Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-27 05:59:10.927 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:38964 10 6452 1 2025-10-27 06:00:11.348 00:00:17.186 TCP 1.101.0.1:3000 -> 23.104.0.1:43776 10 6452 1 2025-10-27 05:56:50.759 00:05:00.331 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 06:01:18.587 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46072 10 6452 1 2025-10-27 06:02:18.989 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54666 10 6452 1 2025-10-27 06:03:19.394 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42984 10 6452 1 2025-10-27 06:03:36.231 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 06:03:36.332 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 06:03:36.366 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 06:03:36.561 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 06:03:36.645 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 05:59:50.758 00:05:00.336 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 06:04:19.797 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56870 10 6452 1 2025-10-27 06:05:20.206 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35646 10 6452 1 2025-10-27 06:06:20.607 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:50770 12 10375 1 2025-10-27 06:02:50.762 00:05:00.331 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 06:07:21.116 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37204 10 6452 1 2025-10-27 06:08:21.518 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55952 10 6452 1 2025-10-27 06:08:36.192 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 06:08:35.975 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 06:08:36.235 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 06:08:36.278 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 06:08:36.110 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 06:09:21.927 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:50514 10 6452 1 2025-10-27 06:05:50.761 00:05:00.335 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 06:10:22.351 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46884 10 6452 1 2025-10-27 06:11:22.757 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60840 10 6452 1 2025-10-27 06:12:23.152 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47732 10 6452 1 2025-10-27 06:08:50.762 00:05:00.330 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 06:13:23.554 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:36076 10 6452 1 2025-10-27 06:13:36.426 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 06:13:36.203 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 06:13:36.340 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 06:13:36.059 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 06:13:36.343 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 06:14:23.918 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52076 10 6452 1 2025-10-27 06:15:24.320 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44414 10 6452 1 2025-10-27 06:11:50.761 00:05:00.334 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 06:16:24.722 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51328 10 6452 1 2025-10-27 06:17:25.128 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:32778 10 6452 1 2025-10-27 06:18:36.467 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 06:18:36.413 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 06:18:36.363 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 06:18:25.569 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35600 10 6452 1 2025-10-27 06:18:36.466 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 06:18:36.548 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 06:14:50.765 00:05:00.329 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 06:19:25.976 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:37926 10 6452 1 2025-10-27 06:20:26.394 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46650 10 6452 1 2025-10-27 06:21:26.790 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35176 10 6452 1 2025-10-27 06:17:50.763 00:05:00.334 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 06:22:27.196 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47484 10 6452 1 2025-10-27 06:23:36.467 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 06:23:36.478 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 06:23:36.545 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 06:23:27.596 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49838 10 6452 1 2025-10-27 06:23:36.433 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 06:23:36.383 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 06:24:28.002 00:00:10.354 TCP 1.101.0.1:3000 -> 23.104.0.1:38028 10 6452 1 2025-10-27 06:20:50.766 00:05:00.329 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 06:25:28.395 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47198 10 6452 1 2025-10-27 06:26:28.751 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:51590 10 6452 1 2025-10-27 06:27:29.149 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:44976 10 6452 1 2025-10-27 06:23:50.763 00:05:00.335 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 06:28:36.724 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 06:28:36.764 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 06:28:36.565 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 06:28:36.295 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 06:28:36.642 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 06:28:29.550 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:42294 10 6452 1 2025-10-27 06:29:29.906 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56132 10 6452 1 2025-10-27 06:30:30.314 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56880 10 6452 1 2025-10-27 06:26:50.767 00:05:00.329 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 06:31:30.715 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:41860 10 6452 1 2025-10-27 06:32:31.134 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38620 10 6452 1 2025-10-27 06:33:36.813 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 06:33:36.837 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 06:33:36.835 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 06:33:36.505 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 06:33:36.730 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 06:33:31.540 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:52858 10 6452 1 2025-10-27 06:29:50.768 00:05:00.330 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 06:34:31.903 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47260 12 6556 1 2025-10-27 06:35:32.311 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42292 10 6452 1 2025-10-27 06:36:32.711 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:55596 10 6452 1 2025-10-27 06:32:50.770 00:05:00.326 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 06:37:33.160 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:33064 10 6452 1 2025-10-27 06:38:36.745 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 06:38:36.669 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 06:38:36.666 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 06:38:36.787 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 06:38:36.663 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 06:38:33.530 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44640 10 6452 1 2025-10-27 06:39:33.942 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:55188 10 6452 1 2025-10-27 06:35:50.770 00:05:00.331 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 06:40:34.359 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34396 10 6452 1 2025-10-27 06:41:34.766 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53916 10 6452 1 2025-10-27 06:42:35.176 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55692 10 6452 1 2025-10-27 06:38:50.771 00:05:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 06:43:37.201 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 06:43:36.972 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 06:43:37.080 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 06:43:37.118 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 06:43:37.121 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 06:43:35.584 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:37738 10 6452 1 2025-10-27 06:44:35.951 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44392 10 6452 1 2025-10-27 06:45:36.359 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:53364 10 6452 1 2025-10-27 06:41:50.769 00:05:00.334 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 06:46:36.716 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:58362 10 6452 1 2025-10-27 06:47:37.140 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:47148 10 6452 1 2025-10-27 06:48:37.333 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 06:48:37.190 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 06:48:36.964 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 06:48:37.251 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 06:48:37.333 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 06:48:37.540 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:40400 10 6452 1 2025-10-27 06:44:50.774 00:05:00.328 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 06:49:37.942 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:43550 10 6452 1 2025-10-27 06:50:38.360 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:49310 10 6452 1 2025-10-27 06:51:38.726 00:00:10.797 TCP 1.101.0.1:3000 -> 23.104.0.1:34078 12 10369 1 2025-10-27 06:47:50.771 00:05:00.334 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 06:52:39.553 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:39562 10 6452 1 2025-10-27 06:53:37.196 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 06:53:37.140 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 06:53:36.867 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 06:53:36.942 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 06:53:37.026 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 06:53:39.918 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35676 10 6452 1 2025-10-27 06:50:50.773 00:05:00.330 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 06:54:40.320 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37630 10 6452 1 2025-10-27 06:55:40.724 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39772 10 6452 1 2025-10-27 06:56:41.140 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60978 10 6452 1 2025-10-27 06:53:50.779 00:05:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 06:57:41.537 00:00:10.473 TCP 1.101.0.1:3000 -> 23.104.0.1:52436 10 6452 1 2025-10-27 06:58:38.189 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 06:58:38.269 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 06:58:38.089 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 06:58:38.088 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 06:58:38.172 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 139, total bytes: 418492, total packets: 1016, avg bps: 899, avg pps: 0, avg bpp: 411 Time window: 2025-10-27 05:56:50 - 2025-10-27 06:58:51 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0070s User: 0.0000s Wall: 0.0021s flows/second: 66003.4 Runtime: 0.0021s