Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-27 13:58:47.621 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58442 10 6452 1 2025-10-27 13:59:48.023 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33326 10 6452 1 2025-10-27 13:56:50.913 00:05:00.366 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 14:00:48.420 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:57462 10 6452 1 2025-10-27 14:01:48.780 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33044 10 6452 1 2025-10-27 14:02:49.187 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59608 10 6452 1 2025-10-27 14:03:45.760 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 14:03:45.764 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 14:03:45.627 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 14:03:45.599 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 14:03:45.681 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 13:59:50.910 00:05:00.373 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 14:03:49.588 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51982 10 6452 1 2025-10-27 14:04:49.993 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41690 10 6452 1 2025-10-27 14:05:50.395 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34018 10 6452 1 2025-10-27 14:02:50.914 00:05:00.367 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 14:06:50.806 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35106 10 6452 1 2025-10-27 14:07:51.213 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50148 10 6452 1 2025-10-27 14:08:45.902 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 14:08:45.818 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 14:08:45.817 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 14:08:45.687 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 14:08:45.819 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 14:08:51.617 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42506 10 6452 1 2025-10-27 14:05:50.913 00:05:00.374 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 14:09:52.027 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56910 10 6452 1 2025-10-27 14:10:52.437 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46372 10 6452 1 2025-10-27 14:11:52.840 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:50528 11 6504 1 2025-10-27 14:08:50.915 00:05:00.370 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 14:12:53.327 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51654 10 6452 1 2025-10-27 14:13:46.201 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 14:13:46.116 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 14:13:46.068 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 14:13:45.963 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 14:13:46.119 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 14:13:53.739 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36426 10 6452 1 2025-10-27 14:14:54.107 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37084 10 6452 1 2025-10-27 14:11:50.914 00:05:00.375 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 14:15:54.515 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37314 12 6556 1 2025-10-27 14:16:54.917 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59332 10 6452 1 2025-10-27 14:17:55.329 00:00:10.501 TCP 1.101.0.1:3000 -> 23.104.0.1:49814 10 6452 1 2025-10-27 14:18:46.172 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 14:18:46.098 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 14:18:45.996 00:00:00.048 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 14:18:46.133 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 14:18:46.090 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 14:14:50.916 00:05:00.370 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 14:18:55.870 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36440 10 6452 1 2025-10-27 14:19:56.275 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46174 10 6452 1 2025-10-27 14:20:56.683 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34726 10 6452 1 2025-10-27 14:17:50.915 00:05:00.375 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 14:21:57.105 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36626 10 6452 1 2025-10-27 14:22:57.509 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53558 10 6452 1 2025-10-27 14:23:46.048 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 14:23:46.049 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 14:23:46.062 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 14:23:46.209 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 14:23:46.292 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 14:23:57.914 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59212 10 6452 1 2025-10-27 14:20:50.918 00:05:00.370 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 14:24:58.322 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38762 10 6452 1 2025-10-27 14:25:58.728 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58512 10 6452 1 2025-10-27 14:26:59.138 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34882 10 6452 1 2025-10-27 14:23:50.917 00:05:00.375 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 14:27:59.537 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52106 10 6452 1 2025-10-27 14:28:46.348 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 14:28:46.150 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 14:28:46.294 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 14:28:46.385 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 14:28:46.376 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 14:28:59.939 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:44808 10 6452 1 2025-10-27 14:30:00.365 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52664 10 6452 1 2025-10-27 14:26:50.919 00:05:00.370 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 14:31:00.765 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58830 10 6452 1 2025-10-27 14:32:01.178 00:00:10.859 TCP 1.101.0.1:3000 -> 23.104.0.1:59966 12 10369 1 2025-10-27 14:33:02.108 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52598 10 6452 1 2025-10-27 14:33:46.398 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 14:33:46.317 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 14:33:46.336 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 14:33:46.040 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 14:33:46.282 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 14:29:50.918 00:05:00.375 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 14:34:02.508 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43000 10 6452 1 2025-10-27 14:35:02.913 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34068 10 6452 1 2025-10-27 14:36:03.318 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49370 10 6452 1 2025-10-27 14:32:50.921 00:05:00.370 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 14:37:03.686 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:52774 10 6452 1 2025-10-27 14:38:04.111 00:00:15.600 TCP 1.101.0.1:3000 -> 23.104.0.1:48770 10 6452 1 2025-10-27 14:38:46.471 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 14:38:46.381 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 14:38:46.378 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 14:38:46.305 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 14:38:46.390 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 14:39:09.762 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43990 10 6452 1 2025-10-27 14:35:50.919 00:05:00.380 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 14:40:10.169 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55618 10 6452 1 2025-10-27 14:41:10.567 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57698 10 6452 1 2025-10-27 14:42:10.975 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33168 10 6452 1 2025-10-27 14:38:50.922 00:05:00.374 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 14:43:11.336 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:40752 10 6452 1 2025-10-27 14:43:46.531 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 14:43:46.446 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 14:43:46.265 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 14:43:46.590 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 14:43:46.672 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 14:44:11.708 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:55752 10 6452 1 2025-10-27 14:45:12.102 00:00:11.497 TCP 1.101.0.1:3000 -> 23.104.0.1:59182 10 6452 1 2025-10-27 14:41:50.920 00:05:00.379 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 14:46:13.636 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36996 10 6452 1 2025-10-27 14:47:14.050 00:00:14.549 TCP 1.101.0.1:3000 -> 23.104.0.1:36122 10 6452 1 2025-10-27 14:48:18.639 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33472 10 6452 1 2025-10-27 14:48:46.803 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 14:48:46.772 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 14:48:46.812 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 14:48:46.472 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 14:48:46.720 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 14:44:50.923 00:05:00.375 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 14:49:19.037 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54878 10 6452 1 2025-10-27 14:50:19.444 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45700 10 6452 1 2025-10-27 14:51:19.846 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:58820 10 6452 1 2025-10-27 14:47:50.922 00:05:00.379 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 14:52:20.274 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:37262 10 6452 1 2025-10-27 14:53:20.668 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38278 10 6452 1 2025-10-27 14:53:46.852 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 14:53:46.768 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 14:53:46.692 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 14:53:46.764 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 14:53:46.771 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 14:54:21.102 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45690 10 6452 1 2025-10-27 14:50:50.924 00:05:00.374 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 14:55:21.501 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56694 10 6452 1 2025-10-27 14:56:21.906 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:49142 12 10369 1 2025-10-27 14:57:22.340 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50858 10 6452 1 2025-10-27 14:53:50.921 00:05:00.381 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 14:58:22.747 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57356 10 6452 1 2025-10-27 14:58:46.769 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 14:58:47.215 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 14:58:46.896 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 14:58:46.768 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 14:58:46.852 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 140, total bytes: 424990, total packets: 1027, avg bps: 913, avg pps: 0, avg bpp: 413 Time window: 2025-10-27 13:56:50 - 2025-10-27 14:58:51 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0037s User: 0.0019s Wall: 0.0023s flows/second: 61377.9 Runtime: 0.0023s