Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-25 02:58:55.997 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53370 10 6452 1 2025-10-25 02:59:56.406 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:41858 10 6452 1 2025-10-25 02:55:49.584 00:06:00.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 03:00:56.822 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:34322 10 6452 1 2025-10-25 03:01:57.194 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:36262 10 6452 1 2025-10-25 03:02:35.009 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 03:02:34.713 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 03:02:34.924 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 03:02:34.842 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 03:02:34.776 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 03:02:57.590 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60978 10 6452 1 2025-10-25 02:58:49.583 00:06:00.238 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 03:03:57.991 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:48642 10 6452 1 2025-10-25 03:04:58.362 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55362 10 6452 1 2025-10-25 03:05:58.771 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:36722 10 6452 1 2025-10-25 03:06:59.188 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:32890 10 6452 1 2025-10-25 03:07:35.054 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 03:07:34.906 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 03:07:34.870 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 03:07:34.972 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 03:07:34.856 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 03:02:49.588 00:06:00.232 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 03:07:59.640 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:47342 10 6452 1 2025-10-25 03:09:00.061 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:50424 10 6452 1 2025-10-25 03:10:00.428 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:42020 10 6452 1 2025-10-25 03:05:49.585 00:06:00.238 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 03:11:00.799 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37652 10 6452 1 2025-10-25 03:12:01.199 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35746 10 6452 1 2025-10-25 03:12:34.932 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 03:12:34.626 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 03:12:35.033 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 03:12:35.144 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 03:12:35.116 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 03:13:01.564 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53192 10 6452 1 2025-10-25 03:14:01.978 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:34004 10 6452 1 2025-10-25 03:09:49.589 00:06:00.233 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 03:15:02.390 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:44906 12 10375 1 2025-10-25 03:16:02.829 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:35092 11 6504 1 2025-10-25 03:17:03.285 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37870 10 6452 1 2025-10-25 03:17:35.009 00:00:00.044 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 03:17:34.828 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 03:17:34.780 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 03:17:35.007 00:00:00.040 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 03:17:34.863 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 03:12:49.592 00:06:00.235 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 03:18:03.685 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53846 10 6452 1 2025-10-25 03:19:04.112 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46662 10 6452 1 2025-10-25 03:20:04.520 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40262 10 6452 1 2025-10-25 03:21:04.923 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:38156 10 6452 1 2025-10-25 03:16:49.595 00:06:00.249 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 03:22:05.340 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:37292 10 6452 1 2025-10-25 03:22:35.338 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 03:22:35.066 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 03:22:35.096 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 03:22:35.256 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 03:22:34.938 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 03:23:05.713 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:51970 10 6452 1 2025-10-25 03:24:06.148 00:00:12.729 TCP 1.101.0.1:3000 -> 23.104.0.1:42678 10 6452 1 2025-10-25 03:19:49.594 00:06:00.253 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 03:25:08.939 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51878 10 6452 1 2025-10-25 03:26:09.351 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58150 10 6452 1 2025-10-25 03:27:09.710 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58222 10 6452 1 2025-10-25 03:27:35.490 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 03:27:35.303 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 03:27:35.404 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 03:27:35.404 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 03:27:35.488 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 03:28:10.114 00:00:10.502 TCP 1.101.0.1:3000 -> 23.104.0.1:54136 10 6452 1 2025-10-25 03:23:49.598 00:06:00.248 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 03:29:10.683 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:43796 10 6452 1 2025-10-25 03:30:11.059 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48856 10 6452 1 2025-10-25 03:31:11.418 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49932 10 6452 1 2025-10-25 03:26:49.597 00:06:00.251 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 03:32:11.781 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35416 10 6452 1 2025-10-25 03:32:35.395 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 03:32:35.229 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 03:32:35.058 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 03:32:35.312 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 03:32:35.486 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 03:33:12.189 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46336 10 6452 1 2025-10-25 03:34:12.590 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60776 10 6452 1 2025-10-25 03:35:12.995 00:00:10.808 TCP 1.101.0.1:3000 -> 23.104.0.1:46144 10 6452 1 2025-10-25 03:30:49.604 00:06:00.243 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 03:36:13.844 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:54614 10 6452 1 2025-10-25 03:37:14.279 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38530 10 6452 1 2025-10-25 03:37:35.403 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 03:37:35.080 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 03:37:35.402 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 03:37:35.539 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 03:37:35.484 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 03:38:14.687 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59852 10 6452 1 2025-10-25 03:33:49.602 00:06:00.248 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 03:39:15.111 00:00:10.685 TCP 1.101.0.1:3000 -> 23.104.0.1:42680 10 6452 1 2025-10-25 03:40:15.837 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:41698 10 6452 1 2025-10-25 03:41:16.207 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:60792 10 6452 1 2025-10-25 03:42:16.563 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34150 10 6452 1 2025-10-25 03:42:35.797 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 03:42:35.200 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 03:42:35.845 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 03:42:35.581 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 03:42:35.928 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 03:37:49.604 00:06:00.244 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 03:43:16.964 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55064 10 6452 1 2025-10-25 03:44:17.326 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54444 10 6452 1 2025-10-25 03:45:17.732 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58522 10 6452 1 2025-10-25 03:40:49.602 00:06:00.250 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 03:46:18.137 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44292 10 6452 1 2025-10-25 03:47:18.500 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60120 10 6452 1 2025-10-25 03:47:35.501 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 03:47:35.516 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 03:47:35.662 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 03:47:35.576 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 03:47:35.745 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 03:48:18.915 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47286 10 6452 1 2025-10-25 03:49:19.321 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35568 10 6452 1 2025-10-25 03:44:49.606 00:06:00.245 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 03:50:19.730 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:45996 10 6452 1 2025-10-25 03:51:20.142 00:00:13.810 TCP 1.101.0.1:3000 -> 23.104.0.1:46098 10 6452 1 2025-10-25 03:52:24.071 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:45842 10 6452 1 2025-10-25 03:52:35.769 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 03:52:35.462 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 03:52:35.882 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 03:52:35.812 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 03:52:35.966 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 03:47:49.603 00:06:00.250 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 03:53:24.469 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46468 10 6452 1 2025-10-25 03:54:24.868 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55966 10 6452 1 2025-10-25 03:55:25.283 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:52834 10 6452 1 2025-10-25 03:56:25.657 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58018 10 6452 1 2025-10-25 03:51:49.610 00:06:00.243 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 03:57:35.961 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 03:57:26.069 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45648 10 6452 1 2025-10-25 03:57:36.053 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 03:57:36.066 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 03:57:36.126 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 03:57:36.045 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 03:58:26.472 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59682 10 6452 1 Summary: total flows: 137, total bytes: 420852, total packets: 1021, avg bps: 893, avg pps: 0, avg bpp: 412 Time window: 2025-10-25 02:55:49 - 2025-10-25 03:58:36 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0040s User: 0.0008s Wall: 0.0023s flows/second: 58923.3 Runtime: 0.0023s