Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-05 19:59:36.704 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:41116 10 6452 1 2025-10-05 19:56:39.663 00:05:00.436 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-05 20:00:37.108 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52576 10 6452 1 2025-10-05 20:01:37.503 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53790 10 6452 1 2025-10-05 20:02:37.908 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50734 12 6556 1 2025-10-05 20:03:17.201 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 20:03:17.013 00:00:00.031 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 20:03:17.311 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 20:03:17.158 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 20:03:17.395 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 20:03:38.312 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49286 10 6452 1 2025-10-05 20:00:39.663 00:05:00.440 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-05 20:04:38.712 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:48216 10 6452 1 2025-10-05 20:05:39.134 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:43516 10 6452 1 2025-10-05 20:02:39.665 00:05:00.440 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-05 20:06:39.560 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34204 10 6452 1 2025-10-05 20:07:39.924 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:54232 10 6452 1 2025-10-05 20:08:17.361 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 20:08:16.994 00:00:00.038 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 20:08:17.206 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 20:08:17.121 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 20:08:17.443 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 20:08:40.342 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56256 10 6452 1 2025-10-05 20:09:40.741 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48640 10 6452 1 2025-10-05 20:06:39.663 00:05:00.448 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-05 20:10:41.146 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:33342 10 6452 1 2025-10-05 20:11:41.584 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39136 10 6452 1 2025-10-05 20:08:39.665 00:05:00.442 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-05 20:12:41.996 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55184 10 6452 1 2025-10-05 20:13:17.639 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 20:13:17.524 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 20:13:17.344 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 20:13:17.556 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 20:13:17.615 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 20:13:42.401 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:45478 10 6452 1 2025-10-05 20:14:42.810 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49878 10 6452 1 2025-10-05 20:15:43.216 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48464 10 6452 1 2025-10-05 20:12:39.662 00:05:00.449 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-05 20:16:43.616 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49386 10 6452 1 2025-10-05 20:17:44.024 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33752 10 6452 1 2025-10-05 20:18:17.425 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 20:18:17.109 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 20:18:17.552 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 20:18:17.426 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 20:18:17.637 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 20:14:39.665 00:05:00.444 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-05 20:18:44.388 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36758 10 6452 1 2025-10-05 20:19:44.792 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54124 10 6452 1 2025-10-05 20:20:45.206 00:00:11.103 TCP 1.101.0.1:3000 -> 23.104.0.1:39944 10 6452 1 2025-10-05 20:21:46.344 00:00:11.333 TCP 1.101.0.1:3000 -> 23.104.0.1:54312 10 6452 1 2025-10-05 20:18:39.663 00:05:00.450 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-05 20:22:47.714 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36324 10 6452 1 2025-10-05 20:23:17.628 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 20:23:17.618 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 20:23:17.436 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 20:23:17.671 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 20:23:17.753 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 20:23:48.118 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41182 10 6452 1 2025-10-05 20:20:39.669 00:05:00.442 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-05 20:24:48.532 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33078 10 6452 1 2025-10-05 20:25:48.937 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:49414 10 6452 1 2025-10-05 20:26:49.356 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37534 10 6452 1 2025-10-05 20:27:49.759 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:58394 10 6452 1 2025-10-05 20:28:17.829 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 20:28:17.533 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 20:28:17.703 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 20:28:17.747 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 20:28:17.698 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 20:24:39.668 00:05:00.449 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-05 20:28:50.192 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35396 10 6452 1 2025-10-05 20:29:50.605 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46840 10 6452 1 2025-10-05 20:26:39.674 00:05:00.441 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-05 20:30:51.016 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39988 10 6452 1 2025-10-05 20:31:51.420 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36120 10 6452 1 2025-10-05 20:32:51.820 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38780 10 6452 1 2025-10-05 20:33:17.735 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 20:33:17.861 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 20:33:17.886 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 20:33:17.742 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 20:33:17.969 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 20:33:52.219 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57652 10 6452 1 2025-10-05 20:30:39.671 00:05:00.447 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-05 20:34:52.632 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57746 10 6452 1 2025-10-05 20:35:53.032 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60866 10 6452 1 2025-10-05 20:32:39.674 00:05:00.443 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-05 20:36:53.441 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42966 10 6452 1 2025-10-05 20:37:53.859 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33406 10 6452 1 2025-10-05 20:38:17.861 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 20:38:17.678 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 20:38:17.857 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 20:38:17.762 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 20:38:17.939 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 20:38:54.274 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54898 10 6452 1 2025-10-05 20:39:54.686 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:49634 10 6452 1 2025-10-05 20:36:39.671 00:05:00.448 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-05 20:40:55.073 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35304 10 6452 1 2025-10-05 20:41:55.473 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50730 10 6452 1 2025-10-05 20:38:39.676 00:05:00.442 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-05 20:42:55.876 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38152 10 6452 1 2025-10-05 20:43:17.873 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 20:43:17.792 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 20:43:17.815 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 20:43:17.791 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 20:43:17.885 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 20:43:56.279 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:47570 12 10375 1 2025-10-05 20:44:56.765 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44866 12 6556 1 2025-10-05 20:45:57.179 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58586 10 6452 1 2025-10-05 20:42:39.675 00:05:00.447 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-05 20:46:57.583 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36700 10 6452 1 2025-10-05 20:47:57.988 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60318 10 6452 1 2025-10-05 20:48:18.369 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 20:48:17.899 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 20:48:18.254 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 20:48:18.247 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 20:48:18.336 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 20:44:39.678 00:05:00.441 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-05 20:48:58.393 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37926 10 6452 1 2025-10-05 20:49:58.794 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55636 10 6452 1 2025-10-05 20:50:59.200 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44150 10 6452 1 2025-10-05 20:51:59.610 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34460 10 6452 1 2025-10-05 20:48:39.677 00:05:00.446 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-05 20:53:00.018 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59256 10 6452 1 2025-10-05 20:53:18.325 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 20:53:18.300 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 20:53:18.325 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 20:53:18.293 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 20:53:18.411 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 20:54:00.416 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36024 10 6452 1 2025-10-05 20:50:39.680 00:05:00.440 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-05 20:55:00.822 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38584 10 6452 1 2025-10-05 20:56:01.226 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49646 10 6452 1 2025-10-05 20:57:01.629 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34780 10 6452 1 2025-10-05 20:58:02.038 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34354 10 6452 1 2025-10-05 20:58:18.240 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 20:58:18.106 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 20:58:18.330 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 20:58:18.241 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 20:58:18.413 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 20:54:39.679 00:05:00.445 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 Summary: total flows: 139, total bytes: 414679, total packets: 1016, avg bps: 877, avg pps: 0, avg bpp: 408 Time window: 2025-10-05 19:56:39 - 2025-10-05 20:59:40 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0033s User: 0.0022s Wall: 0.0022s flows/second: 64200.9 Runtime: 0.0022s