Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-16 03:55:44.905 00:05:00.437 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 03:59:39.205 00:00:10.421 TCP 1.101.0.1:3000 -> 23.104.0.1:37796 11 6504 1 2025-10-16 04:00:39.665 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52462 10 6452 1 2025-10-16 04:01:40.029 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:33454 10 6452 1 2025-10-16 04:02:40.396 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:51234 10 6452 1 2025-10-16 04:03:15.592 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 04:03:15.616 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 04:03:15.328 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 04:03:15.510 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 04:03:15.517 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 04:03:40.811 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:51696 10 6452 1 2025-10-16 04:00:44.909 00:05:00.432 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 04:04:41.187 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:54430 10 6452 1 2025-10-16 04:01:44.907 00:05:00.437 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 04:05:41.555 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56550 10 6452 1 2025-10-16 04:06:41.960 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57886 10 6452 1 2025-10-16 04:07:42.366 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41332 10 6452 1 2025-10-16 04:08:15.885 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 04:08:15.678 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 04:08:15.681 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 04:08:15.803 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 04:08:15.854 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 04:08:42.772 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:42486 10 6452 1 2025-10-16 04:09:43.141 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41024 10 6452 1 2025-10-16 04:06:44.910 00:05:00.433 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 04:10:43.547 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56730 10 6452 1 2025-10-16 04:07:44.908 00:05:00.436 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 04:11:43.948 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48998 10 6452 1 2025-10-16 04:12:44.362 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45454 10 6452 1 2025-10-16 04:13:15.789 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 04:13:15.919 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 04:13:15.911 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 04:13:15.678 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 04:13:15.872 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 04:13:44.764 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:37114 10 6452 1 2025-10-16 04:14:45.180 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38350 10 6452 1 2025-10-16 04:15:45.588 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43594 10 6452 1 2025-10-16 04:12:44.913 00:05:00.433 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 04:16:45.987 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57590 10 6452 1 2025-10-16 04:13:44.910 00:05:00.438 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 04:17:46.392 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53796 10 6452 1 2025-10-16 04:18:15.873 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 04:18:15.977 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 04:18:15.976 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 04:18:16.066 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 04:18:16.059 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 04:18:46.796 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60358 10 6452 1 2025-10-16 04:19:47.200 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38418 10 6452 1 2025-10-16 04:20:47.599 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40436 10 6452 1 2025-10-16 04:21:48.004 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:52716 10 6452 1 2025-10-16 04:18:44.916 00:05:00.432 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 04:22:48.420 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51640 10 6452 1 2025-10-16 04:23:15.929 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 04:23:16.298 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 04:23:16.274 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 04:23:16.215 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 04:23:16.145 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 04:19:44.915 00:05:00.437 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 04:23:48.820 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33198 10 6452 1 2025-10-16 04:24:49.228 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51938 10 6452 1 2025-10-16 04:25:49.629 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52412 10 6452 1 2025-10-16 04:26:50.036 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55414 10 6452 1 2025-10-16 04:27:50.440 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33648 10 6452 1 2025-10-16 04:28:15.855 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 04:28:16.332 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 04:28:16.192 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 04:28:16.250 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 04:28:16.199 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 04:24:44.918 00:05:00.433 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 04:28:50.844 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:33272 10 6452 1 2025-10-16 04:25:44.915 00:05:00.438 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 04:29:51.273 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58220 10 6452 1 2025-10-16 04:30:51.680 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50144 10 6452 1 2025-10-16 04:31:52.108 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:44906 10 6452 1 2025-10-16 04:32:52.516 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44088 10 6452 1 2025-10-16 04:33:16.318 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 04:33:16.276 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 04:33:16.240 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 04:33:16.159 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 04:33:16.322 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 04:33:52.919 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41782 10 6452 1 2025-10-16 04:30:44.921 00:05:00.431 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 04:34:53.326 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:32772 10 6452 1 2025-10-16 04:31:44.918 00:05:00.436 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 04:35:53.735 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35056 10 6452 1 2025-10-16 04:36:54.138 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57676 10 6452 1 2025-10-16 04:37:54.540 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39434 10 6452 1 2025-10-16 04:38:16.263 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 04:38:16.403 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 04:38:16.327 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 04:38:16.071 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 04:38:16.409 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 04:38:54.944 00:00:10.588 TCP 1.101.0.1:3000 -> 23.104.0.1:49904 10 6452 1 2025-10-16 04:39:55.572 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:34596 10 6452 1 2025-10-16 04:36:44.924 00:05:00.431 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 04:40:55.971 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49820 10 6452 1 2025-10-16 04:37:44.921 00:05:00.435 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 04:41:56.379 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52118 10 6452 1 2025-10-16 04:42:56.780 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40512 10 6452 1 2025-10-16 04:43:16.418 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 04:43:16.052 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 04:43:16.297 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 04:43:16.420 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 04:43:16.379 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 04:43:57.191 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37000 10 6452 1 2025-10-16 04:44:57.592 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48462 10 6452 1 2025-10-16 04:45:58.001 00:00:10.863 TCP 1.101.0.1:3000 -> 23.104.0.1:35774 10 6452 1 2025-10-16 04:42:44.923 00:05:00.430 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 04:46:58.906 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48580 10 6452 1 2025-10-16 04:43:44.921 00:05:00.435 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 04:47:59.319 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46614 10 6452 1 2025-10-16 04:48:16.884 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 04:48:16.717 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 04:48:16.457 00:00:00.038 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 04:48:16.802 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 04:48:16.710 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 04:48:59.720 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:49084 10 6452 1 2025-10-16 04:50:00.148 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:58568 10 6452 1 2025-10-16 04:51:00.557 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41460 10 6452 1 2025-10-16 04:52:00.964 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37226 10 6452 1 2025-10-16 04:48:44.925 00:05:00.430 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 04:53:01.368 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46382 10 6452 1 2025-10-16 04:53:16.504 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 04:53:16.651 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 04:53:16.627 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 04:53:16.702 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 04:53:16.709 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 04:49:44.923 00:05:00.435 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 04:54:01.772 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55166 10 6452 1 2025-10-16 04:55:02.184 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54864 10 6452 1 2025-10-16 04:56:02.587 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59974 10 6452 1 2025-10-16 04:57:02.992 00:00:10.515 TCP 1.101.0.1:3000 -> 23.104.0.1:34090 14 14298 1 2025-10-16 04:58:03.545 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34322 10 6452 1 2025-10-16 04:58:16.689 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 04:58:16.691 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 04:58:16.823 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 04:58:16.581 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 04:58:16.772 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 04:54:44.925 00:05:00.430 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 Summary: total flows: 139, total bytes: 418446, total packets: 1015, avg bps: 871, avg pps: 0, avg bpp: 412 Time window: 2025-10-16 03:55:44 - 2025-10-16 04:59:45 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0035s User: 0.0012s Wall: 0.0023s flows/second: 61557.2 Runtime: 0.0023s