Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-27 08:58:39.736 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:32976 10 6452 1 2025-10-27 08:59:40.152 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43072 10 6452 1 2025-10-27 08:56:50.820 00:05:00.348 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 09:00:40.552 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34334 10 6452 1 2025-10-27 09:01:40.961 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42010 10 6452 1 2025-10-27 09:02:41.364 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53288 10 6452 1 2025-10-27 09:03:39.870 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 09:03:39.878 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 09:03:39.585 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 09:03:39.869 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 09:03:39.953 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 09:03:41.762 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43708 10 6452 1 2025-10-27 08:59:50.820 00:05:00.352 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 09:04:42.164 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41228 10 6452 1 2025-10-27 09:05:42.570 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37458 10 6452 1 2025-10-27 09:02:50.822 00:05:00.349 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 09:06:42.974 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41072 10 6452 1 2025-10-27 09:07:43.375 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:34572 10 6452 1 2025-10-27 09:08:39.968 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 09:08:39.534 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 09:08:40.170 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 09:08:40.164 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 09:08:40.087 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 09:08:43.775 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36302 10 6452 1 2025-10-27 09:09:44.186 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:51554 10 6452 1 2025-10-27 09:05:50.821 00:05:00.354 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 09:10:44.569 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55716 10 6452 1 2025-10-27 09:11:44.979 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:37696 10 6452 1 2025-10-27 09:08:50.824 00:05:00.351 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 09:12:45.395 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49280 10 6452 1 2025-10-27 09:13:39.835 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 09:13:39.853 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 09:13:39.990 00:00:00.054 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 09:13:40.072 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 09:13:40.155 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 09:13:45.761 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:60632 10 6452 1 2025-10-27 09:14:46.143 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34242 10 6452 1 2025-10-27 09:11:50.822 00:05:00.356 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 09:15:46.545 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:42316 10 6452 1 2025-10-27 09:16:46.906 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46172 12 6556 1 2025-10-27 09:17:47.321 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41962 10 6452 1 2025-10-27 09:18:40.097 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 09:18:40.184 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 09:18:40.306 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 09:18:40.260 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 09:18:40.343 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 09:14:50.827 00:05:00.350 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 09:18:47.723 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:56316 10 6452 1 2025-10-27 09:19:48.148 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45552 10 6452 1 2025-10-27 09:20:48.509 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:42460 10 6452 1 2025-10-27 09:17:50.824 00:05:00.355 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 09:21:48.987 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60260 10 6452 1 2025-10-27 09:22:49.392 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55046 10 6452 1 2025-10-27 09:23:40.930 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 09:23:40.833 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 09:23:40.762 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 09:23:40.497 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 09:23:40.847 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 09:23:49.797 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33404 10 6452 1 2025-10-27 09:20:50.828 00:05:00.352 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 09:24:50.202 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45280 10 6452 1 2025-10-27 09:25:50.612 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:43172 10 6452 1 2025-10-27 09:26:51.025 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42128 10 6452 1 2025-10-27 09:23:50.826 00:05:00.356 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 09:27:51.429 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34662 10 6452 1 2025-10-27 09:28:40.358 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 09:28:40.227 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 09:28:40.181 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 09:28:40.275 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 09:28:40.274 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 09:28:51.835 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38344 10 6452 1 2025-10-27 09:29:52.241 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60094 10 6452 1 2025-10-27 09:26:50.831 00:05:00.349 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 09:30:52.646 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:37166 10 6452 1 2025-10-27 09:31:53.009 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40244 10 6452 1 2025-10-27 09:32:53.409 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45890 10 6452 1 2025-10-27 09:33:40.277 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 09:33:40.447 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 09:33:40.430 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 09:33:40.282 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 09:33:40.520 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 09:29:50.830 00:05:00.353 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 09:33:53.812 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50890 10 6452 1 2025-10-27 09:34:54.211 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39268 10 6452 1 2025-10-27 09:35:54.613 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53872 10 6452 1 2025-10-27 09:32:50.834 00:05:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 09:36:55.021 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48170 10 6452 1 2025-10-27 09:37:55.423 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35268 10 6452 1 2025-10-27 09:38:40.496 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 09:38:40.251 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 09:38:40.280 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 09:38:40.414 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 09:38:40.328 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 09:38:55.825 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45362 10 6452 1 2025-10-27 09:35:50.831 00:05:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 09:39:56.193 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48556 10 6452 1 2025-10-27 09:40:56.588 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56906 10 6452 1 2025-10-27 09:41:56.990 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47130 10 6452 1 2025-10-27 09:38:50.836 00:05:00.358 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 09:42:57.398 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50632 10 6452 1 2025-10-27 09:43:40.590 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 09:43:40.543 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 09:43:40.671 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 09:43:40.607 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 09:43:40.672 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 09:43:57.804 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51266 10 6452 1 2025-10-27 09:44:58.239 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43574 10 6452 1 2025-10-27 09:41:50.836 00:05:00.364 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 09:45:58.640 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48362 10 6452 1 2025-10-27 09:46:59.066 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48594 10 6452 1 2025-10-27 09:47:59.471 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42904 10 6452 1 2025-10-27 09:48:40.635 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 09:48:40.688 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 09:48:40.552 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 09:48:40.403 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 09:48:40.553 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 09:44:50.845 00:05:00.351 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 09:48:59.878 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:45568 10 6452 1 2025-10-27 09:50:00.248 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:55060 10 6452 1 2025-10-27 09:51:00.605 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:56374 10 6452 1 2025-10-27 09:47:50.842 00:05:00.357 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 09:52:00.967 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57264 10 6452 1 2025-10-27 09:53:01.365 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55898 10 6452 1 2025-10-27 09:53:41.207 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 09:53:41.125 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 09:53:40.987 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 09:53:41.049 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 09:53:41.124 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 09:54:01.723 00:00:11.069 TCP 1.101.0.1:3000 -> 23.104.0.1:54900 10 6452 1 2025-10-27 09:50:50.847 00:05:00.350 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 09:55:02.829 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45336 10 6452 1 2025-10-27 09:56:03.229 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60944 10 6452 1 2025-10-27 09:57:03.628 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46340 10 6452 1 2025-10-27 09:53:50.845 00:05:00.354 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 09:58:04.026 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34556 10 6452 1 2025-10-27 09:58:41.122 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 09:58:40.839 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 09:58:40.704 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 09:58:40.998 00:00:00.035 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 09:58:41.081 00:00:00.035 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 140, total bytes: 417104, total packets: 1022, avg bps: 896, avg pps: 0, avg bpp: 408 Time window: 2025-10-27 08:56:50 - 2025-10-27 09:58:51 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0049s User: 0.0010s Wall: 0.0026s flows/second: 53092.5 Runtime: 0.0027s