Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-24 13:58:46.742 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59436 10 6452 1 2025-10-24 13:54:49.295 00:06:00.217 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 13:59:47.145 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50498 10 6452 1 2025-10-24 14:00:47.542 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59656 10 6452 1 2025-10-24 14:01:47.949 00:00:11.055 TCP 1.101.0.1:3000 -> 23.104.0.1:52284 10 6452 1 2025-10-24 14:02:19.093 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 14:02:18.727 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 14:02:18.911 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 14:02:19.001 00:00:00.039 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 14:02:18.993 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 14:02:49.063 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34976 10 6452 1 2025-10-24 13:58:49.298 00:06:00.211 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 14:03:49.465 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:50832 11 6504 1 2025-10-24 14:04:49.923 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:52302 10 6452 1 2025-10-24 14:05:50.293 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58468 12 6556 1 2025-10-24 14:01:49.296 00:06:00.216 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 14:06:50.696 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:45638 10 6452 1 2025-10-24 14:07:19.147 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 14:07:18.903 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 14:07:18.965 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 14:07:19.090 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 14:07:19.049 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 14:07:51.112 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50776 10 6452 1 2025-10-24 14:08:51.510 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58910 10 6452 1 2025-10-24 14:09:51.916 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54470 10 6452 1 2025-10-24 14:05:49.300 00:06:00.211 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 14:10:52.314 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56366 10 6452 1 2025-10-24 14:11:52.679 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:40288 10 6452 1 2025-10-24 14:12:19.350 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 14:12:19.267 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 14:12:19.011 00:00:00.041 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 14:12:19.268 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 14:12:19.265 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 14:12:53.060 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48028 10 6452 1 2025-10-24 14:08:49.297 00:06:00.217 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 14:13:53.465 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46146 10 6452 1 2025-10-24 14:14:53.866 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:54518 10 6452 1 2025-10-24 14:15:54.298 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39826 10 6452 1 2025-10-24 14:16:54.704 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41052 10 6452 1 2025-10-24 14:17:19.535 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 14:17:19.388 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 14:17:19.463 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 14:17:19.423 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 14:17:19.545 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 14:12:49.301 00:06:00.212 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 14:17:55.095 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:52912 10 6452 1 2025-10-24 14:18:55.450 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43204 10 6452 1 2025-10-24 14:19:55.858 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:38946 10 6452 1 2025-10-24 14:15:49.299 00:06:00.219 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 14:20:56.275 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36740 10 6452 1 2025-10-24 14:21:56.674 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37666 10 6452 1 2025-10-24 14:22:19.543 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 14:22:19.460 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 14:22:19.223 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 14:22:19.460 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 14:22:19.381 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 14:22:57.099 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55286 10 6452 1 2025-10-24 14:23:57.498 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52104 10 6452 1 2025-10-24 14:19:49.307 00:06:00.210 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 14:24:57.858 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:46022 10 6452 1 2025-10-24 14:25:58.279 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53086 10 6452 1 2025-10-24 14:26:58.695 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:42590 10 6452 1 2025-10-24 14:27:19.748 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 14:27:19.716 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 14:27:19.603 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 14:27:19.666 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 14:27:19.628 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 14:22:49.304 00:06:00.218 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 14:27:59.059 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43634 10 6452 1 2025-10-24 14:28:59.461 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:46200 10 6452 1 2025-10-24 14:29:59.838 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:43460 10 6452 1 2025-10-24 14:31:00.219 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44734 10 6452 1 2025-10-24 14:26:49.307 00:06:00.214 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 14:32:00.625 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33220 10 6452 1 2025-10-24 14:32:19.736 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 14:32:19.538 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 14:32:19.669 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 14:32:19.540 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 14:32:19.753 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 14:33:01.030 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38734 10 6452 1 2025-10-24 14:34:01.420 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:60556 10 6452 1 2025-10-24 14:29:49.305 00:06:00.220 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 14:35:01.838 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:57332 10 6452 1 2025-10-24 14:36:02.271 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53962 10 6452 1 2025-10-24 14:37:02.681 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52492 10 6452 1 2025-10-24 14:37:19.776 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 14:37:19.692 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 14:37:19.616 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 14:37:19.752 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 14:37:19.505 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 14:38:03.110 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54192 10 6452 1 2025-10-24 14:33:49.308 00:06:00.214 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 14:39:03.517 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51396 10 6452 1 2025-10-24 14:40:03.923 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:60938 10 6452 1 2025-10-24 14:41:04.342 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45426 10 6452 1 2025-10-24 14:36:49.307 00:06:00.222 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 14:42:04.749 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46026 10 6452 1 2025-10-24 14:42:20.276 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 14:42:20.193 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 14:42:19.836 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 14:42:20.194 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 14:42:20.193 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 14:43:05.149 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59698 10 6452 1 2025-10-24 14:44:05.557 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47754 10 6452 1 2025-10-24 14:45:05.953 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37036 10 6452 1 2025-10-24 14:40:49.312 00:06:00.212 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 14:46:06.359 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:58224 10 6452 1 2025-10-24 14:47:20.052 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 14:47:06.727 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:53550 10 6452 1 2025-10-24 14:47:19.884 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 14:47:19.916 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 14:47:19.969 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 14:47:20.198 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 14:48:07.153 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57026 10 6452 1 2025-10-24 14:43:49.312 00:06:00.216 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 14:49:07.558 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37082 10 6452 1 2025-10-24 14:50:07.968 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:45200 10 6452 1 2025-10-24 14:51:08.340 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:53498 10 6452 1 2025-10-24 14:52:20.082 00:00:00.043 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 14:52:19.971 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 14:52:20.000 00:00:00.043 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 14:52:20.108 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 14:52:08.770 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:46794 10 6452 1 2025-10-24 14:52:19.923 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 14:47:49.315 00:06:00.211 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 14:53:09.189 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51494 10 6452 1 2025-10-24 14:54:09.590 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34962 10 6452 1 2025-10-24 14:55:09.992 00:00:10.413 TCP 1.101.0.1:3000 -> 23.104.0.1:45978 11 6504 1 2025-10-24 14:50:49.312 00:06:00.217 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 14:56:10.445 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60808 10 6452 1 2025-10-24 14:57:20.239 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 14:57:19.812 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 14:57:20.129 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 14:57:20.238 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 14:57:20.211 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 14:57:10.874 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:45774 10 6452 1 2025-10-24 14:58:11.256 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40926 10 6452 1 Summary: total flows: 137, total bytes: 417085, total packets: 1022, avg bps: 875, avg pps: 0, avg bpp: 408 Time window: 2025-10-24 13:54:49 - 2025-10-24 14:58:21 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0025s User: 0.0025s Wall: 0.0028s flows/second: 48978.8 Runtime: 0.0028s