Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-22 12:59:01.117 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:55346 10 6452 1 2025-10-22 13:00:01.514 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43636 10 6452 1 2025-10-22 13:01:01.892 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:33790 12 6556 1 2025-10-22 13:01:19.732 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 13:01:19.762 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 13:01:19.687 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:01:19.650 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:01:19.715 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 12:56:48.236 00:06:00.298 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 13:02:02.316 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:45404 10 6452 1 2025-10-22 12:57:48.240 00:06:00.294 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 13:03:02.697 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36422 10 6452 1 2025-10-22 13:04:03.109 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52712 10 6452 1 2025-10-22 13:05:03.518 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43820 10 6452 1 2025-10-22 13:06:03.883 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:44590 10 6452 1 2025-10-22 13:06:19.967 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 13:06:19.883 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 13:06:19.684 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:06:19.884 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:06:19.771 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 13:07:04.294 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38076 10 6452 1 2025-10-22 13:08:04.700 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54354 10 6452 1 2025-10-22 13:03:48.238 00:06:00.297 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 13:09:05.119 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47686 10 6452 1 2025-10-22 13:04:48.241 00:06:00.293 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 13:10:05.519 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57746 10 6452 1 2025-10-22 13:11:20.342 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 13:11:20.258 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:11:20.343 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 13:11:20.259 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 13:11:05.922 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:39624 10 6452 1 2025-10-22 13:11:19.753 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:12:06.345 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49054 10 6452 1 2025-10-22 13:13:06.759 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:32852 10 6452 1 2025-10-22 13:14:07.181 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:38204 12 10375 1 2025-10-22 13:15:07.662 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58666 10 6452 1 2025-10-22 13:10:48.239 00:06:00.298 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 13:16:19.823 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 13:16:08.086 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50070 10 6452 1 2025-10-22 13:16:20.192 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 13:16:19.942 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:16:19.742 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:16:20.150 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 13:11:48.242 00:06:00.292 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 13:17:08.488 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36736 10 6452 1 2025-10-22 13:18:08.891 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:44306 10 6452 1 2025-10-22 13:19:09.267 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:37714 12 10369 1 2025-10-22 13:20:09.745 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42184 10 6452 1 2025-10-22 13:21:20.217 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:21:20.185 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 13:21:10.152 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59998 10 6452 1 2025-10-22 13:21:20.063 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 13:21:19.720 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:21:20.301 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 13:22:10.555 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58952 10 6452 1 2025-10-22 13:17:48.241 00:06:00.297 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 13:23:10.956 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53222 10 6452 1 2025-10-22 13:18:48.246 00:06:00.290 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 13:24:11.361 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41598 10 6452 1 2025-10-22 13:25:11.767 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:54652 10 6452 1 2025-10-22 13:26:20.332 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 13:26:20.129 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:26:20.068 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:26:20.360 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 13:26:20.150 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 13:26:12.185 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40586 10 6452 1 2025-10-22 13:27:12.606 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45052 10 6452 1 2025-10-22 13:28:13.014 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41170 10 6452 1 2025-10-22 13:29:13.425 00:00:10.316 TCP 1.101.0.1:3000 -> 23.104.0.1:43920 10 6452 1 2025-10-22 13:24:48.243 00:06:00.297 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 13:30:13.778 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42870 10 6452 1 2025-10-22 13:25:48.246 00:06:00.292 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 13:31:20.372 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 13:31:20.529 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 13:31:20.420 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:31:20.289 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:31:20.285 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 13:31:14.188 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58302 10 6452 1 2025-10-22 13:32:14.586 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42968 10 6452 1 2025-10-22 13:33:14.945 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:60138 10 6452 1 2025-10-22 13:34:15.356 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:39678 12 10375 1 2025-10-22 13:35:15.836 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:57990 10 6452 1 2025-10-22 13:36:20.452 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 13:36:20.407 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:36:20.547 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:36:20.452 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 13:36:20.630 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 13:36:16.266 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40220 10 6452 1 2025-10-22 13:31:48.246 00:06:00.295 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 13:37:16.674 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40992 10 6452 1 2025-10-22 13:32:48.248 00:06:00.290 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 13:38:17.031 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49456 10 6452 1 2025-10-22 13:39:17.436 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59838 10 6452 1 2025-10-22 13:40:17.842 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:44158 10 6452 1 2025-10-22 13:41:20.686 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 13:41:20.698 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:41:20.770 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:41:20.769 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 13:41:20.852 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 13:41:18.263 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39326 10 6452 1 2025-10-22 13:42:18.647 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53370 10 6452 1 2025-10-22 13:43:19.010 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45128 10 6452 1 2025-10-22 13:38:48.250 00:06:00.293 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 13:44:19.415 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:47248 10 6452 1 2025-10-22 13:39:48.252 00:06:00.288 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 13:45:19.773 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48626 10 6452 1 2025-10-22 13:46:20.714 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 13:46:20.722 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 13:46:20.663 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:46:20.631 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:46:20.569 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 13:46:20.182 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36694 10 6452 1 2025-10-22 13:47:20.590 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39988 10 6452 1 2025-10-22 13:48:20.992 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43002 10 6452 1 2025-10-22 13:49:21.395 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:54610 12 10369 1 2025-10-22 13:50:21.866 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38436 10 6452 1 2025-10-22 13:45:48.257 00:06:00.291 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 13:51:20.726 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 13:51:20.594 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:51:20.654 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:51:20.731 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 13:51:20.737 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 13:51:22.273 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58158 10 6452 1 2025-10-22 13:46:48.260 00:06:00.287 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 13:52:22.680 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60708 10 6452 1 2025-10-22 13:53:23.109 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58064 12 6556 1 2025-10-22 13:54:23.516 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:33928 10 6452 1 2025-10-22 13:55:23.879 00:00:10.708 TCP 1.101.0.1:3000 -> 23.104.0.1:57636 10 6452 1 2025-10-22 13:56:20.633 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 13:56:20.782 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:56:21.069 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 13:56:21.001 00:00:00.045 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 13:56:21.152 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 13:56:24.624 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50704 12 6556 1 2025-10-22 13:57:25.032 00:00:10.631 TCP 1.101.0.1:3000 -> 23.104.0.1:60640 10 6452 1 2025-10-22 13:52:48.260 00:06:00.290 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 13:58:25.701 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51510 10 6452 1 2025-10-22 13:53:48.264 00:06:00.283 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 Summary: total flows: 138, total bytes: 433730, total packets: 1046, avg bps: 917, avg pps: 0, avg bpp: 414 Time window: 2025-10-22 12:56:48 - 2025-10-22 13:59:48 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0041s User: 0.0008s Wall: 0.0024s flows/second: 57622.1 Runtime: 0.0024s