Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-04 02:59:08.610 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57542 10 6452 1 2025-10-04 02:55:38.850 00:05:00.398 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 03:00:09.018 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35738 10 6452 1 2025-10-04 03:01:09.416 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36270 10 6452 1 2025-10-04 03:02:09.814 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42496 10 6452 1 2025-10-04 03:02:27.806 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 03:02:27.890 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 03:02:27.770 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 03:02:27.726 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 03:02:27.608 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 03:03:10.220 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36970 10 6452 1 2025-10-04 02:59:38.855 00:05:00.390 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 03:04:10.628 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48190 10 6452 1 2025-10-04 03:05:11.029 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36624 10 6452 1 2025-10-04 03:01:38.852 00:05:00.395 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 03:06:11.433 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57222 10 6452 1 2025-10-04 03:07:11.836 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:36794 10 6452 1 2025-10-04 03:07:28.075 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 03:07:28.073 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 03:07:27.972 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 03:07:28.125 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 03:07:28.157 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 03:08:12.268 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53052 10 6452 1 2025-10-04 03:09:12.670 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44538 10 6452 1 2025-10-04 03:05:38.856 00:05:00.390 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 03:10:13.039 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:53886 10 6452 1 2025-10-04 03:11:13.406 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59414 10 6452 1 2025-10-04 03:07:38.853 00:05:00.396 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 03:12:13.810 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47572 10 6452 1 2025-10-04 03:12:28.290 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 03:12:28.156 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 03:12:27.936 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 03:12:28.208 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 03:12:28.123 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 03:13:14.213 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34414 10 6452 1 2025-10-04 03:14:14.620 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:43260 10 6452 1 2025-10-04 03:15:15.037 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:50062 10 6452 1 2025-10-04 03:11:38.856 00:05:00.392 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 03:16:15.435 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49424 10 6452 1 2025-10-04 03:17:28.179 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 03:17:28.195 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 03:17:15.842 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:35110 10 6452 1 2025-10-04 03:17:28.311 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 03:17:28.304 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 03:17:28.395 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 03:13:38.856 00:05:00.398 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 03:18:16.276 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:38984 12 10375 1 2025-10-04 03:19:16.765 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60442 10 6452 1 2025-10-04 03:20:17.174 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46164 10 6452 1 2025-10-04 03:21:17.578 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52064 10 6452 1 2025-10-04 03:17:38.858 00:05:00.393 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 03:22:28.425 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 03:22:28.384 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 03:22:17.985 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37946 10 6452 1 2025-10-04 03:22:28.087 00:00:00.034 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 03:22:28.343 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 03:22:28.388 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 03:23:18.392 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45662 10 6452 1 2025-10-04 03:19:38.857 00:05:00.398 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 03:24:18.795 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:51142 10 6452 1 2025-10-04 03:25:19.171 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44702 10 6452 1 2025-10-04 03:26:19.577 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:59336 10 6452 1 2025-10-04 03:27:28.690 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 03:27:28.559 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 03:27:28.608 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 03:27:28.604 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 03:27:19.939 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:57696 10 6452 1 2025-10-04 03:27:28.523 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 03:23:38.860 00:05:00.392 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 03:28:20.367 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56176 10 6452 1 2025-10-04 03:29:20.772 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35010 10 6452 1 2025-10-04 03:25:38.857 00:05:00.397 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 03:30:21.177 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39002 10 6452 1 2025-10-04 03:31:21.578 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42650 10 6452 1 2025-10-04 03:32:28.662 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 03:32:28.693 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 03:32:28.527 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 03:32:28.580 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 03:32:28.569 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 03:32:21.938 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:52902 10 6452 1 2025-10-04 03:33:22.306 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45178 10 6452 1 2025-10-04 03:29:38.860 00:05:00.393 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 03:34:22.713 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:51020 10 6452 1 2025-10-04 03:35:23.127 00:00:11.395 TCP 1.101.0.1:3000 -> 23.104.0.1:47492 10 6452 1 2025-10-04 03:31:38.860 00:05:00.396 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 03:36:24.559 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39802 10 6452 1 2025-10-04 03:37:28.646 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 03:37:28.495 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 03:37:28.638 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 03:37:28.563 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 03:37:28.576 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 03:37:24.959 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51506 10 6452 1 2025-10-04 03:38:25.370 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40128 10 6452 1 2025-10-04 03:39:25.776 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41934 10 6452 1 2025-10-04 03:35:38.862 00:05:00.392 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 03:40:26.180 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52208 10 6452 1 2025-10-04 03:41:26.585 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53970 10 6452 1 2025-10-04 03:37:38.861 00:05:00.395 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 03:42:29.776 00:00:00.015 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 03:42:29.593 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 03:42:29.445 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 03:42:29.686 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 03:42:29.849 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 03:42:26.988 00:00:11.041 TCP 1.101.0.1:3000 -> 23.104.0.1:41766 10 6452 1 2025-10-04 03:43:28.094 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54658 10 6452 1 2025-10-04 03:44:28.495 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:58360 10 6452 1 2025-10-04 03:45:28.869 00:00:10.425 TCP 1.101.0.1:3000 -> 23.104.0.1:50146 11 6504 1 2025-10-04 03:41:38.866 00:05:00.389 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 03:46:29.332 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34522 10 6452 1 2025-10-04 03:47:28.917 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 03:47:28.760 00:00:00.035 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 03:47:28.651 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 03:47:28.856 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 03:47:28.735 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 03:43:38.864 00:05:00.394 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 03:47:29.732 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:60240 10 6452 1 2025-10-04 03:48:30.113 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49302 10 6452 1 2025-10-04 03:49:30.515 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43520 10 6452 1 2025-10-04 03:50:30.924 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:43878 10 6452 1 2025-10-04 03:47:38.868 00:05:00.388 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 03:51:31.354 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37754 10 6452 1 2025-10-04 03:52:28.935 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 03:52:28.851 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 03:52:28.933 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 03:52:28.932 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 03:52:29.016 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 03:52:31.760 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:50160 10 6452 1 2025-10-04 03:49:38.865 00:05:00.394 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 03:53:32.129 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59466 10 6452 1 2025-10-04 03:54:32.533 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37428 10 6452 1 2025-10-04 03:55:32.937 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:35040 10 6452 1 2025-10-04 03:56:33.352 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:56670 10 6452 1 2025-10-04 03:57:29.052 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 03:57:28.962 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 03:57:29.083 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 03:57:28.970 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 03:57:29.066 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 03:53:38.871 00:05:00.388 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 03:57:33.754 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:40566 10 6452 1 2025-10-04 03:58:34.170 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43156 10 6452 1 Summary: total flows: 140, total bytes: 420975, total packets: 1023, avg bps: 889, avg pps: 0, avg bpp: 411 Time window: 2025-10-04 02:55:38 - 2025-10-04 03:58:44 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0020s User: 0.0020s Wall: 0.0017s flows/second: 82588.3 Runtime: 0.0017s