Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-15 23:58:42.927 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54352 10 6452 1 2025-10-15 23:59:43.330 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53850 10 6452 1 2025-10-16 00:00:43.736 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33892 10 6452 1 2025-10-15 23:57:44.827 00:05:00.422 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 00:01:44.140 00:00:10.638 TCP 1.101.0.1:3000 -> 23.104.0.1:37616 12 10369 1 2025-10-16 00:02:44.818 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55876 10 6452 1 2025-10-16 00:03:10.925 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 00:03:10.801 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 00:03:10.887 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 00:03:10.794 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 00:03:10.877 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 23:59:44.825 00:05:00.427 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 00:03:45.224 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60908 10 6452 1 2025-10-16 00:04:45.587 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:39474 10 6452 1 2025-10-16 00:05:45.947 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:38268 10 6452 1 2025-10-16 00:06:46.365 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52770 10 6452 1 2025-10-16 00:03:44.827 00:05:00.425 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 00:07:46.763 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42210 10 6452 1 2025-10-16 00:08:11.259 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 00:08:11.251 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 00:08:11.241 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 00:08:11.256 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 00:08:11.339 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 00:08:47.167 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42308 10 6452 1 2025-10-16 00:05:44.826 00:05:00.429 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 00:09:47.567 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44052 10 6452 1 2025-10-16 00:10:47.971 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:43654 10 6452 1 2025-10-16 00:11:48.390 00:00:10.637 TCP 1.101.0.1:3000 -> 23.104.0.1:39578 10 6452 1 2025-10-16 00:12:49.095 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52134 10 6452 1 2025-10-16 00:13:11.249 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 00:13:11.097 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 00:13:11.253 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 00:13:11.308 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 00:13:11.337 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 00:09:44.832 00:05:00.423 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 00:13:49.499 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43898 10 6452 1 2025-10-16 00:14:49.911 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59796 12 6556 1 2025-10-16 00:11:44.830 00:05:00.428 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 00:15:50.315 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:58222 10 6452 1 2025-10-16 00:16:50.693 00:00:10.598 TCP 1.101.0.1:3000 -> 23.104.0.1:58582 10 6452 1 2025-10-16 00:17:51.327 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50548 10 6452 1 2025-10-16 00:18:11.181 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 00:18:11.176 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 00:18:11.211 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 00:18:10.996 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 00:18:11.099 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 00:18:51.692 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:44298 11 6504 1 2025-10-16 00:15:44.835 00:05:00.420 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 00:19:52.147 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35236 10 6452 1 2025-10-16 00:20:52.511 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42150 10 6452 1 2025-10-16 00:17:44.834 00:05:00.424 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 00:21:52.911 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38742 10 6452 1 2025-10-16 00:22:53.315 00:00:10.824 TCP 1.101.0.1:3000 -> 23.104.0.1:41596 10 6452 1 2025-10-16 00:23:12.505 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 00:23:12.358 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 00:23:12.374 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 00:23:12.470 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 00:23:12.554 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 00:23:54.180 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60990 10 6452 1 2025-10-16 00:24:54.580 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47652 10 6452 1 2025-10-16 00:21:44.838 00:05:00.420 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 00:25:54.985 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50874 10 6452 1 2025-10-16 00:26:55.350 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58592 10 6452 1 2025-10-16 00:23:44.839 00:05:00.422 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 00:27:55.755 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34348 10 6452 1 2025-10-16 00:28:11.505 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 00:28:11.324 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 00:28:11.358 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 00:28:11.422 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 00:28:11.505 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 00:28:56.152 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35162 10 6452 1 2025-10-16 00:29:56.558 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40432 10 6452 1 2025-10-16 00:30:56.962 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41204 10 6452 1 2025-10-16 00:27:44.841 00:05:00.420 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 00:31:57.366 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:40196 10 6452 1 2025-10-16 00:32:57.804 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:37056 10 6452 1 2025-10-16 00:33:11.557 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 00:33:11.560 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 00:33:11.468 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 00:33:11.554 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 00:33:11.638 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 00:29:44.838 00:05:00.427 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 00:33:58.172 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48846 10 6452 1 2025-10-16 00:34:58.584 00:00:10.413 TCP 1.101.0.1:3000 -> 23.104.0.1:55362 11 6504 1 2025-10-16 00:35:59.034 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:52626 10 6452 1 2025-10-16 00:36:59.399 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43142 10 6452 1 2025-10-16 00:33:44.846 00:05:00.417 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 00:38:11.704 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 00:38:11.624 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 00:37:59.808 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:55716 10 6452 1 2025-10-16 00:38:11.622 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 00:38:11.350 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 00:38:11.621 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 00:39:00.185 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:42954 10 6452 1 2025-10-16 00:35:44.839 00:05:00.427 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 00:40:00.576 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56630 10 6452 1 2025-10-16 00:41:00.972 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:58958 10 6452 1 2025-10-16 00:42:01.384 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38650 10 6452 1 2025-10-16 00:43:11.950 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 00:43:01.787 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41046 10 6452 1 2025-10-16 00:43:11.869 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 00:43:11.862 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 00:43:11.820 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 00:43:11.800 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 00:39:44.842 00:05:00.423 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 00:44:02.148 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52872 10 6452 1 2025-10-16 00:45:02.555 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54714 10 6452 1 2025-10-16 00:41:44.841 00:05:00.429 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 00:46:02.962 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50832 10 6452 1 2025-10-16 00:47:03.369 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:33316 12 10375 1 2025-10-16 00:48:11.853 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 00:48:11.856 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 00:48:11.597 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 00:48:03.846 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:59998 10 6452 1 2025-10-16 00:48:11.770 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 00:48:11.772 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 00:49:04.271 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46944 10 6452 1 2025-10-16 00:45:44.843 00:05:00.428 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 00:50:04.672 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43476 12 6556 1 2025-10-16 00:51:05.103 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52294 10 6452 1 2025-10-16 00:47:44.842 00:05:00.432 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 00:52:05.506 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:47842 11 6504 1 2025-10-16 00:53:11.735 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 00:53:11.942 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 00:53:11.736 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 00:53:11.786 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 00:53:11.818 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 00:53:05.962 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48320 10 6452 1 2025-10-16 00:54:06.369 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46454 10 6452 1 2025-10-16 00:55:06.785 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36914 10 6452 1 2025-10-16 00:51:44.844 00:05:00.428 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 00:56:07.188 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41158 10 6452 1 2025-10-16 00:57:07.588 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52168 10 6452 1 2025-10-16 00:53:44.843 00:05:00.433 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 00:58:12.472 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 00:58:11.827 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 00:58:12.093 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 00:58:12.436 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 00:58:12.389 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 00:58:07.995 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:35332 10 6452 1 Summary: total flows: 140, total bytes: 425204, total packets: 1031, avg bps: 929, avg pps: 0, avg bpp: 412 Time window: 2025-10-15 23:57:44 - 2025-10-16 00:58:45 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0026s User: 0.0026s Wall: 0.0018s flows/second: 76498.5 Runtime: 0.0018s