Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-04 06:59:02.472 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39558 10 6452 1 2025-10-04 06:55:38.943 00:05:00.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 07:00:02.884 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:47178 10 6452 1 2025-10-04 07:01:03.270 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:48884 10 6452 1 2025-10-04 07:02:03.635 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:39556 10 6452 1 2025-10-04 07:02:32.741 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 07:02:32.794 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 07:02:32.672 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 07:02:32.564 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 07:02:32.754 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 07:03:04.014 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:57352 10 6452 1 2025-10-04 06:59:38.948 00:05:00.379 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 07:04:04.371 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59290 10 6452 1 2025-10-04 07:05:04.767 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:43156 10 6452 1 2025-10-04 07:01:38.949 00:05:00.382 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 07:06:05.192 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47918 10 6452 1 2025-10-04 07:07:05.554 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41698 10 6452 1 2025-10-04 07:07:33.041 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 07:07:32.890 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 07:07:32.829 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 07:07:32.959 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 07:07:33.051 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 07:08:05.956 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49872 10 6452 1 2025-10-04 07:09:06.389 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35644 10 6452 1 2025-10-04 07:05:38.954 00:05:00.375 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 07:10:06.799 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55018 10 6452 1 2025-10-04 07:11:07.211 00:00:10.567 TCP 1.101.0.1:3000 -> 23.104.0.1:58656 10 6452 1 2025-10-04 07:07:38.951 00:05:00.380 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 07:12:07.816 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54830 10 6452 1 2025-10-04 07:12:32.824 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 07:12:32.651 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 07:12:32.916 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 07:12:32.962 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 07:12:33.002 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 07:13:08.215 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41874 10 6452 1 2025-10-04 07:14:08.617 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49306 10 6452 1 2025-10-04 07:15:09.026 00:00:10.854 TCP 1.101.0.1:3000 -> 23.104.0.1:53398 10 6452 1 2025-10-04 07:11:38.954 00:05:00.375 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 07:16:09.929 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:43040 10 6452 1 2025-10-04 07:17:10.350 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40858 10 6452 1 2025-10-04 07:17:33.244 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 07:17:32.877 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 07:17:33.012 00:00:00.040 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 07:17:32.934 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 07:17:33.095 00:00:00.042 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 07:13:38.951 00:05:00.381 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 07:18:10.750 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33680 10 6452 1 2025-10-04 07:19:11.155 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58916 10 6452 1 2025-10-04 07:20:11.519 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57972 10 6452 1 2025-10-04 07:21:11.923 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42280 10 6452 1 2025-10-04 07:17:38.955 00:05:00.376 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 07:22:12.334 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42692 10 6452 1 2025-10-04 07:22:33.400 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 07:22:33.318 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 07:22:33.318 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 07:22:33.536 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 07:22:33.116 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 07:23:12.736 00:00:10.636 TCP 1.101.0.1:3000 -> 23.104.0.1:47016 10 6452 1 2025-10-04 07:19:38.953 00:05:00.380 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 07:24:13.410 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44786 10 6452 1 2025-10-04 07:25:13.814 00:00:12.029 TCP 1.101.0.1:3000 -> 23.104.0.1:59252 10 6452 1 2025-10-04 07:26:15.880 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56942 10 6452 1 2025-10-04 07:27:16.288 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43278 10 6452 1 2025-10-04 07:27:33.186 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 07:27:33.308 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 07:27:33.261 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 07:27:33.258 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 07:27:33.344 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 07:23:38.955 00:05:00.377 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 07:28:16.653 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34272 10 6452 1 2025-10-04 07:29:17.062 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42850 10 6452 1 2025-10-04 07:25:38.954 00:05:00.382 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 07:30:17.470 00:00:15.087 TCP 1.101.0.1:3000 -> 23.104.0.1:35116 10 6452 1 2025-10-04 07:31:22.617 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34140 10 6452 1 2025-10-04 07:32:33.199 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 07:32:33.274 00:00:00.051 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 07:32:33.365 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 07:32:33.161 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 07:32:23.016 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:37960 10 6452 1 2025-10-04 07:32:33.281 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 07:33:23.450 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51150 10 6452 1 2025-10-04 07:29:38.959 00:05:00.377 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 07:34:23.852 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57362 10 6452 1 2025-10-04 07:35:24.266 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53626 10 6452 1 2025-10-04 07:31:38.955 00:05:00.383 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 07:36:24.669 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49850 10 6452 1 2025-10-04 07:37:33.325 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 07:37:33.267 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 07:37:25.098 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55158 10 6452 1 2025-10-04 07:37:33.315 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 07:37:33.320 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 07:37:33.398 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 07:38:25.506 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54714 10 6452 1 2025-10-04 07:39:25.909 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:32874 10 6452 1 2025-10-04 07:35:38.957 00:05:00.378 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 07:40:26.314 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57862 10 6452 1 2025-10-04 07:41:26.720 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:40014 10 6452 1 2025-10-04 07:37:38.957 00:05:00.382 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 07:42:33.503 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 07:42:33.221 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 07:42:33.486 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 07:42:33.412 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 07:42:33.569 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 07:42:27.109 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42422 10 6452 1 2025-10-04 07:43:27.511 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:35096 10 6452 1 2025-10-04 07:44:27.880 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:50808 10 6452 1 2025-10-04 07:45:28.235 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48944 10 6452 1 2025-10-04 07:41:38.959 00:05:00.377 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 07:46:28.600 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57222 10 6452 1 2025-10-04 07:47:34.500 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 07:47:33.708 00:00:00.029 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 07:47:33.826 00:00:00.075 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 07:47:34.405 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 07:47:29.005 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53978 10 6452 1 2025-10-04 07:47:33.910 00:00:00.073 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 07:43:38.958 00:05:00.381 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 07:48:29.416 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:59064 12 10375 1 2025-10-04 07:49:29.902 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:54742 12 6556 1 2025-10-04 07:50:30.318 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41794 10 6452 1 2025-10-04 07:47:38.962 00:05:00.376 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 07:51:30.721 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:38862 10 6452 1 2025-10-04 07:52:33.576 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 07:52:33.483 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 07:52:33.727 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 07:52:33.581 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 07:52:33.810 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 07:52:31.135 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43896 10 6452 1 2025-10-04 07:49:38.959 00:05:00.382 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-04 07:53:31.538 00:00:10.607 TCP 1.101.0.1:3000 -> 23.104.0.1:47800 10 6452 1 2025-10-04 07:54:32.207 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47874 11 6492 1 2025-10-04 07:55:32.611 00:00:10.572 TCP 1.101.0.1:3000 -> 23.104.0.1:41142 10 6452 1 2025-10-04 07:56:33.224 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:60802 10 6452 1 2025-10-04 07:57:33.743 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 07:57:33.564 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 07:57:33.742 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 07:57:33.910 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 07:57:33.825 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 07:53:38.963 00:05:00.377 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-04 07:57:33.583 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47768 10 6452 1 2025-10-04 07:58:33.943 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41408 10 6452 1 Summary: total flows: 140, total bytes: 421067, total packets: 1025, avg bps: 889, avg pps: 0, avg bpp: 410 Time window: 2025-10-04 06:55:38 - 2025-10-04 07:58:44 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0023s User: 0.0023s Wall: 0.0020s flows/second: 71758.8 Runtime: 0.0020s