Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-24 04:59:07.174 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60352 10 6870 1 2025-10-24 05:00:07.576 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36320 10 6870 1 2025-10-24 04:55:49.085 00:06:00.262 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 05:01:07.979 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47766 10 6870 1 2025-10-24 05:02:07.868 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 05:02:07.891 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 05:02:07.875 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 05:02:07.671 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 05:02:07.958 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 05:02:08.386 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44080 10 6870 1 2025-10-24 05:03:08.792 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:52458 10 6870 1 2025-10-24 05:04:09.192 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49456 10 6870 1 2025-10-24 04:59:49.092 00:06:00.254 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 05:05:09.599 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:35510 10 6870 1 2025-10-24 05:06:09.959 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:35154 10 6870 1 2025-10-24 05:07:08.077 00:00:00.042 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 05:07:07.705 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 05:07:07.952 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 05:07:07.996 00:00:00.041 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 05:07:07.919 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 05:07:10.322 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59796 10 6870 1 2025-10-24 05:02:49.090 00:06:00.260 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 05:08:10.726 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43032 10 6870 1 2025-10-24 05:09:11.135 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38566 10 6870 1 2025-10-24 05:10:11.500 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41154 10 6870 1 2025-10-24 05:11:11.911 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:32876 10 6870 1 2025-10-24 05:06:49.093 00:06:00.254 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 05:12:08.186 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 05:12:08.207 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 05:12:08.059 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 05:12:08.104 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 05:12:07.918 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 05:12:12.275 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:48416 10 6870 1 2025-10-24 05:13:12.636 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51100 10 6870 1 2025-10-24 05:14:13.039 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57432 10 6870 1 2025-10-24 05:09:49.092 00:06:00.258 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 05:15:13.441 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:37144 10 6870 1 2025-10-24 05:16:13.856 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:48884 10 6870 1 2025-10-24 05:17:07.959 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 05:17:07.875 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 05:17:08.130 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 05:17:08.276 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 05:17:07.831 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 05:17:14.232 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48758 10 6870 1 2025-10-24 05:18:14.642 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:41660 10 6870 1 2025-10-24 05:13:49.095 00:06:00.253 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 05:19:15.016 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37384 10 6870 1 2025-10-24 05:20:15.431 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:44032 10 6870 1 2025-10-24 05:21:15.828 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55440 10 6870 1 2025-10-24 05:16:49.095 00:06:00.259 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 05:22:09.543 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 05:22:09.309 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 05:22:09.540 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 05:22:09.540 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 05:22:09.623 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 05:22:16.238 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56476 10 6870 1 2025-10-24 05:23:16.638 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46218 10 6870 1 2025-10-24 05:24:17.040 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35328 10 6870 1 2025-10-24 05:25:17.444 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57926 10 6870 1 2025-10-24 05:20:49.097 00:06:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 05:26:17.804 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44372 10 6870 1 2025-10-24 05:27:08.451 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 05:27:08.464 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 05:27:08.119 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 05:27:08.369 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 05:27:08.362 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 05:27:18.214 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46576 10 6870 1 2025-10-24 05:28:18.613 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57074 10 6870 1 2025-10-24 05:23:49.097 00:06:00.261 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 05:29:19.016 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42892 10 6870 1 2025-10-24 05:30:19.423 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57938 10 6870 1 2025-10-24 05:31:19.825 00:00:10.647 TCP 1.101.0.1:3000 -> 23.104.0.1:58390 10 6870 1 2025-10-24 05:32:08.551 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 05:32:08.610 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 05:32:08.726 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 05:32:08.676 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 05:32:08.809 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 05:32:20.510 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55298 10 6870 1 2025-10-24 05:27:49.100 00:06:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 05:33:20.913 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34942 10 6870 1 2025-10-24 05:34:21.324 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37482 10 6870 1 2025-10-24 05:35:21.724 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:53872 12 10375 1 2025-10-24 05:30:49.098 00:06:00.260 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 05:36:22.204 00:00:10.868 TCP 1.101.0.1:3000 -> 23.104.0.1:41482 10 6452 1 2025-10-24 05:37:08.576 00:00:00.037 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 05:37:08.483 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 05:37:08.222 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 05:37:08.493 00:00:00.037 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 05:37:08.492 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 05:37:23.113 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:47748 10 6452 1 2025-10-24 05:38:23.472 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46100 10 6452 1 2025-10-24 05:39:23.875 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39616 10 6452 1 2025-10-24 05:34:49.101 00:06:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 05:40:24.285 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41978 10 6452 1 2025-10-24 05:41:24.710 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:38792 10 6452 1 2025-10-24 05:42:08.689 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 05:42:08.720 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 05:42:08.749 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 05:42:08.747 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 05:42:08.832 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 05:42:25.132 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:57504 10 6452 1 2025-10-24 05:37:49.102 00:06:00.262 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 05:43:25.561 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45958 10 6452 1 2025-10-24 05:44:25.967 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53222 12 6556 1 2025-10-24 05:45:26.370 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:52976 10 6452 1 2025-10-24 05:46:26.737 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40820 10 6452 1 2025-10-24 05:41:49.103 00:06:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 05:47:08.800 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 05:47:08.802 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 05:47:08.523 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 05:47:08.718 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 05:47:08.794 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 05:47:27.110 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38230 10 6452 1 2025-10-24 05:48:27.512 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57604 10 6452 1 2025-10-24 05:49:27.922 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55214 10 6452 1 2025-10-24 05:44:49.101 00:06:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 05:50:28.328 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55768 10 6452 1 2025-10-24 05:51:28.729 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:37270 10 6452 1 2025-10-24 05:52:08.718 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 05:52:08.741 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 05:52:08.816 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 05:52:08.590 00:00:00.020 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 05:52:08.900 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 05:52:29.139 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44726 10 6452 1 2025-10-24 05:53:29.545 00:00:10.501 TCP 1.101.0.1:3000 -> 23.104.0.1:56466 10 6452 1 2025-10-24 05:48:49.115 00:06:00.248 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 05:54:30.107 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53450 10 6452 1 2025-10-24 05:55:30.514 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33778 10 6452 1 2025-10-24 05:56:30.924 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40098 10 6452 1 2025-10-24 05:51:49.113 00:06:00.254 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 05:57:09.339 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 05:57:09.284 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 05:57:09.276 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 05:57:09.278 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 05:57:09.357 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 05:57:31.289 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:58516 10 6452 1 2025-10-24 05:58:31.729 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:46200 10 6452 1 Summary: total flows: 137, total bytes: 435952, total packets: 1022, avg bps: 924, avg pps: 0, avg bpp: 426 Time window: 2025-10-24 04:55:49 - 2025-10-24 05:58:42 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0023s User: 0.0023s Wall: 0.0019s flows/second: 73650.3 Runtime: 0.0019s