Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-02 02:59:18.438 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34012 10 6452 1 2025-10-02 03:00:18.836 00:00:10.492 TCP 1.101.0.1:3000 -> 23.104.0.1:45440 10 6452 1 2025-10-02 03:01:30.277 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 03:01:30.162 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 03:01:30.172 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 03:01:30.195 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 03:01:29.952 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 03:01:19.384 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56288 10 6452 1 2025-10-02 02:57:37.815 00:05:00.293 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-02 03:02:19.783 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:59314 10 6452 1 2025-10-02 03:03:20.180 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:56846 10 6452 1 2025-10-02 02:59:37.818 00:05:00.288 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-02 03:04:20.578 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:43444 10 6452 1 2025-10-02 03:05:21.006 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55808 10 6452 1 2025-10-02 03:06:30.562 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 03:06:30.522 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 03:06:30.492 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 03:06:30.564 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 03:06:30.575 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 03:06:21.412 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48772 10 6452 1 2025-10-02 03:07:21.824 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47380 10 6452 1 2025-10-02 03:03:37.817 00:05:00.293 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-02 03:08:22.228 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55082 10 6452 1 2025-10-02 03:09:22.637 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51942 10 6452 1 2025-10-02 03:05:37.820 00:05:00.287 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-02 03:10:23.050 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35376 10 6452 1 2025-10-02 03:11:30.231 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 03:11:30.242 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 03:11:30.234 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 03:11:30.362 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 03:11:30.317 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 03:11:23.453 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40334 10 6452 1 2025-10-02 03:12:23.858 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:45010 10 6452 1 2025-10-02 03:13:24.275 00:00:10.490 TCP 1.101.0.1:3000 -> 23.104.0.1:47650 13 10427 1 2025-10-02 03:09:37.818 00:05:00.292 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-02 03:14:24.807 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:45558 10 6452 1 2025-10-02 03:15:25.188 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37024 10 6452 1 2025-10-02 03:11:37.821 00:05:00.287 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-02 03:16:30.614 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 03:16:30.484 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 03:16:30.231 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 03:16:30.532 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 03:16:30.485 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 03:16:25.595 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:50548 10 6452 1 2025-10-02 03:17:25.963 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42652 10 6452 1 2025-10-02 03:18:26.365 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51440 10 6452 1 2025-10-02 03:19:26.774 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43170 10 6452 1 2025-10-02 03:15:37.818 00:05:00.297 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-02 03:20:27.182 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44904 10 6452 1 2025-10-02 03:21:30.646 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 03:21:30.505 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 03:21:30.283 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 03:21:30.563 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 03:21:30.651 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 03:21:27.582 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48212 10 6452 1 2025-10-02 03:17:37.822 00:05:00.290 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-02 03:22:27.989 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:48210 10 6452 1 2025-10-02 03:23:28.416 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44580 10 6452 1 2025-10-02 03:24:28.813 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54098 10 6452 1 2025-10-02 03:25:29.216 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39348 10 6452 1 2025-10-02 03:21:37.819 00:05:00.296 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-02 03:26:30.969 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 03:26:30.953 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 03:26:30.660 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 03:26:30.887 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 03:26:30.988 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 03:26:29.628 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53462 10 6452 1 2025-10-02 03:27:30.034 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55372 10 6452 1 2025-10-02 03:23:37.823 00:05:00.290 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-02 03:28:30.441 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50614 10 6452 1 2025-10-02 03:29:30.854 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:33146 10 6452 1 2025-10-02 03:30:31.287 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54386 10 6452 1 2025-10-02 03:31:30.802 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 03:31:30.796 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 03:31:30.799 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 03:31:30.702 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 03:31:30.881 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 03:27:37.821 00:05:00.295 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-02 03:31:31.693 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37636 10 6452 1 2025-10-02 03:32:32.055 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:34516 10 6452 1 2025-10-02 03:29:37.824 00:05:00.290 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-02 03:33:32.469 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:60722 10 6452 1 2025-10-02 03:34:32.832 00:00:10.352 TCP 1.101.0.1:3000 -> 23.104.0.1:36182 10 6452 1 2025-10-02 03:35:33.229 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:51628 10 6452 1 2025-10-02 03:36:30.938 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 03:36:30.790 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 03:36:30.633 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 03:36:30.855 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 03:36:30.696 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 03:36:33.627 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:48616 10 6452 1 2025-10-02 03:33:37.828 00:05:00.289 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-02 03:37:33.987 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41068 10 6452 1 2025-10-02 03:38:34.394 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54846 10 6452 1 2025-10-02 03:35:37.831 00:05:00.284 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-02 03:39:34.801 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:51500 10 6452 1 2025-10-02 03:40:35.178 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48986 10 6452 1 2025-10-02 03:41:30.973 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 03:41:30.954 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 03:41:30.824 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 03:41:30.920 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 03:41:30.906 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 03:41:35.585 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37498 10 6452 1 2025-10-02 03:42:35.947 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:47880 10 6452 1 2025-10-02 03:39:37.831 00:05:00.290 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-02 03:43:36.314 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55740 10 6452 1 2025-10-02 03:44:36.719 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37198 10 6452 1 2025-10-02 03:41:37.834 00:05:00.286 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-02 03:45:37.131 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:32984 10 6452 1 2025-10-02 03:46:31.001 00:00:00.041 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 03:46:31.162 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 03:46:31.180 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 03:46:31.143 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 03:46:31.263 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 03:46:37.494 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39770 10 6452 1 2025-10-02 03:47:37.896 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:40802 10 6452 1 2025-10-02 03:48:38.263 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:49162 10 6452 1 2025-10-02 03:45:37.832 00:05:00.290 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-02 03:49:38.684 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41100 10 6452 1 2025-10-02 03:50:39.110 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:56598 10 6452 1 2025-10-02 03:51:31.535 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 03:51:31.499 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 03:51:31.387 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 03:51:31.453 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 03:51:31.057 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 03:47:37.834 00:05:00.285 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-02 03:51:39.472 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34758 10 6452 1 2025-10-02 03:52:39.874 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59306 10 6452 1 2025-10-02 03:53:40.287 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45856 10 6452 1 2025-10-02 03:54:40.689 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:44624 10 6452 1 2025-10-02 03:51:37.838 00:05:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-02 03:55:41.115 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56168 10 6452 1 2025-10-02 03:56:31.266 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 03:56:31.194 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 03:56:31.308 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 03:56:31.301 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 03:56:31.392 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 03:56:41.519 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41630 10 6452 1 2025-10-02 03:53:37.841 00:05:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-02 03:57:41.924 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37136 10 6452 1 Summary: total flows: 139, total bytes: 414523, total packets: 1013, avg bps: 905, avg pps: 0, avg bpp: 409 Time window: 2025-10-02 02:57:37 - 2025-10-02 03:58:38 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0040s User: 0.0013s Wall: 0.0022s flows/second: 64527.8 Runtime: 0.0022s