Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-25 05:59:26.434 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58432 10 6452 1 2025-10-25 06:00:26.838 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:56590 10 6452 1 2025-10-25 06:01:27.268 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40678 10 6452 1 2025-10-25 06:02:27.672 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:36308 10 6452 1 2025-10-25 06:02:38.374 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 06:02:38.292 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 06:02:38.364 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 06:02:38.121 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 06:02:38.448 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 05:57:49.663 00:06:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 06:03:28.038 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47698 10 6452 1 2025-10-25 06:04:28.441 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50954 10 6452 1 2025-10-25 06:05:28.854 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:46016 10 6452 1 2025-10-25 06:00:49.659 00:06:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 06:06:29.273 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49960 10 6452 1 2025-10-25 06:07:38.519 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 06:07:38.512 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 06:07:38.344 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 06:07:38.436 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 06:07:29.674 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50014 10 6452 1 2025-10-25 06:07:38.441 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 06:08:30.117 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:45452 10 6452 1 2025-10-25 06:09:30.520 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48942 10 6452 1 2025-10-25 06:04:49.663 00:06:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 06:10:30.930 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:50420 11 6492 1 2025-10-25 06:11:31.355 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53270 10 6452 1 2025-10-25 06:12:38.550 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 06:12:38.516 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 06:12:38.295 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 06:12:38.468 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 06:12:38.212 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 06:12:31.764 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:52268 10 6452 1 2025-10-25 06:07:49.662 00:06:00.262 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 06:13:32.176 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:55818 10 6452 1 2025-10-25 06:14:32.545 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57334 10 6452 1 2025-10-25 06:15:32.962 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43634 10 6452 1 2025-10-25 06:16:33.361 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:47400 10 6452 1 2025-10-25 06:11:49.665 00:06:00.261 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 06:17:38.764 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 06:17:38.932 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 06:17:38.696 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 06:17:38.682 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 06:17:38.847 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 06:17:33.721 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42214 10 6452 1 2025-10-25 06:18:34.137 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52478 10 6452 1 2025-10-25 06:19:34.543 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58106 10 6452 1 2025-10-25 06:14:49.664 00:06:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 06:20:34.952 00:00:19.257 TCP 1.101.0.1:3000 -> 23.104.0.1:49686 10 6452 1 2025-10-25 06:21:44.295 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33522 10 6452 1 2025-10-25 06:22:38.809 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 06:22:38.471 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 06:22:38.691 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 06:22:38.726 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 06:22:38.660 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 06:22:44.705 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50918 10 6452 1 2025-10-25 06:18:49.667 00:06:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 06:23:45.091 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59522 10 6452 1 2025-10-25 06:24:45.496 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37676 10 6452 1 2025-10-25 06:25:45.896 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54540 12 6556 1 2025-10-25 06:21:49.665 00:06:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 06:26:46.302 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50820 10 6452 1 2025-10-25 06:27:38.733 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 06:27:38.859 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 06:27:38.729 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 06:27:38.711 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 06:27:38.811 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 06:27:46.700 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40700 10 6452 1 2025-10-25 06:28:47.113 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:60240 10 6452 1 2025-10-25 06:29:47.577 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38476 10 6452 1 2025-10-25 06:25:49.671 00:06:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 06:30:47.996 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37598 10 6452 1 2025-10-25 06:31:48.406 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:56456 10 6452 1 2025-10-25 06:32:38.803 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 06:32:38.972 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 06:32:38.900 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 06:32:38.721 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 06:32:38.715 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 06:32:48.806 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52078 10 6452 1 2025-10-25 06:28:49.669 00:06:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 06:33:49.211 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40228 10 6452 1 2025-10-25 06:34:49.615 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57216 10 6452 1 2025-10-25 06:35:50.019 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:40240 10 6452 1 2025-10-25 06:36:50.383 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33862 10 6452 1 2025-10-25 06:37:39.001 00:00:00.036 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 06:37:39.164 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 06:37:38.940 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 06:37:39.131 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 06:37:39.024 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 06:32:49.676 00:06:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 06:37:50.782 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55138 10 6452 1 2025-10-25 06:38:51.189 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56664 10 6452 1 2025-10-25 06:39:51.593 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49060 10 6452 1 2025-10-25 06:35:49.674 00:06:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 06:40:52.003 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47850 10 6452 1 2025-10-25 06:41:52.401 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45070 10 6452 1 2025-10-25 06:42:39.080 00:00:00.041 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 06:42:38.999 00:00:00.038 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 06:42:39.067 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 06:42:38.999 00:00:00.041 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 06:42:39.004 00:00:00.039 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 06:42:52.805 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47140 10 6452 1 2025-10-25 06:43:53.207 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42216 10 6452 1 2025-10-25 06:39:49.678 00:06:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 06:44:53.610 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33400 10 6452 1 2025-10-25 06:45:54.015 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43466 10 6452 1 2025-10-25 06:46:54.416 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:48388 10 6452 1 2025-10-25 06:47:39.281 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 06:47:39.177 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 06:47:39.282 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 06:47:39.280 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 06:47:39.364 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 06:42:49.675 00:06:00.264 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 06:47:54.819 00:00:22.256 TCP 1.101.0.1:3000 -> 23.104.0.1:54118 10 6452 1 2025-10-25 06:49:07.121 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53130 10 6452 1 2025-10-25 06:50:07.529 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36950 10 6452 1 2025-10-25 06:51:07.931 00:00:14.617 TCP 1.101.0.1:3000 -> 23.104.0.1:39276 12 10375 1 2025-10-25 06:46:49.681 00:06:00.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 06:52:12.589 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46308 10 6452 1 2025-10-25 06:52:39.214 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 06:52:39.257 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 06:52:39.307 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 06:52:39.132 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 06:52:39.009 00:00:00.037 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 06:53:12.994 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34582 10 6452 1 2025-10-25 06:54:13.396 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37320 10 6452 1 2025-10-25 06:49:49.679 00:06:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 06:55:13.802 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50036 10 6452 1 2025-10-25 06:56:14.207 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54334 10 6452 1 2025-10-25 06:57:14.610 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60554 10 6452 1 2025-10-25 06:57:39.435 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 06:57:39.375 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 06:57:39.351 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 06:57:39.343 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 06:57:39.433 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 06:58:15.023 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34732 10 6452 1 2025-10-25 06:53:49.686 00:06:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 Summary: total flows: 136, total bytes: 414492, total packets: 1013, avg bps: 891, avg pps: 0, avg bpp: 409 Time window: 2025-10-25 05:57:49 - 2025-10-25 06:59:49 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0037s User: 0.0012s Wall: 0.0016s flows/second: 85265.4 Runtime: 0.0016s