Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-05 22:58:58.315 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54328 10 6452 1 2025-10-05 22:59:58.720 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51986 10 6452 1 2025-10-05 22:56:39.719 00:05:00.444 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-05 23:00:59.129 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43142 10 6452 1 2025-10-05 22:57:39.716 00:05:00.449 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-05 23:01:59.536 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:39378 10 6452 1 2025-10-05 23:02:59.893 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:48738 10 6452 1 2025-10-05 23:03:20.921 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 23:03:20.811 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 23:03:20.589 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 23:03:20.802 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 23:03:20.886 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 23:04:00.271 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:58784 10 6452 1 2025-10-05 23:05:00.666 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51982 10 6452 1 2025-10-05 23:06:01.095 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60072 10 6452 1 2025-10-05 23:02:39.723 00:05:00.440 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-05 23:07:01.465 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:40102 10 6452 1 2025-10-05 23:03:39.722 00:05:00.445 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-05 23:08:01.893 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:37342 10 6452 1 2025-10-05 23:08:21.079 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 23:08:20.973 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 23:08:20.974 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 23:08:21.076 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 23:08:21.160 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 23:09:02.313 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:34342 10 6452 1 2025-10-05 23:10:02.673 00:00:10.958 TCP 1.101.0.1:3000 -> 23.104.0.1:58854 10 6452 1 2025-10-05 23:11:03.677 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55760 10 6452 1 2025-10-05 23:12:04.095 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60054 10 6452 1 2025-10-05 23:08:39.725 00:05:00.441 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-05 23:13:04.503 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59554 10 6452 1 2025-10-05 23:13:21.086 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 23:13:21.094 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 23:13:20.909 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 23:13:20.765 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 23:13:20.847 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 23:09:39.724 00:05:00.445 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-05 23:14:04.906 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42482 10 6452 1 2025-10-05 23:15:05.313 00:00:10.634 TCP 1.101.0.1:3000 -> 23.104.0.1:43034 10 6452 1 2025-10-05 23:16:05.988 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:48798 10 6452 1 2025-10-05 23:17:06.357 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:60746 10 6452 1 2025-10-05 23:18:06.715 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:46522 10 6452 1 2025-10-05 23:18:20.997 00:00:00.036 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 23:18:20.919 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 23:18:21.057 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 23:18:20.925 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 23:18:21.009 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 23:14:39.736 00:05:00.432 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-05 23:19:07.132 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40800 10 6452 1 2025-10-05 23:15:39.732 00:05:00.437 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-05 23:20:07.542 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56568 10 6452 1 2025-10-05 23:21:07.907 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60936 10 6452 1 2025-10-05 23:22:08.317 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45046 10 6452 1 2025-10-05 23:23:08.718 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37802 10 6452 1 2025-10-05 23:23:21.350 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 23:23:21.196 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 23:23:21.195 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 23:23:20.827 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 23:23:21.267 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 23:24:09.111 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42524 10 6452 1 2025-10-05 23:20:39.740 00:05:00.428 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-05 23:25:09.519 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44110 10 6452 1 2025-10-05 23:21:39.739 00:05:00.432 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-05 23:26:09.926 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:55160 10 6452 1 2025-10-05 23:27:10.311 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55712 10 6452 1 2025-10-05 23:28:21.124 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 23:28:21.289 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 23:28:21.302 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 23:28:21.220 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 23:28:10.712 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57768 10 6452 1 2025-10-05 23:28:21.304 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 23:29:11.115 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:60842 10 6452 1 2025-10-05 23:30:11.481 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:48294 11 6504 1 2025-10-05 23:26:39.742 00:05:00.427 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-05 23:31:11.942 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:42588 10 6452 1 2025-10-05 23:27:39.740 00:05:00.435 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-05 23:32:12.329 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60628 10 6452 1 2025-10-05 23:33:21.523 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 23:33:21.446 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 23:33:12.734 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55864 10 6452 1 2025-10-05 23:33:21.374 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 23:33:21.523 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 23:33:21.458 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 23:34:13.140 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37348 10 6452 1 2025-10-05 23:35:13.544 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60114 10 6452 1 2025-10-05 23:36:13.955 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42740 10 6452 1 2025-10-05 23:32:39.750 00:05:00.432 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-05 23:37:14.367 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:41666 10 6452 1 2025-10-05 23:33:39.750 00:05:00.436 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-05 23:38:21.930 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 23:38:21.794 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 23:38:21.636 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 23:38:21.665 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 23:38:21.848 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 23:38:14.802 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57418 10 6452 1 2025-10-05 23:39:15.209 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57340 10 6452 1 2025-10-05 23:40:15.611 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:41594 10 6452 1 2025-10-05 23:41:15.968 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:35676 10 6452 1 2025-10-05 23:42:16.336 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:34736 10 6452 1 2025-10-05 23:38:39.752 00:05:00.431 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-05 23:43:21.723 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 23:43:21.716 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 23:43:21.640 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 23:43:21.483 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 23:43:21.640 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 23:43:16.744 00:00:10.673 TCP 1.101.0.1:3000 -> 23.104.0.1:39680 10 6452 1 2025-10-05 23:39:39.749 00:05:00.438 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-05 23:44:17.458 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34894 10 6452 1 2025-10-05 23:45:17.816 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35142 10 6452 1 2025-10-05 23:46:18.221 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35836 10 6452 1 2025-10-05 23:47:18.622 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59518 10 6452 1 2025-10-05 23:48:21.768 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 23:48:21.504 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 23:48:21.507 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 23:48:21.583 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 23:48:21.665 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 23:48:19.032 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39668 10 6452 1 2025-10-05 23:44:39.755 00:05:00.435 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-05 23:49:19.433 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41342 10 6452 1 2025-10-05 23:45:39.752 00:05:00.441 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-05 23:50:19.835 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:53000 10 6452 1 2025-10-05 23:51:20.246 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36982 10 6452 1 2025-10-05 23:52:20.652 00:00:10.617 TCP 1.101.0.1:3000 -> 23.104.0.1:48624 10 6452 1 2025-10-05 23:53:21.971 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 23:53:21.849 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 23:53:21.632 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 23:53:21.444 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 23:53:21.888 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 23:53:21.308 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36292 10 6452 1 2025-10-05 23:54:21.713 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36392 10 6452 1 2025-10-05 23:50:39.756 00:05:00.436 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-05 23:55:22.116 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:44212 10 6452 1 2025-10-05 23:51:39.752 00:05:00.442 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-05 23:56:22.514 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40280 10 6452 1 2025-10-05 23:57:22.877 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57672 10 6452 1 2025-10-05 23:58:21.818 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 23:58:22.128 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 23:58:21.934 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 23:58:21.766 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 23:58:21.736 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 23:58:23.238 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:38066 10 6452 1 Summary: total flows: 140, total bytes: 417052, total packets: 1021, avg bps: 898, avg pps: 0, avg bpp: 408 Time window: 2025-10-05 22:56:39 - 2025-10-05 23:58:33 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0039s User: 0.0010s Wall: 0.0018s flows/second: 76171.0 Runtime: 0.0019s