Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-23 16:59:04.358 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47512 10 6452 1 2025-10-23 16:55:48.790 00:05:00.336 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 17:00:04.763 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:44700 10 6452 1 2025-10-23 17:01:05.187 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44284 10 6452 1 2025-10-23 17:01:53.399 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 17:01:53.378 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 17:01:53.457 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 17:01:53.232 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 17:01:53.539 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 17:02:05.584 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41332 10 6452 1 2025-10-23 17:03:05.948 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40700 10 6452 1 2025-10-23 17:04:06.360 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36962 10 6452 1 2025-10-23 17:00:48.790 00:05:00.340 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 17:05:06.761 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:47772 10 6452 1 2025-10-23 17:01:48.794 00:05:00.336 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 17:06:07.181 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44198 10 6452 1 2025-10-23 17:06:53.654 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 17:06:53.720 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 17:06:53.485 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 17:06:53.486 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 17:06:53.569 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 17:07:07.544 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54166 10 6452 1 2025-10-23 17:08:07.945 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:34414 10 6452 1 2025-10-23 17:09:08.358 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34886 10 6452 1 2025-10-23 17:10:08.762 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:58030 10 6452 1 2025-10-23 17:06:48.793 00:05:00.338 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 17:11:09.182 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37180 10 6452 1 2025-10-23 17:07:48.796 00:05:00.333 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 17:11:53.570 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 17:11:53.525 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 17:11:53.664 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 17:11:53.622 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 17:11:53.746 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 17:12:09.583 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57588 10 6452 1 2025-10-23 17:13:09.985 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:47832 10 6452 1 2025-10-23 17:14:10.348 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47682 10 6452 1 2025-10-23 17:15:10.752 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:40112 10 6452 1 2025-10-23 17:16:11.172 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50592 10 6452 1 2025-10-23 17:12:48.793 00:05:00.338 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 17:16:53.631 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 17:16:53.726 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 17:16:53.549 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 17:16:53.550 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 17:16:53.720 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 17:17:11.575 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55098 10 6452 1 2025-10-23 17:13:48.797 00:05:00.333 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 17:18:11.980 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:32908 10 6452 1 2025-10-23 17:19:12.382 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:45008 10 6452 1 2025-10-23 17:20:12.749 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56300 10 6452 1 2025-10-23 17:21:13.169 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48470 10 6452 1 2025-10-23 17:21:53.765 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 17:21:53.823 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 17:21:53.659 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 17:21:53.875 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 17:21:53.741 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 17:22:13.570 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58218 10 6452 1 2025-10-23 17:18:48.796 00:05:00.341 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 17:23:13.972 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42200 10 6452 1 2025-10-23 17:19:48.799 00:05:00.333 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 17:24:14.390 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43018 10 6452 1 2025-10-23 17:25:14.796 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47514 10 6452 1 2025-10-23 17:26:15.204 00:00:10.422 TCP 1.101.0.1:3000 -> 23.104.0.1:45678 11 6504 1 2025-10-23 17:26:53.848 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 17:26:53.757 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 17:26:53.915 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 17:26:53.765 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 17:26:54.222 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 17:27:15.667 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34376 10 6452 1 2025-10-23 17:28:16.101 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48314 10 6452 1 2025-10-23 17:24:48.798 00:05:00.338 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 17:29:16.500 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33410 10 6452 1 2025-10-23 17:25:48.799 00:05:00.334 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 17:30:16.905 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53774 12 6556 1 2025-10-23 17:31:17.311 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48886 10 6452 1 2025-10-23 17:31:54.028 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 17:31:53.942 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 17:31:53.983 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 17:31:53.945 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 17:31:53.880 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 17:32:17.714 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56908 10 6452 1 2025-10-23 17:33:18.117 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56024 10 6452 1 2025-10-23 17:34:18.518 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34748 10 6452 1 2025-10-23 17:30:48.799 00:05:00.339 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 17:35:18.920 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:47640 11 6504 1 2025-10-23 17:31:48.800 00:05:00.334 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 17:36:19.354 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60142 10 6452 1 2025-10-23 17:36:54.060 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 17:36:54.117 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 17:36:54.064 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 17:36:54.067 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 17:36:54.147 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 17:37:19.765 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52686 10 6452 1 2025-10-23 17:38:20.180 00:00:10.703 TCP 1.101.0.1:3000 -> 23.104.0.1:56358 10 6452 1 2025-10-23 17:39:20.921 00:00:12.037 TCP 1.101.0.1:3000 -> 23.104.0.1:41660 10 6452 1 2025-10-23 17:40:23.009 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42248 10 6452 1 2025-10-23 17:36:48.800 00:05:00.338 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 17:41:23.419 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:38408 10 6452 1 2025-10-23 17:37:48.804 00:05:00.332 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 17:41:54.341 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 17:41:54.126 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 17:41:54.202 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 17:41:54.198 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 17:41:54.285 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 17:42:23.819 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:56832 10 6452 1 2025-10-23 17:43:24.189 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37624 10 6452 1 2025-10-23 17:44:24.591 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53306 10 6452 1 2025-10-23 17:45:24.995 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41050 10 6452 1 2025-10-23 17:46:25.399 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:34396 10 6452 1 2025-10-23 17:46:54.292 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 17:46:54.264 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 17:46:54.197 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 17:46:54.289 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 17:42:48.803 00:05:00.338 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 17:46:54.281 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 17:47:25.753 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:51624 10 6452 1 2025-10-23 17:43:48.804 00:05:00.332 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 17:48:26.169 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46636 10 6452 1 2025-10-23 17:49:26.581 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:49030 10 6452 1 2025-10-23 17:50:26.997 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49616 10 6452 1 2025-10-23 17:51:27.407 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:52020 10 6452 1 2025-10-23 17:51:54.538 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 17:51:54.374 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 17:51:54.503 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 17:51:54.455 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 17:51:54.388 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 17:52:27.766 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54818 10 6452 1 2025-10-23 17:48:48.803 00:05:00.340 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 17:53:28.141 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41284 10 6452 1 2025-10-23 17:49:48.805 00:05:00.335 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 17:54:28.546 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49164 10 6452 1 2025-10-23 17:55:28.949 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46900 10 6452 1 2025-10-23 17:56:29.358 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39382 10 6452 1 2025-10-23 17:56:54.797 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 17:56:54.420 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 17:56:54.713 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 17:56:54.610 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 17:56:54.489 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 17:57:29.758 00:00:10.994 TCP 1.101.0.1:3000 -> 23.104.0.1:34330 10 6452 1 2025-10-23 17:58:30.789 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:44692 10 6452 1 2025-10-23 17:54:48.804 00:05:00.339 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 Summary: total flows: 140, total bytes: 417208, total packets: 1024, avg bps: 869, avg pps: 0, avg bpp: 407 Time window: 2025-10-23 16:55:48 - 2025-10-23 17:59:49 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0030s User: 0.0020s Wall: 0.0024s flows/second: 59045.0 Runtime: 0.0024s