Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-12 03:59:00.115 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:38518 10 6452 1 2025-10-12 03:55:42.849 00:05:00.488 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 04:00:00.514 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50476 10 6452 1 2025-10-12 04:01:00.924 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:55118 10 6452 1 2025-10-12 04:01:19.968 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 04:01:19.922 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:01:19.885 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:01:20.091 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 04:01:20.093 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 04:02:01.340 00:00:10.673 TCP 1.101.0.1:3000 -> 23.104.0.1:59676 10 6452 1 2025-10-12 04:03:02.057 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45810 10 6452 1 2025-10-12 04:04:02.460 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:42030 10 6452 1 2025-10-12 04:00:42.853 00:05:00.484 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 04:05:02.865 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:44518 10 6452 1 2025-10-12 04:01:42.852 00:05:00.493 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 04:06:03.275 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:33404 10 6452 1 2025-10-12 04:06:19.869 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:06:20.295 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 04:06:20.256 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 04:06:19.991 00:00:00.051 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 04:06:20.212 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:07:03.637 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49036 10 6452 1 2025-10-12 04:08:04.049 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:53374 10 6452 1 2025-10-12 04:09:04.426 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38420 10 6452 1 2025-10-12 04:10:04.830 00:00:10.415 TCP 1.101.0.1:3000 -> 23.104.0.1:45608 10 6452 1 2025-10-12 04:06:42.855 00:05:00.483 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 04:11:05.298 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47546 10 6452 1 2025-10-12 04:11:20.308 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 04:11:20.415 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 04:11:20.228 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 04:11:20.329 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:11:20.225 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:07:42.855 00:05:00.488 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 04:12:05.705 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60274 10 6452 1 2025-10-12 04:13:06.117 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59060 10 6452 1 2025-10-12 04:14:06.515 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53792 10 6452 1 2025-10-12 04:15:06.916 00:00:10.464 TCP 1.101.0.1:3000 -> 23.104.0.1:41496 10 6452 1 2025-10-12 04:16:07.427 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56430 10 6452 1 2025-10-12 04:16:20.326 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 04:16:20.261 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:16:20.244 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:16:20.142 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 04:16:20.327 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 04:12:42.857 00:05:00.482 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 04:17:07.825 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59862 10 6452 1 2025-10-12 04:13:42.858 00:05:00.484 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 04:18:08.233 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57206 10 6452 1 2025-10-12 04:19:08.632 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47938 10 6452 1 2025-10-12 04:20:09.033 00:00:23.642 TCP 1.101.0.1:3000 -> 23.104.0.1:38218 10 6452 1 2025-10-12 04:21:20.482 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:21:20.330 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 04:21:20.426 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 04:21:20.362 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:21:20.564 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 04:21:22.718 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35318 10 6452 1 2025-10-12 04:22:23.119 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49444 10 6452 1 2025-10-12 04:18:42.861 00:05:00.480 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 04:23:23.523 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45998 10 6452 1 2025-10-12 04:19:42.859 00:05:00.485 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 04:24:23.945 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:53378 10 6452 1 2025-10-12 04:25:24.360 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40938 10 6452 1 2025-10-12 04:26:20.528 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 04:26:20.523 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:26:20.578 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:26:20.378 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 04:26:20.660 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 04:26:24.764 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54044 10 6452 1 2025-10-12 04:27:25.172 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37954 10 6452 1 2025-10-12 04:28:25.575 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58396 10 6452 1 2025-10-12 04:24:42.864 00:05:00.479 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 04:29:25.937 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53796 10 6452 1 2025-10-12 04:25:42.862 00:05:00.483 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 04:30:26.345 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34864 10 6452 1 2025-10-12 04:31:20.568 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 04:31:20.572 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 04:31:20.607 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:31:20.474 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:31:20.556 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 04:31:26.753 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52346 10 6452 1 2025-10-12 04:32:27.163 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43638 10 6452 1 2025-10-12 04:33:27.527 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39264 10 6452 1 2025-10-12 04:34:27.926 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:59264 10 6452 1 2025-10-12 04:30:42.864 00:05:00.479 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 04:35:28.297 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34068 10 6452 1 2025-10-12 04:31:42.865 00:05:00.482 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 04:36:20.768 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 04:36:20.581 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 04:36:20.399 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:36:20.685 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:36:20.687 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 04:36:28.699 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47488 10 6452 1 2025-10-12 04:37:29.114 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:51862 10 6452 1 2025-10-12 04:38:29.540 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58032 10 6452 1 2025-10-12 04:39:29.951 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36706 10 6452 1 2025-10-12 04:36:42.868 00:05:00.476 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 04:40:30.365 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39226 10 6452 1 2025-10-12 04:41:20.675 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:41:20.677 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 04:41:20.869 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 04:41:20.889 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:41:20.758 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 04:41:30.763 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57964 10 6452 1 2025-10-12 04:37:42.867 00:05:00.482 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 04:42:31.175 00:00:10.452 TCP 1.101.0.1:3000 -> 23.104.0.1:45948 10 6452 1 2025-10-12 04:43:31.670 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:44204 10 6452 1 2025-10-12 04:44:32.109 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:50598 10 6452 1 2025-10-12 04:45:32.512 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:52288 12 10375 1 2025-10-12 04:46:21.061 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 04:46:20.987 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 04:46:21.085 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 04:46:21.006 00:00:00.031 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:46:20.979 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:42:42.869 00:05:00.481 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 04:46:32.989 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38524 10 6452 1 2025-10-12 04:43:42.866 00:05:00.483 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 04:47:33.395 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:50344 10 6452 1 2025-10-12 04:48:33.759 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54466 10 6452 1 2025-10-12 04:49:34.165 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46846 10 6452 1 2025-10-12 04:50:34.528 00:00:10.422 TCP 1.101.0.1:3000 -> 23.104.0.1:41890 11 6504 1 2025-10-12 04:51:21.263 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 04:51:21.181 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 04:51:20.925 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:51:21.344 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:51:21.426 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 04:51:34.989 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48368 10 6452 1 2025-10-12 04:48:42.873 00:05:00.477 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 04:52:35.396 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:32816 10 6452 1 2025-10-12 04:49:42.870 00:05:00.482 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 04:53:35.796 00:00:10.784 TCP 1.101.0.1:3000 -> 23.104.0.1:38732 10 6452 1 2025-10-12 04:54:36.619 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50524 10 6452 1 2025-10-12 04:55:36.979 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46834 10 6452 1 2025-10-12 04:56:21.194 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 04:56:21.156 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 04:56:20.959 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:56:21.111 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 04:56:21.113 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 04:56:37.387 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34748 10 6452 1 2025-10-12 04:57:37.787 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:57996 10 6452 1 2025-10-12 04:54:42.876 00:05:00.477 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 04:58:38.214 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42124 10 6452 1 Summary: total flows: 140, total bytes: 420975, total packets: 1023, avg bps: 876, avg pps: 0, avg bpp: 411 Time window: 2025-10-12 03:55:42 - 2025-10-12 04:59:43 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0023s User: 0.0016s Wall: 0.0016s flows/second: 89512.6 Runtime: 0.0016s