Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-24 21:59:40.314 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55166 10 6661 1 2025-10-24 21:54:49.478 00:06:00.214 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 22:00:40.712 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:45106 12 10787 1 2025-10-24 22:01:41.192 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:54138 10 6870 1 2025-10-24 22:02:28.594 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 22:02:28.413 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 22:02:28.657 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 22:02:28.724 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 22:02:28.740 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 21:57:49.476 00:06:00.220 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 22:02:41.584 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59172 10 6870 1 2025-10-24 22:03:41.990 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:53192 10 6870 1 2025-10-24 22:04:42.370 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51132 10 6870 1 2025-10-24 22:05:42.775 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:48176 10 6870 1 2025-10-24 22:01:49.480 00:06:00.214 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 22:06:43.187 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58140 10 6870 1 2025-10-24 22:07:28.768 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 22:07:28.715 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 22:07:28.776 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 22:07:28.696 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 22:07:28.859 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 22:07:43.588 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:42292 10 6870 1 2025-10-24 22:08:43.966 00:00:10.492 TCP 1.101.0.1:3000 -> 23.104.0.1:56936 10 6870 1 2025-10-24 22:04:49.479 00:06:00.217 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 22:09:44.495 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34716 12 6974 1 2025-10-24 22:10:44.898 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:37918 12 6974 1 2025-10-24 22:11:45.319 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34352 10 6870 1 2025-10-24 22:12:28.726 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 22:12:28.846 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 22:12:28.809 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 22:12:28.731 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 22:12:28.891 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 22:12:45.678 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59582 10 6870 1 2025-10-24 22:08:49.481 00:06:00.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 22:13:46.110 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45738 10 6870 1 2025-10-24 22:14:46.470 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:54034 10 6870 1 2025-10-24 22:15:46.832 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:35258 10 6870 1 2025-10-24 22:11:49.481 00:06:00.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 22:16:47.248 00:00:10.985 TCP 1.101.0.1:3000 -> 23.104.0.1:55814 10 6870 1 2025-10-24 22:17:29.045 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 22:17:28.643 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 22:17:29.057 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 22:17:28.702 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 22:17:29.140 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 22:17:48.272 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50162 10 6870 1 2025-10-24 22:18:48.670 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:41220 10 6870 1 2025-10-24 22:19:49.028 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33384 10 6870 1 2025-10-24 22:15:49.486 00:06:00.221 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 22:20:49.436 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45884 10 6870 1 2025-10-24 22:21:49.797 00:00:10.772 TCP 1.101.0.1:3000 -> 23.104.0.1:43926 10 6870 1 2025-10-24 22:22:29.124 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 22:22:28.955 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 22:22:28.951 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 22:22:28.968 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 22:22:29.051 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 22:22:50.609 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:37862 10 6870 1 2025-10-24 22:18:49.483 00:06:00.227 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 22:23:51.022 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56838 10 6870 1 2025-10-24 22:24:51.420 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52466 10 6870 1 2025-10-24 22:25:51.783 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39902 10 6870 1 2025-10-24 22:26:52.192 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59046 10 6870 1 2025-10-24 22:27:29.160 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 22:27:29.160 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 22:27:29.100 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 22:27:29.077 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 22:27:29.059 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 22:22:49.490 00:06:00.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 22:27:52.593 00:00:10.953 TCP 1.101.0.1:3000 -> 23.104.0.1:50130 10 6870 1 2025-10-24 22:28:53.580 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36180 10 6870 1 2025-10-24 22:29:53.987 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:52944 10 6870 1 2025-10-24 22:25:49.488 00:06:00.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 22:30:54.368 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36794 10 6870 1 2025-10-24 22:31:54.780 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42054 10 6870 1 2025-10-24 22:32:29.262 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 22:32:29.035 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 22:32:29.450 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 22:32:29.263 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 22:32:29.533 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 22:32:55.185 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56344 10 6870 1 2025-10-24 22:33:55.588 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40040 10 6870 1 2025-10-24 22:29:49.492 00:06:00.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 22:34:55.992 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51390 10 6870 1 2025-10-24 22:35:56.397 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39034 10 6870 1 2025-10-24 22:36:56.800 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:50630 10 6870 1 2025-10-24 22:37:29.193 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 22:37:29.377 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 22:37:29.288 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 22:37:29.112 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 22:37:29.216 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 22:32:49.498 00:06:00.218 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 22:37:57.186 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:57746 10 6870 1 2025-10-24 22:38:57.549 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54908 10 6870 1 2025-10-24 22:39:57.954 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33856 10 6870 1 2025-10-24 22:40:58.362 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54970 10 6870 1 2025-10-24 22:36:49.503 00:06:00.214 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 22:41:58.757 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:52436 10 6870 1 2025-10-24 22:42:29.599 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 22:42:29.642 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 22:42:29.203 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 22:42:29.517 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 22:42:29.562 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 22:42:59.194 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34724 10 6870 1 2025-10-24 22:43:59.558 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:60370 10 6870 1 2025-10-24 22:39:49.501 00:06:00.221 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 22:44:59.932 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:53978 10 6870 1 2025-10-24 22:46:00.364 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36262 10 6870 1 2025-10-24 22:47:00.759 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:43830 10 6870 1 2025-10-24 22:47:29.659 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 22:47:29.696 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 22:47:29.656 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 22:47:29.577 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 22:47:29.579 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 22:48:01.179 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49676 10 6870 1 2025-10-24 22:43:49.503 00:06:00.218 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 22:49:01.577 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47408 10 6870 1 2025-10-24 22:50:01.983 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39034 10 6870 1 2025-10-24 22:51:02.383 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48244 10 6870 1 2025-10-24 22:46:49.503 00:06:00.222 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 22:52:02.789 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41686 10 6870 1 2025-10-24 22:52:29.661 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 22:52:29.590 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 22:52:29.273 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 22:52:29.579 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 22:52:29.661 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 22:53:03.201 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39080 10 6870 1 2025-10-24 22:54:03.606 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:38210 10 6870 1 2025-10-24 22:55:03.961 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:42130 12 10375 1 2025-10-24 22:50:49.505 00:06:00.218 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 22:56:04.392 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41672 10 6452 1 2025-10-24 22:57:04.764 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:44366 10 6452 1 2025-10-24 22:57:29.655 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 22:57:29.757 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 22:57:29.653 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 22:57:29.729 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 22:57:29.736 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 22:58:05.193 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36028 10 6452 1 2025-10-24 22:53:49.503 00:06:00.222 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 Summary: total flows: 137, total bytes: 442115, total packets: 1030, avg bps: 906, avg pps: 0, avg bpp: 429 Time window: 2025-10-24 21:54:49 - 2025-10-24 22:59:49 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0039s User: 0.0010s Wall: 0.0017s flows/second: 80254.1 Runtime: 0.0017s