Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-16 02:59:08.642 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50878 10 6452 1 2025-10-16 03:00:09.054 00:00:10.777 TCP 1.101.0.1:3000 -> 23.104.0.1:60602 10 6452 1 2025-10-16 03:01:09.869 00:00:10.544 TCP 1.101.0.1:3000 -> 23.104.0.1:43014 10 6452 1 2025-10-16 02:57:44.886 00:05:00.433 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 03:02:10.450 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54824 10 6452 1 2025-10-16 03:03:14.655 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 03:03:14.512 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 03:03:14.621 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 03:03:14.577 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:03:14.573 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:03:10.850 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:60612 10 6452 1 2025-10-16 02:59:44.887 00:05:00.435 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 03:04:11.270 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48018 10 6452 1 2025-10-16 03:05:11.679 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38714 10 6452 1 2025-10-16 03:06:12.109 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:50226 10 6452 1 2025-10-16 03:07:12.522 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44352 10 6452 1 2025-10-16 03:03:44.890 00:05:00.430 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 03:08:14.390 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 03:08:14.477 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 03:08:14.608 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 03:08:14.224 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:08:14.307 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:08:12.921 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:37386 10 6452 1 2025-10-16 03:09:13.408 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44510 10 6452 1 2025-10-16 03:05:44.887 00:05:00.437 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 03:10:13.815 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:36062 10 6452 1 2025-10-16 03:11:14.181 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:34932 12 10369 1 2025-10-16 03:12:14.658 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45278 10 6452 1 2025-10-16 03:13:14.914 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 03:13:14.776 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 03:13:14.614 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:13:14.608 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:13:14.691 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 03:13:15.073 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50426 10 6452 1 2025-10-16 03:09:44.891 00:05:00.433 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 03:14:15.437 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56586 10 6452 1 2025-10-16 03:15:15.850 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:41196 10 6452 1 2025-10-16 03:11:44.889 00:05:00.438 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 03:16:16.248 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:39190 10 6452 1 2025-10-16 03:17:16.678 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:41164 10 6452 1 2025-10-16 03:18:14.930 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 03:18:14.931 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 03:18:14.542 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:18:14.930 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:18:15.013 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 03:18:17.112 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:42780 10 6452 1 2025-10-16 03:19:17.477 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46842 10 6452 1 2025-10-16 03:15:44.896 00:05:00.430 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 03:20:17.877 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58520 12 6556 1 2025-10-16 03:21:18.283 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:48846 12 10369 1 2025-10-16 03:17:44.895 00:05:00.434 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 03:22:18.790 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44916 10 6452 1 2025-10-16 03:23:14.913 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 03:23:14.845 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 03:23:14.775 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:23:14.916 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:23:14.998 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 03:23:19.188 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:51142 10 6452 1 2025-10-16 03:24:19.553 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:47938 10 6452 1 2025-10-16 03:25:19.913 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43662 10 6452 1 2025-10-16 03:21:44.898 00:05:00.429 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 03:26:20.321 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51998 10 6452 1 2025-10-16 03:27:20.677 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43636 10 6452 1 2025-10-16 03:23:44.896 00:05:00.435 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 03:28:14.833 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:28:14.829 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:28:14.911 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 03:28:14.984 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 03:28:15.090 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 03:28:21.104 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40178 10 6452 1 2025-10-16 03:29:21.511 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34712 10 6452 1 2025-10-16 03:30:21.916 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53916 10 6452 1 2025-10-16 03:31:22.321 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45648 10 6452 1 2025-10-16 03:27:44.900 00:05:00.430 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 03:32:22.723 00:00:15.838 TCP 1.101.0.1:3000 -> 23.104.0.1:48146 10 6452 1 2025-10-16 03:33:14.970 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 03:33:15.152 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 03:33:15.120 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 03:33:15.072 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:33:15.070 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:33:28.598 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:46618 10 6452 1 2025-10-16 03:29:44.897 00:05:00.435 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 03:34:28.959 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:52796 10 6452 1 2025-10-16 03:35:29.325 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54408 10 6452 1 2025-10-16 03:36:29.725 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40556 10 6452 1 2025-10-16 03:37:30.132 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37116 10 6452 1 2025-10-16 03:33:44.903 00:05:00.430 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 03:38:14.877 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:38:15.311 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 03:38:15.224 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 03:38:15.271 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 03:38:15.227 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:38:30.532 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56660 10 6452 1 2025-10-16 03:39:30.940 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:36132 10 6452 1 2025-10-16 03:35:44.902 00:05:00.433 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 03:40:31.356 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57738 10 6452 1 2025-10-16 03:41:31.757 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:40036 10 6452 1 2025-10-16 03:42:32.119 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47330 10 6452 1 2025-10-16 03:43:14.893 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:43:15.309 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 03:43:15.406 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 03:43:15.410 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 03:43:15.226 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:43:32.525 00:00:10.542 TCP 1.101.0.1:3000 -> 23.104.0.1:39112 10 6452 1 2025-10-16 03:39:44.904 00:05:00.429 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 03:44:33.111 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:37360 10 6452 1 2025-10-16 03:45:33.530 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35634 10 6452 1 2025-10-16 03:41:44.901 00:05:00.434 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 03:46:33.936 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:39006 10 6452 1 2025-10-16 03:47:34.353 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37866 10 6452 1 2025-10-16 03:48:15.522 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 03:48:15.517 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 03:48:15.173 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:48:15.382 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:48:15.465 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 03:48:34.758 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:46816 10 6452 1 2025-10-16 03:49:35.135 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47158 10 6452 1 2025-10-16 03:45:44.905 00:05:00.430 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 03:50:35.545 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46046 10 6452 1 2025-10-16 03:51:35.952 00:00:10.449 TCP 1.101.0.1:3000 -> 23.104.0.1:35118 12 10375 1 2025-10-16 03:47:44.903 00:05:00.438 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 03:52:36.442 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:32800 10 6452 1 2025-10-16 03:53:15.319 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 03:53:15.418 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 03:53:15.260 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:53:15.469 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:53:15.552 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 03:53:36.839 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53726 10 6452 1 2025-10-16 03:54:37.234 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35240 10 6452 1 2025-10-16 03:55:37.646 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:35414 10 6452 1 2025-10-16 03:51:44.908 00:05:00.431 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 03:56:38.027 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46382 10 6452 1 2025-10-16 03:53:44.904 00:05:00.436 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 03:57:38.433 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:58244 10 6452 1 2025-10-16 03:58:15.451 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 03:58:15.560 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 03:58:15.406 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:58:15.707 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:58:15.789 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 03:58:38.797 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46888 10 6452 1 Summary: total flows: 140, total bytes: 428861, total packets: 1028, avg bps: 936, avg pps: 0, avg bpp: 417 Time window: 2025-10-16 02:57:44 - 2025-10-16 03:58:49 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0039s User: 0.0010s Wall: 0.0019s flows/second: 75032.3 Runtime: 0.0019s