Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-16 02:59:08.644 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50878 10 6452 1 2025-10-16 02:55:44.884 00:05:00.437 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 03:00:09.053 00:00:10.777 TCP 1.101.0.1:3000 -> 23.104.0.1:60602 10 6452 1 2025-10-16 03:01:09.869 00:00:10.544 TCP 1.101.0.1:3000 -> 23.104.0.1:43014 10 6452 1 2025-10-16 03:02:10.449 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54824 10 6452 1 2025-10-16 03:03:14.512 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 03:03:14.576 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:03:14.572 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:03:14.620 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 03:03:14.655 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 03:03:10.851 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:60612 10 6452 1 2025-10-16 03:04:11.271 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48018 10 6452 1 2025-10-16 03:00:44.889 00:05:00.431 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 03:05:11.679 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38714 10 6452 1 2025-10-16 03:01:44.888 00:05:00.435 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 03:06:12.109 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:50226 10 6452 1 2025-10-16 03:07:12.521 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44352 10 6452 1 2025-10-16 03:08:14.390 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 03:08:14.477 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 03:08:14.224 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:08:14.307 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:08:14.609 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 03:08:12.922 00:00:10.446 TCP 1.101.0.1:3000 -> 23.104.0.1:37386 10 6452 1 2025-10-16 03:09:13.407 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44510 10 6452 1 2025-10-16 03:10:13.814 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:36062 10 6452 1 2025-10-16 03:06:44.891 00:05:00.431 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 03:11:14.182 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:34932 12 10369 1 2025-10-16 03:07:44.888 00:05:00.438 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 03:12:14.657 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45278 10 6452 1 2025-10-16 03:13:14.691 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 03:13:14.916 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 03:13:14.615 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:13:14.610 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:13:14.778 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 03:13:15.074 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50426 10 6452 1 2025-10-16 03:14:15.437 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56586 10 6452 1 2025-10-16 03:15:15.850 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:41196 10 6452 1 2025-10-16 03:16:16.249 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:39190 10 6452 1 2025-10-16 03:12:44.891 00:05:00.433 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 03:17:16.677 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:41164 10 6452 1 2025-10-16 03:13:44.888 00:05:00.439 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 03:18:15.013 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 03:18:14.929 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 03:18:14.541 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:18:14.929 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:18:14.930 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 03:18:17.112 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:42780 10 6452 1 2025-10-16 03:19:17.478 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46842 10 6452 1 2025-10-16 03:20:17.878 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58520 12 6556 1 2025-10-16 03:21:18.283 00:00:10.446 TCP 1.101.0.1:3000 -> 23.104.0.1:48846 12 10369 1 2025-10-16 03:22:18.791 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44916 10 6452 1 2025-10-16 03:18:44.898 00:05:00.429 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 03:23:14.998 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 03:23:14.913 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 03:23:14.774 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:23:14.916 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:23:14.845 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 03:23:19.189 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51142 10 6452 1 2025-10-16 03:19:44.896 00:05:00.434 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 03:24:19.554 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:47938 10 6452 1 2025-10-16 03:25:19.913 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43662 10 6452 1 2025-10-16 03:26:20.321 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51998 10 6452 1 2025-10-16 03:27:20.677 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43636 10 6452 1 2025-10-16 03:28:14.911 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 03:28:14.830 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:28:15.091 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 03:28:14.986 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 03:28:14.835 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:28:21.104 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40178 10 6452 1 2025-10-16 03:24:44.897 00:05:00.431 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 03:29:21.510 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34712 10 6452 1 2025-10-16 03:25:44.896 00:05:00.436 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 03:30:21.916 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53916 10 6452 1 2025-10-16 03:31:22.321 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45648 10 6452 1 2025-10-16 03:32:22.722 00:00:15.838 TCP 1.101.0.1:3000 -> 23.104.0.1:48146 10 6452 1 2025-10-16 03:33:15.153 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 03:33:15.119 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 03:33:15.072 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:33:15.070 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:33:14.970 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 03:33:28.598 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:46618 10 6452 1 2025-10-16 03:34:28.960 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52796 10 6452 1 2025-10-16 03:30:44.901 00:05:00.431 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 03:35:29.324 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54408 10 6452 1 2025-10-16 03:31:44.899 00:05:00.437 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 03:36:29.724 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40556 10 6452 1 2025-10-16 03:37:30.131 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37116 10 6452 1 2025-10-16 03:38:15.310 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 03:38:15.225 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 03:38:14.877 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:38:15.228 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:38:15.271 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 03:38:30.531 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56660 10 6452 1 2025-10-16 03:39:30.940 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:36132 10 6452 1 2025-10-16 03:40:31.356 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57738 10 6452 1 2025-10-16 03:36:44.903 00:05:00.430 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 03:41:31.758 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:40036 10 6452 1 2025-10-16 03:37:44.902 00:05:00.435 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 03:42:32.118 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47330 10 6452 1 2025-10-16 03:43:15.310 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 03:43:15.406 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 03:43:14.894 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:43:15.226 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:43:15.410 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 03:43:32.525 00:00:10.542 TCP 1.101.0.1:3000 -> 23.104.0.1:39112 10 6452 1 2025-10-16 03:44:33.111 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:37360 10 6452 1 2025-10-16 03:45:33.529 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35634 10 6452 1 2025-10-16 03:46:33.935 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:39006 10 6452 1 2025-10-16 03:42:44.904 00:05:00.429 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 03:43:44.902 00:05:00.434 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 03:47:34.354 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37866 10 6452 1 2025-10-16 03:48:15.521 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 03:48:15.173 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:48:15.382 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:48:15.516 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 03:48:15.466 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 03:48:34.759 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:46816 10 6452 1 2025-10-16 03:49:35.135 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47158 10 6452 1 2025-10-16 03:50:35.545 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46046 10 6452 1 2025-10-16 03:51:35.951 00:00:10.449 TCP 1.101.0.1:3000 -> 23.104.0.1:35118 12 10375 1 2025-10-16 03:48:44.906 00:05:00.431 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 03:52:36.441 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:32800 10 6452 1 2025-10-16 03:53:15.318 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 03:53:15.259 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:53:15.469 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:53:15.417 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 03:53:15.552 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 03:49:44.903 00:05:00.437 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 03:53:36.839 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53726 10 6452 1 2025-10-16 03:54:37.235 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35240 10 6452 1 2025-10-16 03:55:37.644 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:35414 10 6452 1 2025-10-16 03:56:38.029 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46382 10 6452 1 2025-10-16 03:57:38.433 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:58244 10 6452 1 2025-10-16 03:58:15.789 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 03:58:15.450 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 03:58:15.405 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:58:15.707 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 03:58:15.560 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 03:54:44.907 00:05:00.433 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 03:58:38.797 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46888 10 6452 1 Summary: total flows: 140, total bytes: 428861, total packets: 1028, avg bps: 893, avg pps: 0, avg bpp: 417 Time window: 2025-10-16 02:55:44 - 2025-10-16 03:59:45 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0028s User: 0.0028s Wall: 0.0019s flows/second: 74783.8 Runtime: 0.0019s