Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-06 19:59:30.148 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39214 10 6452 1 2025-10-06 20:00:30.554 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58908 10 6452 1 2025-10-06 19:56:40.247 00:06:00.368 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-06 20:01:30.963 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46702 10 6452 1 2025-10-06 20:02:31.375 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43070 10 6452 1 2025-10-06 19:57:40.250 00:06:00.363 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-06 20:03:31.784 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49978 10 6452 1 2025-10-06 20:03:46.168 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 20:03:46.070 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 20:03:46.147 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 20:03:45.908 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 20:03:46.086 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 20:04:32.196 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35886 10 6452 1 2025-10-06 20:05:32.604 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37232 10 6452 1 2025-10-06 20:06:33.019 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:44558 10 6452 1 2025-10-06 20:07:33.388 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:51876 10 6452 1 2025-10-06 20:08:33.800 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47420 10 6452 1 2025-10-06 20:08:46.201 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 20:08:46.277 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 20:08:46.151 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 20:08:46.202 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 20:03:40.248 00:06:00.370 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-06 20:08:46.284 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 20:04:40.253 00:06:00.364 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-06 20:09:34.207 00:00:10.448 TCP 1.101.0.1:3000 -> 23.104.0.1:54034 12 10375 1 2025-10-06 20:10:34.696 00:00:10.580 TCP 1.101.0.1:3000 -> 23.104.0.1:42630 10 6452 1 2025-10-06 20:11:35.314 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56392 10 6452 1 2025-10-06 20:12:35.714 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35676 10 6452 1 2025-10-06 20:13:46.378 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 20:13:46.426 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 20:13:46.153 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 20:13:46.316 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 20:13:36.118 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53078 10 6452 1 2025-10-06 20:13:46.399 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 20:14:36.518 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39688 10 6452 1 2025-10-06 20:10:40.252 00:06:00.369 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-06 20:15:36.921 00:00:13.576 TCP 1.101.0.1:3000 -> 23.104.0.1:52014 10 6452 1 2025-10-06 20:11:40.254 00:06:00.363 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-06 20:16:40.541 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:34928 10 6452 1 2025-10-06 20:17:40.903 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58692 12 6556 1 2025-10-06 20:18:46.478 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 20:18:46.417 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 20:18:46.293 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 20:18:46.407 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 20:18:46.490 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 20:18:41.314 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35334 10 6452 1 2025-10-06 20:19:41.721 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54084 10 6452 1 2025-10-06 20:20:42.133 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49938 10 6452 1 2025-10-06 20:21:42.535 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34378 10 6452 1 2025-10-06 20:17:40.255 00:06:00.367 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-06 20:22:42.936 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:60316 10 6452 1 2025-10-06 20:18:40.257 00:06:00.370 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-06 20:23:46.400 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 20:23:46.400 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 20:23:46.356 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 20:23:46.305 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 20:23:46.388 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 20:23:43.367 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47350 10 6452 1 2025-10-06 20:24:43.768 00:00:10.446 TCP 1.101.0.1:3000 -> 23.104.0.1:48660 12 10375 1 2025-10-06 20:25:44.254 00:00:10.408 TCP 1.101.0.1:3000 -> 23.104.0.1:33158 11 6504 1 2025-10-06 20:26:44.701 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39610 10 6452 1 2025-10-06 20:27:45.117 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47966 10 6452 1 2025-10-06 20:28:46.561 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 20:28:46.636 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 20:28:46.564 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 20:28:46.734 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 20:28:46.648 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 20:28:45.516 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59726 10 6452 1 2025-10-06 20:24:40.257 00:06:00.376 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-06 20:29:45.925 00:00:10.459 TCP 1.101.0.1:3000 -> 23.104.0.1:50220 12 10375 1 2025-10-06 20:25:40.260 00:06:00.372 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-06 20:30:46.419 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53494 10 6452 1 2025-10-06 20:31:46.821 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42724 10 6452 1 2025-10-06 20:32:47.222 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58146 10 6452 1 2025-10-06 20:33:46.734 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 20:33:46.506 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 20:33:46.643 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 20:33:46.658 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 20:33:46.652 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 20:33:47.624 00:00:11.780 TCP 1.101.0.1:3000 -> 23.104.0.1:57666 10 6452 1 2025-10-06 20:34:49.444 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41904 10 6452 1 2025-10-06 20:35:49.852 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:57630 10 6452 1 2025-10-06 20:31:40.259 00:06:00.375 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-06 20:36:50.270 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57934 10 6452 1 2025-10-06 20:32:40.263 00:06:00.369 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-06 20:37:50.678 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37012 10 6452 1 2025-10-06 20:38:46.923 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 20:38:46.966 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 20:38:46.858 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 20:38:46.839 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 20:38:46.846 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 20:38:51.109 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57158 10 6452 1 2025-10-06 20:39:51.515 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44626 10 6452 1 2025-10-06 20:40:51.926 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:41882 10 6452 1 2025-10-06 20:41:52.308 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59526 10 6452 1 2025-10-06 20:42:52.710 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:41676 10 6452 1 2025-10-06 20:38:40.262 00:06:00.375 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-06 20:43:47.337 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 20:43:47.399 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 20:43:47.300 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 20:43:47.177 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 20:43:47.259 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 20:43:53.111 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59352 10 6452 1 2025-10-06 20:39:40.265 00:06:00.369 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-06 20:44:53.514 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48766 10 6452 1 2025-10-06 20:45:53.916 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51158 10 6452 1 2025-10-06 20:46:54.324 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34558 10 6452 1 2025-10-06 20:47:54.733 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:47712 10 6452 1 2025-10-06 20:48:46.722 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 20:48:46.639 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 20:48:46.647 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 20:48:46.482 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 20:48:46.639 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 20:48:55.150 00:00:19.853 TCP 1.101.0.1:3000 -> 23.104.0.1:46724 10 6452 1 2025-10-06 20:50:05.117 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51676 10 6452 1 2025-10-06 20:45:40.264 00:06:00.374 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-06 20:51:05.522 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33412 10 6452 1 2025-10-06 20:46:40.265 00:06:00.370 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-06 20:52:05.926 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47068 10 6452 1 2025-10-06 20:53:06.328 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43896 10 6452 1 2025-10-06 20:53:47.485 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 20:53:47.307 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 20:53:47.473 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 20:53:47.379 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 20:53:47.462 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 20:54:06.743 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:55954 10 6452 1 2025-10-06 20:55:07.162 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:48214 10 6452 1 2025-10-06 20:56:07.522 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46132 10 6452 1 2025-10-06 20:57:07.873 00:00:11.054 TCP 1.101.0.1:3000 -> 23.104.0.1:49548 10 6452 1 2025-10-06 20:52:40.270 00:06:00.370 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-06 20:58:08.972 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37182 10 6452 1 2025-10-06 20:53:40.271 00:06:00.365 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-06 20:58:47.372 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 20:58:47.193 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 20:58:47.005 00:00:00.050 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 20:58:47.007 00:00:00.042 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 20:58:47.288 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 Summary: total flows: 137, total bytes: 423211, total packets: 1031, avg bps: 895, avg pps: 0, avg bpp: 410 Time window: 2025-10-06 19:56:40 - 2025-10-06 20:59:40 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0030s User: 0.0020s Wall: 0.0020s flows/second: 67857.8 Runtime: 0.0020s