Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-15 05:59:03.405 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39184 10 6452 1 2025-10-15 06:00:03.772 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:47086 10 6452 1 2025-10-15 06:01:04.142 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41092 10 6452 1 2025-10-15 05:56:44.436 00:06:00.457 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-15 06:02:04.511 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:45334 11 6492 1 2025-10-15 06:02:49.334 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 06:02:49.170 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 06:02:49.132 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 06:02:49.252 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 06:02:48.971 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 06:03:04.918 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36158 11 6492 1 2025-10-15 06:04:05.318 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:35370 10 6452 1 2025-10-15 05:59:44.439 00:06:00.453 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-15 06:05:05.731 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:39168 10 6452 1 2025-10-15 06:06:06.142 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38388 10 6452 1 2025-10-15 06:07:06.555 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48364 10 6452 1 2025-10-15 06:07:49.193 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 06:07:49.201 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 06:07:49.099 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 06:07:49.275 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 06:07:49.180 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 06:08:06.957 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:34924 10 6452 1 2025-10-15 06:03:44.438 00:06:00.456 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-15 06:09:07.360 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57934 10 6452 1 2025-10-15 06:10:07.760 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:44778 10 6452 1 2025-10-15 06:11:08.180 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60764 10 6452 1 2025-10-15 06:06:44.442 00:06:00.451 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-15 06:12:08.578 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52726 10 6452 1 2025-10-15 06:12:49.454 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 06:12:49.381 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 06:12:49.285 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 06:12:49.454 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 06:12:49.369 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 06:13:08.992 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37798 10 6452 1 2025-10-15 06:14:09.392 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55284 10 6452 1 2025-10-15 06:15:09.791 00:00:10.432 TCP 1.101.0.1:3000 -> 23.104.0.1:42626 11 6504 1 2025-10-15 06:10:44.439 00:06:00.458 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-15 06:16:10.255 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33196 10 6452 1 2025-10-15 06:17:10.662 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41990 10 6452 1 2025-10-15 06:17:49.461 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 06:17:49.365 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 06:17:49.313 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 06:17:49.378 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 06:17:49.429 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 06:18:11.077 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59580 10 6452 1 2025-10-15 06:13:44.443 00:06:00.452 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-15 06:19:11.477 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43836 10 6452 1 2025-10-15 06:20:11.891 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:52892 12 6556 1 2025-10-15 06:21:12.313 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40838 10 6452 1 2025-10-15 06:22:12.729 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60982 10 6452 1 2025-10-15 06:17:44.442 00:06:00.457 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-15 06:22:49.613 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 06:22:49.647 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 06:22:49.353 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 06:22:49.529 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 06:22:49.601 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 06:23:13.134 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43450 10 6452 1 2025-10-15 06:24:13.542 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:54514 10 6452 1 2025-10-15 06:25:13.944 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34830 10 6452 1 2025-10-15 06:20:44.444 00:06:00.452 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-15 06:26:14.348 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:42802 10 6452 1 2025-10-15 06:27:14.719 00:00:10.604 TCP 1.101.0.1:3000 -> 23.104.0.1:34436 10 6452 1 2025-10-15 06:27:49.776 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 06:27:49.698 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 06:27:49.490 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 06:27:49.693 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 06:27:49.581 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 06:28:15.358 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49700 10 6452 1 2025-10-15 06:29:15.759 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49608 10 6452 1 2025-10-15 06:24:44.443 00:06:00.456 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-15 06:30:16.159 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37132 10 6452 1 2025-10-15 06:31:16.566 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50664 10 6452 1 2025-10-15 06:32:16.976 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52792 10 6452 1 2025-10-15 06:27:44.446 00:06:00.452 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-15 06:32:49.925 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 06:32:49.768 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 06:32:49.659 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 06:32:49.842 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 06:32:49.893 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 06:33:17.385 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34126 10 6452 1 2025-10-15 06:34:17.794 00:00:12.494 TCP 1.101.0.1:3000 -> 23.104.0.1:40224 10 6452 1 2025-10-15 06:35:20.328 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:32964 10 6452 1 2025-10-15 06:36:20.689 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58058 10 6452 1 2025-10-15 06:31:44.444 00:06:00.458 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-15 06:37:21.056 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:51856 10 6452 1 2025-10-15 06:37:49.620 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 06:37:49.564 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 06:37:49.620 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 06:37:49.942 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 06:37:49.702 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 06:38:21.457 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59116 10 6452 1 2025-10-15 06:39:21.856 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:59976 10 6452 1 2025-10-15 06:34:44.447 00:06:00.453 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-15 06:40:22.274 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57524 10 6452 1 2025-10-15 06:41:22.642 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40594 10 6452 1 2025-10-15 06:42:23.052 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59278 10 6452 1 2025-10-15 06:42:49.991 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 06:42:49.602 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 06:42:49.872 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 06:42:49.995 00:00:00.037 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 06:42:49.955 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 06:43:23.457 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35306 10 6452 1 2025-10-15 06:38:44.446 00:06:00.459 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-15 06:44:23.858 00:00:10.573 TCP 1.101.0.1:3000 -> 23.104.0.1:49524 10 6452 1 2025-10-15 06:45:24.468 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42110 10 6452 1 2025-10-15 06:46:24.876 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43428 10 6452 1 2025-10-15 06:41:44.450 00:06:00.455 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-15 06:47:25.237 00:00:10.954 TCP 1.101.0.1:3000 -> 23.104.0.1:54728 10 6452 1 2025-10-15 06:47:50.439 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 06:47:50.359 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 06:47:50.225 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 06:47:50.356 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 06:47:50.051 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 06:48:26.230 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33138 10 6452 1 2025-10-15 06:49:26.636 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50744 10 6452 1 2025-10-15 06:50:27.039 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54622 10 6452 1 2025-10-15 06:45:44.448 00:06:00.459 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-15 06:51:27.440 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48918 10 6452 1 2025-10-15 06:52:27.844 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:32904 10 6452 1 2025-10-15 06:52:50.357 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 06:52:50.313 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 06:52:50.100 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 06:52:50.275 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 06:52:50.108 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 06:53:28.277 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57030 10 6452 1 2025-10-15 06:48:44.451 00:06:00.454 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-15 06:54:28.685 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:37696 10 6452 1 2025-10-15 06:55:29.106 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:41584 10 6452 1 2025-10-15 06:56:29.481 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40204 10 6452 1 2025-10-15 06:57:29.885 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:35396 10 6452 1 2025-10-15 06:52:44.449 00:06:00.459 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-15 06:57:50.311 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 06:57:50.312 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 06:57:50.374 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 06:57:50.146 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 06:57:50.394 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 06:58:30.318 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33238 10 6452 1 Summary: total flows: 137, total bytes: 417113, total packets: 1023, avg bps: 896, avg pps: 0, avg bpp: 407 Time window: 2025-10-15 05:56:44 - 2025-10-15 06:58:44 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0041s User: 0.0020s Wall: 0.0021s flows/second: 64325.5 Runtime: 0.0022s