Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-25 09:58:44.512 00:00:11.243 TCP 1.101.0.1:3000 -> 23.104.0.1:35098 10 6452 1 2025-10-25 09:59:45.793 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44684 10 6452 1 2025-10-25 09:55:49.756 00:06:00.239 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 10:00:46.193 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34768 10 6452 1 2025-10-25 10:01:46.595 00:00:10.722 TCP 1.101.0.1:3000 -> 23.104.0.1:44848 10 6452 1 2025-10-25 10:02:43.483 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 10:02:43.661 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 10:02:43.477 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 10:02:43.719 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 10:02:43.560 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 09:58:49.755 00:05:00.246 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 10:02:47.352 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45668 10 6452 1 2025-10-25 10:03:47.762 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:33242 10 6452 1 2025-10-25 10:04:48.185 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:59512 10 6452 1 2025-10-25 10:05:48.584 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:53532 10 6452 1 2025-10-25 10:06:48.962 00:00:10.556 TCP 1.101.0.1:3000 -> 23.104.0.1:46650 10 6452 1 2025-10-25 10:07:43.135 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 10:07:43.086 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 10:07:43.284 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 10:07:43.326 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 10:07:43.368 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 10:02:49.760 00:06:00.239 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 10:07:49.566 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45484 10 6452 1 2025-10-25 10:04:49.757 00:05:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 10:08:49.970 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:54236 10 6452 1 2025-10-25 10:09:50.390 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33548 10 6452 1 2025-10-25 10:10:50.797 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49560 10 6452 1 2025-10-25 10:11:51.199 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:59874 10 6452 1 2025-10-25 10:12:43.411 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 10:12:43.166 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 10:12:43.321 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 10:12:43.319 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 10:12:43.402 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 10:12:51.556 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56304 10 6452 1 2025-10-25 10:09:49.762 00:05:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 10:13:51.960 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:32972 10 6452 1 2025-10-25 10:10:49.763 00:05:00.282 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 10:14:52.367 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37720 10 6452 1 2025-10-25 10:15:52.777 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:38932 10 6452 1 2025-10-25 10:16:53.141 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45742 10 6452 1 2025-10-25 10:17:43.340 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 10:17:43.534 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 10:17:43.365 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 10:17:43.256 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 10:17:43.429 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 10:17:53.549 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35812 10 6452 1 2025-10-25 10:18:53.949 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37134 10 6452 1 2025-10-25 10:15:49.766 00:05:00.276 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 10:19:54.353 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52726 10 6452 1 2025-10-25 10:16:49.764 00:05:00.281 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 10:20:54.759 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:37602 10 6452 1 2025-10-25 10:21:55.132 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37926 10 6452 1 2025-10-25 10:22:43.527 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 10:22:43.528 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 10:22:43.476 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 10:22:43.444 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 10:22:43.428 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 10:22:55.493 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:38752 10 6452 1 2025-10-25 10:23:55.859 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:40552 10 6452 1 2025-10-25 10:24:56.279 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:34106 10 6452 1 2025-10-25 10:21:49.768 00:05:00.276 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 10:25:56.721 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57370 10 6452 1 2025-10-25 10:22:49.766 00:05:00.280 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 10:26:57.134 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42170 10 6452 1 2025-10-25 10:27:43.513 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 10:27:43.686 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 10:27:43.439 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 10:27:43.430 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 10:27:43.678 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 10:27:57.540 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:50484 10 6452 1 2025-10-25 10:28:57.963 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:37820 10 6452 1 2025-10-25 10:29:58.336 00:00:10.800 TCP 1.101.0.1:3000 -> 23.104.0.1:41822 10 6452 1 2025-10-25 10:30:59.175 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37270 10 6452 1 2025-10-25 10:27:49.771 00:05:00.276 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 10:31:59.578 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59608 10 6452 1 2025-10-25 10:32:43.726 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 10:32:43.670 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 10:32:43.731 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 10:32:43.652 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 10:32:43.813 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 10:28:49.767 00:05:00.283 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 10:32:59.980 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49884 10 6452 1 2025-10-25 10:34:00.387 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45814 10 6452 1 2025-10-25 10:35:00.793 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45768 10 6452 1 2025-10-25 10:36:01.205 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:47590 12 10375 1 2025-10-25 10:37:01.680 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54050 10 6452 1 2025-10-25 10:37:44.108 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 10:37:44.111 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 10:37:44.368 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 10:37:44.246 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 10:37:44.450 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 10:33:49.771 00:05:00.277 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 10:38:02.114 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:45038 10 6452 1 2025-10-25 10:34:49.768 00:05:00.282 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 10:39:02.554 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33294 10 6452 1 2025-10-25 10:40:02.960 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39540 10 6452 1 2025-10-25 10:41:03.366 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:38194 10 6452 1 2025-10-25 10:42:03.729 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:55188 10 6452 1 2025-10-25 10:42:44.075 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 10:42:43.724 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 10:42:44.043 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 10:42:43.968 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 10:42:44.126 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 10:43:04.137 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48650 10 6452 1 2025-10-25 10:39:49.772 00:05:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 10:44:04.536 00:00:10.424 TCP 1.101.0.1:3000 -> 23.104.0.1:34798 11 6504 1 2025-10-25 10:40:49.770 00:05:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 10:45:05.002 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33330 10 6452 1 2025-10-25 10:46:05.403 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:38588 10 6452 1 2025-10-25 10:47:05.807 00:00:11.684 TCP 1.101.0.1:3000 -> 23.104.0.1:34544 10 6452 1 2025-10-25 10:47:43.990 00:00:00.047 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 10:47:43.783 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 10:47:43.937 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 10:47:43.998 00:00:00.035 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 10:47:44.020 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 10:48:07.532 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49902 10 6452 1 2025-10-25 10:49:07.929 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35786 10 6452 1 2025-10-25 10:45:49.772 00:05:00.283 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 10:50:08.358 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42508 10 6452 1 2025-10-25 10:46:49.770 00:05:00.293 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 10:51:08.762 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:56430 10 6452 1 2025-10-25 10:52:09.134 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52620 10 6452 1 2025-10-25 10:52:44.169 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 10:52:44.185 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 10:52:44.104 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 10:52:44.085 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 10:52:44.089 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 10:53:09.540 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35994 10 6452 1 2025-10-25 10:54:09.942 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58742 10 6452 1 2025-10-25 10:55:10.340 00:00:12.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56222 10 6452 1 2025-10-25 10:51:49.775 00:05:00.295 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 10:56:12.765 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49594 10 6452 1 2025-10-25 10:52:49.774 00:05:00.288 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 10:57:13.173 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:52088 10 6452 1 2025-10-25 10:57:44.053 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 10:57:44.206 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 10:57:44.089 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 10:57:44.207 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 10:57:44.290 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 10:58:13.572 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58420 10 6452 1 Summary: total flows: 140, total bytes: 421221, total packets: 1027, avg bps: 897, avg pps: 0, avg bpp: 410 Time window: 2025-10-25 09:55:49 - 2025-10-25 10:58:23 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0030s User: 0.0020s Wall: 0.0064s flows/second: 22043.8 Runtime: 0.0064s