Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-16 00:59:08.427 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41400 10 6452 1 2025-10-16 01:00:08.796 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:58306 10 6452 1 2025-10-16 01:01:09.184 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59558 10 6452 1 2025-10-16 00:57:44.845 00:05:00.428 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 01:02:09.593 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56352 10 6452 1 2025-10-16 01:03:12.195 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:03:11.923 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 01:03:11.928 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 01:03:12.404 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:03:12.288 00:00:00.012 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 01:03:10.014 00:00:10.613 TCP 1.101.0.1:3000 -> 23.104.0.1:37092 10 6452 1 2025-10-16 00:59:44.843 00:05:00.432 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 01:04:10.665 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38294 10 6452 1 2025-10-16 01:05:11.096 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45056 10 6452 1 2025-10-16 01:06:11.459 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48330 10 6452 1 2025-10-16 01:07:11.865 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:50530 10 6452 1 2025-10-16 01:03:44.852 00:05:00.424 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 01:08:12.195 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 01:08:12.116 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 01:08:11.862 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:08:12.113 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:08:12.114 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 01:08:12.278 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50928 10 6452 1 2025-10-16 01:09:12.637 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56862 10 6452 1 2025-10-16 01:05:44.850 00:05:00.429 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 01:10:13.054 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47574 10 6452 1 2025-10-16 01:11:13.463 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:45810 12 10369 1 2025-10-16 01:12:13.941 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39100 10 6452 1 2025-10-16 01:13:12.525 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 01:13:12.439 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 01:13:12.386 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 01:13:12.327 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:13:12.443 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:13:14.344 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38366 10 6452 1 2025-10-16 01:09:44.855 00:05:00.423 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 01:14:14.748 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60210 10 6452 1 2025-10-16 01:15:15.153 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36206 10 6452 1 2025-10-16 01:11:44.852 00:05:00.430 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 01:16:15.553 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54974 10 6452 1 2025-10-16 01:17:15.957 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48848 10 6452 1 2025-10-16 01:18:12.485 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 01:18:12.406 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 01:18:12.309 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 01:18:12.336 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:18:12.403 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:18:16.365 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40646 10 6452 1 2025-10-16 01:19:16.764 00:00:11.156 TCP 1.101.0.1:3000 -> 23.104.0.1:56074 10 6452 1 2025-10-16 01:15:44.855 00:05:00.425 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 01:20:17.955 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33278 10 6452 1 2025-10-16 01:21:18.363 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53682 10 6452 1 2025-10-16 01:17:44.853 00:05:00.431 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 01:22:18.727 00:00:10.848 TCP 1.101.0.1:3000 -> 23.104.0.1:53206 10 6452 1 2025-10-16 01:23:12.883 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 01:23:12.770 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 01:23:12.426 00:00:00.038 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:23:12.885 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:23:12.967 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 01:23:19.617 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:40912 10 6452 1 2025-10-16 01:24:19.995 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45124 10 6452 1 2025-10-16 01:25:20.365 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:43298 10 6452 1 2025-10-16 01:21:44.857 00:05:00.425 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 01:26:20.722 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:33324 10 6452 1 2025-10-16 01:27:21.133 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50774 10 6452 1 2025-10-16 01:23:44.854 00:05:00.431 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 01:28:12.689 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 01:28:12.734 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 01:28:12.493 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 01:28:12.670 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:28:12.606 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:28:21.551 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39776 10 6452 1 2025-10-16 01:29:21.917 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58288 10 6452 1 2025-10-16 01:30:22.317 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:39100 10 6452 1 2025-10-16 01:31:22.683 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:48078 10 6452 1 2025-10-16 01:27:44.860 00:05:00.425 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 01:32:23.066 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42884 10 6452 1 2025-10-16 01:33:12.801 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 01:33:12.798 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 01:33:12.467 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:33:12.836 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:33:12.919 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 01:33:23.479 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:44282 10 6452 1 2025-10-16 01:29:44.859 00:05:00.429 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 01:34:23.845 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:41364 10 6452 1 2025-10-16 01:35:24.234 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46020 10 6452 1 2025-10-16 01:36:24.636 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:53826 10 6452 1 2025-10-16 01:37:25.054 00:00:10.587 TCP 1.101.0.1:3000 -> 23.104.0.1:52950 10 6452 1 2025-10-16 01:33:44.862 00:05:00.429 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 01:38:12.963 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 01:38:12.830 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 01:38:12.822 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 01:38:12.869 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:38:12.881 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:38:25.683 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34740 10 6452 1 2025-10-16 01:39:26.104 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49308 10 6452 1 2025-10-16 01:35:44.859 00:05:00.434 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 01:40:26.505 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36480 10 6452 1 2025-10-16 01:41:26.867 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54774 10 6452 1 2025-10-16 01:42:27.276 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40190 10 6452 1 2025-10-16 01:43:12.882 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 01:43:12.788 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 01:43:12.903 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:43:13.056 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:43:13.140 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 01:43:27.643 00:00:10.773 TCP 1.101.0.1:3000 -> 23.104.0.1:57486 10 6452 1 2025-10-16 01:39:44.862 00:05:00.439 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 01:44:28.454 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58772 10 6452 1 2025-10-16 01:45:28.860 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37132 10 6452 1 2025-10-16 01:41:44.861 00:05:00.444 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 01:46:29.276 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:48854 10 6452 1 2025-10-16 01:47:29.676 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51462 10 6452 1 2025-10-16 01:48:13.107 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 01:48:13.216 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 01:48:13.079 00:00:00.013 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:48:13.334 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:48:13.417 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 01:48:30.112 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47766 10 6452 1 2025-10-16 01:49:30.514 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53414 10 6452 1 2025-10-16 01:45:44.865 00:05:00.438 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 01:50:30.918 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34438 10 6452 1 2025-10-16 01:51:31.326 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:56792 12 10369 1 2025-10-16 01:47:44.868 00:05:00.437 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 01:52:31.804 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:49656 10 6452 1 2025-10-16 01:53:14.227 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 01:53:14.175 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 01:53:14.174 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:53:14.106 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:53:14.188 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 01:53:32.190 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39836 10 6452 1 2025-10-16 01:54:32.552 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47880 10 6452 1 2025-10-16 01:55:32.952 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42576 10 6452 1 2025-10-16 01:51:44.873 00:05:00.432 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 01:56:33.361 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34886 10 6452 1 2025-10-16 01:57:33.765 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45026 10 6452 1 2025-10-16 01:53:44.869 00:05:00.438 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 01:58:13.214 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 01:58:13.114 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 01:58:13.127 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:58:13.109 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:58:13.192 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 01:58:34.165 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55590 10 6452 1 Summary: total flows: 140, total bytes: 424834, total packets: 1024, avg bps: 928, avg pps: 0, avg bpp: 414 Time window: 2025-10-16 00:57:44 - 2025-10-16 01:58:45 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0041s User: 0.0010s Wall: 0.0019s flows/second: 72164.5 Runtime: 0.0020s