Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-03 18:59:14.630 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56932 10 6452 1 2025-10-03 18:55:38.692 00:05:00.352 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 19:00:15.033 00:00:12.505 TCP 1.101.0.1:3000 -> 23.104.0.1:38506 10 6452 1 2025-10-03 19:01:17.587 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43672 10 6452 1 2025-10-03 18:57:38.690 00:05:00.357 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 19:02:18.266 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 19:02:18.266 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 19:02:18.119 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 19:02:18.268 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 19:02:18.350 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 19:02:17.953 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37244 10 6452 1 2025-10-03 19:03:18.357 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:48578 10 6452 1 2025-10-03 19:04:18.721 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34718 10 6452 1 2025-10-03 19:05:19.129 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56524 10 6452 1 2025-10-03 19:01:38.692 00:05:00.352 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 19:06:19.536 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49918 10 6452 1 2025-10-03 19:07:18.414 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 19:07:18.502 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 19:07:18.203 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 19:07:18.500 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 19:07:18.582 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 19:07:19.933 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:54450 10 6452 1 2025-10-03 19:03:38.690 00:05:00.357 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 19:08:20.349 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:49650 12 10375 1 2025-10-03 19:09:20.829 00:00:10.940 TCP 1.101.0.1:3000 -> 23.104.0.1:54542 10 6452 1 2025-10-03 19:10:21.808 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35422 10 6452 1 2025-10-03 19:11:22.230 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:34612 10 6452 1 2025-10-03 19:07:38.693 00:05:00.354 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 19:12:18.630 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 19:12:18.227 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 19:12:18.445 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 19:12:18.592 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 19:12:18.675 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 19:12:22.645 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:41592 10 6452 1 2025-10-03 19:13:23.005 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:44038 10 6452 1 2025-10-03 19:09:38.691 00:05:00.359 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 19:14:23.421 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60752 10 6452 1 2025-10-03 19:15:23.821 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:44446 10 6452 1 2025-10-03 19:16:24.189 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40394 10 6452 1 2025-10-03 19:17:18.683 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 19:17:18.651 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 19:17:18.547 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 19:17:18.627 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 19:17:18.601 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 19:17:24.589 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57748 10 6452 1 2025-10-03 19:13:38.694 00:05:00.357 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 19:18:24.994 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38240 10 6452 1 2025-10-03 19:19:25.406 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:39182 10 6452 1 2025-10-03 19:15:38.692 00:05:00.363 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 19:20:25.806 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57418 10 6452 1 2025-10-03 19:21:26.209 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41740 10 6452 1 2025-10-03 19:22:18.941 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 19:22:18.713 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 19:22:18.727 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 19:22:18.942 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 19:22:19.025 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 19:22:26.612 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40944 10 6452 1 2025-10-03 19:23:27.013 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36152 10 6452 1 2025-10-03 19:19:38.696 00:05:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 19:24:27.418 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56926 10 6452 1 2025-10-03 19:25:27.827 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:33696 10 6452 1 2025-10-03 19:21:38.693 00:05:00.368 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 19:26:28.210 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:32776 10 6452 1 2025-10-03 19:27:18.871 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 19:27:18.702 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 19:27:18.836 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 19:27:18.812 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 19:27:18.788 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 19:27:28.611 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43810 10 6452 1 2025-10-03 19:28:29.015 00:00:10.432 TCP 1.101.0.1:3000 -> 23.104.0.1:40948 12 10375 1 2025-10-03 19:29:29.488 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41428 10 6452 1 2025-10-03 19:25:38.696 00:05:00.361 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 19:30:29.899 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51718 10 6452 1 2025-10-03 19:27:38.694 00:05:00.369 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 19:31:30.303 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50184 10 6452 1 2025-10-03 19:32:18.796 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 19:32:18.924 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 19:32:18.838 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 19:32:18.697 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 19:32:18.780 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 19:32:30.709 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59592 10 6452 1 2025-10-03 19:33:31.117 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37738 10 6452 1 2025-10-03 19:34:31.485 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55878 10 6452 1 2025-10-03 19:31:38.697 00:05:00.371 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 19:35:31.901 00:00:11.105 TCP 1.101.0.1:3000 -> 23.104.0.1:50810 12 6556 1 2025-10-03 19:36:33.060 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57440 10 6452 1 2025-10-03 19:37:18.965 00:00:00.030 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 19:37:18.767 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 19:37:18.961 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 19:37:18.979 00:00:00.036 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 19:37:18.883 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 19:33:38.695 00:05:00.380 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 19:37:33.458 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:52538 10 6452 1 2025-10-03 19:38:33.822 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38416 10 6452 1 2025-10-03 19:39:34.223 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36104 10 6452 1 2025-10-03 19:40:34.632 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:53812 10 6452 1 2025-10-03 19:37:38.704 00:05:00.369 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 19:41:34.991 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33736 10 6452 1 2025-10-03 19:42:19.051 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 19:42:18.971 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 19:42:19.289 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 19:42:19.042 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 19:42:18.967 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 19:42:35.409 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55114 10 6452 1 2025-10-03 19:39:38.700 00:05:00.375 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 19:43:35.816 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:38536 10 6452 1 2025-10-03 19:44:36.186 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52826 10 6452 1 2025-10-03 19:45:36.590 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50652 10 6452 1 2025-10-03 19:46:36.995 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:49150 10 6452 1 2025-10-03 19:47:19.059 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 19:47:19.101 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 19:47:19.100 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 19:47:18.826 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 19:47:18.976 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 19:43:38.705 00:05:00.369 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 19:47:37.361 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37092 10 6452 1 2025-10-03 19:48:37.729 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42710 10 6452 1 2025-10-03 19:45:38.703 00:05:00.374 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 19:49:38.136 00:00:10.588 TCP 1.101.0.1:3000 -> 23.104.0.1:54538 10 6452 1 2025-10-03 19:50:38.762 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:54964 10 6452 1 2025-10-03 19:51:39.173 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38802 10 6452 1 2025-10-03 19:52:19.222 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 19:52:19.359 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 19:52:19.360 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 19:52:19.123 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 19:52:19.304 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 19:52:39.584 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52614 10 6452 1 2025-10-03 19:49:38.706 00:05:00.369 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 19:53:39.985 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:35366 12 10369 1 2025-10-03 19:54:40.471 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58706 10 6452 1 2025-10-03 19:51:38.704 00:05:00.375 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 19:55:40.886 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54564 10 6452 1 2025-10-03 19:56:41.254 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:46820 10 6452 1 2025-10-03 19:57:19.425 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 19:57:19.522 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 19:57:19.287 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 19:57:19.527 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 19:57:19.611 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 19:57:41.673 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37220 10 6452 1 Summary: total flows: 139, total bytes: 422415, total packets: 1018, avg bps: 905, avg pps: 0, avg bpp: 414 Time window: 2025-10-03 18:55:38 - 2025-10-03 19:57:51 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0027s User: 0.0018s Wall: 0.0018s flows/second: 77610.3 Runtime: 0.0018s