Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-27 06:58:42.062 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52540 10 6452 1 2025-10-27 06:59:42.462 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38602 10 6452 1 2025-10-27 06:56:50.783 00:05:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 07:00:42.859 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:60900 10 6452 1 2025-10-27 07:01:43.286 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56128 10 6452 1 2025-10-27 07:02:43.690 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36874 10 6452 1 2025-10-27 07:03:37.331 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 07:03:37.219 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 07:03:37.336 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 07:03:37.105 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 07:03:37.415 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 06:59:50.781 00:05:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 07:03:44.108 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56542 10 6452 1 2025-10-27 07:04:44.513 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54030 10 6452 1 2025-10-27 07:05:44.877 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51982 10 6452 1 2025-10-27 07:02:50.785 00:05:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 07:06:45.281 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50484 10 6452 1 2025-10-27 07:07:45.686 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47500 10 6452 1 2025-10-27 07:08:37.499 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 07:08:37.381 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 07:08:37.333 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 07:08:37.377 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 07:08:37.460 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 07:08:46.108 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:38248 10 6452 1 2025-10-27 07:05:50.783 00:05:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 07:09:46.472 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47760 10 6452 1 2025-10-27 07:10:46.881 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38120 10 6452 1 2025-10-27 07:11:47.283 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39848 10 6452 1 2025-10-27 07:08:50.786 00:05:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 07:12:47.690 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36194 10 6452 1 2025-10-27 07:13:37.425 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 07:13:37.431 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 07:13:37.328 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 07:13:37.501 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 07:13:37.412 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 07:13:48.104 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53336 10 6452 1 2025-10-27 07:14:48.513 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42816 10 6452 1 2025-10-27 07:11:50.785 00:05:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 07:15:48.910 00:00:10.538 TCP 1.101.0.1:3000 -> 23.104.0.1:46396 10 6452 1 2025-10-27 07:16:49.505 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:50934 10 6452 1 2025-10-27 07:17:49.870 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34584 10 6452 1 2025-10-27 07:18:37.502 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 07:18:37.573 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 07:18:37.683 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 07:18:37.629 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 07:18:37.711 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 07:14:50.787 00:05:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 07:18:50.285 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50754 10 6452 1 2025-10-27 07:19:50.687 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38400 10 6452 1 2025-10-27 07:20:51.110 00:00:19.193 TCP 1.101.0.1:3000 -> 23.104.0.1:36468 10 6452 1 2025-10-27 07:17:50.786 00:05:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 07:22:00.361 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34912 10 6452 1 2025-10-27 07:23:00.762 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:43218 10 6452 1 2025-10-27 07:23:37.794 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 07:23:37.901 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 07:23:37.728 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 07:23:37.587 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 07:23:37.671 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 07:24:01.141 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45568 10 6452 1 2025-10-27 07:20:50.791 00:05:00.326 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 07:25:01.549 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59318 10 6452 1 2025-10-27 07:26:01.956 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33712 10 6452 1 2025-10-27 07:27:02.357 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59234 10 6452 1 2025-10-27 07:23:50.792 00:05:00.329 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 07:28:02.718 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:53178 10 6452 1 2025-10-27 07:28:37.821 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 07:28:37.815 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 07:28:37.476 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 07:28:37.823 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 07:28:37.907 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 07:29:03.110 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40318 10 6452 1 2025-10-27 07:30:03.519 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:50670 10 6452 1 2025-10-27 07:26:50.795 00:05:00.322 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 07:31:03.882 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40126 12 6556 1 2025-10-27 07:32:04.298 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45530 10 6452 1 2025-10-27 07:33:04.700 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:60600 10 6452 1 2025-10-27 07:33:37.831 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 07:33:37.971 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 07:33:37.911 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 07:33:37.973 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 07:33:38.056 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 07:29:50.794 00:05:00.336 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 07:34:05.078 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59188 10 6452 1 2025-10-27 07:35:05.483 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51012 10 6452 1 2025-10-27 07:36:05.880 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:46786 10 6452 1 2025-10-27 07:32:50.796 00:05:00.331 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 07:37:06.308 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46598 10 6452 1 2025-10-27 07:38:06.710 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41876 10 6452 1 2025-10-27 07:38:37.886 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 07:38:38.081 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 07:38:37.900 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 07:38:37.957 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 07:38:38.041 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 07:39:07.118 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48568 10 6452 1 2025-10-27 07:35:50.796 00:05:00.335 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 07:40:07.522 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43474 10 6452 1 2025-10-27 07:41:07.929 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:51082 10 6452 1 2025-10-27 07:42:08.350 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:48358 10 6452 1 2025-10-27 07:38:50.800 00:05:00.330 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 07:43:08.749 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57746 10 6452 1 2025-10-27 07:43:38.786 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 07:43:38.542 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 07:43:38.835 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 07:43:38.686 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 07:43:38.920 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 07:44:09.151 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36594 10 6452 1 2025-10-27 07:45:09.555 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54000 10 6452 1 2025-10-27 07:41:50.799 00:05:00.335 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 07:46:09.969 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:44394 10 6452 1 2025-10-27 07:47:10.378 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35196 10 6452 1 2025-10-27 07:48:10.782 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51396 10 6452 1 2025-10-27 07:48:38.208 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 07:48:38.203 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 07:48:38.133 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 07:48:38.194 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 07:48:38.278 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 07:44:50.801 00:05:00.342 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 07:49:11.210 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58098 10 6452 1 2025-10-27 07:50:11.615 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:48224 10 6452 1 2025-10-27 07:51:11.978 00:00:10.668 TCP 1.101.0.1:3000 -> 23.104.0.1:49464 10 6452 1 2025-10-27 07:47:50.801 00:05:00.348 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 07:52:12.682 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55430 10 6452 1 2025-10-27 07:53:13.064 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57868 10 6452 1 2025-10-27 07:53:38.430 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 07:53:38.147 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 07:53:38.085 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 07:53:38.472 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 07:53:38.556 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 07:54:13.472 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:42438 10 6452 1 2025-10-27 07:50:50.805 00:05:00.341 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 07:55:13.865 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35650 10 6452 1 2025-10-27 07:56:14.282 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:43524 10 6452 1 2025-10-27 07:57:14.641 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49136 10 6452 1 2025-10-27 07:53:50.803 00:05:00.347 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 07:58:15.055 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38830 10 6452 1 2025-10-27 07:58:38.548 00:00:00.034 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 07:58:38.549 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 07:58:38.456 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 07:58:38.426 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 07:58:38.465 00:00:00.033 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 Summary: total flows: 140, total bytes: 417104, total packets: 1022, avg bps: 896, avg pps: 0, avg bpp: 408 Time window: 2025-10-27 06:56:50 - 2025-10-27 07:58:51 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0042s User: 0.0008s Wall: 0.0022s flows/second: 62282.8 Runtime: 0.0023s