Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-03 23:55:38.782 00:05:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 23:59:27.307 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41862 10 6452 1 2025-10-04 00:00:27.710 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44796 10 6452 1 2025-10-04 00:01:28.096 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56770 10 6452 1 2025-10-04 00:02:23.959 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 00:02:23.911 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 00:02:24.323 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 00:02:24.416 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 00:02:24.406 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 00:02:28.500 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33170 10 6452 1 2025-10-04 00:03:28.905 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38796 12 6556 1 2025-10-03 23:59:38.789 00:05:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 00:04:29.311 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45506 10 6452 1 2025-10-04 00:05:29.715 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:57980 10 6452 1 2025-10-04 00:01:38.787 00:05:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 00:06:30.134 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:33482 10 6452 1 2025-10-04 00:07:24.214 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 00:07:24.362 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 00:07:24.395 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 00:07:24.319 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 00:07:24.479 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 00:07:30.490 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54478 10 6452 1 2025-10-04 00:08:30.897 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:41128 12 6556 1 2025-10-04 00:05:38.790 00:05:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 00:09:31.318 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38288 10 6452 1 2025-10-04 00:10:31.719 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37356 10 6452 1 2025-10-04 00:07:38.787 00:05:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 00:11:32.129 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52138 10 6452 1 2025-10-04 00:12:24.652 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 00:12:24.394 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 00:12:24.249 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 00:12:24.480 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 00:12:24.478 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 00:12:32.490 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49914 10 6452 1 2025-10-04 00:13:32.888 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:58714 10 6452 1 2025-10-04 00:14:33.305 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:33044 10 6452 1 2025-10-04 00:11:38.791 00:05:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 00:15:33.719 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:42622 10 6452 1 2025-10-04 00:16:34.111 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51874 10 6452 1 2025-10-04 00:17:24.630 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 00:17:24.625 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 00:17:24.557 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 00:17:24.666 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 00:17:24.709 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 00:13:38.789 00:05:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 00:17:34.477 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42750 10 6452 1 2025-10-04 00:18:34.894 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:40244 12 6556 1 2025-10-04 00:19:35.330 00:00:10.569 TCP 1.101.0.1:3000 -> 23.104.0.1:36578 10 6452 1 2025-10-04 00:20:35.940 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:56862 10 6452 1 2025-10-04 00:17:38.794 00:05:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 00:21:36.360 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42438 10 6452 1 2025-10-04 00:22:24.657 00:00:00.030 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 00:22:24.769 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 00:22:24.532 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 00:22:24.576 00:00:00.029 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 00:22:24.780 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 00:22:36.763 00:00:10.713 TCP 1.101.0.1:3000 -> 23.104.0.1:47276 10 6452 1 2025-10-04 00:19:38.790 00:05:00.391 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 00:23:37.511 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:58860 12 10369 1 2025-10-04 00:24:37.987 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46590 10 6452 1 2025-10-04 00:25:38.393 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:42714 10 6452 1 2025-10-04 00:26:38.791 00:00:10.353 TCP 1.101.0.1:3000 -> 23.104.0.1:39910 10 6452 1 2025-10-04 00:27:25.134 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 00:27:25.068 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 00:27:25.078 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 00:27:24.826 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 00:27:25.160 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 00:23:38.798 00:05:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 00:27:39.176 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43928 10 6452 1 2025-10-04 00:28:39.543 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52592 10 6452 1 2025-10-04 00:25:38.796 00:05:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 00:29:39.954 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48130 10 6452 1 2025-10-04 00:30:40.362 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:37274 10 6452 1 2025-10-04 00:31:40.761 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47102 10 6452 1 2025-10-04 00:32:25.366 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 00:32:25.150 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 00:32:25.270 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 00:32:25.141 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 00:32:25.353 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 00:32:41.172 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33364 10 6452 1 2025-10-04 00:29:38.799 00:05:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 00:33:41.573 00:00:23.098 TCP 1.101.0.1:3000 -> 23.104.0.1:60740 10 6452 1 2025-10-04 00:34:54.718 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53894 10 6452 1 2025-10-04 00:31:38.797 00:05:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 00:35:55.123 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:38150 10 6452 1 2025-10-04 00:36:55.523 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44846 10 6452 1 2025-10-04 00:37:25.094 00:00:00.033 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 00:37:24.993 00:00:00.048 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 00:37:24.842 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 00:37:24.995 00:00:00.050 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 00:37:24.987 00:00:00.052 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 00:37:55.934 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:57852 10 6452 1 2025-10-04 00:38:56.359 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58956 10 6452 1 2025-10-04 00:35:38.806 00:05:00.377 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 00:39:56.771 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:45774 10 6452 1 2025-10-04 00:40:57.181 00:00:10.804 TCP 1.101.0.1:3000 -> 23.104.0.1:46786 10 6452 1 2025-10-04 00:37:38.804 00:05:00.383 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 00:41:58.026 00:00:11.136 TCP 1.101.0.1:3000 -> 23.104.0.1:57126 10 6452 1 2025-10-04 00:42:25.051 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 00:42:24.785 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 00:42:24.867 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 00:42:24.866 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 00:42:24.951 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 00:42:59.200 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:36986 10 6452 1 2025-10-04 00:43:59.595 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51726 10 6452 1 2025-10-04 00:44:59.960 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55626 10 6452 1 2025-10-04 00:41:38.806 00:05:00.379 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 00:46:00.368 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49130 10 6452 1 2025-10-04 00:47:00.774 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:50584 10 6452 1 2025-10-04 00:47:25.973 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 00:47:25.548 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 00:47:25.830 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 00:47:26.119 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 00:47:26.203 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 00:43:38.804 00:05:00.383 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 00:48:01.154 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:49510 10 6452 1 2025-10-04 00:49:01.511 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47094 10 6452 1 2025-10-04 00:50:01.913 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38714 10 6452 1 2025-10-04 00:51:02.321 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35042 10 6452 1 2025-10-04 00:47:38.807 00:05:00.378 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 00:52:02.722 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:52844 10 6452 1 2025-10-04 00:52:25.366 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 00:52:25.176 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 00:52:25.292 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 00:52:25.283 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 00:52:25.365 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 00:53:03.137 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45278 10 6452 1 2025-10-04 00:49:38.807 00:05:00.383 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 00:54:03.544 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34974 10 6452 1 2025-10-04 00:55:03.949 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46844 10 6452 1 2025-10-04 00:56:04.360 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60724 10 6452 1 2025-10-04 00:57:04.766 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:46002 10 6452 1 2025-10-04 00:57:25.430 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 00:57:25.484 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 00:57:25.518 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 00:57:25.521 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 00:57:25.602 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 00:53:38.809 00:05:00.378 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 00:58:05.161 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55702 10 6452 1 Summary: total flows: 139, total bytes: 414777, total packets: 1018, avg bps: 877, avg pps: 0, avg bpp: 407 Time window: 2025-10-03 23:55:38 - 2025-10-04 00:58:39 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0034s User: 0.0023s Wall: 0.0022s flows/second: 62220.7 Runtime: 0.0023s