Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-16 04:59:03.950 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:36202 10 6452 1 2025-10-16 04:55:44.924 00:05:00.435 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 05:00:04.318 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58496 10 6452 1 2025-10-16 05:01:04.718 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:40066 10 6452 1 2025-10-16 05:02:05.110 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37634 10 6452 1 2025-10-16 05:03:05.513 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51288 10 6452 1 2025-10-16 05:03:16.730 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 05:03:16.678 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 05:03:16.882 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 05:03:16.841 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 05:03:16.966 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 05:04:05.877 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:58764 10 6452 1 2025-10-16 05:00:44.929 00:05:00.428 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 05:05:06.238 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:51582 10 6452 1 2025-10-16 05:01:44.927 00:05:00.432 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 05:06:06.602 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:35316 10 6452 1 2025-10-16 05:07:06.970 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34168 10 6452 1 2025-10-16 05:08:17.232 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 05:08:07.378 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55946 10 6452 1 2025-10-16 05:08:16.650 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 05:08:16.991 00:00:00.051 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 05:08:16.992 00:00:00.041 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 05:08:17.074 00:00:00.050 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 05:09:07.792 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52296 10 6452 1 2025-10-16 05:10:08.154 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49434 10 6452 1 2025-10-16 05:06:44.931 00:05:00.427 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 05:11:08.557 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36866 10 6452 1 2025-10-16 05:07:44.929 00:05:00.432 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 05:12:08.959 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:39018 10 6452 1 2025-10-16 05:13:09.337 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35134 10 6452 1 2025-10-16 05:13:17.073 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 05:13:16.998 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 05:13:16.965 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 05:13:17.147 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 05:13:17.048 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 05:14:09.696 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34592 10 6452 1 2025-10-16 05:15:10.113 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38104 10 6452 1 2025-10-16 05:16:10.515 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:51024 11 6504 1 2025-10-16 05:12:44.936 00:05:00.427 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 05:17:10.973 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57916 10 6452 1 2025-10-16 05:13:44.931 00:05:00.433 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 05:18:17.134 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 05:18:16.946 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 05:18:17.131 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 05:18:17.125 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 05:18:17.213 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 05:18:11.385 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:41842 10 6452 1 2025-10-16 05:19:11.763 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:55048 10 6452 1 2025-10-16 05:20:12.181 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39680 10 6452 1 2025-10-16 05:21:12.539 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45562 10 6452 1 2025-10-16 05:22:12.942 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:34014 10 6452 1 2025-10-16 05:18:44.935 00:05:00.431 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 05:23:17.352 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 05:23:17.227 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 05:23:17.305 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 05:23:17.236 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 05:23:17.434 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 05:23:13.366 00:00:12.226 TCP 1.101.0.1:3000 -> 23.104.0.1:54192 10 6452 1 2025-10-16 05:19:44.933 00:05:00.436 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 05:24:15.629 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41762 10 6452 1 2025-10-16 05:25:16.037 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58362 10 6452 1 2025-10-16 05:26:16.442 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:55734 10 6452 1 2025-10-16 05:27:16.881 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53148 10 6452 1 2025-10-16 05:28:17.431 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 05:28:17.284 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 05:28:17.339 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 05:28:17.270 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 05:28:17.421 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 05:28:17.289 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49648 10 6452 1 2025-10-16 05:24:44.937 00:05:00.432 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 05:29:17.690 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38256 10 6452 1 2025-10-16 05:25:44.935 00:05:00.436 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 05:30:18.114 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36424 10 6452 1 2025-10-16 05:31:18.516 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37010 10 6452 1 2025-10-16 05:32:18.879 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:39274 10 6452 1 2025-10-16 05:33:17.537 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 05:33:17.284 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 05:33:17.488 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 05:33:17.544 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 05:33:17.572 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 05:33:19.262 00:00:10.602 TCP 1.101.0.1:3000 -> 23.104.0.1:55484 10 6452 1 2025-10-16 05:34:19.903 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:37444 12 6556 1 2025-10-16 05:30:44.937 00:05:00.432 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 05:35:20.331 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52622 10 6452 1 2025-10-16 05:31:44.936 00:05:00.436 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 05:36:20.740 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39982 10 6452 1 2025-10-16 05:37:21.140 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58506 10 6452 1 2025-10-16 05:38:17.658 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 05:38:17.625 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 05:38:17.393 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 05:38:17.572 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 05:38:17.349 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 05:38:21.546 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50038 10 6452 1 2025-10-16 05:39:21.945 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:38826 10 6452 1 2025-10-16 05:40:22.360 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57668 10 6452 1 2025-10-16 05:36:44.943 00:05:00.430 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 05:41:22.723 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33624 10 6452 1 2025-10-16 05:37:44.938 00:05:00.436 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 05:42:23.114 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49782 10 6452 1 2025-10-16 05:43:17.817 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 05:43:17.505 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 05:43:17.431 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 05:43:17.734 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 05:43:17.522 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 05:43:23.519 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:53698 10 6452 1 2025-10-16 05:44:23.889 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:44166 12 6556 1 2025-10-16 05:45:24.311 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39848 10 6452 1 2025-10-16 05:46:24.724 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:60278 10 6452 1 2025-10-16 05:42:44.942 00:05:00.433 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 05:47:25.108 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35100 10 6452 1 2025-10-16 05:43:44.939 00:05:00.440 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 05:48:18.297 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 05:48:18.523 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 05:48:18.405 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 05:48:18.555 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 05:48:18.605 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 05:48:25.468 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59998 10 6452 1 2025-10-16 05:49:25.892 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:42240 10 6452 1 2025-10-16 05:50:26.317 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:56556 10 6452 1 2025-10-16 05:51:26.729 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33896 10 6452 1 2025-10-16 05:52:27.137 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46250 10 6452 1 2025-10-16 05:48:44.945 00:05:00.432 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 05:53:17.860 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 05:53:17.964 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 05:53:17.719 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 05:53:17.777 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 05:53:17.838 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 05:53:27.539 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47298 10 6452 1 2025-10-16 05:49:44.944 00:05:00.437 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 05:54:27.937 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:39240 10 6452 1 2025-10-16 05:55:28.350 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40090 10 6452 1 2025-10-16 05:56:28.751 00:00:19.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52434 10 6452 1 2025-10-16 05:57:38.160 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41396 10 6452 1 2025-10-16 05:58:18.782 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 05:58:18.793 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 05:58:18.675 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 05:58:18.700 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 05:58:18.784 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 05:58:38.568 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52298 10 6452 1 2025-10-16 05:54:44.945 00:05:00.433 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 Summary: total flows: 140, total bytes: 417260, total packets: 1025, avg bps: 869, avg pps: 0, avg bpp: 407 Time window: 2025-10-16 04:55:44 - 2025-10-16 05:59:45 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0028s User: 0.0019s Wall: 0.0020s flows/second: 68390.7 Runtime: 0.0021s