:59534 10 6452 1 2025-10-20 15:15:04.193 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50960 10 6452 1 2025-10-20 15:15:24.652 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 15:15:24.426 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 15:15:24.595 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 15:15:24.743 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 15:15:24.679 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 15:10:47.253 00:06:00.251 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 15:16:04.593 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:52880 10 6452 1 2025-10-20 15:17:04.994 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56616 10 6452 1 2025-10-20 15:12:47.251 00:06:00.259 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 15:18:05.401 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58754 10 6452 1 2025-10-20 15:19:05.815 00:00:10.353 TCP 1.101.0.1:3000 -> 23.104.0.1:59556 10 6452 1 2025-10-20 15:20:24.789 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 15:20:06.193 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43142 10 6452 1 2025-10-20 15:20:24.846 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 15:20:24.812 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 15:20:24.706 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 15:20:24.792 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 15:21:06.593 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58568 10 6452 1 2025-10-20 15:22:06.995 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57622 10 6452 1 2025-10-20 15:17:47.256 00:06:00.254 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 15:23:07.356 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35604 10 6452 1 2025-10-20 15:24:07.755 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:48832 10 6452 1 2025-10-20 15:19:47.253 00:06:00.259 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 15:25:08.124 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53548 10 6452 1 2025-10-20 15:25:24.877 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 15:25:24.557 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 15:25:24.911 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 15:25:24.926 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 15:25:24.993 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 15:26:08.522 00:00:10.885 TCP 1.101.0.1:3000 -> 23.104.0.1:53376 10 6452 1 2025-10-20 15:27:09.445 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:59410 10 6452 1 2025-10-20 15:28:09.808 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:33868 10 6452 1 2025-10-20 15:29:10.215 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:41988 10 6452 1 2025-10-20 15:24:47.256 00:06:00.256 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 15:30:10.582 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41194 10 6452 1 2025-10-20 15:30:24.905 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 15:30:24.534 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 15:30:24.741 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 15:30:24.953 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 15:30:24.824 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 15:31:10.988 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44688 10 6452 1 2025-10-20 15:26:47.254 00:06:00.261 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 15:32:11.350 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41864 10 6452 1 2025-10-20 15:33:11.764 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39508 10 6452 1 2025-10-20 15:34:12.177 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44648 10 6452 1 2025-10-20 15:35:25.177 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 15:35:25.215 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 15:35:24.904 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 15:35:25.095 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 15:35:25.105 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 15:35:12.584 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55484 10 6452 1 2025-10-20 15:36:12.993 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:54754 10 6452 1 2025-10-20 15:31:47.258 00:06:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 15:37:13.419 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:59874 10 6452 1 2025-10-20 15:38:13.783 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51552 10 6452 1 2025-10-20 15:33:47.257 00:06:00.261 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 15:39:14.190 00:00:12.682 TCP 1.101.0.1:3000 -> 23.104.0.1:58634 10 6452 1 2025-10-20 15:40:25.378 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 15:40:25.113 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 15:40:25.312 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 15:40:25.297 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 15:40:25.117 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 15:40:16.928 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:47264 10 6452 1 2025-10-20 15:41:17.363 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:60026 10 6452 1 2025-10-20 15:42:17.738 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54874 10 6452 1 2025-10-20 15:43:18.142 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52248 10 6452 1 2025-10-20 15:38:47.260 00:06:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 15:44:18.504 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47274 10 6452 1 2025-10-20 15:45:25.572 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 15:45:25.413 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 15:45:25.178 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 15:45:25.488 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 15:45:25.392 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 15:45:18.910 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37996 10 6452 1 2025-10-20 15:40:47.258 00:06:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 15:46:19.316 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57626 10 6452 1 2025-10-20 15:47:19.688 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44552 10 6452 1 2025-10-20 15:48:20.066 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36554 10 6452 1 2025-10-20 15:49:20.467 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46544 10 6452 1 2025-10-20 15:50:25.391 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 15:50:25.380 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 15:50:25.231 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 15:50:25.308 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 15:50:25.291 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 15:50:20.866 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46782 10 6452 1 2025-10-20 15:45:47.262 00:06:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 15:51:21.276 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:33904 10 6452 1 2025-10-20 15:52:21.672 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:51826 10 6452 1 2025-10-20 15:47:47.260 00:06:00.264 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 15:53:22.028 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39292 10 6452 1 2025-10-20 15:54:22.427 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60872 10 6452 1 2025-10-20 15:55:25.536 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 15:55:25.539 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 15:55:25.405 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 15:55:25.454 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 15:55:25.529 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 15:55:22.787 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43028 10 6452 1 2025-10-20 15:56:23.191 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54748 10 6452 1 2025-10-20 15:57:23.590 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35070 10 6452 1 2025-10-20 15:52:47.263 00:06:00.260 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 15:58:23.995 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53980 10 6452 1 Summary: total flows: 137, total bytes: 420800, total packets: 1020, avg bps: 904, avg pps: 0, avg bpp: 412 Time window: 2025-10-20 14:56:47 - 2025-10-20 15:58:47 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0051s User: 0.0010s Wall: 0.0019s flows/second: 70358.7 Runtime: 0.0020s