Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-22 02:59:00.394 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45544 10 6452 1 2025-10-22 03:00:00.757 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:60318 10 6452 1 2025-10-22 02:55:48.037 00:06:00.293 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 03:01:07.745 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 03:01:07.658 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 03:01:07.839 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 03:01:07.466 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 03:01:07.663 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 03:01:01.179 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47790 10 6452 1 2025-10-22 03:02:01.583 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48248 10 6452 1 2025-10-22 03:03:01.941 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58776 10 6452 1 2025-10-22 02:58:48.047 00:06:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 03:04:02.349 00:00:15.602 TCP 1.101.0.1:3000 -> 23.104.0.1:45804 10 6452 1 2025-10-22 03:05:07.999 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40946 10 6452 1 2025-10-22 03:06:07.699 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 03:06:07.906 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 03:06:07.638 00:00:00.017 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 03:06:07.692 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 03:06:07.775 00:00:00.035 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 03:06:08.404 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:55416 10 6452 1 2025-10-22 03:07:08.776 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40052 10 6452 1 2025-10-22 03:02:48.046 00:06:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 03:08:09.185 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:38662 10 6452 1 2025-10-22 03:09:09.584 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57192 10 6452 1 2025-10-22 03:10:09.994 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53544 10 6452 1 2025-10-22 03:05:48.050 00:06:00.282 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 03:11:08.248 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 03:11:07.835 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 03:11:08.081 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 03:11:07.824 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 03:11:08.165 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 03:11:10.400 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56068 10 6452 1 2025-10-22 03:12:10.804 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52964 10 6452 1 2025-10-22 03:13:11.208 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54378 10 6452 1 2025-10-22 03:14:11.610 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44942 10 6452 1 2025-10-22 03:09:48.047 00:06:00.287 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 03:15:12.021 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:49100 10 6452 1 2025-10-22 03:16:08.173 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 03:16:08.162 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 03:16:07.837 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 03:16:07.853 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 03:16:08.092 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 03:16:12.419 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41850 10 6452 1 2025-10-22 03:17:12.822 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40670 10 6452 1 2025-10-22 03:12:48.050 00:06:00.282 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 03:18:13.249 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33496 10 6452 1 2025-10-22 03:19:13.660 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53930 10 6452 1 2025-10-22 03:20:14.091 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38550 10 6452 1 2025-10-22 03:21:08.366 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 03:21:07.990 00:00:00.048 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 03:21:08.318 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 03:21:07.849 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 03:21:08.283 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 03:21:14.502 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49614 10 6452 1 2025-10-22 03:16:48.049 00:06:00.288 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 03:22:14.910 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35018 10 6452 1 2025-10-22 03:23:15.312 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55408 10 6452 1 2025-10-22 03:24:15.720 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:54276 10 6452 1 2025-10-22 03:19:48.057 00:06:00.277 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 03:25:16.137 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55610 10 6452 1 2025-10-22 03:26:08.406 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 03:26:08.221 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 03:26:08.125 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 03:26:08.504 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 03:26:08.588 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 03:26:16.540 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41212 10 6452 1 2025-10-22 03:27:16.948 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56156 10 6452 1 2025-10-22 03:28:17.373 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40722 10 6452 1 2025-10-22 03:23:48.055 00:06:00.282 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 03:29:17.775 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40620 12 6556 1 2025-10-22 03:30:18.197 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40698 10 6452 1 2025-10-22 03:31:08.479 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 03:31:08.485 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 03:31:08.333 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 03:31:08.478 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 03:31:08.561 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 03:31:18.594 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56492 10 6452 1 2025-10-22 03:26:48.058 00:06:00.278 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 03:32:19.004 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53682 10 6452 1 2025-10-22 03:33:19.404 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48630 10 6452 1 2025-10-22 03:34:19.805 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42836 10 6452 1 2025-10-22 03:35:20.209 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:49684 10 6452 1 2025-10-22 03:30:48.057 00:06:00.283 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 03:36:08.347 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 03:36:08.435 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 03:36:08.313 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 03:36:08.435 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 03:36:08.518 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 03:36:20.594 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60914 10 6452 1 2025-10-22 03:37:20.993 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38886 10 6452 1 2025-10-22 03:38:21.402 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42712 10 6452 1 2025-10-22 03:33:48.060 00:06:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 03:39:21.809 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35688 10 6452 1 2025-10-22 03:40:22.216 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40018 10 6452 1 2025-10-22 03:41:08.833 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 03:41:08.948 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 03:41:08.815 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 03:41:08.711 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 03:41:08.751 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 03:41:22.623 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35462 10 6452 1 2025-10-22 03:42:23.029 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40392 10 6452 1 2025-10-22 03:37:48.057 00:06:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 03:43:23.440 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59748 10 6452 1 2025-10-22 03:44:23.842 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:59282 10 6452 1 2025-10-22 03:45:24.226 00:00:11.111 TCP 1.101.0.1:3000 -> 23.104.0.1:44140 10 6452 1 2025-10-22 03:40:48.062 00:06:00.277 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 03:46:08.557 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 03:46:08.656 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 03:46:08.583 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 03:46:08.557 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 03:46:08.641 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 03:46:25.381 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55882 10 6452 1 2025-10-22 03:47:25.747 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56842 10 6452 1 2025-10-22 03:48:26.155 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33442 10 6452 1 2025-10-22 03:49:26.560 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:43160 10 6452 1 2025-10-22 03:44:48.059 00:06:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 03:50:26.967 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36298 10 6452 1 2025-10-22 03:51:08.852 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 03:51:08.812 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 03:51:08.512 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 03:51:08.584 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 03:51:08.667 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 03:51:27.381 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:45532 10 6452 1 2025-10-22 03:52:27.780 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:38298 10 6452 1 2025-10-22 03:47:48.063 00:06:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 03:53:28.165 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:34538 10 6452 1 2025-10-22 03:54:28.591 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:50894 10 6452 1 2025-10-22 03:55:28.951 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:46872 10 6452 1 2025-10-22 03:56:08.901 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 03:56:08.831 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 03:56:08.857 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 03:56:08.795 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 03:56:08.878 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 03:56:29.378 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48486 10 6452 1 2025-10-22 03:51:48.063 00:06:00.281 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 03:57:29.775 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38178 10 6452 1 2025-10-22 03:58:30.183 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54110 10 6452 1 Summary: total flows: 137, total bytes: 416981, total packets: 1020, avg bps: 884, avg pps: 0, avg bpp: 408 Time window: 2025-10-22 02:55:48 - 2025-10-22 03:58:40 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0037s User: 0.0009s Wall: 0.0024s flows/second: 58271.9 Runtime: 0.0024s