Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-16 05:55:44.944 00:05:00.437 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 05:59:38.974 00:00:14.049 TCP 1.101.0.1:3000 -> 23.104.0.1:38870 10 6452 1 2025-10-16 06:00:43.064 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58646 10 6452 1 2025-10-16 06:01:43.468 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:54018 10 6452 1 2025-10-16 06:02:43.863 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:40620 10 6452 1 2025-10-16 06:03:18.280 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 06:03:18.079 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 06:03:17.814 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 06:03:18.197 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 06:03:17.976 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 06:03:44.282 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49228 10 6452 1 2025-10-16 06:00:44.954 00:05:00.425 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 06:04:44.680 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:38738 10 6452 1 2025-10-16 06:01:44.950 00:05:00.431 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 06:05:45.049 00:00:10.991 TCP 1.101.0.1:3000 -> 23.104.0.1:41094 10 6452 1 2025-10-16 06:06:46.106 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:55368 12 10375 1 2025-10-16 06:07:46.583 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57184 10 6452 1 2025-10-16 06:08:18.262 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 06:08:18.094 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 06:08:18.011 00:00:00.041 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 06:08:18.179 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 06:08:17.993 00:00:00.034 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 06:08:46.993 00:00:10.949 TCP 1.101.0.1:3000 -> 23.104.0.1:54836 10 6452 1 2025-10-16 06:09:47.977 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:40960 10 6452 1 2025-10-16 06:06:44.953 00:05:00.428 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 06:10:48.398 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:40976 10 6452 1 2025-10-16 06:07:44.951 00:05:00.433 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 06:11:48.763 00:00:10.847 TCP 1.101.0.1:3000 -> 23.104.0.1:36326 10 6452 1 2025-10-16 06:12:49.655 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33600 10 6452 1 2025-10-16 06:13:18.289 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 06:13:18.288 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 06:13:18.145 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 06:13:18.206 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 06:13:18.393 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 06:13:50.061 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42156 10 6452 1 2025-10-16 06:14:50.471 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48968 10 6452 1 2025-10-16 06:15:50.871 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43714 10 6452 1 2025-10-16 06:12:44.956 00:05:00.428 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 06:16:51.280 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55168 10 6452 1 2025-10-16 06:13:44.953 00:05:00.433 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 06:17:51.684 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51756 10 6452 1 2025-10-16 06:18:18.552 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 06:18:18.175 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 06:18:18.221 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 06:18:18.427 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 06:18:18.304 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 06:18:52.107 00:00:11.134 TCP 1.101.0.1:3000 -> 23.104.0.1:59950 10 6452 1 2025-10-16 06:19:53.275 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33052 10 6452 1 2025-10-16 06:20:53.678 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56428 10 6452 1 2025-10-16 06:21:54.112 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37376 10 6452 1 2025-10-16 06:18:44.960 00:05:00.428 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 06:22:54.522 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49428 10 6452 1 2025-10-16 06:23:18.910 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 06:23:18.635 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 06:23:18.777 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 06:23:18.827 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 06:23:18.983 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 06:19:44.958 00:05:00.433 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 06:23:54.925 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37422 10 6452 1 2025-10-16 06:24:55.329 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47884 10 6452 1 2025-10-16 06:25:55.733 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33518 10 6452 1 2025-10-16 06:26:56.113 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37570 10 6452 1 2025-10-16 06:27:56.517 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45930 10 6452 1 2025-10-16 06:28:18.640 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 06:28:18.632 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 06:28:18.486 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 06:28:18.558 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 06:28:18.709 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 06:24:44.960 00:05:00.429 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 06:28:56.927 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:38726 13 6608 1 2025-10-16 06:25:44.958 00:05:00.434 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 06:29:57.373 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41186 10 6452 1 2025-10-16 06:30:57.806 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:53250 10 6452 1 2025-10-16 06:31:58.182 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42332 10 6452 1 2025-10-16 06:32:58.586 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54984 10 6452 1 2025-10-16 06:33:18.789 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 06:33:18.705 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 06:33:18.715 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 06:33:18.706 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 06:33:18.647 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 06:33:58.991 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36658 10 6452 1 2025-10-16 06:30:44.963 00:05:00.429 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 06:34:59.399 00:00:10.623 TCP 1.101.0.1:3000 -> 23.104.0.1:53996 10 6452 1 2025-10-16 06:31:44.961 00:05:00.435 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 06:36:00.064 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36476 10 6452 1 2025-10-16 06:37:00.462 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:58658 12 10375 1 2025-10-16 06:38:00.935 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:40832 10 6452 1 2025-10-16 06:38:18.647 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 06:38:18.740 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 06:38:18.757 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 06:38:18.565 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 06:38:18.800 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 06:39:01.356 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33540 10 6452 1 2025-10-16 06:40:01.764 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:36748 10 6452 1 2025-10-16 06:36:44.966 00:05:00.428 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 06:41:02.131 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48344 10 6452 1 2025-10-16 06:37:44.962 00:05:00.438 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 06:42:02.538 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51280 10 6452 1 2025-10-16 06:43:02.941 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:55894 10 6452 1 2025-10-16 06:43:18.995 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 06:43:18.665 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 06:43:18.804 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 06:43:18.912 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 06:43:18.916 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 06:44:03.365 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35886 10 6452 1 2025-10-16 06:45:03.770 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58670 10 6452 1 2025-10-16 06:46:04.179 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34916 10 6452 1 2025-10-16 06:42:44.975 00:05:00.419 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 06:47:04.589 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60912 10 6452 1 2025-10-16 06:43:44.974 00:05:00.424 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 06:48:19.259 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 06:48:05.002 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50246 10 6452 1 2025-10-16 06:48:18.956 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 06:48:18.697 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 06:48:19.177 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 06:48:18.805 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 06:49:05.405 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35126 10 6452 1 2025-10-16 06:50:05.805 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36814 10 6452 1 2025-10-16 06:51:06.209 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57602 10 6452 1 2025-10-16 06:52:06.613 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41126 10 6452 1 2025-10-16 06:48:44.978 00:05:00.418 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 06:53:19.232 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 06:53:19.010 00:00:00.039 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 06:53:19.109 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 06:53:19.149 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 06:53:06.977 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:59670 10 6452 1 2025-10-16 06:53:19.194 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 06:49:44.977 00:05:00.423 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 06:54:07.341 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:35290 10 6452 1 2025-10-16 06:55:07.703 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60286 10 6452 1 2025-10-16 06:56:08.114 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:58088 10 6452 1 2025-10-16 06:57:08.475 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:34636 10 6452 1 2025-10-16 06:58:19.019 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 06:58:08.846 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:53232 10 6452 1 2025-10-16 06:58:18.944 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 06:58:19.215 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 06:58:18.935 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 06:58:19.093 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 06:54:44.980 00:05:00.420 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 Summary: total flows: 139, total bytes: 418550, total packets: 1017, avg bps: 871, avg pps: 0, avg bpp: 411 Time window: 2025-10-16 05:55:44 - 2025-10-16 06:59:45 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0038s User: 0.0019s Wall: 0.0020s flows/second: 69779.6 Runtime: 0.0020s