Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-24 02:58:57.804 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59838 10 6452 1 2025-10-24 02:59:58.210 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49292 10 6452 1 2025-10-24 03:00:58.607 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43016 10 6452 1 2025-10-24 02:56:49.033 00:06:00.281 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 03:02:05.613 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 03:02:05.470 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 03:02:05.462 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:02:05.531 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:02:05.253 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 03:01:59.014 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33850 10 6452 1 2025-10-24 03:02:59.418 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:58524 10 6452 1 2025-10-24 03:03:59.812 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:51554 10 6452 1 2025-10-24 03:05:00.184 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:48388 12 10578 1 2025-10-24 03:00:49.037 00:06:00.275 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 03:06:00.662 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55496 10 6661 1 2025-10-24 03:07:05.344 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 03:07:05.654 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:07:05.514 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:07:05.567 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 03:07:05.598 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 03:07:01.073 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51796 10 6661 1 2025-10-24 03:08:01.478 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34830 10 6661 1 2025-10-24 03:03:49.034 00:06:00.282 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 03:09:01.877 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39632 10 6661 1 2025-10-24 03:10:02.289 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:55542 12 10787 1 2025-10-24 03:11:02.761 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:44894 10 6870 1 2025-10-24 03:12:05.804 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 03:12:05.334 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:12:05.631 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:12:05.700 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 03:12:05.714 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 03:12:03.181 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57706 10 6870 1 2025-10-24 03:07:49.066 00:06:00.249 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 03:13:03.588 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36654 10 6870 1 2025-10-24 03:14:03.990 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50376 10 6870 1 2025-10-24 03:15:04.394 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:40228 10 6870 1 2025-10-24 03:10:49.037 00:06:00.282 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 03:16:04.762 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:56596 10 6870 1 2025-10-24 03:17:05.951 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 03:17:05.737 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 03:17:05.763 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:17:05.869 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:17:05.976 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 03:17:05.188 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54448 10 6870 1 2025-10-24 03:18:05.593 00:00:16.890 TCP 1.101.0.1:3000 -> 23.104.0.1:59358 10 6870 1 2025-10-24 03:19:12.533 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42578 10 6870 1 2025-10-24 03:14:49.042 00:06:00.275 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 03:20:12.932 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:56246 10 6870 1 2025-10-24 03:21:13.361 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34358 10 6870 1 2025-10-24 03:22:05.799 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 03:22:05.974 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:22:05.954 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:22:05.796 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 03:22:06.039 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 03:22:13.774 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:46732 10 6870 1 2025-10-24 03:17:49.038 00:06:00.280 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 03:23:14.197 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:55556 10 6870 1 2025-10-24 03:24:14.597 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42462 10 6870 1 2025-10-24 03:25:14.997 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:55492 10 6870 1 2025-10-24 03:26:15.413 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48494 10 6870 1 2025-10-24 03:21:49.042 00:06:00.275 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 03:27:05.927 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 03:27:05.951 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:27:05.910 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:27:05.993 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 03:27:05.990 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 03:27:15.821 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40914 10 6870 1 2025-10-24 03:28:16.227 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35826 10 6870 1 2025-10-24 03:29:16.625 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54508 10 6870 1 2025-10-24 03:24:49.046 00:06:00.273 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 03:30:17.033 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49104 10 6870 1 2025-10-24 03:31:17.433 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:37904 10 6870 1 2025-10-24 03:32:06.326 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 03:32:06.267 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:32:06.323 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:32:06.398 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 03:32:06.406 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 03:32:17.794 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36452 10 6870 1 2025-10-24 03:33:18.201 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45180 10 6870 1 2025-10-24 03:28:49.054 00:06:00.264 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 03:34:18.564 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:59372 10 6870 1 2025-10-24 03:35:18.929 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:49094 10 6870 1 2025-10-24 03:36:19.361 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:40304 10 6870 1 2025-10-24 03:31:49.052 00:06:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 03:37:06.313 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 03:37:06.368 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 03:37:06.241 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:37:06.230 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:37:06.003 00:00:00.051 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 03:37:19.731 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:50240 10 6870 1 2025-10-24 03:38:20.151 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48530 10 6870 1 2025-10-24 03:39:20.558 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:32802 10 6870 1 2025-10-24 03:40:20.968 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35276 10 6870 1 2025-10-24 03:35:49.056 00:06:00.264 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 03:41:21.382 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55274 10 6870 1 2025-10-24 03:42:06.281 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 03:42:06.325 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 03:42:06.292 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:42:06.193 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:42:06.084 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 03:42:21.793 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53186 10 6870 1 2025-10-24 03:43:22.207 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:37506 10 6870 1 2025-10-24 03:38:49.056 00:06:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 03:44:22.566 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37438 10 6870 1 2025-10-24 03:45:22.971 00:00:11.340 TCP 1.101.0.1:3000 -> 23.104.0.1:37102 10 6870 1 2025-10-24 03:46:24.354 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:35088 10 6870 1 2025-10-24 03:47:06.497 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 03:47:06.414 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:47:06.411 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:47:06.406 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 03:47:06.493 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 03:47:24.722 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38136 10 6870 1 2025-10-24 03:42:49.061 00:06:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 03:48:25.126 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59146 10 6870 1 2025-10-24 03:49:25.527 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44158 10 6870 1 2025-10-24 03:50:25.930 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:39838 10 6870 1 2025-10-24 03:45:49.058 00:06:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 03:51:26.366 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59022 10 6870 1 2025-10-24 03:52:06.629 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 03:52:06.547 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:52:06.546 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 03:52:06.494 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 03:52:06.353 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:52:26.776 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44868 10 6870 1 2025-10-24 03:53:27.188 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60014 10 6870 1 2025-10-24 03:54:27.596 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38932 10 6870 1 2025-10-24 03:49:49.063 00:06:00.260 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 03:55:28.004 00:00:10.435 TCP 1.101.0.1:3000 -> 23.104.0.1:50998 12 10375 1 2025-10-24 03:56:28.478 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52884 10 6452 1 2025-10-24 03:57:06.750 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 03:57:06.571 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 03:57:06.506 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:57:06.669 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 03:57:06.513 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 03:57:28.881 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34664 10 6452 1 2025-10-24 03:52:49.060 00:06:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 03:58:29.288 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45310 10 6452 1 Summary: total flows: 137, total bytes: 448489, total packets: 1024, avg bps: 964, avg pps: 0, avg bpp: 437 Time window: 2025-10-24 02:56:49 - 2025-10-24 03:58:49 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0049s User: 0.0000s Wall: 0.0021s flows/second: 66116.6 Runtime: 0.0021s