Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-04 05:55:38.926 00:05:00.377 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 05:59:37.177 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:60980 10 6452 1 2025-10-04 06:00:37.545 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38394 10 6452 1 2025-10-04 05:57:38.925 00:05:00.381 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 06:01:37.957 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45312 10 6452 1 2025-10-04 06:02:31.595 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 06:02:31.637 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 06:02:31.527 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:02:31.540 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:02:31.623 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 06:02:38.324 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56436 10 6452 1 2025-10-04 06:03:38.732 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34680 10 6452 1 2025-10-04 06:04:39.133 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51428 10 6452 1 2025-10-04 06:01:38.927 00:05:00.377 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 06:05:39.530 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55186 10 6452 1 2025-10-04 06:06:39.931 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:40296 10 6452 1 2025-10-04 06:07:31.845 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 06:07:31.437 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 06:07:31.446 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:07:31.762 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:07:31.750 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 06:03:38.925 00:05:00.382 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 06:07:40.348 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50322 10 6452 1 2025-10-04 06:08:40.748 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:42108 10 6452 1 2025-10-04 06:09:41.114 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53546 10 6452 1 2025-10-04 06:10:41.521 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:39368 10 6452 1 2025-10-04 06:07:38.929 00:05:00.377 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 06:11:41.897 00:00:10.771 TCP 1.101.0.1:3000 -> 23.104.0.1:56844 12 6556 1 2025-10-04 06:12:31.806 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 06:12:31.887 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 06:12:31.722 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 06:12:31.664 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:12:31.724 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:12:42.709 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40560 10 6452 1 2025-10-04 06:09:38.926 00:05:00.382 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 06:13:43.110 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55254 10 6452 1 2025-10-04 06:14:43.517 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59976 10 6452 1 2025-10-04 06:15:43.926 00:00:11.765 TCP 1.101.0.1:3000 -> 23.104.0.1:48674 10 6452 1 2025-10-04 06:16:45.759 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:47480 10 6452 1 2025-10-04 06:17:31.910 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 06:17:31.798 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:17:31.830 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:17:31.736 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 06:17:31.912 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 06:13:38.931 00:05:00.376 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 06:17:46.185 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:59744 10 6452 1 2025-10-04 06:18:46.550 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58446 10 6452 1 2025-10-04 06:15:38.930 00:05:00.380 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 06:19:46.957 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36300 10 6452 1 2025-10-04 06:20:47.361 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60316 10 6452 1 2025-10-04 06:21:47.768 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54206 10 6452 1 2025-10-04 06:22:31.915 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 06:22:31.877 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 06:22:31.984 00:00:00.077 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:22:31.872 00:00:00.033 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:22:31.956 00:00:00.032 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 06:22:48.150 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:55584 10 6452 1 2025-10-04 06:19:38.933 00:05:00.378 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 06:23:48.514 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33506 10 6452 1 2025-10-04 06:24:48.920 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56328 10 6452 1 2025-10-04 06:21:38.930 00:05:00.383 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 06:25:49.319 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47280 10 6452 1 2025-10-04 06:26:49.720 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40074 10 6452 1 2025-10-04 06:27:32.237 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 06:27:32.135 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 06:27:32.149 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:27:32.155 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:27:31.967 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 06:27:50.135 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:37712 10 6452 1 2025-10-04 06:28:50.536 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45562 10 6452 1 2025-10-04 06:25:38.934 00:05:00.377 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 06:29:50.937 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:45392 10 6452 1 2025-10-04 06:30:51.355 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52606 10 6452 1 2025-10-04 06:27:38.933 00:05:00.385 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 06:31:51.754 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:60028 10 6452 1 2025-10-04 06:32:33.387 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 06:32:33.460 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 06:32:33.383 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:32:33.546 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:32:33.629 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 06:32:52.134 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37516 10 6452 1 2025-10-04 06:33:52.536 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:60426 10 6452 1 2025-10-04 06:34:52.914 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53796 10 6452 1 2025-10-04 06:31:38.935 00:05:00.381 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 06:35:53.315 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42014 10 6452 1 2025-10-04 06:36:53.726 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37630 10 6452 1 2025-10-04 06:37:32.273 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 06:37:32.308 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 06:37:32.307 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 06:37:32.137 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:37:32.191 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:33:38.933 00:05:00.386 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 06:37:54.134 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59046 10 6452 1 2025-10-04 06:38:54.537 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57030 10 6452 1 2025-10-04 06:39:54.901 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:57564 10 6452 1 2025-10-04 06:40:55.274 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:33256 10 6452 1 2025-10-04 06:37:38.939 00:05:00.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 06:41:55.636 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:50716 10 6452 1 2025-10-04 06:42:32.515 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 06:42:32.388 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 06:42:32.274 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:42:32.392 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:42:32.476 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 06:42:55.993 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49950 10 6452 1 2025-10-04 06:39:38.937 00:05:00.386 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 06:43:56.400 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35206 10 6452 1 2025-10-04 06:44:56.801 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54474 10 6452 1 2025-10-04 06:45:57.206 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57830 10 6452 1 2025-10-04 06:46:57.605 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:33330 10 6452 1 2025-10-04 06:47:31.642 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 06:47:31.658 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 06:47:31.564 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:47:31.640 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:47:31.722 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 06:43:38.940 00:05:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 06:47:58.039 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:51486 10 6452 1 2025-10-04 06:48:58.443 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53290 10 6452 1 2025-10-04 06:45:38.939 00:05:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 06:49:58.807 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52632 10 6452 1 2025-10-04 06:50:59.215 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35646 10 6452 1 2025-10-04 06:51:59.622 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52258 10 6452 1 2025-10-04 06:52:32.583 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 06:52:32.507 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 06:52:32.608 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 06:52:32.360 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:52:32.500 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:53:00.030 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54148 10 6452 1 2025-10-04 06:49:38.944 00:05:00.381 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 06:54:00.435 00:00:10.408 TCP 1.101.0.1:3000 -> 23.104.0.1:57324 11 6504 1 2025-10-04 06:55:00.883 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:37470 12 6556 1 2025-10-04 06:51:38.943 00:05:00.386 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 06:56:01.313 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:60424 10 6452 1 2025-10-04 06:57:01.677 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53460 10 6452 1 2025-10-04 06:57:32.570 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 06:57:32.574 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 06:57:32.533 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:57:32.567 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 06:57:32.650 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 06:58:02.109 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:41650 10 6452 1 Summary: total flows: 139, total bytes: 410808, total packets: 1015, avg bps: 875, avg pps: 0, avg bpp: 404 Time window: 2025-10-04 05:55:38 - 2025-10-04 06:58:12 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0034s User: 0.0011s Wall: 0.0017s flows/second: 82044.5 Runtime: 0.0017s