Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-22 04:59:14.467 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35774 10 6452 1 2025-10-22 04:54:48.083 00:06:00.284 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 05:00:14.870 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52934 10 6452 1 2025-10-22 05:01:10.012 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 05:01:09.924 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 05:01:09.941 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:01:09.928 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:01:10.104 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 05:01:15.273 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44858 10 6452 1 2025-10-22 05:02:15.674 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39818 10 6452 1 2025-10-22 05:03:16.103 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51238 10 6452 1 2025-10-22 05:04:16.465 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46954 10 6452 1 2025-10-22 05:05:16.870 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47612 10 6452 1 2025-10-22 05:00:48.083 00:06:00.289 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 05:06:10.320 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 05:06:10.420 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:06:10.504 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:06:10.322 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 05:06:10.588 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 05:06:17.277 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38696 10 6452 1 2025-10-22 05:01:48.086 00:06:00.284 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 05:07:17.676 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60240 10 6452 1 2025-10-22 05:08:18.104 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38852 10 6452 1 2025-10-22 05:09:18.510 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36316 10 6452 1 2025-10-22 05:10:18.920 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39478 10 6452 1 2025-10-22 05:11:10.346 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 05:11:10.100 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:11:10.440 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:11:10.350 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 05:11:10.523 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 05:11:19.287 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40918 10 6452 1 2025-10-22 05:12:19.689 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:52372 10 6452 1 2025-10-22 05:07:48.088 00:06:00.289 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 05:13:20.100 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39630 10 6452 1 2025-10-22 05:08:48.089 00:06:00.284 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 05:14:20.509 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45092 10 6452 1 2025-10-22 05:15:20.914 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35248 10 6452 1 2025-10-22 05:16:10.568 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 05:16:10.603 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 05:16:10.614 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:16:10.484 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:16:10.649 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 05:16:21.277 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35032 10 6452 1 2025-10-22 05:17:21.678 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57812 10 6452 1 2025-10-22 05:18:22.107 00:00:11.139 TCP 1.101.0.1:3000 -> 23.104.0.1:44678 10 6452 1 2025-10-22 05:19:23.285 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60800 10 6452 1 2025-10-22 05:14:48.089 00:06:00.288 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 05:20:23.685 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45610 10 6452 1 2025-10-22 05:15:48.091 00:06:00.284 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 05:21:10.558 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 05:21:10.479 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 05:21:10.641 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:21:10.475 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:21:10.477 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 05:21:24.103 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42244 10 6452 1 2025-10-22 05:22:24.515 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35412 10 6452 1 2025-10-22 05:23:24.916 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49856 10 6452 1 2025-10-22 05:24:25.282 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:34454 10 6452 1 2025-10-22 05:25:25.642 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54872 10 6452 1 2025-10-22 05:26:10.646 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 05:26:10.669 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 05:26:10.636 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:26:10.564 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:26:10.449 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 05:26:26.058 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38694 10 6452 1 2025-10-22 05:21:48.090 00:06:00.290 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 05:27:26.418 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:58056 10 6452 1 2025-10-22 05:22:48.092 00:06:00.284 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 05:28:26.789 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:57222 10 6452 1 2025-10-22 05:29:27.146 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55936 10 6452 1 2025-10-22 05:30:27.545 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36360 10 6452 1 2025-10-22 05:31:10.700 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 05:31:10.552 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:31:10.618 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:31:10.796 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 05:31:10.836 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 05:31:27.947 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55260 10 6452 1 2025-10-22 05:32:28.354 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:58952 10 6452 1 2025-10-22 05:33:28.768 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42418 10 6452 1 2025-10-22 05:28:48.091 00:06:00.289 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 05:34:29.180 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53992 10 6452 1 2025-10-22 05:29:48.093 00:06:00.284 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 05:35:29.587 00:00:10.485 TCP 1.101.0.1:3000 -> 23.104.0.1:36504 10 6452 1 2025-10-22 05:36:10.629 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 05:36:10.460 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:36:10.621 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:36:10.643 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 05:36:10.702 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 05:36:30.113 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37588 10 6452 1 2025-10-22 05:37:30.517 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47838 10 6452 1 2025-10-22 05:38:30.929 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:40758 10 6452 1 2025-10-22 05:39:31.360 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:44902 12 10375 1 2025-10-22 05:40:31.838 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38334 10 6452 1 2025-10-22 05:35:48.094 00:06:00.289 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 05:41:10.569 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:41:10.947 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:41:10.914 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 05:41:11.030 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 05:41:11.056 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 05:41:32.242 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47672 10 6452 1 2025-10-22 05:36:48.096 00:06:00.285 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 05:42:32.649 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:48946 10 6452 1 2025-10-22 05:43:33.101 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:33996 10 6452 1 2025-10-22 05:44:33.525 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45230 10 6452 1 2025-10-22 05:45:33.931 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:53604 10 6452 1 2025-10-22 05:46:11.240 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 05:46:11.104 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 05:46:11.091 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:46:11.156 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:46:11.102 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 05:46:34.351 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33666 10 6452 1 2025-10-22 05:47:34.753 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:54688 10 6452 1 2025-10-22 05:42:48.095 00:06:00.289 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 05:48:35.173 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53020 10 6452 1 2025-10-22 05:43:48.097 00:06:00.284 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 05:49:35.577 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56166 10 6452 1 2025-10-22 05:50:35.993 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58122 10 6452 1 2025-10-22 05:51:10.924 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 05:51:10.925 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:51:11.008 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 05:51:11.060 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:51:11.064 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 05:51:36.398 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41500 10 6452 1 2025-10-22 05:52:36.817 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42246 10 6452 1 2025-10-22 05:53:37.185 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:52014 10 6452 1 2025-10-22 05:49:48.097 00:06:00.289 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 05:54:37.562 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58836 10 6452 1 2025-10-22 05:55:37.962 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:60252 10 6452 1 2025-10-22 05:50:48.098 00:06:00.285 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 05:56:11.522 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 05:56:11.115 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:56:11.213 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 05:56:11.307 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 05:56:11.296 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 05:56:38.322 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47942 10 6452 1 2025-10-22 05:57:38.723 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:33360 10 6452 1 2025-10-22 05:58:39.137 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40402 10 6452 1 Summary: total flows: 137, total bytes: 420800, total packets: 1020, avg bps: 876, avg pps: 0, avg bpp: 412 Time window: 2025-10-22 04:54:48 - 2025-10-22 05:58:49 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0019s User: 0.0029s Wall: 0.0021s flows/second: 64412.0 Runtime: 0.0021s