Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-23 23:59:30.809 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:54216 10 6452 1 2025-10-23 23:55:48.935 00:05:00.324 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-24 00:00:31.188 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38530 10 6452 1 2025-10-24 00:01:31.590 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33370 10 6452 1 2025-10-24 00:02:01.819 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 00:02:01.594 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 00:02:01.848 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 00:02:01.974 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 00:02:02.057 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 00:02:31.995 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42326 10 6452 1 2025-10-23 23:58:48.940 00:05:00.324 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-24 00:03:32.412 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46096 10 6452 1 2025-10-24 00:04:32.813 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47230 10 6452 1 2025-10-24 00:05:33.216 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54906 10 6452 1 2025-10-24 00:01:48.941 00:05:00.320 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-24 00:06:33.638 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39198 10 6452 1 2025-10-24 00:07:01.872 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 00:07:01.890 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 00:07:01.970 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 00:07:01.923 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 00:07:01.790 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 00:07:34.053 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34680 10 6452 1 2025-10-24 00:08:34.414 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51582 10 6452 1 2025-10-24 00:04:48.943 00:05:00.316 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-24 00:09:34.815 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:48932 10 6452 1 2025-10-24 00:10:35.183 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:32880 12 10375 1 2025-10-24 00:07:48.942 00:05:00.321 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-24 00:11:35.657 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:49938 10 6452 1 2025-10-24 00:12:02.205 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 00:12:02.068 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 00:12:01.929 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 00:12:02.122 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 00:12:01.899 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 00:12:36.028 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:53762 10 6452 1 2025-10-24 00:13:36.442 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59682 10 6452 1 2025-10-24 00:10:48.943 00:05:00.317 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-24 00:14:36.859 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47368 10 6452 1 2025-10-24 00:15:37.270 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:56686 10 6452 1 2025-10-24 00:16:37.674 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54880 10 6452 1 2025-10-24 00:17:02.253 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 00:17:02.160 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 00:17:02.230 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 00:17:01.997 00:00:00.037 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 00:17:02.170 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 00:17:38.106 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57958 10 6452 1 2025-10-24 00:13:48.943 00:05:00.321 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-24 00:18:38.471 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57838 10 6452 1 2025-10-24 00:19:38.834 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:56696 10 6452 1 2025-10-24 00:20:39.221 00:00:10.597 TCP 1.101.0.1:3000 -> 23.104.0.1:52566 10 6452 1 2025-10-24 00:16:48.945 00:05:00.319 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-24 00:21:39.856 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:49914 10 6452 1 2025-10-24 00:22:02.565 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 00:22:02.437 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 00:22:02.362 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 00:22:02.204 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 00:22:02.482 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 00:22:40.273 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37368 10 6452 1 2025-10-24 00:19:48.943 00:05:00.323 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-24 00:23:40.675 00:00:11.671 TCP 1.101.0.1:3000 -> 23.104.0.1:48812 10 6452 1 2025-10-24 00:24:42.393 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41236 10 6452 1 2025-10-24 00:25:42.798 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58144 10 6452 1 2025-10-24 00:22:48.945 00:05:00.319 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-24 00:26:43.208 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60068 10 6452 1 2025-10-24 00:27:02.436 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 00:27:02.304 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 00:27:02.348 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 00:27:02.307 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 00:27:02.390 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 00:27:43.572 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52362 10 6452 1 2025-10-24 00:28:43.981 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:46546 10 6452 1 2025-10-24 00:29:44.380 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:37028 10 6452 1 2025-10-24 00:25:48.944 00:05:00.323 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-24 00:30:44.738 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51702 10 6452 1 2025-10-24 00:31:45.146 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53276 10 6452 1 2025-10-24 00:32:03.212 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 00:32:03.196 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 00:32:03.001 00:00:00.045 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 00:32:03.197 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 00:32:03.130 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 00:28:48.947 00:05:00.318 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-24 00:32:45.550 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60446 10 6452 1 2025-10-24 00:33:45.953 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38310 10 6452 1 2025-10-24 00:34:46.364 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53340 10 6452 1 2025-10-24 00:31:48.945 00:05:00.323 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-24 00:35:46.779 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:47828 10 6452 1 2025-10-24 00:37:02.675 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 00:36:47.155 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45202 10 6452 1 2025-10-24 00:37:02.500 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 00:37:02.586 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 00:37:02.451 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 00:37:02.592 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 00:37:47.518 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:53392 10 6452 1 2025-10-24 00:34:48.948 00:05:00.319 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-24 00:38:47.879 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39326 10 6452 1 2025-10-24 00:39:48.288 00:00:10.995 TCP 1.101.0.1:3000 -> 23.104.0.1:45090 10 6452 1 2025-10-24 00:40:49.317 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38060 10 6452 1 2025-10-24 00:37:48.945 00:05:00.324 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-24 00:42:02.552 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 00:42:02.648 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 00:42:02.378 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 00:42:02.698 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 00:41:49.677 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45148 10 6452 1 2025-10-24 00:42:02.781 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 00:42:50.105 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:43536 10 6452 1 2025-10-24 00:43:50.480 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59702 10 6452 1 2025-10-24 00:40:48.951 00:05:00.317 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-24 00:44:50.881 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:43006 12 10375 1 2025-10-24 00:45:51.358 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47146 10 6452 1 2025-10-24 00:47:02.804 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 00:47:02.833 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 00:47:02.867 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 00:47:02.653 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 00:47:02.723 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 00:46:51.762 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:53984 10 6452 1 2025-10-24 00:43:48.950 00:05:00.323 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-24 00:47:52.143 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:53278 10 6452 1 2025-10-24 00:48:52.587 00:00:10.354 TCP 1.101.0.1:3000 -> 23.104.0.1:42658 10 6452 1 2025-10-24 00:49:52.964 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34922 10 6452 1 2025-10-24 00:46:48.952 00:05:00.317 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-24 00:50:53.372 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48758 10 6452 1 2025-10-24 00:52:02.743 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 00:52:02.825 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 00:52:02.739 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 00:51:53.783 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60238 10 6452 1 2025-10-24 00:52:02.874 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 00:52:02.957 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 00:52:54.189 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43734 10 6452 1 2025-10-24 00:49:48.952 00:05:00.319 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-24 00:53:54.594 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:44202 10 6452 1 2025-10-24 00:54:54.969 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43464 10 6452 1 2025-10-24 00:55:55.381 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:35320 10 6452 1 2025-10-24 00:52:48.959 00:05:00.313 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-24 00:57:03.235 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 00:57:03.146 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 00:57:03.151 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 00:57:03.041 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 00:57:03.153 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 00:56:55.792 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40574 10 6452 1 2025-10-24 00:57:56.197 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54940 10 6452 1 Summary: total flows: 139, total bytes: 418394, total packets: 1014, avg bps: 895, avg pps: 0, avg bpp: 412 Time window: 2025-10-23 23:55:48 - 2025-10-24 00:58:06 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0038s User: 0.0019s Wall: 0.0030s flows/second: 46318.3 Runtime: 0.0030s