Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-27 03:59:20.987 00:00:10.618 TCP 1.101.0.1:3000 -> 23.104.0.1:34260 10 6870 1 2025-10-27 04:00:21.647 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49734 10 6870 1 2025-10-27 03:56:50.727 00:05:00.319 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 04:01:22.058 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50130 10 6870 1 2025-10-27 04:02:22.462 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:55958 10 6870 1 2025-10-27 04:03:33.873 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 04:03:33.849 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 04:03:33.881 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:03:22.864 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46430 10 6870 1 2025-10-27 04:03:34.074 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:03:34.156 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 03:59:50.726 00:05:00.325 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 04:04:23.270 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58106 10 6870 1 2025-10-27 04:05:23.668 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57950 10 6870 1 2025-10-27 04:06:24.099 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59666 10 6870 1 2025-10-27 04:02:50.729 00:05:00.322 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 04:07:24.498 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50926 10 6870 1 2025-10-27 04:08:33.804 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 04:08:33.724 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:08:33.845 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 04:08:33.892 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 04:08:33.744 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:08:24.867 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49910 10 6870 1 2025-10-27 04:09:25.281 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50804 10 6870 1 2025-10-27 04:05:50.728 00:05:00.326 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 04:10:25.689 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40764 10 6870 1 2025-10-27 04:11:26.115 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37542 10 6870 1 2025-10-27 04:12:26.479 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41000 10 6870 1 2025-10-27 04:08:50.731 00:05:00.321 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 04:13:34.011 00:00:00.033 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 04:13:34.075 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:13:34.117 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:13:34.064 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 04:13:34.201 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 04:13:26.882 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58842 10 6870 1 2025-10-27 04:14:27.287 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55912 10 6870 1 2025-10-27 04:15:27.651 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33960 10 6870 1 2025-10-27 04:11:50.729 00:05:00.327 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 04:16:28.072 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45814 10 6870 1 2025-10-27 04:17:28.477 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35090 10 6870 1 2025-10-27 04:18:34.068 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 04:18:33.774 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 04:18:33.816 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:18:33.976 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:18:34.060 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 04:18:28.880 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35990 10 6870 1 2025-10-27 04:14:50.733 00:05:00.321 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 04:19:29.289 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40264 10 6870 1 2025-10-27 04:20:29.653 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55360 10 6870 1 2025-10-27 04:21:30.066 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43688 10 6870 1 2025-10-27 04:17:50.732 00:05:00.325 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 04:22:30.469 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49554 10 6870 1 2025-10-27 04:23:34.256 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 04:23:34.175 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 04:23:33.985 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:23:34.187 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:23:34.270 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 04:23:30.871 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47860 10 6870 1 2025-10-27 04:24:31.279 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59102 10 6870 1 2025-10-27 04:20:50.735 00:05:00.321 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 04:25:31.680 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57602 10 6870 1 2025-10-27 04:26:32.127 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41466 10 6870 1 2025-10-27 04:27:32.531 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50884 10 6870 1 2025-10-27 04:23:50.733 00:05:00.331 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 04:28:34.095 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 04:28:34.167 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 04:28:34.134 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:28:34.260 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:28:34.342 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 04:28:32.932 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:37246 10 6870 1 2025-10-27 04:29:33.354 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38070 10 6870 1 2025-10-27 04:30:33.761 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47078 10 6870 1 2025-10-27 04:26:50.736 00:05:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 04:31:34.171 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41422 10 6870 1 2025-10-27 04:32:34.575 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47622 10 6870 1 2025-10-27 04:33:34.258 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 04:33:34.109 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 04:33:34.189 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:33:34.263 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:33:34.346 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 04:33:34.980 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:51942 10 6870 1 2025-10-27 04:29:50.735 00:05:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 04:34:35.351 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51646 10 6870 1 2025-10-27 04:35:35.761 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:39868 10 6870 1 2025-10-27 04:36:36.182 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47618 10 6870 1 2025-10-27 04:32:50.737 00:05:00.331 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 04:37:36.596 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:57950 10 6870 1 2025-10-27 04:38:34.306 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 04:38:34.311 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 04:38:34.246 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:38:34.393 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:38:34.475 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 04:38:36.959 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:44084 10 6870 1 2025-10-27 04:39:37.326 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53254 10 6870 1 2025-10-27 04:35:50.735 00:05:00.336 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 04:40:37.688 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:47950 11 6922 1 2025-10-27 04:41:38.158 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41770 10 6870 1 2025-10-27 04:42:38.560 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40752 10 6870 1 2025-10-27 04:38:50.737 00:05:00.331 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 04:43:34.577 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 04:43:34.488 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 04:43:34.375 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:43:34.534 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:43:34.616 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 04:43:38.965 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59544 10 6870 1 2025-10-27 04:44:39.367 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:56084 10 6870 1 2025-10-27 04:41:50.735 00:05:00.336 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 04:45:39.733 00:00:10.582 TCP 1.101.0.1:3000 -> 23.104.0.1:36878 10 6870 1 2025-10-27 04:46:40.369 00:00:10.460 TCP 1.101.0.1:3000 -> 23.104.0.1:60564 12 10375 1 2025-10-27 04:47:40.867 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:55204 10 6452 1 2025-10-27 04:48:34.592 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 04:48:34.587 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 04:48:34.428 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:48:34.667 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:48:34.751 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 04:44:50.742 00:05:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 04:48:41.237 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49442 10 6452 1 2025-10-27 04:49:41.643 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:32924 10 6452 1 2025-10-27 04:50:42.015 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:49406 10 6452 1 2025-10-27 04:47:50.742 00:05:00.331 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 04:51:42.380 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:53338 10 6452 1 2025-10-27 04:52:42.752 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:57712 10 6452 1 2025-10-27 04:53:34.788 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 04:53:34.658 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 04:53:34.671 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:53:34.731 00:00:00.018 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:53:34.813 00:00:00.019 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 04:53:43.148 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:51212 10 6452 1 2025-10-27 04:50:50.746 00:05:00.325 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 04:54:43.514 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:58098 10 6452 1 2025-10-27 04:55:43.874 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56538 10 6452 1 2025-10-27 04:56:44.274 00:00:10.765 TCP 1.101.0.1:3000 -> 23.104.0.1:55796 10 6452 1 2025-10-27 04:53:50.743 00:05:00.330 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 04:57:45.120 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46340 10 6452 1 2025-10-27 04:58:34.897 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 04:58:34.605 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 04:58:34.687 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 04:58:34.725 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:58:34.813 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 Summary: total flows: 139, total bytes: 434169, total packets: 1013, avg bps: 933, avg pps: 0, avg bpp: 428 Time window: 2025-10-27 03:56:50 - 2025-10-27 04:58:51 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0041s User: 0.0010s Wall: 0.0026s flows/second: 53649.4 Runtime: 0.0026s