Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-24 17:58:49.506 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52530 10 6452 1 2025-10-24 17:59:49.918 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51978 10 6452 1 2025-10-24 18:00:50.321 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:55130 10 6452 1 2025-10-24 17:56:49.378 00:06:00.231 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 18:01:50.695 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:35082 10 6452 1 2025-10-24 18:02:23.967 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 18:02:23.888 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 18:02:23.607 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:02:23.884 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:02:23.956 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 18:02:51.058 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38726 10 6452 1 2025-10-24 18:03:51.459 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56636 10 6452 1 2025-10-24 17:59:49.379 00:06:00.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 18:04:51.863 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:38840 10 6452 1 2025-10-24 18:05:52.275 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54770 10 6452 1 2025-10-24 18:06:52.674 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40286 10 6452 1 2025-10-24 18:07:24.153 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 18:07:23.772 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 18:07:23.872 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:07:24.072 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:07:24.072 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 18:07:53.037 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49706 10 6452 1 2025-10-24 18:03:49.381 00:06:00.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 18:08:53.399 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40754 10 6452 1 2025-10-24 18:09:53.801 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:60320 12 10375 1 2025-10-24 18:10:54.281 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58238 10 6452 1 2025-10-24 18:06:49.379 00:06:00.233 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 18:11:54.682 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:36952 10 6452 1 2025-10-24 18:12:24.218 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 18:12:24.220 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:12:24.266 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:12:24.271 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 18:12:24.349 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 18:12:55.063 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39272 10 6452 1 2025-10-24 18:13:55.472 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:38610 10 6452 1 2025-10-24 18:14:55.885 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:39414 10 6452 1 2025-10-24 18:10:49.388 00:06:00.225 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 18:15:56.251 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40658 10 6452 1 2025-10-24 18:16:56.650 00:00:10.739 TCP 1.101.0.1:3000 -> 23.104.0.1:33090 10 6452 1 2025-10-24 18:17:24.257 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 18:17:24.170 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 18:17:23.891 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:17:24.175 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:17:24.225 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 18:17:57.434 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53266 10 6452 1 2025-10-24 18:13:49.385 00:06:00.231 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 18:18:57.840 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:53590 10 6452 1 2025-10-24 18:19:58.223 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60652 10 6452 1 2025-10-24 18:20:58.629 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38222 10 6452 1 2025-10-24 18:21:59.028 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40644 10 6452 1 2025-10-24 18:22:24.406 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 18:22:24.150 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 18:22:24.175 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:22:24.324 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:22:24.072 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 18:17:49.388 00:06:00.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 18:22:59.432 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53012 10 6452 1 2025-10-24 18:23:59.833 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60496 10 6452 1 2025-10-24 18:25:00.234 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36612 10 6452 1 2025-10-24 18:20:49.385 00:06:00.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 18:26:00.649 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51220 10 6452 1 2025-10-24 18:27:01.065 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34022 10 6452 1 2025-10-24 18:27:24.144 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 18:27:24.449 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:27:24.362 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:27:24.433 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 18:27:24.446 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 18:28:01.440 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:56238 10 6452 1 2025-10-24 18:29:01.850 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:38834 10 6452 1 2025-10-24 18:24:49.390 00:06:00.225 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 18:30:02.269 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34438 10 6452 1 2025-10-24 18:31:02.679 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50696 10 6452 1 2025-10-24 18:32:03.116 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35874 10 6452 1 2025-10-24 18:32:24.541 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 18:32:24.497 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:32:24.418 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:32:24.576 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 18:32:24.501 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 18:27:49.387 00:06:00.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 18:33:03.526 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41834 10 6452 1 2025-10-24 18:34:03.888 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:52104 10 6452 1 2025-10-24 18:35:04.314 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57052 10 6452 1 2025-10-24 18:36:04.716 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:60466 10 6452 1 2025-10-24 18:31:49.389 00:06:00.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 18:37:05.141 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45874 10 6452 1 2025-10-24 18:37:24.549 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 18:37:24.516 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:37:24.596 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:37:24.551 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 18:37:24.679 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 18:38:05.507 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41464 10 6452 1 2025-10-24 18:39:05.906 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:51360 10 6452 1 2025-10-24 18:34:49.389 00:06:00.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 18:40:06.319 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56962 10 6452 1 2025-10-24 18:41:06.719 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35884 10 6452 1 2025-10-24 18:42:07.127 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48244 10 6452 1 2025-10-24 18:42:24.823 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 18:42:24.790 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 18:42:24.501 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:42:24.741 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:42:24.741 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 18:43:07.532 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52164 10 6452 1 2025-10-24 18:38:49.392 00:06:00.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 18:44:07.942 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:49666 10 6452 1 2025-10-24 18:45:08.386 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40548 10 6452 1 2025-10-24 18:46:08.793 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60270 10 6452 1 2025-10-24 18:41:49.392 00:06:00.229 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 18:47:09.199 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46000 10 6452 1 2025-10-24 18:47:24.863 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 18:47:24.683 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:47:24.750 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:47:24.656 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 18:47:24.836 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 18:48:09.600 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35066 10 6452 1 2025-10-24 18:49:10.002 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43122 10 6452 1 2025-10-24 18:50:10.401 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58332 10 6452 1 2025-10-24 18:45:49.395 00:06:00.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 18:51:10.803 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52552 10 6452 1 2025-10-24 18:52:24.941 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 18:52:24.835 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 18:52:24.867 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:52:11.218 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49820 10 6452 1 2025-10-24 18:52:24.858 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:52:24.959 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 18:53:11.618 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35040 10 6452 1 2025-10-24 18:48:49.398 00:06:00.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 18:54:12.026 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33058 10 6452 1 2025-10-24 18:55:12.428 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39628 10 6452 1 2025-10-24 18:56:12.834 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:39258 10 6452 1 2025-10-24 18:57:25.191 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 18:57:25.091 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:57:25.189 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:57:25.192 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 18:57:13.261 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42208 10 6452 1 2025-10-24 18:57:25.272 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 18:52:49.400 00:06:00.223 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 18:58:13.661 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38250 10 6452 1 Summary: total flows: 137, total bytes: 420800, total packets: 1020, avg bps: 904, avg pps: 0, avg bpp: 412 Time window: 2025-10-24 17:56:49 - 2025-10-24 18:58:49 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0027s User: 0.0027s Wall: 0.0016s flows/second: 85356.5 Runtime: 0.0016s