Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-16 01:55:44.870 00:05:00.439 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 01:59:34.575 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42776 10 6452 1 2025-10-16 02:00:34.982 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45248 10 6452 1 2025-10-16 02:01:35.387 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35356 10 6452 1 2025-10-16 02:02:35.784 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60544 10 6452 1 2025-10-16 02:03:13.482 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 02:03:13.395 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 02:03:13.277 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:03:13.400 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:03:13.347 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 02:03:36.187 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:38268 10 6452 1 2025-10-16 02:04:36.611 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47482 10 6452 1 2025-10-16 02:00:44.876 00:05:00.433 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 02:05:37.010 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:54190 10 6452 1 2025-10-16 02:01:44.871 00:05:00.439 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 02:06:37.410 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:47662 10 6452 1 2025-10-16 02:07:37.778 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55680 10 6452 1 2025-10-16 02:08:14.080 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 02:08:13.229 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:08:14.077 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:08:13.873 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 02:08:14.161 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 02:08:38.190 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50762 10 6452 1 2025-10-16 02:09:38.596 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41456 10 6452 1 2025-10-16 02:06:44.876 00:05:00.433 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 02:10:39.001 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:46720 10 6452 1 2025-10-16 02:07:44.874 00:05:00.438 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 02:11:39.380 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57792 10 6452 1 2025-10-16 02:12:39.747 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37536 10 6452 1 2025-10-16 02:13:13.571 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 02:13:13.448 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:13:13.572 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:13:13.501 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 02:13:13.656 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 02:13:40.114 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56956 10 6452 1 2025-10-16 02:14:40.513 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53872 10 6452 1 2025-10-16 02:15:40.917 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39462 10 6452 1 2025-10-16 02:12:44.878 00:05:00.432 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 02:16:41.320 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54400 10 6452 1 2025-10-16 02:13:44.875 00:05:00.438 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 02:17:41.723 00:00:10.551 TCP 1.101.0.1:3000 -> 23.104.0.1:45204 10 6452 1 2025-10-16 02:18:13.810 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 02:18:13.444 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:18:13.835 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:18:13.728 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 02:18:13.918 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 02:18:42.313 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:52788 11 6504 1 2025-10-16 02:19:42.771 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42560 10 6452 1 2025-10-16 02:20:43.135 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56116 10 6452 1 2025-10-16 02:21:43.534 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53230 10 6452 1 2025-10-16 02:18:44.879 00:05:00.433 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 02:22:43.938 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:48078 10 6452 1 2025-10-16 02:23:13.790 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 02:23:13.700 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 02:23:13.768 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:23:13.708 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:23:13.838 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 02:19:44.876 00:05:00.437 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 02:23:44.354 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50610 10 6452 1 2025-10-16 02:24:44.756 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:44636 10 6452 1 2025-10-16 02:25:45.171 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56542 10 6452 1 2025-10-16 02:26:45.571 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55018 10 6452 1 2025-10-16 02:27:45.970 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:37900 10 6452 1 2025-10-16 02:28:14.231 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 02:28:14.151 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 02:28:14.011 00:00:00.043 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:28:14.148 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:28:13.888 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 02:24:44.880 00:05:00.432 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 02:28:46.385 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39896 10 6452 1 2025-10-16 02:25:44.879 00:05:00.436 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 02:29:46.787 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60836 10 6452 1 2025-10-16 02:30:47.191 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42176 10 6452 1 2025-10-16 02:31:47.592 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58040 10 6452 1 2025-10-16 02:32:47.991 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37502 10 6452 1 2025-10-16 02:33:14.199 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 02:33:14.117 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:33:13.914 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 02:33:14.117 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 02:33:14.011 00:00:00.032 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:33:48.401 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37582 10 6452 1 2025-10-16 02:30:44.883 00:05:00.431 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 02:34:48.802 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:41566 10 6452 1 2025-10-16 02:31:44.880 00:05:00.436 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 02:35:49.220 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54738 10 6452 1 2025-10-16 02:36:49.621 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33060 10 6452 1 2025-10-16 02:37:50.028 00:00:10.479 TCP 1.101.0.1:3000 -> 23.104.0.1:58790 10 6452 1 2025-10-16 02:38:14.084 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 02:38:13.650 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:38:13.960 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:38:14.084 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 02:38:14.044 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 02:38:50.548 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50838 10 6452 1 2025-10-16 02:39:50.916 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42858 10 6452 1 2025-10-16 02:36:44.883 00:05:00.432 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 02:40:51.312 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50292 10 6452 1 2025-10-16 02:37:44.881 00:05:00.437 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 02:41:51.720 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:52668 10 6452 1 2025-10-16 02:42:52.142 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48758 10 6452 1 2025-10-16 02:43:14.204 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 02:43:14.043 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 02:43:13.743 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:43:14.122 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:43:14.060 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 02:43:52.543 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44220 10 6452 1 2025-10-16 02:44:52.951 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38998 10 6452 1 2025-10-16 02:45:53.360 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35378 10 6452 1 2025-10-16 02:42:44.884 00:05:00.432 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 02:46:53.762 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:37264 10 6452 1 2025-10-16 02:43:44.881 00:05:00.438 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 02:47:54.134 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58162 10 6452 1 2025-10-16 02:48:14.321 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 02:48:14.352 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 02:48:14.159 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:48:14.237 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:48:14.059 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 02:48:54.537 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:58032 10 6452 1 2025-10-16 02:49:54.952 00:00:20.429 TCP 1.101.0.1:3000 -> 23.104.0.1:57852 10 6452 1 2025-10-16 02:51:05.416 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58672 10 6452 1 2025-10-16 02:52:05.830 00:00:10.352 TCP 1.101.0.1:3000 -> 23.104.0.1:41262 10 6452 1 2025-10-16 02:48:44.885 00:05:00.432 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 02:53:14.504 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 02:53:14.430 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 02:53:14.490 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:53:14.421 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:53:14.428 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 02:53:06.200 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35242 10 6452 1 2025-10-16 02:49:44.882 00:05:00.437 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 02:54:06.606 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:51084 10 6452 1 2025-10-16 02:55:07.022 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47062 10 6452 1 2025-10-16 02:56:07.419 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40984 10 6452 1 2025-10-16 02:57:07.822 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55658 10 6452 1 2025-10-16 02:58:14.535 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 02:58:14.337 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:58:14.529 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 02:58:14.524 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 02:58:14.613 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 02:58:08.220 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:39320 10 6452 1 2025-10-16 02:54:44.887 00:05:00.431 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 Summary: total flows: 139, total bytes: 410600, total packets: 1011, avg bps: 855, avg pps: 0, avg bpp: 406 Time window: 2025-10-16 01:55:44 - 2025-10-16 02:59:45 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0026s User: 0.0026s Wall: 0.0019s flows/second: 72630.9 Runtime: 0.0019s