Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-17 00:59:30.803 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48522 10 6452 1 2025-10-17 01:00:31.209 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38416 10 6452 1 2025-10-17 00:55:45.401 00:06:00.332 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 01:01:31.609 00:00:10.804 TCP 1.101.0.1:3000 -> 23.104.0.1:38820 10 6452 1 2025-10-17 00:56:45.400 00:06:00.337 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 01:02:32.446 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36252 10 6452 1 2025-10-17 01:03:41.175 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 01:03:41.294 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 01:03:41.114 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 01:03:32.852 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:42810 10 6452 1 2025-10-17 01:03:41.008 00:00:00.038 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 01:03:41.090 00:00:00.038 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 01:04:33.275 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57454 10 6452 1 2025-10-17 01:05:33.682 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47490 10 6452 1 2025-10-17 01:06:34.112 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41586 10 6452 1 2025-10-17 01:07:34.475 00:00:10.492 TCP 1.101.0.1:3000 -> 23.104.0.1:56386 10 6452 1 2025-10-17 01:02:45.402 00:06:00.332 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 01:08:40.970 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 01:08:40.806 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 01:08:41.067 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 01:08:40.898 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 01:08:41.150 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 01:03:45.401 00:06:00.337 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 01:08:35.002 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46410 10 6452 1 2025-10-17 01:09:35.407 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57088 10 6452 1 2025-10-17 01:10:35.808 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53306 10 6452 1 2025-10-17 01:11:36.209 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37974 10 6452 1 2025-10-17 01:12:36.608 00:00:10.909 TCP 1.101.0.1:3000 -> 23.104.0.1:38008 10 6452 1 2025-10-17 01:13:40.981 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 01:13:41.106 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 01:13:40.820 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 01:13:40.979 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 01:13:41.062 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 01:13:37.555 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:44626 10 6452 1 2025-10-17 01:14:37.917 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45998 10 6452 1 2025-10-17 01:09:45.405 00:06:00.333 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 01:10:45.402 00:06:00.339 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 01:15:38.323 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47248 10 6452 1 2025-10-17 01:16:38.727 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54248 10 6452 1 2025-10-17 01:17:39.143 00:00:11.137 TCP 1.101.0.1:3000 -> 23.104.0.1:50318 10 6452 1 2025-10-17 01:18:41.024 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 01:18:41.348 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 01:18:41.090 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 01:18:41.264 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 01:18:41.345 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 01:18:40.313 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60598 10 6452 1 2025-10-17 01:19:40.720 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:46676 10 6452 1 2025-10-17 01:20:41.134 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60788 10 6452 1 2025-10-17 01:16:45.408 00:06:00.331 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 01:21:41.530 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39636 10 6452 1 2025-10-17 01:17:45.409 00:06:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 01:22:41.932 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:39004 10 6452 1 2025-10-17 01:23:41.641 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 01:23:41.346 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 01:23:41.735 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 01:23:41.257 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 01:23:41.558 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 01:23:42.362 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52490 10 6452 1 2025-10-17 01:24:42.772 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59002 10 6452 1 2025-10-17 01:25:43.181 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60324 10 6452 1 2025-10-17 01:26:43.584 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:56228 12 10375 1 2025-10-17 01:27:44.089 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49342 10 6452 1 2025-10-17 01:28:41.555 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 01:28:41.375 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 01:28:41.393 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 01:28:41.328 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 01:28:41.472 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 01:23:45.412 00:06:00.330 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 01:28:44.494 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36664 10 6452 1 2025-10-17 01:24:45.409 00:06:00.336 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 01:29:44.893 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:46092 10 6452 1 2025-10-17 01:30:45.317 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40098 10 6452 1 2025-10-17 01:31:45.733 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38330 10 6452 1 2025-10-17 01:32:46.137 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:38222 11 6504 1 2025-10-17 01:33:41.384 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 01:33:41.202 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 01:33:41.550 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 01:33:41.639 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 01:33:41.633 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 01:33:46.593 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47540 10 6452 1 2025-10-17 01:34:46.998 00:00:13.381 TCP 1.101.0.1:3000 -> 23.104.0.1:59202 10 6452 1 2025-10-17 01:30:45.414 00:06:00.335 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 01:35:50.422 00:00:11.165 TCP 1.101.0.1:3000 -> 23.104.0.1:56798 11 6504 1 2025-10-17 01:31:45.411 00:06:00.341 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 01:36:51.628 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52902 10 6452 1 2025-10-17 01:37:51.993 00:00:11.459 TCP 1.101.0.1:3000 -> 23.104.0.1:43392 10 6452 1 2025-10-17 01:38:41.591 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 01:38:41.589 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 01:38:41.853 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 01:38:41.491 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 01:38:41.936 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 01:38:53.490 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:51852 10 6452 1 2025-10-17 01:39:53.885 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:52580 12 6556 1 2025-10-17 01:40:54.307 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:33516 10 6452 1 2025-10-17 01:41:54.671 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:34798 10 6452 1 2025-10-17 01:37:45.416 00:06:00.334 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 01:42:55.036 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38672 10 6452 1 2025-10-17 01:43:41.926 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 01:43:41.735 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 01:43:41.684 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 01:43:41.733 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 01:43:41.816 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 01:38:45.413 00:06:00.339 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 01:43:55.437 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57548 10 6452 1 2025-10-17 01:44:55.841 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:49052 10 6452 1 2025-10-17 01:45:56.258 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:60854 10 6452 1 2025-10-17 01:46:56.678 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40604 10 6452 1 2025-10-17 01:47:57.041 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58590 10 6452 1 2025-10-17 01:48:42.073 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 01:48:41.773 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 01:48:41.769 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 01:48:41.848 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 01:48:41.991 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 01:48:57.446 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53202 10 6452 1 2025-10-17 01:44:45.418 00:06:00.334 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 01:49:57.810 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:37490 10 6452 1 2025-10-17 01:45:45.415 00:06:00.340 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 01:50:58.193 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:58566 10 6452 1 2025-10-17 01:51:58.618 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:40772 10 6452 1 2025-10-17 01:52:59.042 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54924 10 6452 1 2025-10-17 01:53:41.891 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 01:53:41.899 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 01:53:41.726 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 01:53:41.894 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 01:53:41.979 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 01:53:59.448 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37604 10 6452 1 2025-10-17 01:54:59.856 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:34952 10 6452 1 2025-10-17 01:56:00.235 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50002 10 6452 1 2025-10-17 01:51:45.419 00:06:00.336 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 01:57:00.644 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45990 10 6452 1 2025-10-17 01:52:45.416 00:06:00.342 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 01:58:01.067 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52138 12 6556 1 2025-10-17 01:58:42.615 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 01:58:42.535 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 01:58:42.563 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 01:58:42.533 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 01:58:42.602 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 Summary: total flows: 137, total bytes: 415521, total packets: 1030, avg bps: 879, avg pps: 0, avg bpp: 403 Time window: 2025-10-17 00:55:45 - 2025-10-17 01:58:45 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0045s User: 0.0009s Wall: 0.0019s flows/second: 72370.2 Runtime: 0.0020s