Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-16 10:58:48.822 00:00:10.421 TCP 1.101.0.1:3000 -> 23.104.0.1:38926 11 6504 1 2025-10-16 10:54:45.093 00:06:00.382 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 10:59:49.283 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55502 10 6452 1 2025-10-16 11:00:49.645 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37788 10 6452 1 2025-10-16 11:01:50.056 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:45642 10 6452 1 2025-10-16 10:57:45.091 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-10-16 11:02:50.479 00:00:11.792 TCP 1.101.0.1:3000 -> 23.104.0.1:59322 10 6452 1 2025-10-16 11:03:23.962 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 11:03:24.077 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 11:03:24.075 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 11:03:23.879 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 11:03:24.073 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 11:03:52.308 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45576 10 6452 1 2025-10-16 11:04:52.674 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:35794 10 6452 1 2025-10-16 11:05:53.104 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34496 10 6452 1 2025-10-16 11:01:45.095 00:06:00.008 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-10-16 11:06:53.506 00:00:10.705 TCP 1.101.0.1:3000 -> 23.104.0.1:45470 10 6452 1 2025-10-16 11:07:54.247 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56152 10 6452 1 2025-10-16 11:08:24.155 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 11:08:23.996 00:00:00.040 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 11:08:24.207 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 11:08:24.159 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 11:08:24.290 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 11:03:45.476 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 790 1 2025-10-16 11:08:54.650 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40400 10 6452 1 2025-10-16 11:09:55.057 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43276 10 6452 1 2025-10-16 11:10:55.460 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51036 10 6452 1 2025-10-16 11:10:45.099 00:01:00.381 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-16 11:11:55.828 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:44834 10 6452 1 2025-10-16 11:07:45.478 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-10-16 11:12:56.218 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46520 10 6452 1 2025-10-16 11:13:24.257 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 11:13:24.499 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 11:13:24.508 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 11:13:24.174 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 11:13:24.420 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 11:13:56.621 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51126 10 6452 1 2025-10-16 11:14:56.987 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:58550 10 6452 1 2025-10-16 11:14:45.103 00:01:00.376 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-16 11:15:57.408 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60006 10 6452 1 2025-10-16 11:12:45.100 00:04:00.382 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 11:16:57.809 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:49918 10 6452 1 2025-10-16 11:17:58.218 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39388 10 6452 1 2025-10-16 11:18:24.444 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 11:18:24.362 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 11:18:24.358 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 11:18:24.196 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 11:18:24.235 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 11:18:58.630 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:34796 10 6452 1 2025-10-16 11:19:59.069 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34340 10 6452 1 2025-10-16 11:16:45.103 00:04:00.378 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 11:20:59.477 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41740 10 6452 1 2025-10-16 11:17:45.100 00:04:00.383 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 11:21:59.881 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37862 10 6452 1 2025-10-16 11:23:00.286 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:48636 10 6452 1 2025-10-16 11:23:24.444 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 11:23:24.232 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 11:23:24.151 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 11:23:24.558 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 11:23:24.233 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 11:24:00.645 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39052 10 6452 1 2025-10-16 11:25:01.050 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43128 10 6452 1 2025-10-16 11:21:45.114 00:04:00.368 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 11:26:01.413 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48644 10 6452 1 2025-10-16 11:22:45.102 00:04:00.383 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 11:27:01.814 00:00:10.410 TCP 1.101.0.1:3000 -> 23.104.0.1:45990 10 6452 1 2025-10-16 11:28:02.266 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33274 10 6452 1 2025-10-16 11:28:24.704 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 11:28:24.397 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 11:28:24.522 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 11:28:24.622 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 11:28:24.410 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 11:29:02.663 00:00:10.841 TCP 1.101.0.1:3000 -> 23.104.0.1:52606 10 6452 1 2025-10-16 11:30:03.544 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38682 10 6452 1 2025-10-16 11:26:45.106 00:04:00.378 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 11:31:03.945 00:00:17.757 TCP 1.101.0.1:3000 -> 23.104.0.1:57970 10 6452 1 2025-10-16 11:32:11.764 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35950 10 6452 1 2025-10-16 11:27:45.102 00:06:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 11:33:24.720 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 11:33:24.479 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 11:33:12.172 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35480 10 6452 1 2025-10-16 11:33:24.719 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 11:33:24.728 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 11:33:24.802 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 11:34:12.575 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:49804 10 6452 1 2025-10-16 11:35:12.943 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:40004 10 6452 1 2025-10-16 11:36:13.355 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:36780 10 6452 1 2025-10-16 11:31:45.107 00:06:00.382 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 11:37:13.721 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:40014 10 6452 1 2025-10-16 11:38:25.099 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 11:38:14.147 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37990 10 6452 1 2025-10-16 11:38:25.082 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 11:38:24.944 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 11:38:24.944 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 11:38:25.027 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 11:39:14.548 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:38888 10 6452 1 2025-10-16 11:34:45.106 00:06:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-10-16 11:40:14.909 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46062 12 6556 1 2025-10-16 11:41:15.313 00:00:10.528 TCP 1.101.0.1:3000 -> 23.104.0.1:36496 10 6452 1 2025-10-16 11:42:15.882 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52278 10 6452 1 2025-10-16 11:43:25.004 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 11:43:24.768 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 11:43:24.891 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 11:43:24.920 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 11:43:24.875 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 11:43:16.286 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57972 10 6452 1 2025-10-16 11:38:45.109 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-10-16 11:40:45.494 00:03:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 421 1 2025-10-16 11:44:16.691 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:59408 10 6452 1 2025-10-16 11:45:17.113 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:59612 10 6452 1 2025-10-16 11:46:17.476 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42146 10 6452 1 2025-10-16 11:47:17.891 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37884 10 6452 1 2025-10-16 11:44:45.490 00:03:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 440 1 2025-10-16 11:48:25.242 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 11:48:25.057 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 11:48:24.975 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 11:48:25.158 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 11:48:25.154 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 11:48:18.317 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50484 10 6452 1 2025-10-16 11:44:45.108 00:04:00.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 11:49:18.723 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39510 10 6452 1 2025-10-16 11:50:19.133 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58556 10 6452 1 2025-10-16 11:51:19.531 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44934 10 6452 1 2025-10-16 11:52:19.890 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:43058 11 6492 1 2025-10-16 11:48:45.111 00:04:00.388 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 11:53:25.129 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 11:53:25.125 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 11:53:25.126 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 11:53:25.126 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 11:53:25.212 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 11:53:20.317 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53122 10 6452 1 2025-10-16 11:49:45.109 00:04:00.391 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-16 11:54:20.716 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36780 10 6452 1 2025-10-16 11:55:21.117 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51416 10 6452 1 2025-10-16 11:56:21.521 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:50794 10 6452 1 2025-10-16 11:57:21.881 00:00:10.415 TCP 1.101.0.1:3000 -> 23.104.0.1:51204 11 6504 1 2025-10-16 11:53:45.112 00:04:00.388 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-16 11:58:25.057 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 11:58:24.864 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 11:58:25.269 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 11:58:25.011 00:00:00.043 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 11:58:25.352 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 11:58:22.344 00:00:15.520 TCP 1.101.0.1:3000 -> 23.104.0.1:41716 10 6452 1 2025-10-16 11:54:45.109 00:04:00.393 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 Summary: total flows: 144, total bytes: 417986, total packets: 1037, avg bps: 870, avg pps: 0, avg bpp: 403 Time window: 2025-10-16 10:54:45 - 2025-10-16 11:58:45 Total flows processed: 144, passed: 144, Blocks skipped: 0, Bytes read: 15040 Sys: 0.0037s User: 0.0009s Wall: 0.0021s flows/second: 69703.4 Runtime: 0.0021s