Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-23 21:59:33.636 00:00:10.423 TCP 1.101.0.1:3000 -> 23.104.0.1:51548 11 6504 1 2025-10-23 21:55:48.887 00:05:00.334 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 22:00:34.123 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42080 10 6452 1 2025-10-23 22:01:34.520 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43152 10 6452 1 2025-10-23 22:01:59.424 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 22:01:58.977 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 22:01:59.538 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 22:01:59.478 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 22:01:59.623 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 22:02:34.921 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:43440 10 6452 1 2025-10-23 22:03:35.344 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49298 10 6452 1 2025-10-23 22:00:48.885 00:05:00.343 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 22:04:35.703 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51186 10 6452 1 2025-10-23 22:05:36.112 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:43936 12 10369 1 2025-10-23 22:01:48.888 00:05:00.338 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 22:06:36.551 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59668 10 6452 1 2025-10-23 22:06:59.683 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 22:06:59.525 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 22:06:59.457 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 22:06:59.600 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 22:06:59.742 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 22:07:36.959 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51110 10 6452 1 2025-10-23 22:08:37.320 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42244 10 6452 1 2025-10-23 22:09:37.724 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:37380 10 6452 1 2025-10-23 22:10:38.133 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40980 10 6452 1 2025-10-23 22:06:48.886 00:05:00.343 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 22:11:38.539 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:50886 10 6452 1 2025-10-23 22:07:48.889 00:05:00.338 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 22:11:59.602 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 22:11:59.617 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 22:11:59.519 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 22:11:59.516 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 22:11:59.601 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 22:12:38.894 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:46888 10 6452 1 2025-10-23 22:13:39.310 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:46222 10 6452 1 2025-10-23 22:14:39.726 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:55458 10 6452 1 2025-10-23 22:15:40.141 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55318 10 6452 1 2025-10-23 22:16:40.545 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36030 10 6452 1 2025-10-23 22:12:48.889 00:05:00.343 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 22:16:59.958 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 22:16:59.876 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 22:16:59.922 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 22:16:59.875 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 22:16:59.924 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 22:13:48.892 00:05:00.337 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 22:17:40.944 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47432 10 6452 1 2025-10-23 22:18:41.356 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35672 10 6452 1 2025-10-23 22:19:41.760 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:37142 10 6452 1 2025-10-23 22:20:42.139 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48206 10 6452 1 2025-10-23 22:21:42.548 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52676 10 6452 1 2025-10-23 22:21:59.941 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 22:21:59.757 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 22:21:59.850 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 22:21:59.850 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 22:21:59.934 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 22:18:48.891 00:05:00.341 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 22:22:42.951 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37088 10 6452 1 2025-10-23 22:19:48.895 00:05:00.336 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 22:23:43.356 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35396 10 6452 1 2025-10-23 22:24:43.759 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:53828 10 6452 1 2025-10-23 22:25:44.147 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41732 10 6452 1 2025-10-23 22:26:44.547 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42548 10 6452 1 2025-10-23 22:26:59.985 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 22:26:59.898 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 22:26:59.850 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 22:27:00.145 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 22:26:59.934 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 22:27:44.950 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43512 10 6452 1 2025-10-23 22:24:48.893 00:05:00.341 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 22:28:45.361 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56354 10 6452 1 2025-10-23 22:25:48.895 00:05:00.337 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 22:29:45.766 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:42076 10 6452 1 2025-10-23 22:30:46.186 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52182 10 6452 1 2025-10-23 22:32:00.444 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 22:32:00.267 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 22:32:00.251 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 22:32:00.237 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 22:31:46.586 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45268 10 6452 1 2025-10-23 22:32:00.334 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 22:32:46.988 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41008 10 6452 1 2025-10-23 22:33:47.395 00:00:10.591 TCP 1.101.0.1:3000 -> 23.104.0.1:50706 10 6452 1 2025-10-23 22:30:48.894 00:05:00.343 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 22:34:48.028 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49342 10 6452 1 2025-10-23 22:31:48.897 00:05:00.338 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 22:35:48.428 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53132 10 6452 1 2025-10-23 22:37:00.144 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 22:37:00.083 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 22:37:00.215 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 22:37:00.274 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 22:37:00.298 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 22:36:48.832 00:00:12.536 TCP 1.101.0.1:3000 -> 23.104.0.1:48328 10 6452 1 2025-10-23 22:37:51.429 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49582 10 6452 1 2025-10-23 22:38:51.829 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:36420 10 6452 1 2025-10-23 22:39:52.262 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58944 10 6452 1 2025-10-23 22:36:48.897 00:05:00.341 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 22:40:52.665 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34464 10 6452 1 2025-10-23 22:37:48.901 00:05:00.335 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 22:42:00.717 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 22:42:00.510 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 22:42:00.555 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 22:42:00.633 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 22:42:00.506 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 22:41:53.092 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54016 10 6452 1 2025-10-23 22:42:53.499 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39754 10 6452 1 2025-10-23 22:43:53.903 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51922 10 6452 1 2025-10-23 22:44:54.309 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55462 10 6452 1 2025-10-23 22:45:54.720 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54096 10 6452 1 2025-10-23 22:42:48.899 00:05:00.338 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 22:47:00.288 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 22:47:00.230 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 22:47:00.290 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 22:47:00.302 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 22:47:00.374 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 22:46:55.136 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59938 10 6452 1 2025-10-23 22:43:48.903 00:05:00.332 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 22:47:55.549 00:00:11.204 TCP 1.101.0.1:3000 -> 23.104.0.1:43858 10 6452 1 2025-10-23 22:48:56.797 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49124 10 6452 1 2025-10-23 22:49:57.205 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42442 10 6452 1 2025-10-23 22:50:57.609 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49326 10 6452 1 2025-10-23 22:52:00.344 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 22:52:00.230 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 22:52:00.345 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 22:52:00.512 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 22:52:00.429 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 22:51:58.011 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56190 10 6452 1 2025-10-23 22:48:48.903 00:05:00.336 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-23 22:52:58.417 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54516 10 6452 1 2025-10-23 22:49:48.907 00:05:00.333 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-23 22:53:58.814 00:00:10.582 TCP 1.101.0.1:3000 -> 23.104.0.1:50714 10 6452 1 2025-10-23 22:54:59.434 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59142 10 6452 1 2025-10-23 22:55:59.842 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:52800 10 6452 1 2025-10-23 22:57:00.636 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 22:57:00.467 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 22:57:00.553 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 22:57:00.759 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 22:57:00.636 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 22:57:00.221 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:52978 10 6452 1 2025-10-23 22:58:00.575 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57318 10 6452 1 2025-10-23 22:54:48.908 00:05:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 Summary: total flows: 139, total bytes: 414517, total packets: 1013, avg bps: 863, avg pps: 0, avg bpp: 409 Time window: 2025-10-23 21:55:48 - 2025-10-23 22:59:49 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0048s User: 0.0000s Wall: 0.0018s flows/second: 76883.6 Runtime: 0.0018s