Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-02 03:58:42.328 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56322 10 6452 1 2025-10-02 03:59:42.735 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54134 10 6452 1 2025-10-02 04:00:43.145 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:44376 10 6452 1 2025-10-02 04:01:31.513 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 04:01:31.387 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 04:01:31.427 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 04:01:31.175 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 04:01:31.510 00:00:00.035 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 03:57:37.840 00:05:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-02 04:01:43.510 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56756 10 6452 1 2025-10-02 04:02:43.919 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42820 10 6452 1 2025-10-02 03:59:37.842 00:05:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-02 04:03:44.321 00:00:10.549 TCP 1.101.0.1:3000 -> 23.104.0.1:36372 10 6452 1 2025-10-02 04:04:44.912 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38832 10 6452 1 2025-10-02 04:05:45.316 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47440 10 6452 1 2025-10-02 04:06:31.730 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 04:06:31.507 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 04:06:31.630 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 04:06:31.647 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 04:06:31.509 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 04:06:45.720 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36364 10 6452 1 2025-10-02 04:03:37.842 00:05:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-02 04:07:46.123 00:00:10.577 TCP 1.101.0.1:3000 -> 23.104.0.1:46680 10 6452 1 2025-10-02 04:08:46.738 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35672 10 6452 1 2025-10-02 04:05:37.845 00:05:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-02 04:09:47.143 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55902 10 6452 1 2025-10-02 04:10:47.548 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33714 10 6452 1 2025-10-02 04:11:31.416 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 04:11:31.287 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 04:11:31.883 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 04:11:31.446 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 04:11:31.965 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 04:11:47.952 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47900 10 6452 1 2025-10-02 04:12:48.369 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:49900 10 6452 1 2025-10-02 04:09:37.843 00:05:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-02 04:13:48.761 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:41424 10 6452 1 2025-10-02 04:14:49.180 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:34390 10 6452 1 2025-10-02 04:11:37.846 00:05:00.278 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-02 04:15:49.548 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54628 10 6452 1 2025-10-02 04:16:31.528 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 04:16:31.624 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 04:16:31.502 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 04:16:31.599 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 04:16:31.585 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 04:16:49.951 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46498 10 6452 1 2025-10-02 04:17:50.362 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:34516 12 10369 1 2025-10-02 04:18:50.839 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:54150 10 6452 1 2025-10-02 04:15:37.844 00:05:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-02 04:19:51.276 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54532 10 6452 1 2025-10-02 04:20:51.687 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48554 10 6452 1 2025-10-02 04:21:31.745 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 04:21:31.837 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 04:21:31.821 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 04:21:31.749 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 04:21:31.832 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 04:17:37.849 00:05:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-02 04:21:52.117 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:33584 10 6452 1 2025-10-02 04:22:52.564 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41734 10 6452 1 2025-10-02 04:23:52.967 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59710 10 6452 1 2025-10-02 04:24:53.379 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42466 10 6452 1 2025-10-02 04:21:37.844 00:05:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-02 04:25:53.789 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47476 10 6452 1 2025-10-02 04:26:31.993 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 04:26:31.547 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 04:26:31.912 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 04:26:31.860 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 04:26:31.990 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 04:26:54.198 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39756 10 6452 1 2025-10-02 04:23:37.848 00:05:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-02 04:27:54.600 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36814 10 6452 1 2025-10-02 04:28:55.003 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:51588 10 6452 1 2025-10-02 04:29:55.368 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:39192 10 6452 1 2025-10-02 04:30:55.727 00:00:10.352 TCP 1.101.0.1:3000 -> 23.104.0.1:55556 10 6452 1 2025-10-02 04:31:32.230 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 04:31:32.195 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 04:31:32.191 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 04:31:32.148 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 04:31:32.141 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 04:27:37.848 00:05:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-02 04:31:56.119 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34604 10 6452 1 2025-10-02 04:32:56.526 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45048 10 6452 1 2025-10-02 04:29:37.851 00:05:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-02 04:33:56.932 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:40782 10 6452 1 2025-10-02 04:34:57.353 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50736 10 6452 1 2025-10-02 04:35:57.759 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:36210 10 6452 1 2025-10-02 04:36:32.425 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 04:36:32.313 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 04:36:32.424 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 04:36:32.274 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 04:36:32.507 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 04:36:58.174 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55882 10 6452 1 2025-10-02 04:33:37.848 00:05:00.287 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-02 04:37:58.576 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52924 10 6452 1 2025-10-02 04:38:58.980 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:50286 10 6452 1 2025-10-02 04:35:37.852 00:05:00.282 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-02 04:39:59.348 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45098 10 6452 1 2025-10-02 04:40:59.757 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:35606 10 6452 1 2025-10-02 04:41:32.087 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 04:41:32.261 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 04:41:32.235 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 04:41:32.077 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 04:41:32.318 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 04:42:00.188 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40634 10 6452 1 2025-10-02 04:43:00.591 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:38392 12 10369 1 2025-10-02 04:39:37.850 00:05:00.288 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-02 04:44:01.029 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50116 10 6452 1 2025-10-02 04:45:01.434 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39780 10 6452 1 2025-10-02 04:41:37.851 00:05:00.282 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-02 04:46:01.834 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55022 10 6452 1 2025-10-02 04:46:32.107 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 04:46:32.402 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 04:46:32.291 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 04:46:32.150 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 04:46:32.188 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 04:47:02.239 00:00:10.622 TCP 1.101.0.1:3000 -> 23.104.0.1:36414 10 6452 1 2025-10-02 04:48:02.900 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:58952 12 6556 1 2025-10-02 04:49:03.314 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56654 10 6452 1 2025-10-02 04:45:37.853 00:05:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-02 04:50:03.722 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60332 10 6452 1 2025-10-02 04:51:04.133 00:00:10.530 TCP 1.101.0.1:3000 -> 23.104.0.1:46796 10 6452 1 2025-10-02 04:51:32.664 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 04:51:32.721 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 04:51:32.498 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 04:51:32.581 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 04:51:32.490 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 04:47:37.855 00:05:00.282 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-02 04:52:04.707 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38624 10 6452 1 2025-10-02 04:53:05.111 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38448 10 6452 1 2025-10-02 04:54:05.520 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33612 10 6452 1 2025-10-02 04:55:05.929 00:00:10.861 TCP 1.101.0.1:3000 -> 23.104.0.1:34540 13 6608 1 2025-10-02 04:51:37.854 00:05:00.288 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-02 04:56:06.840 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:49680 10 6452 1 2025-10-02 04:56:32.432 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-02 04:56:32.275 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-02 04:56:32.416 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 04:56:32.350 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-02 04:56:32.350 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-02 04:57:07.255 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59260 10 6452 1 2025-10-02 04:53:37.856 00:05:00.286 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-02 04:58:07.657 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41254 10 6452 1 Summary: total flows: 140, total bytes: 425094, total packets: 1029, avg bps: 929, avg pps: 0, avg bpp: 413 Time window: 2025-10-02 03:57:37 - 2025-10-02 04:58:38 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0032s User: 0.0016s Wall: 0.0021s flows/second: 67869.0 Runtime: 0.0021s