Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-01 02:59:08.112 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39584 10 6452 1 2025-10-01 02:54:37.392 00:06:00.174 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 03:00:08.516 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40226 10 6452 1 2025-10-01 03:01:01.578 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 03:01:01.786 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 03:01:01.246 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 03:01:01.496 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 03:01:01.742 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 03:01:08.924 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53576 10 6452 1 2025-10-01 03:02:09.334 00:00:10.762 TCP 1.101.0.1:3000 -> 23.104.0.1:33972 10 6452 1 2025-10-01 03:03:10.134 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33450 10 6452 1 2025-10-01 03:04:10.498 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58834 10 6452 1 2025-10-01 03:05:10.901 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:33384 10 6452 1 2025-10-01 03:00:37.390 00:06:00.182 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 03:06:01.269 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 03:06:01.298 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 03:06:01.179 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 03:06:01.277 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 03:06:01.262 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 03:06:11.268 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57118 10 6452 1 2025-10-01 03:01:37.394 00:06:00.174 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 03:07:11.631 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53372 10 6452 1 2025-10-01 03:08:12.034 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36540 10 6452 1 2025-10-01 03:09:12.443 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43956 10 6452 1 2025-10-01 03:10:12.848 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:38772 10 6452 1 2025-10-01 03:11:01.539 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 03:11:01.459 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 03:11:01.313 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 03:11:01.456 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 03:11:01.406 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 03:11:13.271 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39908 10 6452 1 2025-10-01 03:12:13.677 00:00:10.626 TCP 1.101.0.1:3000 -> 23.104.0.1:46268 12 6556 1 2025-10-01 03:07:37.393 00:06:00.179 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 03:13:14.360 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:43644 10 6452 1 2025-10-01 03:08:37.394 00:06:00.175 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 03:14:14.779 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:33402 10 6452 1 2025-10-01 03:15:15.162 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48142 10 6452 1 2025-10-01 03:16:01.352 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 03:16:01.383 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 03:16:01.276 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 03:16:01.483 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 03:16:01.359 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 03:16:15.566 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36292 10 6452 1 2025-10-01 03:17:15.929 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:48930 10 6452 1 2025-10-01 03:18:16.351 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49238 10 6452 1 2025-10-01 03:19:16.757 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47036 10 6452 1 2025-10-01 03:14:37.392 00:06:00.180 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 03:20:17.173 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42364 10 6452 1 2025-10-01 03:15:37.397 00:06:00.174 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 03:21:01.681 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 03:21:01.510 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 03:21:01.491 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 03:21:01.797 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 03:21:01.574 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 03:21:17.572 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53482 10 6452 1 2025-10-01 03:22:17.974 00:00:10.975 TCP 1.101.0.1:3000 -> 23.104.0.1:49658 10 6452 1 2025-10-01 03:23:18.990 00:00:10.568 TCP 1.101.0.1:3000 -> 23.104.0.1:55174 10 6452 1 2025-10-01 03:24:19.598 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49896 10 6452 1 2025-10-01 03:25:19.999 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36958 10 6452 1 2025-10-01 03:26:01.588 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 03:26:01.552 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 03:26:01.778 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 03:26:01.666 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 03:26:01.860 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 03:26:20.410 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57190 10 6452 1 2025-10-01 03:21:37.395 00:06:00.178 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 03:27:20.817 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:37910 10 6452 1 2025-10-01 03:22:37.398 00:06:00.174 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 03:28:21.192 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49908 10 6452 1 2025-10-01 03:29:21.594 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43702 10 6452 1 2025-10-01 03:30:21.995 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41118 10 6452 1 2025-10-01 03:31:01.867 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 03:31:01.618 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 03:31:01.660 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 03:31:01.784 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 03:31:01.838 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 03:31:22.406 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45244 10 6452 1 2025-10-01 03:32:22.810 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50776 10 6452 1 2025-10-01 03:33:23.213 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:45662 10 6452 1 2025-10-01 03:28:37.402 00:06:00.173 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 03:34:23.647 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:32900 10 6452 1 2025-10-01 03:29:37.402 00:06:00.172 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 03:35:24.059 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46680 10 6452 1 2025-10-01 03:36:01.976 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 03:36:01.780 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 03:36:01.499 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 03:36:01.894 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 03:36:01.848 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 03:36:24.465 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36384 10 6452 1 2025-10-01 03:37:24.867 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:58088 10 6452 1 2025-10-01 03:38:25.279 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34662 10 6452 1 2025-10-01 03:39:25.684 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43106 10 6452 1 2025-10-01 03:35:37.401 00:06:00.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 03:40:26.108 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52382 10 6452 1 2025-10-01 03:41:01.987 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 03:41:01.958 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 03:41:01.758 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 03:41:01.904 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 03:41:01.622 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 03:41:26.519 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43582 10 6452 1 2025-10-01 03:36:37.404 00:06:00.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 03:42:26.922 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:57702 10 6452 1 2025-10-01 03:43:27.346 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45970 10 6452 1 2025-10-01 03:44:27.758 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60058 10 6452 1 2025-10-01 03:45:28.173 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46386 10 6452 1 2025-10-01 03:46:01.970 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 03:46:01.783 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 03:46:01.984 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 03:46:02.644 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 03:46:02.066 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 03:46:28.579 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54320 10 6452 1 2025-10-01 03:47:28.981 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60300 10 6452 1 2025-10-01 03:42:37.402 00:06:00.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 03:48:29.388 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47326 10 6452 1 2025-10-01 03:43:37.406 00:06:00.170 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 03:49:29.745 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46226 10 6452 1 2025-10-01 03:50:30.150 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:56122 10 6452 1 2025-10-01 03:51:02.272 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 03:51:02.192 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 03:51:01.855 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 03:51:02.189 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 03:51:02.185 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 03:51:30.514 00:00:10.529 TCP 1.101.0.1:3000 -> 23.104.0.1:60276 10 6452 1 2025-10-01 03:52:31.098 00:00:10.470 TCP 1.101.0.1:3000 -> 23.104.0.1:42314 14 14292 1 2025-10-01 03:53:31.608 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41154 10 6452 1 2025-10-01 03:49:37.403 00:06:00.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 03:54:32.009 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:54580 10 6452 1 2025-10-01 03:50:37.406 00:06:00.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 03:55:32.377 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35782 10 6452 1 2025-10-01 03:56:02.348 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 03:56:02.305 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 03:56:02.342 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 03:56:02.168 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 03:56:02.425 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 03:56:32.780 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49290 10 6452 1 2025-10-01 03:57:33.194 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60176 10 6452 1 2025-10-01 03:58:33.602 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:45456 10 6452 1 Summary: total flows: 137, total bytes: 424821, total packets: 1024, avg bps: 883, avg pps: 0, avg bpp: 414 Time window: 2025-10-01 02:54:37 - 2025-10-01 03:58:43 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0049s User: 0.0010s Wall: 0.0020s flows/second: 67018.9 Runtime: 0.0021s