Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-24 02:58:57.805 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59838 10 6452 1 2025-10-24 02:59:58.209 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49292 10 6452 1 2025-10-24 03:00:58.607 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43016 10 6452 1 2025-10-24 02:56:49.309 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-10-24 03:02:05.613 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 03:02:05.468 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 03:02:05.252 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 03:02:05.461 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:01:59.014 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33850 10 6452 1 2025-10-24 03:02:05.530 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 02:57:49.033 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-10-24 03:02:59.417 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:58524 10 6452 1 2025-10-24 03:03:59.812 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:51554 10 6452 1 2025-10-24 03:03:49.314 00:01:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 3 175 1 2025-10-24 03:05:00.184 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:48388 12 10578 1 2025-10-24 03:06:00.663 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55496 10 6661 1 2025-10-24 03:07:05.596 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 03:07:05.344 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 03:07:05.568 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 03:07:05.655 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:07:05.515 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:07:01.073 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51796 10 6661 1 2025-10-24 03:08:01.478 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34830 10 6661 1 2025-10-24 03:03:49.038 00:06:00.276 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 03:09:01.877 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39632 10 6661 1 2025-10-24 03:05:49.035 00:04:00.281 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-24 03:10:02.287 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:55542 12 10787 1 2025-10-24 03:11:02.761 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:44894 10 6870 1 2025-10-24 03:12:05.631 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:12:05.804 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 03:12:05.700 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 03:12:05.334 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:12:05.713 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 03:12:03.181 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57706 10 6870 1 2025-10-24 03:13:03.587 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36654 10 6870 1 2025-10-24 03:14:03.989 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50376 10 6870 1 2025-10-24 03:15:04.396 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:40228 10 6870 1 2025-10-24 03:10:49.039 00:06:00.276 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 03:10:49.036 00:06:00.282 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 03:16:04.762 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:56596 10 6870 1 2025-10-24 03:17:05.952 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 03:17:05.736 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 03:17:05.975 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 03:17:05.762 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:17:05.869 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:17:05.188 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54448 10 6870 1 2025-10-24 03:18:05.591 00:00:16.890 TCP 1.101.0.1:3000 -> 23.104.0.1:59358 10 6870 1 2025-10-24 03:19:12.533 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42578 10 6870 1 2025-10-24 03:17:49.041 00:02:00.274 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-24 03:20:12.932 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:56246 10 6870 1 2025-10-24 03:21:13.361 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34358 10 6870 1 2025-10-24 03:22:05.800 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 03:22:05.797 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 03:22:05.974 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:22:05.955 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:22:06.037 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 03:22:13.774 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46732 10 6870 1 2025-10-24 03:17:49.038 00:06:00.281 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 03:23:14.196 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:55556 10 6870 1 2025-10-24 03:24:14.597 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42462 10 6870 1 2025-10-24 03:25:14.996 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:55492 10 6870 1 2025-10-24 03:20:49.041 00:06:00.276 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 03:26:15.413 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48494 10 6870 1 2025-10-24 03:27:05.926 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 03:27:05.990 00:00:00.030 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 03:27:05.951 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:27:05.910 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:27:05.994 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 03:27:15.821 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40914 10 6870 1 2025-10-24 03:28:16.227 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35826 10 6870 1 2025-10-24 03:29:16.626 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54508 10 6870 1 2025-10-24 03:24:49.046 00:06:00.005 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-10-24 03:30:17.033 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49104 10 6870 1 2025-10-24 03:31:17.434 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:37904 10 6870 1 2025-10-24 03:32:06.327 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 03:32:06.399 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 03:32:06.268 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:32:06.324 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:32:06.407 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 03:32:17.794 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36452 10 6870 1 2025-10-24 03:27:49.052 00:06:00.265 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 03:33:18.202 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45180 10 6870 1 2025-10-24 03:34:18.565 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:59372 10 6870 1 2025-10-24 03:35:18.928 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:49094 10 6870 1 2025-10-24 03:30:49.320 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 790 1 2025-10-24 03:36:19.362 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:40304 10 6870 1 2025-10-24 03:37:06.312 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 03:37:06.368 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 03:37:06.003 00:00:00.052 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 03:37:06.241 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:37:06.230 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:37:19.731 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:50240 10 6870 1 2025-10-24 03:38:20.152 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48530 10 6870 1 2025-10-24 03:39:20.557 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:32802 10 6870 1 2025-10-24 03:34:49.055 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-10-24 03:40:20.968 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:35276 10 6870 1 2025-10-24 03:41:21.382 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55274 10 6870 1 2025-10-24 03:37:49.056 00:04:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-24 03:42:06.324 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 03:42:06.083 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 03:42:06.291 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:42:06.192 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:42:06.283 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 03:42:21.793 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53186 10 6870 1 2025-10-24 03:43:22.206 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:37506 10 6870 1 2025-10-24 03:44:22.566 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37438 10 6870 1 2025-10-24 03:45:22.972 00:00:11.340 TCP 1.101.0.1:3000 -> 23.104.0.1:37102 10 6870 1 2025-10-24 03:40:49.318 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-10-24 03:46:24.353 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:35088 10 6870 1 2025-10-24 03:47:06.494 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 03:47:06.498 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 03:47:06.407 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 03:47:06.415 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:47:06.411 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:47:24.722 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38136 10 6870 1 2025-10-24 03:42:49.057 00:06:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 03:48:25.126 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59146 10 6870 1 2025-10-24 03:49:25.527 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44158 10 6870 1 2025-10-24 03:50:25.930 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:39838 10 6870 1 2025-10-24 03:51:26.366 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59022 10 6870 1 2025-10-24 03:47:49.063 00:04:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-24 03:52:06.628 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 03:52:06.492 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 03:52:06.545 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 03:52:06.352 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:52:06.546 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:52:26.777 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44868 10 6870 1 2025-10-24 03:53:27.188 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60014 10 6870 1 2025-10-24 03:54:27.595 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38932 10 6870 1 2025-10-24 03:49:49.060 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-10-24 03:55:28.004 00:00:10.435 TCP 1.101.0.1:3000 -> 23.104.0.1:50998 12 10375 1 2025-10-24 03:56:28.478 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52884 10 6452 1 2025-10-24 03:52:49.063 00:04:00.261 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-24 03:57:06.512 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 03:57:06.505 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:57:06.668 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:57:06.570 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 03:57:06.751 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 03:57:28.880 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34664 10 6452 1 2025-10-24 03:58:29.288 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45310 10 6452 1 Summary: total flows: 140, total bytes: 448508, total packets: 1024, avg bps: 967, avg pps: 0, avg bpp: 437 Time window: 2025-10-24 02:56:49 - 2025-10-24 03:58:39 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0009s User: 0.0038s Wall: 0.0022s flows/second: 63208.0 Runtime: 0.0022s