Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-16 08:58:58.586 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53878 10 6452 1 2025-10-16 08:59:58.986 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50028 10 6452 1 2025-10-16 09:00:59.384 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58654 10 6452 1 2025-10-16 08:56:45.059 00:06:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 09:01:59.784 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44562 10 6452 1 2025-10-16 08:57:45.057 00:06:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 09:03:00.189 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49610 10 6452 1 2025-10-16 09:03:21.671 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 09:03:21.751 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 09:03:21.798 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 09:03:21.754 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 09:03:21.836 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 09:04:00.592 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37380 10 6452 1 2025-10-16 09:05:00.953 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37544 10 6452 1 2025-10-16 09:06:01.362 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:40462 10 6452 1 2025-10-16 09:07:01.723 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46162 10 6452 1 2025-10-16 09:08:02.136 00:00:10.815 TCP 1.101.0.1:3000 -> 23.104.0.1:48044 10 6452 1 2025-10-16 09:08:21.492 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 09:08:21.493 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 09:08:21.680 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 09:08:21.912 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 09:08:21.995 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 09:03:45.060 00:06:00.384 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 09:09:02.989 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38654 10 6452 1 2025-10-16 09:04:45.057 00:06:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 09:10:03.399 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53294 10 6452 1 2025-10-16 09:11:03.808 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54662 10 6452 1 2025-10-16 09:12:04.210 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:40964 12 10375 1 2025-10-16 09:13:04.697 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60710 10 6452 1 2025-10-16 09:13:21.945 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 09:13:21.965 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 09:13:21.962 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 09:13:21.797 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 09:13:21.862 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 09:14:05.111 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59798 10 6452 1 2025-10-16 09:15:05.474 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33894 10 6452 1 2025-10-16 09:10:45.064 00:06:00.382 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 09:16:05.872 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:50218 10 6452 1 2025-10-16 09:11:45.062 00:06:00.386 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 09:17:06.288 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:59346 12 10375 1 2025-10-16 09:18:06.768 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56782 10 6452 1 2025-10-16 09:18:21.742 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 09:18:22.051 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 09:18:21.788 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 09:18:21.850 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 09:18:21.933 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 09:19:07.192 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:37400 10 6452 1 2025-10-16 09:20:07.562 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:58022 10 6452 1 2025-10-16 09:21:07.970 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44508 10 6452 1 2025-10-16 09:22:08.375 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:40020 12 10375 1 2025-10-16 09:17:45.065 00:06:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 09:23:08.861 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:34500 10 6452 1 2025-10-16 09:23:22.162 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 09:23:22.217 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 09:23:22.222 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 09:23:22.146 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 09:23:22.300 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 09:18:45.064 00:06:00.386 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 09:24:09.274 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59608 10 6452 1 2025-10-16 09:25:09.676 00:00:10.649 TCP 1.101.0.1:3000 -> 23.104.0.1:44814 10 6452 1 2025-10-16 09:26:10.357 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:36152 10 6452 1 2025-10-16 09:27:10.724 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:47608 10 6452 1 2025-10-16 09:28:22.315 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 09:28:22.324 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 09:28:22.281 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 09:28:21.992 00:00:00.033 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 09:28:22.232 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 09:28:11.140 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57698 10 6452 1 2025-10-16 09:29:11.538 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:38798 10 6452 1 2025-10-16 09:24:45.069 00:06:00.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 09:30:11.899 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33556 10 6452 1 2025-10-16 09:25:45.065 00:06:00.386 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 09:31:12.308 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44310 10 6452 1 2025-10-16 09:32:12.706 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60452 10 6452 1 2025-10-16 09:33:22.357 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 09:33:22.274 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 09:33:13.110 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49826 10 6452 1 2025-10-16 09:33:22.315 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 09:33:22.309 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 09:33:22.318 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 09:34:13.517 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35420 10 6452 1 2025-10-16 09:35:13.927 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:34640 12 6556 1 2025-10-16 09:36:14.343 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:45434 10 6452 1 2025-10-16 09:31:45.068 00:06:00.382 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 09:37:14.703 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54734 10 6452 1 2025-10-16 09:32:45.066 00:06:00.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 09:38:22.430 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 09:38:22.381 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 09:38:22.345 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 09:38:22.215 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 09:38:22.298 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 09:38:15.112 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43234 10 6452 1 2025-10-16 09:39:15.527 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54120 10 6452 1 2025-10-16 09:40:15.932 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:46574 10 6452 1 2025-10-16 09:41:16.359 00:00:10.642 TCP 1.101.0.1:3000 -> 23.104.0.1:43130 10 6452 1 2025-10-16 09:42:17.039 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45826 10 6452 1 2025-10-16 09:43:23.012 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 09:43:22.315 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 09:43:22.378 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 09:43:22.318 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 09:43:22.400 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 09:43:17.437 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41608 10 6452 1 2025-10-16 09:38:45.071 00:06:00.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 09:44:17.847 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:41496 10 6452 1 2025-10-16 09:39:45.069 00:06:00.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 09:45:18.235 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43208 10 6452 1 2025-10-16 09:46:18.639 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59964 10 6452 1 2025-10-16 09:47:19.001 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36114 10 6452 1 2025-10-16 09:48:22.686 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 09:48:22.584 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 09:48:22.456 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 09:48:22.582 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 09:48:22.665 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 09:48:19.404 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47144 10 6452 1 2025-10-16 09:49:19.812 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34620 10 6452 1 2025-10-16 09:50:20.218 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:52978 10 6452 1 2025-10-16 09:45:45.072 00:06:00.382 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 09:51:20.589 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46142 10 6452 1 2025-10-16 09:46:45.073 00:06:00.384 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 09:52:20.997 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50498 10 6452 1 2025-10-16 09:53:22.751 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 09:53:22.758 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 09:53:22.753 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 09:53:22.541 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 09:53:22.834 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 09:53:21.412 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:43184 10 6452 1 2025-10-16 09:54:21.810 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:38206 10 6452 1 2025-10-16 09:55:22.182 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38794 10 6452 1 2025-10-16 09:56:22.590 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40120 10 6452 1 2025-10-16 09:57:22.997 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:45988 10 6452 1 2025-10-16 09:52:45.077 00:06:00.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 09:58:22.847 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 09:58:22.765 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 09:58:22.616 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 09:58:22.689 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 09:58:22.826 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 09:58:23.356 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54414 10 6452 1 2025-10-16 09:53:45.075 00:06:00.386 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 Summary: total flows: 138, total bytes: 429611, total packets: 1040, avg bps: 909, avg pps: 0, avg bpp: 413 Time window: 2025-10-16 08:56:45 - 2025-10-16 09:59:45 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0044s User: 0.0011s Wall: 0.0022s flows/second: 63445.6 Runtime: 0.0022s