Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-22 09:59:37.150 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47310 10 6452 1 2025-10-22 09:54:48.174 00:06:00.307 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 10:00:37.552 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45904 10 6452 1 2025-10-22 09:55:48.177 00:06:00.303 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 10:01:16.257 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 10:01:16.241 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 10:01:16.078 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 10:01:16.173 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 10:01:16.165 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 10:01:37.952 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:43552 10 6452 1 2025-10-22 10:02:38.325 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35574 10 6452 1 2025-10-22 10:03:38.731 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34202 10 6452 1 2025-10-22 10:04:39.141 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:36242 10 6452 1 2025-10-22 10:05:39.521 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:55694 10 6452 1 2025-10-22 10:06:16.400 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 10:06:16.353 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 10:06:15.988 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 10:06:16.318 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 10:06:16.079 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 10:01:48.178 00:06:00.306 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 10:06:39.888 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:40682 10 6452 1 2025-10-22 10:02:48.180 00:06:00.301 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 10:07:40.274 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34794 10 6452 1 2025-10-22 10:08:40.671 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46992 10 6452 1 2025-10-22 10:09:41.098 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60540 10 6452 1 2025-10-22 10:10:41.514 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:42968 10 6452 1 2025-10-22 10:11:16.243 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 10:11:16.190 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 10:11:16.246 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 10:11:16.158 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 10:11:16.328 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 10:11:41.940 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:33468 10 6452 1 2025-10-22 10:12:42.362 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59666 10 6452 1 2025-10-22 10:08:48.179 00:06:00.307 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 10:13:42.769 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:35176 10 6452 1 2025-10-22 10:09:48.181 00:06:00.303 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 10:14:43.182 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47634 10 6452 1 2025-10-22 10:15:43.588 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34480 10 6452 1 2025-10-22 10:16:16.401 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 10:16:16.487 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 10:16:16.538 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 10:16:16.367 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 10:16:16.482 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 10:16:43.995 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60840 10 6452 1 2025-10-22 10:17:44.401 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41008 10 6452 1 2025-10-22 10:18:44.819 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42046 10 6452 1 2025-10-22 10:19:45.226 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36740 10 6452 1 2025-10-22 10:15:48.181 00:06:00.308 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 10:20:45.628 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43080 10 6452 1 2025-10-22 10:21:16.510 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 10:21:16.429 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 10:21:16.497 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 10:21:16.499 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 10:21:16.443 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 10:16:48.183 00:06:00.303 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 10:21:46.030 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35382 10 6452 1 2025-10-22 10:22:46.432 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54882 10 6452 1 2025-10-22 10:23:46.836 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49606 10 6452 1 2025-10-22 10:24:47.231 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51472 10 6452 1 2025-10-22 10:25:47.600 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56514 10 6452 1 2025-10-22 10:26:16.705 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 10:26:16.516 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 10:26:16.638 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 10:26:16.638 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 10:26:16.721 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 10:26:48.004 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48408 10 6452 1 2025-10-22 10:22:48.182 00:06:00.310 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 10:27:48.407 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44184 10 6452 1 2025-10-22 10:23:48.184 00:06:00.305 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 10:28:48.815 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:34968 10 6452 1 2025-10-22 10:29:49.187 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:35230 12 10369 1 2025-10-22 10:30:49.670 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46092 10 6452 1 2025-10-22 10:31:16.894 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 10:31:16.805 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 10:31:16.493 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 10:31:16.811 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 10:31:16.955 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 10:31:50.112 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40238 10 6452 1 2025-10-22 10:32:50.509 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36092 10 6452 1 2025-10-22 10:33:50.907 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36946 10 6452 1 2025-10-22 10:29:48.186 00:06:00.309 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 10:34:51.272 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:56664 10 6452 1 2025-10-22 10:30:48.187 00:06:00.304 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 10:35:51.719 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:49380 10 6452 1 2025-10-22 10:36:16.947 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 10:36:16.782 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 10:36:16.803 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 10:36:16.866 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 10:36:16.675 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 10:36:52.118 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50332 10 6452 1 2025-10-22 10:37:52.525 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:47392 10 6452 1 2025-10-22 10:38:52.884 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:53306 12 6556 1 2025-10-22 10:39:53.303 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49686 10 6452 1 2025-10-22 10:40:53.706 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51888 10 6452 1 2025-10-22 10:41:16.788 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 10:41:16.897 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 10:41:16.769 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 10:41:16.705 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 10:41:16.706 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 10:36:48.193 00:06:00.302 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 10:41:54.110 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45008 10 6452 1 2025-10-22 10:37:48.196 00:06:00.296 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 10:42:54.514 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42170 10 6452 1 2025-10-22 10:43:54.915 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53522 10 6452 1 2025-10-22 10:44:55.321 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51142 10 6452 1 2025-10-22 10:45:55.682 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60712 10 6452 1 2025-10-22 10:46:16.995 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 10:46:16.986 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 10:46:16.830 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 10:46:16.912 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 10:46:16.914 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 10:46:56.108 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52832 10 6452 1 2025-10-22 10:47:56.506 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:60776 10 6452 1 2025-10-22 10:43:48.196 00:06:00.301 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 10:48:56.909 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43210 10 6452 1 2025-10-22 10:44:48.198 00:06:00.296 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 10:49:57.313 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40304 10 6452 1 2025-10-22 10:50:57.677 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44892 10 6452 1 2025-10-22 10:51:17.147 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 10:51:17.264 00:00:00.018 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 10:51:17.148 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 10:51:17.064 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 10:51:17.140 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 10:51:58.038 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43054 10 6452 1 2025-10-22 10:52:58.440 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33024 10 6452 1 2025-10-22 10:53:58.806 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:44792 10 6452 1 2025-10-22 10:54:59.221 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:48668 10 6452 1 2025-10-22 10:50:48.197 00:06:00.301 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 10:55:59.705 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59418 10 6452 1 2025-10-22 10:56:17.137 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 10:56:17.288 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 10:56:17.249 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 10:56:17.057 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 10:56:17.059 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 10:51:48.199 00:06:00.297 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 10:57:00.115 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60006 10 6452 1 2025-10-22 10:58:00.525 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:54252 10 6452 1 Summary: total flows: 137, total bytes: 415307, total packets: 1026, avg bps: 873, avg pps: 0, avg bpp: 404 Time window: 2025-10-22 09:54:48 - 2025-10-22 10:58:10 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0031s User: 0.0021s Wall: 0.0021s flows/second: 65610.8 Runtime: 0.0021s