Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-16 06:59:09.271 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38822 10 6452 1 2025-10-16 06:55:44.977 00:05:00.426 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 07:00:09.678 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37636 10 6452 1 2025-10-16 07:01:10.113 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59060 10 6452 1 2025-10-16 07:02:10.531 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35750 10 6452 1 2025-10-16 07:03:19.490 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 07:03:19.200 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 07:03:19.243 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 07:03:19.406 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 07:03:19.291 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 07:03:10.939 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:59770 10 6452 1 2025-10-16 07:04:11.351 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43750 10 6452 1 2025-10-16 07:00:44.982 00:05:00.420 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 07:05:11.754 00:00:10.571 TCP 1.101.0.1:3000 -> 23.104.0.1:54610 10 6452 1 2025-10-16 07:01:44.986 00:05:00.418 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 07:06:12.360 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58946 10 6452 1 2025-10-16 07:07:12.759 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:44030 10 6452 1 2025-10-16 07:08:19.549 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 07:08:19.463 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 07:08:18.984 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 07:08:19.466 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 07:08:19.468 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 07:08:13.137 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54724 10 6452 1 2025-10-16 07:09:13.541 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37318 12 6556 1 2025-10-16 07:10:13.955 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:60742 10 6452 1 2025-10-16 07:06:44.991 00:05:00.413 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 07:11:14.316 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43748 10 6452 1 2025-10-16 07:07:44.988 00:05:00.419 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 07:12:14.678 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41952 10 6452 1 2025-10-16 07:13:19.674 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 07:13:19.415 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 07:13:19.386 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 07:13:19.485 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 07:13:19.468 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 07:13:15.109 00:00:10.790 TCP 1.101.0.1:3000 -> 23.104.0.1:35646 10 6452 1 2025-10-16 07:14:15.934 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:59822 10 6452 1 2025-10-16 07:15:16.362 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:37876 10 6452 1 2025-10-16 07:16:16.720 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48536 10 6452 1 2025-10-16 07:12:44.991 00:05:00.414 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 07:17:17.136 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:34432 10 6452 1 2025-10-16 07:13:44.988 00:05:00.419 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 07:18:19.649 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 07:18:19.674 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 07:18:19.730 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 07:18:19.517 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 07:18:19.813 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 07:18:17.538 00:00:10.993 TCP 1.101.0.1:3000 -> 23.104.0.1:48916 10 6452 1 2025-10-16 07:19:18.570 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48670 10 6452 1 2025-10-16 07:20:18.971 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:47632 10 6452 1 2025-10-16 07:21:19.387 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55048 10 6452 1 2025-10-16 07:22:19.802 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56068 10 6452 1 2025-10-16 07:18:44.991 00:05:00.415 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 07:23:19.703 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 07:23:19.348 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 07:23:19.700 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 07:23:19.749 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 07:23:19.783 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 07:23:20.206 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57966 10 6452 1 2025-10-16 07:19:44.990 00:05:00.420 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 07:24:20.613 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57524 10 6452 1 2025-10-16 07:25:20.980 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53554 10 6452 1 2025-10-16 07:26:21.382 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34578 10 6452 1 2025-10-16 07:27:21.785 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44334 10 6452 1 2025-10-16 07:28:19.950 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 07:28:20.157 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 07:28:19.537 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 07:28:19.868 00:00:00.031 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 07:28:20.157 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 07:28:22.189 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41820 10 6452 1 2025-10-16 07:24:44.994 00:05:00.415 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 07:29:22.591 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:36292 10 6452 1 2025-10-16 07:25:44.992 00:05:00.419 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 07:30:23.018 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35182 10 6452 1 2025-10-16 07:31:23.383 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:40730 10 6452 1 2025-10-16 07:32:23.749 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38444 10 6452 1 2025-10-16 07:33:20.053 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 07:33:19.795 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 07:33:19.895 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 07:33:19.971 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 07:33:20.071 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 07:33:24.155 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42766 10 6452 1 2025-10-16 07:34:24.566 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44242 10 6452 1 2025-10-16 07:30:44.996 00:05:00.413 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 07:35:24.969 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51076 10 6452 1 2025-10-16 07:31:44.993 00:05:00.420 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 07:36:25.379 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36464 10 6452 1 2025-10-16 07:37:25.781 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40000 10 6452 1 2025-10-16 07:38:20.049 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 07:38:20.103 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 07:38:19.788 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 07:38:19.884 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 07:38:19.869 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 07:38:26.189 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59298 10 6452 1 2025-10-16 07:39:26.551 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:36174 10 6452 1 2025-10-16 07:40:26.912 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33962 10 6452 1 2025-10-16 07:36:44.997 00:05:00.414 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-16 07:41:27.319 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:48312 12 10375 1 2025-10-16 07:37:44.996 00:05:00.418 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-16 07:42:27.803 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56998 10 6452 1 2025-10-16 07:43:20.418 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 07:43:20.476 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 07:43:20.161 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 07:43:20.171 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 07:43:20.244 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 07:43:28.206 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60466 10 6452 1 2025-10-16 07:44:28.612 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52172 10 6452 1 2025-10-16 07:45:29.023 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:55422 10 6452 1 2025-10-16 07:46:29.423 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54822 10 6452 1 2025-10-16 07:43:44.998 00:05:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 11 686 1 2025-10-16 07:47:29.825 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:58850 10 6452 1 2025-10-16 07:42:45.002 00:06:00.412 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 07:48:20.166 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 07:48:20.169 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 07:48:19.986 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 07:48:20.082 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 07:48:20.216 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 07:48:30.187 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49002 10 6452 1 2025-10-16 07:49:30.590 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53826 10 6452 1 2025-10-16 07:50:30.993 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53588 10 6452 1 2025-10-16 07:51:31.357 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55084 10 6452 1 2025-10-16 07:52:31.793 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54166 10 6452 1 2025-10-16 07:53:20.275 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 07:53:20.121 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 07:53:20.325 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 07:53:20.193 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 07:53:20.285 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 07:53:32.196 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:36844 10 6452 1 2025-10-16 07:48:45.417 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 790 1 2025-10-16 07:54:32.612 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42296 10 6452 1 2025-10-16 07:49:45.004 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-10-16 07:55:33.018 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56842 10 6452 1 2025-10-16 07:56:33.422 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41750 10 6452 1 2025-10-16 07:57:33.823 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57172 10 6452 1 2025-10-16 07:58:20.193 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 07:58:20.390 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 07:58:20.362 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 07:58:20.365 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 07:58:20.444 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 07:58:34.227 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50152 10 6452 1 Summary: total flows: 139, total bytes: 420464, total packets: 1015, avg bps: 889, avg pps: 0, avg bpp: 414 Time window: 2025-10-16 06:55:44 - 2025-10-16 07:58:44 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0031s User: 0.0023s Wall: 0.0024s flows/second: 58800.6 Runtime: 0.0024s