Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-23 04:59:35.723 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40152 10 6452 1 2025-10-23 04:55:48.537 00:06:00.322 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 05:00:36.133 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47858 10 6452 1 2025-10-23 05:01:39.180 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 05:01:39.002 00:00:00.049 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 05:01:38.847 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:01:39.097 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:01:39.105 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 05:01:36.539 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36324 10 6452 1 2025-10-23 04:56:48.540 00:06:00.317 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 05:02:36.941 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:37274 10 6452 1 2025-10-23 05:03:37.319 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:56564 10 6452 1 2025-10-23 05:04:37.679 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:58970 10 6452 1 2025-10-23 05:05:38.105 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41764 10 6452 1 2025-10-23 05:06:39.299 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 05:06:39.123 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:06:39.293 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:06:39.254 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 05:06:39.374 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 05:06:38.461 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40298 10 6452 1 2025-10-23 05:02:48.539 00:06:00.324 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 05:07:38.858 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:42728 10 6452 1 2025-10-23 05:08:39.278 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55772 10 6452 1 2025-10-23 05:03:48.541 00:06:00.319 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 05:09:39.680 00:00:10.529 TCP 1.101.0.1:3000 -> 23.104.0.1:51274 10 6452 1 2025-10-23 05:10:40.249 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42496 10 6452 1 2025-10-23 05:11:39.262 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 05:11:39.200 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:11:39.307 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:11:39.094 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 05:11:39.390 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 05:11:40.665 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60360 10 6452 1 2025-10-23 05:12:41.091 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:58514 10 6452 1 2025-10-23 05:13:41.459 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42166 10 6452 1 2025-10-23 05:09:48.539 00:06:00.324 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 05:14:41.826 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:60612 12 10375 1 2025-10-23 05:10:48.543 00:06:00.319 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 05:15:42.309 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33676 10 6452 1 2025-10-23 05:16:39.411 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 05:16:39.410 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 05:16:39.089 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:16:39.329 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:16:39.309 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 05:16:42.715 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34442 10 6452 1 2025-10-23 05:17:43.114 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:45944 10 6452 1 2025-10-23 05:18:43.532 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36378 12 6556 1 2025-10-23 05:19:43.940 00:00:10.429 TCP 1.101.0.1:3000 -> 23.104.0.1:51516 11 6504 1 2025-10-23 05:20:44.403 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:60918 10 6452 1 2025-10-23 05:21:39.748 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 05:21:39.532 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 05:21:39.268 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:21:39.667 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:21:39.666 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 05:16:48.544 00:06:00.322 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 05:21:44.803 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34956 10 6452 1 2025-10-23 05:17:48.546 00:06:00.316 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 05:22:45.169 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:54494 10 6452 1 2025-10-23 05:23:45.570 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46664 12 6556 1 2025-10-23 05:24:45.970 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38264 10 6452 1 2025-10-23 05:25:46.392 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50528 10 6452 1 2025-10-23 05:26:39.767 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 05:26:39.807 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 05:26:39.849 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:26:39.686 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:26:39.687 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 05:26:46.765 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45416 10 6452 1 2025-10-23 05:27:47.180 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:46018 10 6452 1 2025-10-23 05:23:48.544 00:06:00.323 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 05:28:47.540 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41934 10 6452 1 2025-10-23 05:24:48.547 00:06:00.318 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 05:29:47.946 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36972 12 6556 1 2025-10-23 05:30:48.352 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54956 10 6452 1 2025-10-23 05:31:39.932 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 05:31:39.885 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:31:39.993 00:00:00.035 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:31:39.841 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 05:31:40.074 00:00:00.036 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 05:31:48.764 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:51046 10 6452 1 2025-10-23 05:32:49.182 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45160 10 6452 1 2025-10-23 05:33:49.582 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:48746 10 6452 1 2025-10-23 05:34:49.944 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:37164 10 6452 1 2025-10-23 05:30:48.545 00:06:00.326 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 05:35:50.321 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54678 10 6452 1 2025-10-23 05:36:39.516 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 05:36:39.617 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:36:39.603 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:36:39.518 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 05:36:39.687 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 05:31:48.547 00:06:00.321 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 05:36:50.684 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48866 10 6452 1 2025-10-23 05:37:51.108 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:36266 10 6452 1 2025-10-23 05:38:51.537 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42740 10 6452 1 2025-10-23 05:39:51.943 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:56314 10 6452 1 2025-10-23 05:40:52.354 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49306 10 6452 1 2025-10-23 05:41:39.686 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 05:41:39.709 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:41:39.921 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:41:39.574 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 05:41:40.006 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 05:41:52.752 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39484 10 6452 1 2025-10-23 05:37:48.547 00:06:00.326 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 05:42:53.150 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56104 10 6452 1 2025-10-23 05:38:48.550 00:06:00.320 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 05:43:53.557 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56392 10 6452 1 2025-10-23 05:44:53.961 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37178 10 6452 1 2025-10-23 05:45:54.362 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38876 10 6452 1 2025-10-23 05:46:40.166 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 05:46:39.891 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 05:46:39.807 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:46:40.084 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:46:40.129 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 05:46:54.765 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:35274 10 6452 1 2025-10-23 05:47:55.132 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36590 10 6452 1 2025-10-23 05:48:55.536 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44880 10 6452 1 2025-10-23 05:44:48.550 00:06:00.325 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 05:49:55.936 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:50312 10 6452 1 2025-10-23 05:45:48.552 00:06:00.320 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 05:50:56.359 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53208 10 6452 1 2025-10-23 05:51:40.113 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 05:51:40.060 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:51:39.814 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:51:39.989 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 05:51:39.898 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 05:51:56.757 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:45198 10 6452 1 2025-10-23 05:52:57.173 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52834 10 6452 1 2025-10-23 05:53:57.537 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53522 10 6452 1 2025-10-23 05:54:57.942 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:57726 10 6452 1 2025-10-23 05:55:58.318 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:40754 10 6452 1 2025-10-23 05:56:40.230 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 05:56:40.122 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:56:40.022 00:00:00.040 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 05:56:40.006 00:00:00.041 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 05:56:40.105 00:00:00.041 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 05:51:48.555 00:06:00.323 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 05:56:58.693 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54590 10 6452 1 2025-10-23 05:52:48.558 00:06:00.317 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 05:57:59.118 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44348 10 6452 1 Summary: total flows: 137, total bytes: 415573, total packets: 1031, avg bps: 879, avg pps: 0, avg bpp: 403 Time window: 2025-10-23 04:55:48 - 2025-10-23 05:58:48 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0025s User: 0.0025s Wall: 0.0027s flows/second: 50533.8 Runtime: 0.0027s