Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-20 20:58:49.886 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:53072 10 6452 1 2025-10-20 20:59:50.272 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34918 10 6452 1 2025-10-20 21:00:31.771 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 21:00:31.685 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 21:00:31.517 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:00:31.689 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:00:31.725 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 20:55:47.365 00:06:00.261 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 21:00:50.675 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:47506 10 6452 1 2025-10-20 21:01:51.040 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:40304 10 6452 1 2025-10-20 21:02:51.440 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51652 10 6452 1 2025-10-20 21:03:51.850 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:35500 10 6452 1 2025-10-20 21:04:52.277 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50480 10 6452 1 2025-10-20 21:05:31.806 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 21:05:31.601 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:05:31.573 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:05:31.560 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 21:05:31.655 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 21:00:47.369 00:06:00.256 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 21:05:52.641 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:53818 10 6452 1 2025-10-20 21:06:53.038 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:49242 10 6452 1 2025-10-20 21:02:47.366 00:06:00.262 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 21:07:53.436 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60606 10 6452 1 2025-10-20 21:08:53.844 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:38286 10 6452 1 2025-10-20 21:09:54.275 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:32822 10 6452 1 2025-10-20 21:10:31.738 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 21:10:31.744 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 21:10:31.683 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:10:31.654 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:10:31.814 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 21:10:54.676 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:38284 10 6452 1 2025-10-20 21:11:55.038 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53626 10 6452 1 2025-10-20 21:07:47.370 00:06:00.256 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 21:12:55.450 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58330 10 6452 1 2025-10-20 21:13:55.860 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:59268 10 6452 1 2025-10-20 21:09:47.368 00:06:00.261 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 21:14:56.273 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52094 10 6452 1 2025-10-20 21:15:32.827 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 21:15:32.751 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 21:15:32.842 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:15:32.744 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:15:32.850 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 21:15:56.683 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54498 12 6556 1 2025-10-20 21:16:57.107 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51682 10 6452 1 2025-10-20 21:17:57.513 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47168 10 6452 1 2025-10-20 21:18:57.920 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52244 10 6452 1 2025-10-20 21:14:47.373 00:06:00.256 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 21:19:58.319 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57322 10 6452 1 2025-10-20 21:20:32.099 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 21:20:31.896 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:20:32.046 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:20:32.190 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 21:20:32.129 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 21:20:58.724 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:44238 10 6452 1 2025-10-20 21:16:47.369 00:06:00.262 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 21:21:59.137 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39966 10 6452 1 2025-10-20 21:22:59.543 00:00:10.473 TCP 1.101.0.1:3000 -> 23.104.0.1:60380 10 6452 1 2025-10-20 21:24:00.074 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35646 10 6452 1 2025-10-20 21:25:00.480 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41858 10 6452 1 2025-10-20 21:25:31.995 00:00:00.040 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 21:25:31.925 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:25:32.002 00:00:00.051 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:25:32.174 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 21:25:32.084 00:00:00.052 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 21:26:00.897 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:36920 12 6556 1 2025-10-20 21:21:47.372 00:06:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 21:27:01.311 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54580 10 6452 1 2025-10-20 21:28:01.712 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36064 10 6452 1 2025-10-20 21:23:47.371 00:06:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 21:29:02.136 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51780 10 6452 1 2025-10-20 21:30:02.539 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52638 10 6452 1 2025-10-20 21:30:32.325 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 21:30:32.080 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 21:30:32.139 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:30:32.243 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:30:32.063 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 21:31:02.942 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:35706 10 6452 1 2025-10-20 21:32:03.367 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:34612 10 6452 1 2025-10-20 21:33:03.729 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40084 10 6452 1 2025-10-20 21:28:47.375 00:06:00.261 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 21:34:04.135 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42314 10 6452 1 2025-10-20 21:35:04.537 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:59866 10 6452 1 2025-10-20 21:35:32.807 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 21:35:32.549 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 21:35:32.219 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:35:32.724 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:35:32.842 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 21:30:47.373 00:06:00.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 21:36:04.905 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50734 10 6452 1 2025-10-20 21:37:05.315 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40146 10 6452 1 2025-10-20 21:38:05.726 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:34690 10 6452 1 2025-10-20 21:39:06.113 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:42230 12 10375 1 2025-10-20 21:40:06.588 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:60464 10 6452 1 2025-10-20 21:40:32.312 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 21:40:32.405 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 21:40:32.269 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:40:32.230 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:40:32.508 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 21:35:47.377 00:06:00.263 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 21:41:06.965 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:54206 10 6452 1 2025-10-20 21:42:07.438 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:51610 10 6452 1 2025-10-20 21:37:47.377 00:06:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 21:43:07.809 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43864 10 6452 1 2025-10-20 21:44:08.216 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:48020 10 6452 1 2025-10-20 21:45:08.616 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52236 10 6452 1 2025-10-20 21:45:32.793 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 21:45:32.625 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 21:45:32.736 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:45:32.709 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:45:32.627 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 21:46:09.018 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50514 12 6556 1 2025-10-20 21:47:09.424 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:49654 10 6452 1 2025-10-20 21:42:47.380 00:06:00.260 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 21:48:09.789 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:39996 10 6452 1 2025-10-20 21:49:10.216 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44656 10 6452 1 2025-10-20 21:44:47.379 00:06:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 21:50:10.620 00:00:10.352 TCP 1.101.0.1:3000 -> 23.104.0.1:54044 10 6452 1 2025-10-20 21:50:32.808 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 21:50:32.554 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 21:50:32.509 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:50:32.726 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:50:32.348 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 21:51:11.008 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:38918 10 6452 1 2025-10-20 21:52:11.403 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57288 10 6452 1 2025-10-20 21:53:11.805 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60484 10 6452 1 2025-10-20 21:54:12.209 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50108 10 6452 1 2025-10-20 21:49:47.383 00:06:00.260 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 21:55:12.608 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56608 10 6452 1 2025-10-20 21:55:32.589 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 21:55:32.505 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 21:55:32.556 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:55:32.506 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:55:32.593 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 21:56:13.009 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34680 10 6452 1 2025-10-20 21:51:47.380 00:06:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 21:57:13.413 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:59670 10 6452 1 2025-10-20 21:58:13.777 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:52422 10 6452 1 Summary: total flows: 137, total bytes: 421112, total packets: 1026, avg bps: 896, avg pps: 0, avg bpp: 410 Time window: 2025-10-20 20:55:47 - 2025-10-20 21:58:24 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0044s User: 0.0011s Wall: 0.0020s flows/second: 69156.3 Runtime: 0.0020s