Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-04 03:55:38.868 00:05:00.394 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 03:59:34.535 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49518 10 6452 1 2025-10-04 04:00:34.935 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:54358 10 6452 1 2025-10-04 04:01:35.312 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47790 10 6452 1 2025-10-04 04:02:29.881 00:00:00.030 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 04:02:29.949 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 04:02:29.508 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 04:02:29.798 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 04:02:29.775 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 04:02:35.716 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:42186 10 6452 1 2025-10-04 03:59:38.875 00:05:00.386 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 04:03:36.126 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56652 10 6452 1 2025-10-04 04:04:36.538 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50230 10 6452 1 2025-10-04 04:01:38.872 00:05:00.391 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 04:05:36.898 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:33408 12 6556 1 2025-10-04 04:06:37.316 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52490 10 6452 1 2025-10-04 04:07:29.186 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 04:07:29.203 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 04:07:28.940 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 04:07:29.247 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 04:07:29.024 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 04:07:37.719 00:00:10.527 TCP 1.101.0.1:3000 -> 23.104.0.1:39914 11 6504 1 2025-10-04 04:08:38.292 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36980 10 6452 1 2025-10-04 04:05:38.875 00:05:00.389 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 04:09:38.689 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40004 10 6452 1 2025-10-04 04:10:39.111 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42738 10 6452 1 2025-10-04 04:07:38.874 00:05:00.396 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 04:11:39.474 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49504 10 6452 1 2025-10-04 04:12:29.536 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 04:12:29.290 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 04:12:29.380 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 04:12:29.454 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 04:12:29.360 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 04:12:39.878 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58972 10 6452 1 2025-10-04 04:13:40.292 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40756 10 6452 1 2025-10-04 04:14:40.651 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37488 10 6452 1 2025-10-04 04:11:38.878 00:05:00.392 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 04:15:41.059 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34930 10 6452 1 2025-10-04 04:16:41.463 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57356 10 6452 1 2025-10-04 04:17:29.677 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 04:17:29.331 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 04:17:29.724 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 04:17:29.496 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 04:17:29.807 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 04:13:38.875 00:05:00.398 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 04:17:41.871 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47184 10 6452 1 2025-10-04 04:18:42.280 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:57708 10 6452 1 2025-10-04 04:19:42.640 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57250 10 6452 1 2025-10-04 04:20:43.002 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:42732 10 6452 1 2025-10-04 04:17:38.877 00:05:00.397 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 04:21:43.364 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49212 10 6452 1 2025-10-04 04:22:29.331 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 04:22:29.408 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 04:22:29.578 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 04:22:29.579 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 04:22:29.662 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 04:22:43.767 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:54452 10 6452 1 2025-10-04 04:19:38.875 00:05:00.401 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 04:23:44.137 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:49698 12 10375 1 2025-10-04 04:24:44.616 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40712 10 6452 1 2025-10-04 04:25:45.026 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54298 10 6452 1 2025-10-04 04:26:45.429 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41056 10 6452 1 2025-10-04 04:27:29.827 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 04:27:29.703 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 04:27:29.678 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 04:27:29.744 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 04:27:29.654 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 04:23:38.878 00:05:00.396 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 04:27:45.838 00:00:10.842 TCP 1.101.0.1:3000 -> 23.104.0.1:34164 10 6452 1 2025-10-04 04:28:46.716 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:32826 10 6452 1 2025-10-04 04:25:38.877 00:05:00.402 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 04:29:47.134 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59500 10 6452 1 2025-10-04 04:30:47.553 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:35854 10 6452 1 2025-10-04 04:31:47.931 00:00:10.406 TCP 1.101.0.1:3000 -> 23.104.0.1:48678 13 6608 1 2025-10-04 04:32:29.775 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 04:32:29.694 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 04:32:29.620 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 04:32:29.692 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 04:32:29.596 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 04:32:48.370 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36238 10 6452 1 2025-10-04 04:29:38.890 00:05:00.386 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 04:33:48.777 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49298 10 6452 1 2025-10-04 04:34:49.185 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57846 10 6452 1 2025-10-04 04:31:38.888 00:05:00.391 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 04:35:49.588 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53558 10 6452 1 2025-10-04 04:36:49.993 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:43374 10 6452 1 2025-10-04 04:37:30.111 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 04:37:30.030 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 04:37:30.088 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 04:37:30.027 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 04:37:30.131 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 04:37:50.447 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46392 10 6452 1 2025-10-04 04:38:50.856 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:42190 10 6452 1 2025-10-04 04:35:38.892 00:05:00.388 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 04:39:51.284 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33528 10 6452 1 2025-10-04 04:40:51.689 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39480 10 6452 1 2025-10-04 04:37:38.891 00:05:00.394 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 04:41:52.051 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39804 10 6452 1 2025-10-04 04:42:29.839 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 04:42:29.795 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 04:42:29.728 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 04:42:29.831 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 04:42:29.811 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 04:42:52.461 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53078 10 6452 1 2025-10-04 04:43:52.866 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:56580 12 10375 1 2025-10-04 04:44:53.348 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:35454 10 6452 1 2025-10-04 04:41:38.905 00:05:00.378 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 04:45:53.755 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53498 10 6452 1 2025-10-04 04:46:54.159 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37628 10 6452 1 2025-10-04 04:47:30.127 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 04:47:29.926 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 04:47:29.935 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 04:47:30.007 00:00:00.044 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 04:47:30.020 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 04:43:38.900 00:05:00.385 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 04:47:54.564 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40304 10 6452 1 2025-10-04 04:48:54.966 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45122 10 6452 1 2025-10-04 04:49:55.375 00:00:14.640 TCP 1.101.0.1:3000 -> 23.104.0.1:45662 10 6452 1 2025-10-04 04:51:00.071 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38934 10 6452 1 2025-10-04 04:47:38.905 00:05:00.379 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 04:52:00.475 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:50928 10 6452 1 2025-10-04 04:52:29.966 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 04:52:30.210 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 04:52:30.082 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 04:52:30.163 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 04:52:30.166 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 04:53:00.838 00:00:10.458 TCP 1.101.0.1:3000 -> 23.104.0.1:59210 10 6452 1 2025-10-04 04:49:38.907 00:05:00.381 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 04:54:01.339 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49212 10 6452 1 2025-10-04 04:55:01.744 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:32816 10 6452 1 2025-10-04 04:56:02.150 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39144 10 6452 1 2025-10-04 04:57:02.553 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:59342 10 6452 1 2025-10-04 04:57:30.216 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 04:57:30.394 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 04:57:30.185 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 04:57:30.134 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 04:57:30.395 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 04:53:38.912 00:05:00.375 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 04:58:02.974 00:00:13.964 TCP 1.101.0.1:3000 -> 23.104.0.1:37518 12 10369 1 Summary: total flows: 139, total bytes: 422623, total packets: 1022, avg bps: 894, avg pps: 0, avg bpp: 413 Time window: 2025-10-04 03:55:38 - 2025-10-04 04:58:39 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0021s User: 0.0031s Wall: 0.0019s flows/second: 74174.1 Runtime: 0.0019s