Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-23 12:59:10.729 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60720 10 6452 1 2025-10-23 12:55:48.715 00:05:00.348 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 13:00:11.138 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46492 10 6452 1 2025-10-23 13:01:11.543 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:42916 10 6452 1 2025-10-23 13:01:48.641 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 13:01:48.692 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 13:01:48.590 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 13:01:48.558 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 13:01:48.323 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 13:02:11.899 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:42390 12 6556 1 2025-10-23 13:03:12.315 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60458 10 6452 1 2025-10-23 13:04:12.680 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52912 10 6452 1 2025-10-23 13:00:48.713 00:05:00.352 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 13:05:13.117 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41880 10 6452 1 2025-10-23 13:01:48.716 00:05:00.347 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 13:06:13.520 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56358 10 6452 1 2025-10-23 13:06:48.736 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 13:06:48.779 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 13:06:48.665 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 13:06:48.668 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 13:06:48.749 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 13:07:13.928 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:56188 10 6452 1 2025-10-23 13:08:14.370 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39148 10 6452 1 2025-10-23 13:09:14.776 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35978 10 6452 1 2025-10-23 13:10:15.184 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49892 10 6452 1 2025-10-23 13:06:48.714 00:05:00.352 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 13:11:15.548 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56536 10 6452 1 2025-10-23 13:11:48.812 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 13:11:48.841 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 13:11:48.894 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 13:11:48.990 00:00:00.050 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 13:07:48.717 00:05:00.348 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 13:11:48.976 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 13:12:15.954 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:48796 10 6452 1 2025-10-23 13:13:16.321 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56296 10 6452 1 2025-10-23 13:14:16.687 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39426 10 6452 1 2025-10-23 13:15:17.102 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:41562 10 6452 1 2025-10-23 13:16:17.478 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58254 10 6452 1 2025-10-23 13:16:48.827 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 13:16:48.996 00:00:00.046 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 13:16:48.827 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 13:16:48.983 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 13:12:48.715 00:05:00.352 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 13:16:48.918 00:00:00.015 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 13:17:17.882 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55970 10 6452 1 2025-10-23 13:13:48.718 00:05:00.347 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 13:18:18.293 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41246 10 6452 1 2025-10-23 13:19:18.696 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51974 10 6452 1 2025-10-23 13:20:19.105 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:36858 12 10375 1 2025-10-23 13:21:19.579 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38136 10 6452 1 2025-10-23 13:21:49.190 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 13:21:49.108 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 13:21:49.199 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 13:21:49.108 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 13:21:49.111 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 13:22:19.981 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34434 10 6452 1 2025-10-23 13:18:48.718 00:05:00.351 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 13:23:20.347 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56206 10 6452 1 2025-10-23 13:19:48.720 00:05:00.346 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 13:24:20.760 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:34138 10 6452 1 2025-10-23 13:25:21.185 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50874 10 6452 1 2025-10-23 13:26:21.585 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51192 10 6452 1 2025-10-23 13:26:49.128 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 13:26:48.985 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 13:26:49.052 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 13:26:49.056 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 13:26:49.135 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 13:27:21.989 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54996 10 6452 1 2025-10-23 13:28:22.397 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47864 10 6452 1 2025-10-23 13:24:48.719 00:05:00.351 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 13:29:22.798 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42798 10 6452 1 2025-10-23 13:25:48.723 00:05:00.346 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 13:30:23.208 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49080 10 6452 1 2025-10-23 13:31:23.612 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51088 10 6452 1 2025-10-23 13:31:49.179 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 13:31:49.242 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 13:31:48.990 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 13:31:49.097 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 13:31:49.246 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 13:32:23.978 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51528 10 6452 1 2025-10-23 13:33:24.382 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52478 10 6452 1 2025-10-23 13:34:24.743 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59172 10 6452 1 2025-10-23 13:30:48.722 00:05:00.350 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 13:35:25.145 00:00:10.507 TCP 1.101.0.1:3000 -> 23.104.0.1:43514 10 6452 1 2025-10-23 13:31:48.726 00:05:00.343 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 13:36:25.691 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:51824 10 6452 1 2025-10-23 13:36:49.248 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 13:36:49.101 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 13:36:49.314 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 13:36:49.357 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 13:36:49.396 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 13:37:26.052 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53024 10 6452 1 2025-10-23 13:38:26.454 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46310 10 6452 1 2025-10-23 13:39:26.864 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33384 10 6452 1 2025-10-23 13:40:27.273 00:00:11.068 TCP 1.101.0.1:3000 -> 23.104.0.1:60852 10 6452 1 2025-10-23 13:36:48.724 00:05:00.350 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 13:41:28.383 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39006 10 6452 1 2025-10-23 13:41:49.401 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 13:41:49.321 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 13:41:49.345 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 13:41:49.319 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 13:41:49.635 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 13:37:48.726 00:05:00.345 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 13:42:28.784 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:43532 10 6452 1 2025-10-23 13:43:29.150 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:51086 10 6452 1 2025-10-23 13:44:29.521 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53042 10 6452 1 2025-10-23 13:45:29.930 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:49648 10 6452 1 2025-10-23 13:46:30.353 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50626 10 6452 1 2025-10-23 13:46:49.511 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 13:46:49.440 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 13:46:49.512 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 13:46:49.601 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 13:42:48.726 00:05:00.350 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 13:46:49.595 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 13:47:30.767 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:47834 10 6452 1 2025-10-23 13:43:48.729 00:05:00.344 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 13:48:31.181 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33002 10 6452 1 2025-10-23 13:49:31.589 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58436 10 6452 1 2025-10-23 13:50:31.993 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58304 10 6452 1 2025-10-23 13:51:32.395 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37438 10 6452 1 2025-10-23 13:51:49.692 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 13:51:49.707 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 13:51:49.635 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 13:51:49.599 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 13:51:49.775 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 13:52:32.797 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51898 10 6452 1 2025-10-23 13:48:48.727 00:05:00.349 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 13:53:33.208 00:00:10.677 TCP 1.101.0.1:3000 -> 23.104.0.1:54522 10 6452 1 2025-10-23 13:49:48.729 00:05:00.345 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 13:54:33.934 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:52798 10 6452 1 2025-10-23 13:55:34.331 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57138 10 6452 1 2025-10-23 13:56:34.738 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55676 10 6452 1 2025-10-23 13:56:49.834 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 13:56:49.700 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 13:56:49.913 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 13:56:49.832 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 13:56:49.995 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 13:57:35.145 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:32858 10 6452 1 2025-10-23 13:58:35.543 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:58572 10 6452 1 2025-10-23 13:54:48.729 00:05:00.354 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 Summary: total flows: 140, total bytes: 421027, total packets: 1024, avg bps: 877, avg pps: 0, avg bpp: 411 Time window: 2025-10-23 12:55:48 - 2025-10-23 13:59:49 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0044s User: 0.0015s Wall: 0.0028s flows/second: 49978.9 Runtime: 0.0028s