Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-21 19:59:20.673 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49930 10 6452 1 2025-10-21 20:00:21.099 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45040 10 6452 1 2025-10-21 19:56:47.871 00:05:00.322 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-21 19:56:47.873 00:05:00.317 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-21 20:00:59.315 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 20:00:59.339 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 20:00:59.311 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 20:00:59.319 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 20:00:59.394 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 20:01:21.498 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38778 10 6452 1 2025-10-21 20:02:21.901 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55564 10 6452 1 2025-10-21 20:03:22.308 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35770 10 6452 1 2025-10-21 20:04:22.709 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33926 10 6452 1 2025-10-21 20:05:23.094 00:00:10.626 TCP 1.101.0.1:3000 -> 23.104.0.1:55242 10 6452 1 2025-10-21 20:05:59.460 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 20:05:59.361 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 20:05:59.287 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 20:05:59.495 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 20:05:59.373 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 20:06:23.761 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:34762 10 6452 1 2025-10-21 20:02:47.872 00:05:00.324 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-21 20:02:47.876 00:05:00.319 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-21 20:07:24.183 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:47374 10 6452 1 2025-10-21 20:08:24.589 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36668 10 6452 1 2025-10-21 20:09:24.999 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56728 10 6452 1 2025-10-21 20:10:25.403 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56744 10 6452 1 2025-10-21 20:10:59.883 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 20:10:59.463 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 20:10:59.262 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 20:10:59.800 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 20:10:59.572 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 20:11:25.808 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51682 10 6452 1 2025-10-21 20:12:26.222 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51632 10 6452 1 2025-10-21 20:08:47.874 00:05:00.320 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-21 20:08:47.874 00:05:00.325 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-21 20:13:26.624 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:52862 10 6452 1 2025-10-21 20:14:26.989 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50504 10 6452 1 2025-10-21 20:15:27.395 00:00:10.822 TCP 1.101.0.1:3000 -> 23.104.0.1:52676 10 6452 1 2025-10-21 20:15:59.610 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 20:15:59.485 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 20:15:59.416 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 20:15:59.544 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 20:15:59.500 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 20:16:28.263 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56238 10 6452 1 2025-10-21 20:17:28.664 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56850 10 6452 1 2025-10-21 20:18:29.030 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38424 10 6452 1 2025-10-21 20:14:47.874 00:05:00.325 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-21 20:14:47.876 00:05:00.320 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-21 20:19:29.433 00:00:10.672 TCP 1.101.0.1:3000 -> 23.104.0.1:41152 10 6452 1 2025-10-21 20:20:30.145 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37510 10 6452 1 2025-10-21 20:21:00.340 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 20:20:59.882 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 20:21:00.338 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 20:21:00.062 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 20:21:00.420 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 20:21:30.551 00:00:17.595 TCP 1.101.0.1:3000 -> 23.104.0.1:56570 10 6452 1 2025-10-21 20:22:38.183 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57556 10 6452 1 2025-10-21 20:23:38.582 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:52668 10 6452 1 2025-10-21 20:20:47.875 00:05:00.325 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-21 20:24:38.957 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:57340 10 6452 1 2025-10-21 20:20:47.877 00:05:00.320 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-21 20:25:39.436 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41372 10 6452 1 2025-10-21 20:25:59.661 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 20:25:59.792 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 20:25:59.891 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 20:25:59.578 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 20:25:59.577 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 20:26:39.842 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:48106 10 6452 1 2025-10-21 20:27:40.268 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:34172 10 6452 1 2025-10-21 20:28:40.646 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:34794 10 6452 1 2025-10-21 20:29:41.011 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:39992 10 6452 1 2025-10-21 20:26:47.885 00:05:00.318 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-21 20:26:47.889 00:05:00.312 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-21 20:30:41.374 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38030 10 6452 1 2025-10-21 20:30:59.928 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 20:30:59.868 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 20:30:59.803 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 20:30:59.799 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 20:30:59.887 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 20:31:41.775 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49850 10 6452 1 2025-10-21 20:32:42.182 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56686 10 6452 1 2025-10-21 20:33:42.582 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50558 10 6452 1 2025-10-21 20:34:42.988 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:56894 10 6452 1 2025-10-21 20:35:43.402 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:43498 10 6452 1 2025-10-21 20:36:00.023 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 20:36:00.077 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 20:35:59.806 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 20:35:59.940 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 20:35:59.876 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 20:32:47.888 00:05:00.315 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-21 20:32:47.891 00:05:00.311 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-21 20:36:43.817 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36414 10 6452 1 2025-10-21 20:37:44.217 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53988 10 6452 1 2025-10-21 20:38:44.581 00:00:10.452 TCP 1.101.0.1:3000 -> 23.104.0.1:47046 12 10369 1 2025-10-21 20:39:45.106 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:41310 10 6452 1 2025-10-21 20:40:45.525 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59256 10 6452 1 2025-10-21 20:41:00.833 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 20:41:00.851 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 20:41:00.707 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 20:41:00.750 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 20:41:00.851 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 20:41:45.939 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:37636 10 6452 1 2025-10-21 20:38:47.890 00:05:00.316 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-21 20:38:47.890 00:05:00.312 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-21 20:42:46.331 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45982 10 6452 1 2025-10-21 20:43:46.742 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50766 10 6452 1 2025-10-21 20:44:47.152 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33526 10 6452 1 2025-10-21 20:46:00.219 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 20:45:59.889 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 20:46:00.146 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 20:46:00.136 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 20:46:00.262 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 20:45:47.554 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:45272 10 6452 1 2025-10-21 20:46:47.959 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:33304 10 6452 1 2025-10-21 20:47:48.325 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57310 10 6452 1 2025-10-21 20:44:47.902 00:05:00.302 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-21 20:44:47.899 00:05:00.308 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-21 20:48:48.730 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59056 10 6452 1 2025-10-21 20:49:49.107 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36106 10 6452 1 2025-10-21 20:51:00.443 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 20:51:00.185 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 20:50:49.516 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49930 10 6452 1 2025-10-21 20:51:00.443 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 20:51:00.179 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 20:51:00.525 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 20:51:49.928 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:35502 10 6452 1 2025-10-21 20:52:50.299 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51734 10 6452 1 2025-10-21 20:53:50.662 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45302 10 6452 1 2025-10-21 20:50:47.906 00:05:00.299 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-21 20:50:47.903 00:05:00.304 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-21 20:54:51.095 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:43546 10 6452 1 2025-10-21 20:56:00.386 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-21 20:56:00.257 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 20:56:00.324 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-21 20:56:00.383 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-21 20:56:00.407 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-21 20:55:51.458 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33480 11 6504 1 2025-10-21 20:56:51.867 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41422 10 6452 1 2025-10-21 20:57:52.274 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44430 10 6452 1 Summary: total flows: 139, total bytes: 414517, total packets: 1013, avg bps: 902, avg pps: 0, avg bpp: 409 Time window: 2025-10-21 19:56:47 - 2025-10-21 20:58:02 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0030s User: 0.0030s Wall: 0.0023s flows/second: 60147.3 Runtime: 0.0023s