Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-22 03:59:30.588 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43892 10 6452 1 2025-10-22 03:54:48.066 00:06:00.276 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 04:00:30.989 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36342 10 6452 1 2025-10-22 04:01:08.902 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 04:01:08.925 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 04:01:08.787 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 04:01:08.729 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 04:01:08.812 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 04:01:31.398 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:57460 10 6452 1 2025-10-22 04:02:31.761 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:39196 10 6452 1 2025-10-22 04:03:32.189 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40658 10 6452 1 2025-10-22 03:58:48.066 00:06:00.281 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 04:04:32.595 00:00:11.140 TCP 1.101.0.1:3000 -> 23.104.0.1:41422 10 6452 1 2025-10-22 04:05:33.772 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39812 10 6452 1 2025-10-22 04:06:09.005 00:00:00.047 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 04:06:09.009 00:00:00.040 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 04:06:08.842 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 04:06:09.094 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 04:06:09.178 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 04:06:34.183 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55580 10 6452 1 2025-10-22 04:01:48.067 00:06:00.276 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 04:07:34.589 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57392 10 6452 1 2025-10-22 04:08:34.990 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45936 10 6452 1 2025-10-22 04:09:35.398 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58964 10 6452 1 2025-10-22 04:05:48.067 00:06:00.281 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 04:10:35.765 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:55390 10 6452 1 2025-10-22 04:11:09.119 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 04:11:09.194 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 04:11:08.954 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 04:11:09.195 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 04:11:09.278 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 04:11:36.181 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39896 10 6452 1 2025-10-22 04:12:36.551 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:48464 10 6452 1 2025-10-22 04:08:48.072 00:06:00.273 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 04:13:36.930 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:49196 10 6452 1 2025-10-22 04:14:37.365 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47272 10 6452 1 2025-10-22 04:15:37.772 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37296 10 6452 1 2025-10-22 04:16:09.551 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 04:16:09.445 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 04:16:09.179 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 04:16:09.440 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 04:16:09.522 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 04:16:38.183 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:54240 10 6452 1 2025-10-22 04:12:48.070 00:06:00.279 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 04:17:38.626 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36984 10 6452 1 2025-10-22 04:18:39.029 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:50028 10 6452 1 2025-10-22 04:19:39.428 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:60828 12 10369 1 2025-10-22 04:15:48.071 00:06:00.275 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 04:20:39.869 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46174 10 6452 1 2025-10-22 04:21:09.220 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 04:21:09.309 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 04:21:09.238 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 04:21:09.154 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 04:21:09.138 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 04:21:40.273 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36184 10 6452 1 2025-10-22 04:22:40.679 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52780 10 6452 1 2025-10-22 04:23:41.060 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57224 10 6452 1 2025-10-22 04:19:48.072 00:06:00.279 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 04:24:41.463 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56080 10 6452 1 2025-10-22 04:25:41.869 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40650 10 6452 1 2025-10-22 04:26:09.396 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 04:26:09.404 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 04:26:09.341 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 04:26:09.465 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 04:26:09.548 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 04:26:42.281 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42290 10 6452 1 2025-10-22 04:22:48.075 00:06:00.273 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 04:27:42.683 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54022 10 6452 1 2025-10-22 04:28:43.108 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58480 10 6452 1 2025-10-22 04:29:43.507 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54910 10 6452 1 2025-10-22 04:30:43.911 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:54784 10 6452 1 2025-10-22 04:31:09.648 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 04:31:09.378 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 04:31:09.473 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 04:31:09.570 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 04:31:09.652 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 04:26:48.073 00:06:00.278 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 04:31:44.273 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:56844 10 6452 1 2025-10-22 04:32:44.637 00:00:16.216 TCP 1.101.0.1:3000 -> 23.104.0.1:54386 10 6452 1 2025-10-22 04:33:50.914 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38312 10 6452 1 2025-10-22 04:29:48.076 00:06:00.284 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 04:34:51.317 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:52598 10 6452 1 2025-10-22 04:35:51.737 00:00:10.618 TCP 1.101.0.1:3000 -> 23.104.0.1:37402 10 6452 1 2025-10-22 04:36:09.713 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 04:36:09.450 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 04:36:09.664 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 04:36:09.572 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 04:36:09.630 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 04:36:52.397 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46612 10 6452 1 2025-10-22 04:37:52.803 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41726 10 6452 1 2025-10-22 04:33:48.075 00:06:00.296 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 04:38:53.207 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39548 10 6452 1 2025-10-22 04:39:53.609 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46178 10 6452 1 2025-10-22 04:40:53.970 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48978 10 6452 1 2025-10-22 04:41:09.651 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 04:41:09.636 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 04:41:09.650 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 04:41:09.557 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 04:41:09.733 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 04:36:48.078 00:06:00.283 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 04:41:54.387 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33796 10 6452 1 2025-10-22 04:42:54.798 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:55518 10 6452 1 2025-10-22 04:43:55.186 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:41714 10 6452 1 2025-10-22 04:44:55.550 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49502 10 6452 1 2025-10-22 04:40:48.076 00:06:00.288 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 04:46:09.882 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 04:46:09.919 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 04:45:55.951 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55718 10 6452 1 2025-10-22 04:46:09.722 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 04:46:10.001 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 04:46:10.139 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 04:46:56.351 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56028 10 6452 1 2025-10-22 04:47:56.750 00:00:23.724 TCP 1.101.0.1:3000 -> 23.104.0.1:50472 10 6452 1 2025-10-22 04:43:48.081 00:06:00.284 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 04:49:10.515 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46302 10 6452 1 2025-10-22 04:50:10.921 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:47240 10 6452 1 2025-10-22 04:51:09.829 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 04:51:09.929 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 04:51:09.841 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 04:51:09.839 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 04:51:09.921 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 04:51:11.341 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52422 10 6452 1 2025-10-22 04:52:11.700 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36512 10 6452 1 2025-10-22 04:47:48.077 00:06:00.290 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 04:53:12.112 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43026 10 6452 1 2025-10-22 04:54:12.520 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45328 10 6452 1 2025-10-22 04:55:12.923 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:48218 10 6452 1 2025-10-22 04:50:48.080 00:06:00.286 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 04:56:09.874 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 04:56:09.837 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 04:56:09.920 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 04:56:10.041 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 04:56:10.009 00:00:00.049 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 04:56:13.302 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:44478 10 6452 1 2025-10-22 04:57:13.661 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42114 10 6452 1 2025-10-22 04:58:14.094 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:41232 10 6452 1 Summary: total flows: 136, total bytes: 414342, total packets: 1010, avg bps: 868, avg pps: 0, avg bpp: 410 Time window: 2025-10-22 03:54:48 - 2025-10-22 04:58:24 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0049s User: 0.0008s Wall: 0.0020s flows/second: 69700.1 Runtime: 0.0020s