Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-24 03:59:29.701 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54614 10 6452 1 2025-10-24 04:00:30.117 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33528 10 6452 1 2025-10-24 04:01:30.521 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58760 10 6452 1 2025-10-24 03:56:49.068 00:06:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 04:02:06.716 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 04:02:06.716 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 04:02:06.700 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 04:02:06.766 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 04:02:06.782 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 04:02:30.886 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49396 10 6452 1 2025-10-24 04:03:31.301 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54772 10 6452 1 2025-10-24 04:04:31.663 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34718 10 6452 1 2025-10-24 03:59:49.063 00:06:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 04:05:32.029 00:00:10.453 TCP 1.101.0.1:3000 -> 23.104.0.1:59282 12 10578 1 2025-10-24 04:06:32.522 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48318 10 6661 1 2025-10-24 04:07:06.883 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 04:07:06.849 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 04:07:06.663 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 04:07:06.800 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 04:07:06.844 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 04:07:32.933 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:57754 10 6661 1 2025-10-24 04:08:33.386 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36440 10 6661 1 2025-10-24 04:03:49.067 00:06:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 04:09:33.785 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57714 10 6661 1 2025-10-24 04:10:34.193 00:00:10.451 TCP 1.101.0.1:3000 -> 23.104.0.1:43560 12 10793 1 2025-10-24 04:11:34.689 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56900 10 6870 1 2025-10-24 04:06:49.066 00:06:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 04:12:07.459 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 04:12:07.422 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 04:12:07.632 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 04:12:07.726 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 04:12:07.715 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 04:12:35.115 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57788 10 6870 1 2025-10-24 04:13:35.516 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55660 10 6870 1 2025-10-24 04:14:35.882 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48564 12 6974 1 2025-10-24 04:15:36.294 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44306 10 6870 1 2025-10-24 04:10:49.069 00:06:00.260 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 04:16:36.656 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42706 10 6870 1 2025-10-24 04:17:07.000 00:00:00.042 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 04:17:06.852 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 04:17:06.944 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 04:17:07.107 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 04:17:07.027 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 04:17:37.096 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54796 10 6870 1 2025-10-24 04:13:49.067 00:06:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 04:18:37.495 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:40604 10 6870 1 2025-10-24 04:19:37.863 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38372 10 6870 1 2025-10-24 04:20:38.265 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53480 10 6870 1 2025-10-24 04:21:38.670 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43858 10 6870 1 2025-10-24 04:22:06.967 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 04:22:07.104 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 04:22:06.967 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 04:22:06.882 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 04:22:07.049 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 04:17:49.069 00:06:00.261 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 04:22:39.034 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55632 12 6974 1 2025-10-24 04:23:39.439 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47910 10 6870 1 2025-10-24 04:24:39.839 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:40106 10 6870 1 2025-10-24 04:20:49.068 00:06:00.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 04:25:40.224 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56586 10 6870 1 2025-10-24 04:26:40.630 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59806 10 6870 1 2025-10-24 04:27:07.090 00:00:00.034 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 04:27:07.264 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 04:27:06.949 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 04:27:07.008 00:00:00.033 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 04:27:07.265 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 04:27:41.035 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57246 10 6870 1 2025-10-24 04:28:41.434 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59124 10 6870 1 2025-10-24 04:24:49.071 00:06:00.263 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 04:29:41.796 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:37742 10 6870 1 2025-10-24 04:30:42.216 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40376 10 6870 1 2025-10-24 04:31:42.620 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54510 10 6870 1 2025-10-24 04:32:07.184 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 04:32:07.048 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 04:32:07.299 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 04:32:07.189 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 04:32:07.382 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 04:27:49.068 00:06:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 04:32:43.027 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:55692 10 6870 1 2025-10-24 04:33:43.462 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41924 10 6870 1 2025-10-24 04:34:43.869 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50612 10 6870 1 2025-10-24 04:35:44.274 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53026 10 6870 1 2025-10-24 04:31:49.072 00:06:00.267 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 04:36:44.689 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:40692 10 6870 1 2025-10-24 04:37:07.310 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 04:37:07.399 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 04:37:07.324 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 04:37:07.398 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 04:37:07.483 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 04:37:45.107 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33790 10 6870 1 2025-10-24 04:38:45.516 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:60610 10 6870 1 2025-10-24 04:34:49.070 00:06:00.271 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 04:39:45.884 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49850 10 6870 1 2025-10-24 04:40:46.290 00:00:10.553 TCP 1.101.0.1:3000 -> 23.104.0.1:44764 10 6870 1 2025-10-24 04:41:46.884 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:48564 10 6870 1 2025-10-24 04:42:07.545 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 04:42:07.290 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 04:42:07.435 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 04:42:07.394 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 04:42:07.519 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 04:42:47.299 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:32962 10 6870 1 2025-10-24 04:38:49.075 00:06:00.266 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 04:43:47.700 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51322 10 6870 1 2025-10-24 04:44:48.112 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54230 10 6870 1 2025-10-24 04:45:48.516 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43806 10 6870 1 2025-10-24 04:41:49.073 00:06:00.272 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 04:46:48.925 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50496 10 6870 1 2025-10-24 04:47:07.592 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 04:47:07.580 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 04:47:07.616 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 04:47:07.509 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 04:47:07.641 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 04:47:49.333 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52346 10 6870 1 2025-10-24 04:48:49.734 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:60510 10 6870 1 2025-10-24 04:49:50.142 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43476 10 6870 1 2025-10-24 04:45:49.079 00:06:00.264 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 04:50:50.552 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:43520 10 6870 1 2025-10-24 04:51:50.966 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44426 10 6870 1 2025-10-24 04:52:07.685 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 04:52:07.603 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 04:52:07.452 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 04:52:07.602 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 04:52:07.730 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 04:52:51.376 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43392 10 6870 1 2025-10-24 04:48:49.074 00:06:00.269 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 04:53:51.783 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:48362 10 6870 1 2025-10-24 04:54:52.230 00:00:23.670 TCP 1.101.0.1:3000 -> 23.104.0.1:34054 10 6870 1 2025-10-24 04:56:05.958 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36414 10 6870 1 2025-10-24 04:57:07.875 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 04:57:07.795 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 04:57:07.659 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 04:57:07.793 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 04:57:07.638 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 04:57:06.364 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43600 10 6870 1 2025-10-24 04:52:49.078 00:06:00.263 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 04:58:06.766 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35746 10 6870 1 Summary: total flows: 136, total bytes: 439582, total packets: 1016, avg bps: 945, avg pps: 0, avg bpp: 432 Time window: 2025-10-24 03:56:49 - 2025-10-24 04:58:49 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0038s User: 0.0015s Wall: 0.0027s flows/second: 50129.7 Runtime: 0.0027s