Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-24 14:59:11.655 00:00:11.273 TCP 1.101.0.1:3000 -> 23.104.0.1:39400 10 6452 1 2025-10-24 14:54:49.315 00:06:00.213 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 15:00:12.967 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40664 10 6452 1 2025-10-24 15:01:13.373 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55328 10 6452 1 2025-10-24 15:02:20.458 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 15:02:20.256 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 15:02:19.996 00:00:00.045 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 15:02:20.377 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 15:02:19.968 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 15:02:13.777 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:57960 10 6452 1 2025-10-24 14:57:49.313 00:06:00.218 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 15:03:14.145 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59306 10 6452 1 2025-10-24 15:04:14.548 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44396 10 6452 1 2025-10-24 15:05:14.907 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40118 10 6452 1 2025-10-24 15:06:15.322 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39482 10 6452 1 2025-10-24 15:01:49.317 00:06:00.214 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 15:07:20.512 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 15:07:20.129 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 15:07:20.298 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 15:07:20.400 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 15:07:20.381 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 15:07:15.725 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44994 10 6452 1 2025-10-24 15:08:16.134 00:00:10.553 TCP 1.101.0.1:3000 -> 23.104.0.1:43762 10 6452 1 2025-10-24 15:09:16.730 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35016 10 6452 1 2025-10-24 15:04:49.316 00:06:00.219 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 15:10:17.138 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46874 10 6452 1 2025-10-24 15:11:17.542 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40680 10 6452 1 2025-10-24 15:12:20.529 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 15:12:20.437 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 15:12:20.318 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 15:12:20.446 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 15:12:20.303 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 15:12:17.943 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:35208 10 6452 1 2025-10-24 15:13:18.361 00:00:10.411 TCP 1.101.0.1:3000 -> 23.104.0.1:55304 11 6504 1 2025-10-24 15:08:49.320 00:06:00.214 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 15:14:18.810 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45014 10 6452 1 2025-10-24 15:15:19.218 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:52738 10 6452 1 2025-10-24 15:16:19.613 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42038 10 6452 1 2025-10-24 15:11:49.318 00:06:00.219 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 15:17:20.660 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 15:17:20.314 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 15:17:20.483 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 15:17:20.480 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 15:17:20.567 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 15:17:20.018 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54222 10 6452 1 2025-10-24 15:18:20.387 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45390 10 6452 1 2025-10-24 15:19:20.752 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42148 10 6452 1 2025-10-24 15:20:21.152 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53202 10 6452 1 2025-10-24 15:15:49.322 00:06:00.213 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 15:21:21.559 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44108 10 6452 1 2025-10-24 15:22:20.915 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 15:22:20.429 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 15:22:20.834 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 15:22:20.664 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 15:22:20.392 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 15:22:21.957 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:35958 10 6452 1 2025-10-24 15:23:22.322 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44594 10 6452 1 2025-10-24 15:18:49.320 00:06:00.220 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 15:24:22.728 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58442 10 6452 1 2025-10-24 15:25:23.141 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:37076 12 10375 1 2025-10-24 15:26:23.622 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58684 10 6452 1 2025-10-24 15:27:20.894 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 15:27:20.905 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 15:27:20.898 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 15:27:20.889 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 15:27:20.982 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 15:27:24.028 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:56600 10 6452 1 2025-10-24 15:22:49.323 00:06:00.215 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 15:28:24.395 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52650 10 6452 1 2025-10-24 15:29:24.795 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40080 10 6452 1 2025-10-24 15:30:25.200 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56892 10 6452 1 2025-10-24 15:25:49.323 00:06:00.219 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 15:31:25.603 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:48840 10 6452 1 2025-10-24 15:32:20.909 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 15:32:20.741 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 15:32:20.831 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 15:32:20.999 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 15:32:21.082 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 15:32:26.022 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52154 10 6452 1 2025-10-24 15:33:26.423 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42090 10 6452 1 2025-10-24 15:34:26.783 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48828 10 6452 1 2025-10-24 15:29:49.325 00:06:00.215 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 15:35:27.199 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46640 10 6452 1 2025-10-24 15:36:27.600 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44822 10 6452 1 2025-10-24 15:37:21.015 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 15:37:20.782 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 15:37:20.932 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 15:37:20.862 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 15:37:21.090 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 15:37:28.004 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51562 10 6452 1 2025-10-24 15:32:49.324 00:06:00.217 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 15:38:28.408 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41720 10 6452 1 2025-10-24 15:39:28.770 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:52576 10 6452 1 2025-10-24 15:40:29.140 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38702 10 6452 1 2025-10-24 15:41:29.551 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58404 10 6452 1 2025-10-24 15:36:49.328 00:06:00.212 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 15:42:21.150 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 15:42:21.046 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 15:42:21.105 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 15:42:21.156 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 15:42:21.188 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 15:42:29.961 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:59742 10 6452 1 2025-10-24 15:43:30.337 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37798 10 6452 1 2025-10-24 15:44:30.733 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:43608 10 6452 1 2025-10-24 15:39:49.326 00:06:00.217 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 15:45:31.145 00:00:10.402 TCP 1.101.0.1:3000 -> 23.104.0.1:45664 12 10369 1 2025-10-24 15:46:31.584 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41614 10 6452 1 2025-10-24 15:47:21.282 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 15:47:20.994 00:00:00.039 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 15:47:21.135 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 15:47:21.199 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 15:47:21.239 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 15:47:31.985 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33184 10 6452 1 2025-10-24 15:48:32.392 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37742 10 6452 1 2025-10-24 15:43:49.331 00:06:00.212 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 15:49:32.756 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33854 10 6452 1 2025-10-24 15:50:33.157 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56674 10 6452 1 2025-10-24 15:51:33.560 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60912 10 6452 1 2025-10-24 15:46:49.329 00:06:00.218 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 15:52:21.384 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 15:52:21.188 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 15:52:21.231 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 15:52:21.302 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 15:52:21.182 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 15:52:33.959 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40028 10 6452 1 2025-10-24 15:53:34.324 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42458 10 6452 1 2025-10-24 15:54:34.730 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49764 10 6452 1 2025-10-24 15:55:35.137 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50300 10 6452 1 2025-10-24 15:50:49.336 00:06:00.209 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 15:56:35.546 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:44176 10 6452 1 2025-10-24 15:57:21.429 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 15:57:21.238 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 15:57:21.426 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 15:57:21.385 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 15:57:21.508 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 15:57:35.957 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:39622 10 6452 1 2025-10-24 15:58:36.328 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:57556 10 6452 1 2025-10-24 15:53:49.336 00:06:00.212 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 Summary: total flows: 138, total bytes: 425630, total packets: 1037, avg bps: 873, avg pps: 0, avg bpp: 410 Time window: 2025-10-24 14:54:49 - 2025-10-24 15:59:49 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0029s User: 0.0019s Wall: 0.0030s flows/second: 45712.7 Runtime: 0.0030s