Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-04 08:58:57.924 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46044 10 6452 1 2025-10-04 08:55:38.986 00:05:00.371 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 08:59:58.334 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56462 10 6452 1 2025-10-04 09:00:58.739 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54940 10 6452 1 2025-10-04 08:57:38.982 00:05:00.377 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 09:01:59.162 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50980 10 6452 1 2025-10-04 09:02:35.367 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 09:02:35.217 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 09:02:35.105 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 09:02:35.284 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 09:02:35.195 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 09:02:59.577 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54070 10 6452 1 2025-10-04 09:03:59.984 00:00:10.499 TCP 1.101.0.1:3000 -> 23.104.0.1:33174 13 10427 1 2025-10-04 09:05:00.528 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35890 10 6452 1 2025-10-04 09:01:38.986 00:04:00.372 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-04 09:06:00.932 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:37730 10 6452 1 2025-10-04 09:07:01.415 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:51846 10 6452 1 2025-10-04 09:07:34.890 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 09:07:34.965 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 09:07:35.211 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 09:07:35.088 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 09:07:35.171 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 09:03:38.985 00:05:00.377 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 09:08:01.817 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46162 10 6452 1 2025-10-04 09:09:02.228 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:52534 10 6452 1 2025-10-04 09:10:02.596 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57918 10 6452 1 2025-10-04 09:06:38.987 00:05:00.372 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 09:11:02.996 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57080 10 6452 1 2025-10-04 09:12:03.402 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35090 10 6452 1 2025-10-04 09:12:35.191 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 09:12:35.201 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 09:12:35.202 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 09:12:35.375 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 09:12:35.284 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 09:13:03.813 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46668 10 6452 1 2025-10-04 09:09:38.986 00:04:00.376 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-04 09:14:04.212 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43856 10 6452 1 2025-10-04 09:15:04.612 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58180 10 6452 1 2025-10-04 09:16:04.974 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51122 10 6452 1 2025-10-04 09:12:38.988 00:05:00.372 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 09:17:05.386 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:46006 10 6452 1 2025-10-04 09:17:35.284 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 09:17:35.409 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 09:17:35.319 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 09:17:35.283 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 09:17:35.366 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 09:18:05.789 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53822 10 6452 1 2025-10-04 09:14:38.987 00:05:00.377 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 09:19:06.150 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49102 10 6452 1 2025-10-04 09:20:06.549 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59842 10 6452 1 2025-10-04 09:21:06.959 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58842 10 6452 1 2025-10-04 09:22:07.373 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:45918 10 6452 1 2025-10-04 09:22:35.814 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 09:18:38.991 00:05:00.372 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 09:22:35.814 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 09:22:35.533 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 09:22:35.807 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 09:22:35.890 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 09:23:07.755 00:00:10.458 TCP 1.101.0.1:3000 -> 23.104.0.1:57532 12 10375 1 2025-10-04 09:24:08.247 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:49926 10 6452 1 2025-10-04 09:20:38.990 00:05:00.377 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 09:25:08.668 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59422 10 6452 1 2025-10-04 09:26:09.111 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:40896 10 6452 1 2025-10-04 09:27:09.557 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50424 10 6452 1 2025-10-04 09:27:35.399 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 09:27:35.547 00:00:00.032 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 09:27:35.327 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 09:27:35.489 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 09:27:35.572 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 09:28:09.960 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57106 10 6452 1 2025-10-04 09:24:38.995 00:05:00.373 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 09:29:10.370 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:55590 10 6452 1 2025-10-04 09:30:10.732 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53246 10 6452 1 2025-10-04 09:26:38.994 00:05:00.377 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 09:31:11.136 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59206 10 6452 1 2025-10-04 09:32:11.539 00:00:10.926 TCP 1.101.0.1:3000 -> 23.104.0.1:57214 10 6452 1 2025-10-04 09:32:36.003 00:00:00.037 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 09:32:35.932 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 09:32:35.868 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 09:32:36.115 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 09:32:36.197 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 09:33:12.509 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55384 10 6452 1 2025-10-04 09:34:12.912 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34942 10 6452 1 2025-10-04 09:30:38.996 00:05:00.373 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 09:35:13.320 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:50120 10 6452 1 2025-10-04 09:36:13.688 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58212 10 6452 1 2025-10-04 09:32:38.995 00:05:00.377 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 09:37:14.113 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:44432 10 6452 1 2025-10-04 09:37:35.919 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 09:36:38.998 00:01:00.371 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-04 09:37:36.192 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 09:37:35.951 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 09:37:36.200 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 09:37:36.282 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 09:38:14.480 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60650 10 6452 1 2025-10-04 09:39:14.881 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57846 10 6452 1 2025-10-04 09:40:15.285 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:55540 10 6452 1 2025-10-04 09:41:15.713 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60798 10 6452 1 2025-10-04 09:42:16.117 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47562 10 6452 1 2025-10-04 09:38:38.996 00:05:00.380 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 09:42:35.812 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 09:42:35.731 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 09:42:35.902 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 09:38:39.000 00:05:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 11 667 1 2025-10-04 09:42:35.728 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 09:42:35.838 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 09:43:16.530 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45846 10 6452 1 2025-10-04 09:44:16.938 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:54658 10 6452 1 2025-10-04 09:45:17.359 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:53228 10 6452 1 2025-10-04 09:46:17.722 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:34436 10 6452 1 2025-10-04 09:47:18.138 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38930 10 6452 1 2025-10-04 09:47:36.046 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 09:47:35.901 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 09:47:35.904 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 09:47:35.962 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 09:47:36.077 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 09:48:18.542 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60598 10 6452 1 2025-10-04 09:43:39.372 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-10-04 09:44:38.996 00:05:00.380 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 09:49:18.949 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:39944 10 6452 1 2025-10-04 09:50:19.361 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36020 10 6452 1 2025-10-04 09:51:19.761 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:58260 10 6452 1 2025-10-04 09:52:35.839 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 09:52:20.175 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48792 10 6452 1 2025-10-04 09:52:35.969 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 09:52:36.093 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 09:52:36.108 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 09:52:35.756 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 09:53:20.583 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33842 10 6452 1 2025-10-04 09:54:20.980 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37864 10 6452 1 2025-10-04 09:50:38.998 00:05:00.380 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 09:55:21.402 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45476 10 6452 1 2025-10-04 09:50:39.001 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-10-04 09:56:21.775 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:51996 10 6452 1 2025-10-04 09:57:22.204 00:00:12.704 TCP 1.101.0.1:3000 -> 23.104.0.1:38106 10 6452 1 2025-10-04 09:57:36.147 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 09:57:36.153 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 09:57:35.969 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 09:57:36.064 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 09:57:36.148 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 09:58:24.947 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:60830 10 6452 1 Summary: total flows: 141, total bytes: 424950, total packets: 1026, avg bps: 900, avg pps: 0, avg bpp: 414 Time window: 2025-10-04 08:55:38 - 2025-10-04 09:58:35 Total flows processed: 141, passed: 141, Blocks skipped: 0, Bytes read: 14728 Sys: 0.0031s User: 0.0021s Wall: 0.0017s flows/second: 82218.4 Runtime: 0.0017s