Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-24 08:59:10.042 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46348 10 6452 1 2025-10-24 08:55:49.183 00:04:00.230 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-24 09:00:10.442 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49292 10 6452 1 2025-10-24 09:01:10.848 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:39940 10 6452 1 2025-10-24 08:57:49.181 00:04:00.235 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-24 09:02:12.783 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 09:02:12.761 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 09:02:12.694 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 09:02:12.726 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 09:02:12.701 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 09:02:11.286 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46606 10 6452 1 2025-10-24 09:03:11.690 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37026 10 6452 1 2025-10-24 09:04:12.112 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:51852 10 6452 1 2025-10-24 09:05:12.510 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33822 10 6452 1 2025-10-24 09:00:49.185 00:06:00.230 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 09:06:12.915 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51836 10 6452 1 2025-10-24 09:02:49.185 00:04:00.233 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-24 09:07:12.858 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 09:07:12.777 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 09:07:12.863 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 09:07:12.865 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 09:07:12.889 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 09:07:13.319 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:40880 10 6452 1 2025-10-24 09:08:13.730 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:47536 10 6452 1 2025-10-24 09:09:14.112 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52932 10 6452 1 2025-10-24 09:10:14.514 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:36260 10 6452 1 2025-10-24 09:11:14.899 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:45998 12 6556 1 2025-10-24 09:07:49.187 00:04:00.229 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-24 09:07:49.185 00:04:00.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-24 09:12:12.842 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 09:12:12.821 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 09:12:12.956 00:00:00.019 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 09:12:12.683 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 09:12:13.039 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 09:12:15.309 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48828 10 6452 1 2025-10-24 09:13:15.713 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48700 10 6452 1 2025-10-24 09:14:16.112 00:00:10.961 TCP 1.101.0.1:3000 -> 23.104.0.1:44058 10 6452 1 2025-10-24 09:15:17.115 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38440 10 6452 1 2025-10-24 09:16:17.520 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55736 10 6452 1 2025-10-24 09:12:49.189 00:04:00.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-24 09:12:49.186 00:04:00.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-24 09:17:13.253 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 09:17:13.460 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 09:17:12.810 00:00:00.039 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 09:17:13.507 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 09:17:13.590 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 09:17:17.930 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:43862 10 6452 1 2025-10-24 09:18:18.351 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:47950 10 6452 1 2025-10-24 09:19:18.752 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:47016 10 6452 1 2025-10-24 09:20:19.133 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:49464 10 6452 1 2025-10-24 09:21:19.519 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44790 10 6452 1 2025-10-24 09:17:49.187 00:04:00.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-24 09:17:49.189 00:04:00.229 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-24 09:22:13.134 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 09:22:13.158 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 09:22:12.795 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 09:22:13.051 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 09:22:12.968 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 09:22:19.930 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:50566 13 6608 1 2025-10-24 09:23:20.371 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51052 10 6452 1 2025-10-24 09:24:20.777 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:48670 10 6452 1 2025-10-24 09:25:21.203 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53246 10 6452 1 2025-10-24 09:26:21.607 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41180 10 6452 1 2025-10-24 09:22:49.190 00:04:00.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-24 09:27:13.273 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 09:27:13.113 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 09:27:13.011 00:00:00.048 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 09:27:13.191 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 09:27:13.007 00:00:00.046 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 09:27:22.009 00:00:11.091 TCP 1.101.0.1:3000 -> 23.104.0.1:46380 10 6452 1 2025-10-24 09:22:49.189 00:06:00.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 09:28:23.139 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54486 10 6452 1 2025-10-24 09:29:23.548 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:59292 10 6452 1 2025-10-24 09:30:23.914 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:57110 10 6452 1 2025-10-24 09:31:24.277 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59388 10 6452 1 2025-10-24 09:27:49.194 00:04:00.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-24 09:32:13.173 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 09:32:13.395 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 09:32:13.116 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 09:32:13.180 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 09:32:13.263 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 09:32:24.685 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45934 10 6452 1 2025-10-24 09:33:25.107 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55896 10 6452 1 2025-10-24 09:29:49.200 00:04:00.223 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-24 09:34:25.514 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53858 10 6452 1 2025-10-24 09:35:25.876 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:34744 12 10375 1 2025-10-24 09:36:26.354 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51714 12 6556 1 2025-10-24 09:32:49.196 00:04:00.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-24 09:37:13.585 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 09:37:13.544 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 09:37:13.341 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 09:37:13.541 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 09:37:13.624 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 09:37:26.751 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54436 10 6452 1 2025-10-24 09:38:27.147 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51440 10 6452 1 2025-10-24 09:34:49.194 00:04:00.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-24 09:39:27.552 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42826 10 6452 1 2025-10-24 09:40:27.957 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:44832 10 6452 1 2025-10-24 09:41:28.394 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:45936 10 6452 1 2025-10-24 09:42:13.703 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 09:42:13.529 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 09:42:13.746 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 09:42:13.440 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 09:42:13.785 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 09:42:28.794 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54898 10 6452 1 2025-10-24 09:37:49.196 00:06:00.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 09:43:29.152 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47318 10 6452 1 2025-10-24 09:39:49.196 00:04:00.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-24 09:44:29.555 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:52712 10 6452 1 2025-10-24 09:45:29.970 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53510 10 6452 1 2025-10-24 09:46:30.334 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:36368 10 6452 1 2025-10-24 09:47:13.705 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 09:47:13.537 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 09:47:13.614 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 09:47:13.567 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 09:47:13.619 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 09:47:30.703 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33340 10 6452 1 2025-10-24 09:48:31.119 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47442 10 6452 1 2025-10-24 09:44:49.196 00:04:00.233 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-24 09:44:49.199 00:04:00.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-24 09:49:31.522 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51556 10 6452 1 2025-10-24 09:50:31.925 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50976 10 6452 1 2025-10-24 09:51:32.339 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49570 10 6452 1 2025-10-24 09:52:13.891 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 09:52:13.840 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 09:52:13.850 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 09:52:13.506 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 09:52:13.809 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 09:52:32.744 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41762 10 6452 1 2025-10-24 09:49:49.204 00:04:00.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-24 09:49:49.207 00:04:00.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-24 09:53:33.155 00:00:20.941 TCP 1.101.0.1:3000 -> 23.104.0.1:37150 12 6556 1 2025-10-24 09:54:44.192 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53628 10 6452 1 2025-10-24 09:55:44.602 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:33356 10 6452 1 2025-10-24 09:56:45.001 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39800 10 6452 1 2025-10-24 09:57:13.749 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 09:57:13.939 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 09:57:13.802 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 09:57:13.936 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 09:57:14.021 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 09:57:45.398 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47526 10 6452 1 2025-10-24 09:54:49.209 00:04:00.223 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-24 09:54:49.206 00:04:00.229 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 Summary: total flows: 143, total bytes: 415677, total packets: 1033, avg bps: 879, avg pps: 0, avg bpp: 402 Time window: 2025-10-24 08:55:49 - 2025-10-24 09:58:49 Total flows processed: 143, passed: 143, Blocks skipped: 0, Bytes read: 14936 Sys: 0.0028s User: 0.0019s Wall: 0.0023s flows/second: 62334.8 Runtime: 0.0023s