Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-17 02:59:30.392 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44448 10 6452 1 2025-10-17 02:54:45.450 00:06:00.330 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 03:00:30.796 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40578 10 6452 1 2025-10-17 02:55:45.447 00:06:00.336 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 03:01:31.204 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47286 10 6452 1 2025-10-17 03:02:31.605 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:42514 10 6452 1 2025-10-17 03:03:43.261 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 03:03:31.969 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50352 10 6452 1 2025-10-17 03:03:43.497 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 03:03:43.587 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 03:03:43.504 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 03:03:43.587 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 03:04:32.381 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33074 10 6452 1 2025-10-17 03:05:32.783 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43002 10 6452 1 2025-10-17 03:06:33.195 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:34270 10 6452 1 2025-10-17 03:01:45.450 00:06:00.332 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 03:07:33.614 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55262 10 6452 1 2025-10-17 03:02:45.449 00:06:00.336 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 03:08:43.522 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 03:08:43.289 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 03:08:43.449 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 03:08:33.973 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41124 10 6452 1 2025-10-17 03:08:43.524 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 03:08:43.372 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 03:09:34.339 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35868 10 6452 1 2025-10-17 03:10:34.698 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58030 10 6452 1 2025-10-17 03:11:35.117 00:00:10.559 TCP 1.101.0.1:3000 -> 23.104.0.1:49592 10 6452 1 2025-10-17 03:12:35.712 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:49478 10 6452 1 2025-10-17 03:13:43.282 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 03:13:43.612 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 03:13:43.447 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 03:13:43.559 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 03:13:43.695 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 03:13:36.127 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:39896 10 6452 1 2025-10-17 03:08:45.453 00:06:00.332 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 03:14:36.526 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52720 10 6452 1 2025-10-17 03:09:45.452 00:06:00.337 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 03:15:36.887 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:49360 12 6556 1 2025-10-17 03:16:37.316 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36600 10 6452 1 2025-10-17 03:17:37.719 00:00:10.451 TCP 1.101.0.1:3000 -> 23.104.0.1:37996 12 10375 1 2025-10-17 03:18:43.728 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 03:18:43.720 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 03:18:43.685 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 03:18:43.673 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 03:18:43.757 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 03:18:38.209 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:35664 10 6452 1 2025-10-17 03:19:38.627 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45042 10 6452 1 2025-10-17 03:15:45.459 00:06:00.328 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 03:20:39.034 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60012 10 6452 1 2025-10-17 03:21:39.441 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38506 10 6452 1 2025-10-17 03:16:45.456 00:06:00.334 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 03:22:39.844 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:40246 10 6452 1 2025-10-17 03:23:43.975 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 03:23:43.886 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 03:23:44.059 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 03:23:43.745 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 03:23:43.892 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 03:23:40.271 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:55772 10 6452 1 2025-10-17 03:24:40.648 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38404 10 6452 1 2025-10-17 03:25:41.060 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51516 10 6452 1 2025-10-17 03:26:41.470 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44404 10 6452 1 2025-10-17 03:22:45.463 00:06:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 03:27:41.868 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47456 10 6452 1 2025-10-17 03:28:43.743 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 03:28:43.900 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 03:28:43.690 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 03:28:43.815 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 03:28:43.898 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 03:23:45.461 00:06:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 03:28:42.280 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37528 10 6452 1 2025-10-17 03:29:42.679 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55972 10 6452 1 2025-10-17 03:30:43.108 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48302 10 6452 1 2025-10-17 03:31:43.503 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:35624 10 6452 1 2025-10-17 03:32:43.914 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:49498 10 6452 1 2025-10-17 03:33:43.851 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 03:33:43.762 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 03:33:43.976 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 03:33:43.624 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 03:33:43.709 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 03:33:44.320 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46932 10 6452 1 2025-10-17 03:29:45.465 00:06:00.330 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 03:34:44.722 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:56192 10 6452 1 2025-10-17 03:30:45.463 00:06:00.336 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 03:35:45.136 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43852 10 6452 1 2025-10-17 03:36:45.495 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39656 10 6452 1 2025-10-17 03:37:45.892 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35404 10 6452 1 2025-10-17 03:38:43.935 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 03:38:43.838 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 03:38:43.867 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 03:38:44.107 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 03:38:44.190 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 03:38:46.306 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:58594 10 6452 1 2025-10-17 03:39:46.669 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49594 10 6452 1 2025-10-17 03:40:47.086 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52858 10 6452 1 2025-10-17 03:36:45.465 00:06:00.332 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 03:41:47.487 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51286 10 6452 1 2025-10-17 03:37:45.464 00:06:00.336 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 03:42:47.888 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:40398 10 6452 1 2025-10-17 03:43:44.221 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 03:43:44.221 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 03:43:44.197 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 03:43:44.179 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 03:43:44.262 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 03:43:48.256 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44054 10 6452 1 2025-10-17 03:44:48.659 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47760 10 6452 1 2025-10-17 03:45:49.065 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51748 10 6452 1 2025-10-17 03:46:49.472 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48946 10 6452 1 2025-10-17 03:47:49.880 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33710 10 6452 1 2025-10-17 03:48:44.310 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 03:48:44.240 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 03:48:44.487 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 03:48:44.482 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 03:48:44.570 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 03:43:45.473 00:06:00.325 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 03:48:50.286 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53368 10 6452 1 2025-10-17 03:44:45.470 00:06:00.330 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 03:49:50.687 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41478 10 6452 1 2025-10-17 03:50:51.113 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56174 10 6452 1 2025-10-17 03:51:51.482 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56140 10 6452 1 2025-10-17 03:52:51.883 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56262 10 6452 1 2025-10-17 03:53:44.533 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 03:53:44.394 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 03:53:44.385 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 03:53:44.324 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 03:53:44.451 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 03:53:52.294 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:37886 10 6452 1 2025-10-17 03:54:52.707 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39996 10 6452 1 2025-10-17 03:50:45.473 00:06:00.326 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 03:55:53.115 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:44660 10 6452 1 2025-10-17 03:51:45.471 00:06:00.331 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 03:56:53.523 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35538 12 6556 1 2025-10-17 03:57:53.923 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:50810 10 6452 1 2025-10-17 03:58:44.397 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 03:58:44.553 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 03:58:44.506 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 03:58:44.302 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 03:58:44.480 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 137, total bytes: 415417, total packets: 1028, avg bps: 865, avg pps: 0, avg bpp: 404 Time window: 2025-10-17 02:54:45 - 2025-10-17 03:58:44 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0028s User: 0.0019s Wall: 0.0021s flows/second: 64224.8 Runtime: 0.0022s