Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-16 00:59:08.427 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41400 10 6452 1 2025-10-16 00:55:44.843 00:05:00.434 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 01:00:08.796 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:58306 10 6452 1 2025-10-16 01:01:09.184 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59558 10 6452 1 2025-10-16 01:02:09.593 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56352 10 6452 1 2025-10-16 01:03:11.923 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 01:03:12.405 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:03:12.195 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:03:11.928 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 01:03:12.288 00:00:00.012 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 01:03:10.015 00:00:10.613 TCP 1.101.0.1:3000 -> 23.104.0.1:37092 10 6452 1 2025-10-16 01:04:10.665 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38294 10 6452 1 2025-10-16 01:00:44.846 00:05:00.430 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 01:05:11.096 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45056 10 6452 1 2025-10-16 01:01:44.844 00:05:00.435 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 01:06:11.458 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48330 10 6452 1 2025-10-16 01:07:11.864 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:50530 10 6452 1 2025-10-16 01:08:12.195 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 01:08:12.115 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 01:08:11.863 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:08:12.114 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:08:12.117 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 01:08:12.278 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50928 10 6452 1 2025-10-16 01:09:12.638 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56862 10 6452 1 2025-10-16 01:10:13.053 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47574 10 6452 1 2025-10-16 01:06:44.853 00:05:00.424 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 01:11:13.463 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:45810 12 10369 1 2025-10-16 01:07:44.851 00:05:00.429 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 01:12:13.941 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39100 10 6452 1 2025-10-16 01:13:12.439 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 01:13:12.328 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:13:12.443 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:13:12.386 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 01:13:12.525 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 01:13:14.344 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38366 10 6452 1 2025-10-16 01:14:14.747 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60210 10 6452 1 2025-10-16 01:15:15.153 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36206 10 6452 1 2025-10-16 01:16:15.554 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54974 10 6452 1 2025-10-16 01:12:44.854 00:05:00.425 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 01:17:15.958 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48848 10 6452 1 2025-10-16 01:13:44.851 00:05:00.430 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 01:18:12.485 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 01:18:12.407 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 01:18:12.337 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:18:12.404 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:18:12.311 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 01:18:16.365 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40646 10 6452 1 2025-10-16 01:19:16.764 00:00:11.156 TCP 1.101.0.1:3000 -> 23.104.0.1:56074 10 6452 1 2025-10-16 01:20:17.955 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33278 10 6452 1 2025-10-16 01:21:18.364 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53682 10 6452 1 2025-10-16 01:22:18.728 00:00:10.847 TCP 1.101.0.1:3000 -> 23.104.0.1:53206 10 6452 1 2025-10-16 01:18:44.855 00:05:00.425 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 01:23:12.882 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 01:23:12.425 00:00:00.038 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:23:12.884 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:23:12.770 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 01:23:12.968 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 01:23:19.617 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:40912 10 6452 1 2025-10-16 01:19:44.853 00:05:00.431 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 01:24:19.994 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45124 10 6452 1 2025-10-16 01:25:20.364 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:43298 10 6452 1 2025-10-16 01:26:20.722 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:33324 10 6452 1 2025-10-16 01:27:21.132 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50774 10 6452 1 2025-10-16 01:28:12.733 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 01:28:12.669 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:28:12.605 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:28:12.492 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 01:28:12.688 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 01:28:21.551 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39776 10 6452 1 2025-10-16 01:24:44.857 00:05:00.425 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 01:29:21.916 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58288 10 6452 1 2025-10-16 01:25:44.857 00:05:00.429 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 01:30:22.317 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39100 10 6452 1 2025-10-16 01:31:22.683 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:48078 10 6452 1 2025-10-16 01:32:23.067 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42884 10 6452 1 2025-10-16 01:33:12.918 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 01:33:12.802 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 01:33:12.468 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:33:12.837 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:33:12.799 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 01:33:23.479 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:44282 10 6452 1 2025-10-16 01:34:23.845 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:41364 10 6452 1 2025-10-16 01:30:44.862 00:05:00.423 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 01:35:24.235 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46020 10 6452 1 2025-10-16 01:31:44.859 00:05:00.434 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 01:36:24.636 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:53826 10 6452 1 2025-10-16 01:37:25.055 00:00:10.587 TCP 1.101.0.1:3000 -> 23.104.0.1:52950 10 6452 1 2025-10-16 01:38:12.829 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 01:38:12.868 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:38:12.881 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:38:12.822 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 01:38:12.964 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 01:38:25.684 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34740 10 6452 1 2025-10-16 01:39:26.104 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49308 10 6452 1 2025-10-16 01:40:26.505 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36480 10 6452 1 2025-10-16 01:36:44.862 00:05:00.429 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 01:41:26.869 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54774 10 6452 1 2025-10-16 01:37:44.859 00:05:00.435 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 01:42:27.275 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40190 10 6452 1 2025-10-16 01:43:13.139 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 01:43:12.882 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 01:43:12.903 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:43:13.056 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:43:12.788 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 01:43:27.643 00:00:10.772 TCP 1.101.0.1:3000 -> 23.104.0.1:57486 10 6452 1 2025-10-16 01:44:28.454 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58772 10 6452 1 2025-10-16 01:45:28.859 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37132 10 6452 1 2025-10-16 01:46:29.276 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:48854 10 6452 1 2025-10-16 01:42:44.863 00:05:00.439 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 01:47:29.676 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51462 10 6452 1 2025-10-16 01:43:44.861 00:05:00.444 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 01:48:13.416 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 01:48:13.107 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 01:48:13.079 00:00:00.013 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:48:13.334 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:48:13.216 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 01:48:30.112 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47766 10 6452 1 2025-10-16 01:49:30.515 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53414 10 6452 1 2025-10-16 01:50:30.917 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34438 10 6452 1 2025-10-16 01:51:31.327 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:56792 12 10369 1 2025-10-16 01:52:31.803 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:49656 10 6452 1 2025-10-16 01:48:44.871 00:05:00.434 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 01:53:14.226 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 01:53:14.173 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:53:14.105 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:53:14.174 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 01:53:14.188 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 01:49:44.868 00:05:00.439 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 01:53:32.189 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39836 10 6452 1 2025-10-16 01:54:32.552 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47880 10 6452 1 2025-10-16 01:55:32.953 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42576 10 6452 1 2025-10-16 01:56:33.362 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34886 10 6452 1 2025-10-16 01:57:33.765 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45026 10 6452 1 2025-10-16 01:58:13.214 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 01:58:13.127 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:58:13.110 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 01:58:13.115 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 01:58:13.192 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 01:58:34.165 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55590 10 6452 1 2025-10-16 01:54:44.872 00:05:00.434 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 Summary: total flows: 140, total bytes: 424834, total packets: 1024, avg bps: 884, avg pps: 0, avg bpp: 414 Time window: 2025-10-16 00:55:44 - 2025-10-16 01:59:45 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0051s User: 0.0010s Wall: 0.0019s flows/second: 75263.1 Runtime: 0.0019s