Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-24 12:59:21.331 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:45756 10 6452 1 2025-10-24 13:00:21.697 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45222 10 6452 1 2025-10-24 12:55:49.280 00:06:00.215 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 13:01:22.106 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42344 10 6452 1 2025-10-24 13:02:17.752 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 13:02:17.780 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 13:02:17.921 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 13:02:17.754 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 13:02:18.004 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 13:02:22.515 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38762 10 6452 1 2025-10-24 13:03:22.915 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34244 10 6452 1 2025-10-24 12:58:49.278 00:06:00.221 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 13:04:23.313 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58810 10 6452 1 2025-10-24 13:05:23.721 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:56804 10 6452 1 2025-10-24 13:06:24.130 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:48602 10 6452 1 2025-10-24 13:07:18.091 00:00:00.039 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 13:07:18.175 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 13:07:18.148 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 13:07:18.011 00:00:00.037 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 13:07:18.012 00:00:00.029 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 13:07:24.497 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35560 10 6452 1 2025-10-24 13:02:49.281 00:06:00.215 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 13:08:24.911 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45482 10 6452 1 2025-10-24 13:09:25.325 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:43136 10 6452 1 2025-10-24 13:10:25.699 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:42480 10 6452 1 2025-10-24 13:05:49.287 00:06:00.212 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 13:11:26.101 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51250 10 6452 1 2025-10-24 13:12:17.971 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 13:12:17.834 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 13:12:17.968 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 13:12:18.052 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 13:12:18.051 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 13:12:26.498 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54830 10 6452 1 2025-10-24 13:13:26.911 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56852 10 6452 1 2025-10-24 13:14:27.316 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:43172 10 6452 1 2025-10-24 13:09:49.286 00:06:00.211 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 13:15:27.684 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44454 10 6452 1 2025-10-24 13:16:28.111 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33386 10 6452 1 2025-10-24 13:17:18.217 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 13:17:18.003 00:00:00.053 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 13:17:18.155 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 13:17:18.135 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 13:17:18.200 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 13:17:28.509 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57220 10 6452 1 2025-10-24 13:12:49.285 00:06:00.216 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 13:18:28.910 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56806 10 6452 1 2025-10-24 13:19:29.321 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49790 10 6452 1 2025-10-24 13:20:29.735 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38234 10 6452 1 2025-10-24 13:21:30.122 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42358 10 6452 1 2025-10-24 13:16:49.288 00:06:00.209 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 13:22:18.170 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 13:22:18.173 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 13:22:18.092 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 13:22:18.256 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 13:22:18.174 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 13:22:30.530 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36222 10 6452 1 2025-10-24 13:23:30.930 00:00:11.270 TCP 1.101.0.1:3000 -> 23.104.0.1:38804 10 6452 1 2025-10-24 13:24:32.240 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46336 10 6452 1 2025-10-24 13:19:49.285 00:06:00.214 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 13:25:32.645 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54512 10 6452 1 2025-10-24 13:26:33.052 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53506 10 6452 1 2025-10-24 13:27:18.432 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 13:27:18.085 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 13:27:18.280 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 13:27:18.168 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 13:27:18.364 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 13:27:33.418 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36656 10 6452 1 2025-10-24 13:28:33.827 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51792 10 6452 1 2025-10-24 13:23:49.288 00:06:00.210 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 13:29:34.238 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40590 10 6452 1 2025-10-24 13:30:34.645 00:00:10.980 TCP 1.101.0.1:3000 -> 23.104.0.1:45542 10 6452 1 2025-10-24 13:31:35.674 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:38118 10 6452 1 2025-10-24 13:26:49.286 00:06:00.216 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 13:32:18.539 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 13:32:18.334 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 13:32:18.426 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 13:32:18.435 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 13:32:18.508 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 13:32:36.040 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37762 10 6452 1 2025-10-24 13:33:36.401 00:00:10.493 TCP 1.101.0.1:3000 -> 23.104.0.1:56720 10 6452 1 2025-10-24 13:34:36.936 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:43606 10 6452 1 2025-10-24 13:35:37.356 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:52852 10 6452 1 2025-10-24 13:30:49.291 00:06:00.211 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 13:36:37.753 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:37662 10 6452 1 2025-10-24 13:37:19.099 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 13:37:18.434 00:00:00.051 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 13:37:18.931 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 13:37:19.005 00:00:00.049 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 13:37:19.016 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 13:37:38.115 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42088 10 6452 1 2025-10-24 13:38:38.521 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:34218 10 6452 1 2025-10-24 13:33:49.290 00:06:00.216 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 13:39:38.921 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:55224 10 6452 1 2025-10-24 13:40:39.304 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:36928 12 10375 1 2025-10-24 13:41:39.786 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47174 10 6452 1 2025-10-24 13:42:18.688 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 13:42:18.483 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 13:42:18.623 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 13:42:18.623 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 13:42:18.706 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 13:42:40.192 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:47906 10 6452 1 2025-10-24 13:37:49.293 00:06:00.212 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 13:43:40.598 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56146 10 6452 1 2025-10-24 13:44:40.964 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33174 10 6452 1 2025-10-24 13:40:49.292 00:06:00.217 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 13:45:41.370 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44308 10 6452 1 2025-10-24 13:46:41.773 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:32948 10 6452 1 2025-10-24 13:47:18.863 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 13:47:18.678 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 13:47:18.704 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 13:47:18.780 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 13:47:18.669 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 13:47:42.144 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60500 10 6452 1 2025-10-24 13:48:42.548 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60400 10 6452 1 2025-10-24 13:44:49.295 00:06:00.212 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 13:49:42.953 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33060 10 6452 1 2025-10-24 13:50:43.360 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47698 10 6452 1 2025-10-24 13:51:43.764 00:00:10.499 TCP 1.101.0.1:3000 -> 23.104.0.1:49838 10 6452 1 2025-10-24 13:52:18.651 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 13:52:18.778 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 13:52:18.877 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 13:52:18.657 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 13:52:18.959 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 13:47:49.293 00:06:00.217 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 13:52:44.309 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:40830 10 6452 1 2025-10-24 13:53:44.703 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50252 10 6452 1 2025-10-24 13:54:45.111 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53980 10 6452 1 2025-10-24 13:55:45.471 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:50086 12 10375 1 2025-10-24 13:51:49.296 00:06:00.212 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 13:56:45.953 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:48088 10 6452 1 2025-10-24 13:57:18.972 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 13:57:19.006 00:00:00.045 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 13:57:18.665 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 13:57:18.889 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 13:57:19.002 00:00:00.035 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 13:57:46.340 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46962 10 6452 1 Summary: total flows: 136, total bytes: 418271, total packets: 1012, avg bps: 897, avg pps: 0, avg bpp: 413 Time window: 2025-10-24 12:55:49 - 2025-10-24 13:57:56 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0050s User: 0.0010s Wall: 0.0019s flows/second: 70649.7 Runtime: 0.0019s