Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-31 04:59:04.833 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57556 10 6452 1 2025-10-31 04:55:52.674 00:05:00.421 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 05:00:05.235 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55170 10 6452 1 2025-10-31 05:00:30.379 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 05:00:30.296 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 05:00:30.173 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 05:00:30.180 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 05:00:30.115 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 05:01:05.642 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42066 12 6556 1 2025-10-31 04:57:52.680 00:05:00.413 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 05:02:06.050 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51716 10 6452 1 2025-10-31 05:03:06.482 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56094 10 6452 1 2025-10-31 05:04:06.884 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:56604 12 6556 1 2025-10-31 05:05:07.307 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:44072 10 6452 1 2025-10-31 05:05:30.464 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 05:05:30.383 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 05:05:30.464 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 05:05:30.515 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 05:05:30.598 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 05:01:52.676 00:05:00.421 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 05:06:07.667 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:56480 10 6452 1 2025-10-31 05:07:08.026 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51328 10 6452 1 2025-10-31 05:03:52.681 00:05:00.414 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 05:08:08.428 00:00:16.431 TCP 1.101.0.1:3000 -> 23.104.0.1:57380 10 6452 1 2025-10-31 05:09:14.897 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:34814 10 6452 1 2025-10-31 05:10:15.309 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51988 10 6452 1 2025-10-31 05:10:30.730 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 05:10:30.720 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 05:10:30.914 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 05:10:30.478 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 05:10:30.647 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 05:11:15.709 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41668 10 6452 1 2025-10-31 05:07:52.683 00:05:00.416 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 05:12:16.116 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53472 10 6452 1 2025-10-31 05:13:16.522 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57136 10 6452 1 2025-10-31 05:09:52.685 00:05:00.412 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 05:14:16.927 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:37286 10 6452 1 2025-10-31 05:15:17.350 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55522 10 6452 1 2025-10-31 05:15:30.668 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 05:15:30.576 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 05:15:30.375 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 05:15:30.524 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 05:15:30.586 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 05:16:17.752 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:41100 10 6452 1 2025-10-31 05:17:18.167 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54494 10 6452 1 2025-10-31 05:13:52.684 00:05:00.417 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 05:18:18.569 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54436 10 6452 1 2025-10-31 05:19:18.981 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38902 10 6452 1 2025-10-31 05:15:52.686 00:05:00.412 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 05:20:19.395 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39276 10 6452 1 2025-10-31 05:20:30.595 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 05:20:30.693 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 05:20:30.810 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 05:20:30.579 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 05:20:30.678 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 05:21:19.799 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55530 10 6452 1 2025-10-31 05:22:20.204 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:40524 10 6452 1 2025-10-31 05:23:20.574 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:60970 10 6452 1 2025-10-31 05:19:52.684 00:05:00.418 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 05:24:20.995 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:37026 10 6452 1 2025-10-31 05:25:30.772 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 05:25:30.837 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 05:25:30.918 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 05:25:21.406 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59350 10 6452 1 2025-10-31 05:25:30.825 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 05:25:31.002 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 05:21:52.687 00:05:00.412 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 05:26:21.811 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:48406 10 6452 1 2025-10-31 05:27:22.193 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:36248 10 6452 1 2025-10-31 05:28:22.557 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:52826 10 6452 1 2025-10-31 05:29:22.987 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48216 10 6452 1 2025-10-31 05:25:52.686 00:05:00.417 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 05:30:30.928 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 05:30:30.975 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 05:30:30.720 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 05:30:23.393 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49628 10 6452 1 2025-10-31 05:30:31.044 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 05:30:31.127 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 05:31:23.792 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45508 10 6452 1 2025-10-31 05:27:52.688 00:05:00.412 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 05:32:24.193 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50978 10 6452 1 2025-10-31 05:33:24.549 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55372 10 6452 1 2025-10-31 05:34:24.957 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44238 10 6452 1 2025-10-31 05:35:31.195 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 05:35:30.944 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 05:35:30.970 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 05:35:30.845 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 05:35:30.929 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 05:35:25.363 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59056 10 6452 1 2025-10-31 05:31:52.686 00:05:00.417 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 05:36:25.763 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:54282 10 6452 1 2025-10-31 05:37:26.137 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41308 10 6452 1 2025-10-31 05:33:52.690 00:05:00.412 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 05:38:26.541 00:00:10.415 TCP 1.101.0.1:3000 -> 23.104.0.1:48846 11 6504 1 2025-10-31 05:39:26.994 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40704 10 6452 1 2025-10-31 05:40:31.188 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 05:40:31.111 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 05:40:31.107 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 05:40:31.191 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 05:40:31.105 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 05:40:27.402 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56912 10 6452 1 2025-10-31 05:41:27.804 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51072 10 6452 1 2025-10-31 05:37:52.689 00:05:00.417 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 05:42:28.210 00:00:10.806 TCP 1.101.0.1:3000 -> 23.104.0.1:43622 10 6452 1 2025-10-31 05:43:29.063 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59404 10 6452 1 2025-10-31 05:39:52.691 00:05:00.412 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 05:44:29.477 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:41914 10 6452 1 2025-10-31 05:45:31.707 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 05:45:31.563 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 05:45:30.939 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 05:45:31.682 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 05:45:31.765 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 05:45:29.916 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41084 10 6452 1 2025-10-31 05:46:30.319 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34118 10 6452 1 2025-10-31 05:47:30.722 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:60946 10 6452 1 2025-10-31 05:43:52.689 00:05:00.417 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 05:48:31.142 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37026 10 6452 1 2025-10-31 05:49:31.547 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50730 10 6452 1 2025-10-31 05:45:52.693 00:05:00.411 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 05:50:31.315 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 05:50:31.235 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 05:50:31.155 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 05:50:31.232 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 05:50:31.315 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 05:50:31.944 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:42786 10 6452 1 2025-10-31 05:51:32.312 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33630 10 6452 1 2025-10-31 05:52:32.719 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:34094 10 6452 1 2025-10-31 05:53:33.136 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:46972 10 6452 1 2025-10-31 05:49:52.694 00:05:00.414 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 05:54:33.499 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41008 10 6452 1 2025-10-31 05:55:31.731 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 05:55:31.821 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 05:55:31.174 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 05:55:31.734 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 05:55:31.818 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 05:55:33.906 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47920 12 6556 1 2025-10-31 05:51:52.697 00:05:00.408 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 05:56:34.317 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:36448 10 6452 1 2025-10-31 05:57:34.686 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:52882 10 6452 1 2025-10-31 05:58:35.112 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40306 10 6452 1 Summary: total flows: 140, total bytes: 417364, total packets: 1027, avg bps: 884, avg pps: 0, avg bpp: 406 Time window: 2025-10-31 04:55:52 - 2025-10-31 05:58:45 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0045s User: 0.0018s Wall: 0.0023s flows/second: 61033.4 Runtime: 0.0023s