Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-25 20:59:36.927 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55968 10 6452 1 2025-10-25 21:00:37.336 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:35350 10 6452 1 2025-10-25 20:56:50.002 00:06:00.269 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 21:01:37.752 00:00:11.016 TCP 1.101.0.1:3000 -> 23.104.0.1:54546 10 6452 1 2025-10-25 21:02:38.804 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36058 10 6452 1 2025-10-25 21:02:56.738 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 21:02:56.593 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 21:02:56.530 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 21:02:56.603 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 21:02:56.612 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 21:03:39.214 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41304 10 6452 1 2025-10-25 21:04:39.617 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:51028 10 6452 1 2025-10-25 21:00:49.997 00:05:00.274 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 21:05:40.041 00:00:10.797 TCP 1.101.0.1:3000 -> 23.104.0.1:48088 10 6452 1 2025-10-25 21:06:40.879 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50722 10 6452 1 2025-10-25 21:06:50.000 00:01:00.272 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-25 21:07:41.317 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:58432 10 6452 1 2025-10-25 21:07:56.556 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 21:07:56.339 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 21:07:56.557 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 21:07:56.654 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 21:07:56.640 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 21:03:50.002 00:06:00.267 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 21:08:41.761 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:41746 10 6452 1 2025-10-25 21:09:42.184 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:53962 10 6452 1 2025-10-25 21:10:42.549 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39654 10 6452 1 2025-10-25 21:11:42.953 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57196 10 6452 1 2025-10-25 21:12:43.362 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:60074 10 6452 1 2025-10-25 21:12:56.594 00:00:00.048 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 21:12:56.540 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 21:12:56.666 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 21:12:56.594 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 21:12:56.749 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 21:08:50.001 00:06:00.273 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 21:13:43.764 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:45644 10 6452 1 2025-10-25 21:14:44.181 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:48140 11 6504 1 2025-10-25 21:10:50.003 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-10-25 21:15:44.637 00:00:10.511 TCP 1.101.0.1:3000 -> 23.104.0.1:58466 10 6452 1 2025-10-25 21:16:45.198 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51158 10 6452 1 2025-10-25 21:17:56.802 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 21:17:45.561 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51766 10 6452 1 2025-10-25 21:17:56.717 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 21:17:56.662 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 21:17:56.719 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 21:17:56.647 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 21:18:45.968 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54782 10 6452 1 2025-10-25 21:19:46.371 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43668 10 6452 1 2025-10-25 21:15:50.002 00:06:00.032 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-10-25 21:20:46.782 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44282 10 6452 1 2025-10-25 21:16:50.272 00:06:00.008 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-10-25 21:21:47.191 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:55558 10 6452 1 2025-10-25 21:22:56.831 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 21:22:56.738 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 21:22:56.845 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 21:22:47.552 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59064 10 6452 1 2025-10-25 21:22:56.551 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 21:22:56.927 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 21:23:47.963 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36020 10 6452 1 2025-10-25 21:24:48.369 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46072 10 6452 1 2025-10-25 21:25:48.773 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36034 10 6452 1 2025-10-25 21:21:50.281 00:06:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 790 1 2025-10-25 21:26:49.187 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:59136 10 6452 1 2025-10-25 21:23:50.036 00:04:00.243 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-25 21:27:56.830 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 21:27:56.658 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 21:27:56.994 00:00:00.031 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 21:27:56.830 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 21:27:49.550 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:37290 10 6452 1 2025-10-25 21:27:57.077 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 21:28:49.907 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36868 10 6452 1 2025-10-25 21:29:50.314 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58450 10 6452 1 2025-10-25 21:30:50.718 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:40500 10 6452 1 2025-10-25 21:31:51.129 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39126 10 6452 1 2025-10-25 21:28:50.036 00:04:00.244 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-25 21:32:57.483 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 21:32:57.506 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 21:32:57.400 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 21:32:57.585 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 21:32:57.674 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 21:32:51.530 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60844 10 6452 1 2025-10-25 21:28:50.033 00:06:00.250 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 21:33:51.932 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:55292 10 6452 1 2025-10-25 21:34:52.350 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47012 10 6452 1 2025-10-25 21:35:52.757 00:00:10.458 TCP 1.101.0.1:3000 -> 23.104.0.1:40858 12 10369 1 2025-10-25 21:36:53.252 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:49580 10 6452 1 2025-10-25 21:37:57.220 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 21:37:57.088 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 21:37:56.703 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 21:37:57.137 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 21:37:57.183 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 21:37:53.609 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43832 10 6452 1 2025-10-25 21:33:50.042 00:06:00.245 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 21:38:54.012 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48908 10 6452 1 2025-10-25 21:35:50.041 00:04:00.249 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-25 21:39:54.419 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46738 10 6452 1 2025-10-25 21:40:54.825 00:00:10.409 TCP 1.101.0.1:3000 -> 23.104.0.1:60850 10 6452 1 2025-10-25 21:41:55.283 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41340 10 6452 1 2025-10-25 21:42:57.418 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 21:42:57.337 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 21:42:57.366 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 21:42:57.334 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 21:42:57.136 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 21:42:55.695 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58122 10 6452 1 2025-10-25 21:43:56.113 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47096 10 6452 1 2025-10-25 21:40:50.048 00:04:00.242 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-25 21:44:56.517 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34072 10 6452 1 2025-10-25 21:40:50.051 00:06:00.238 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-25 21:45:56.923 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:51368 10 6452 1 2025-10-25 21:46:57.350 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49856 10 6452 1 2025-10-25 21:47:57.348 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 21:47:57.311 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 21:47:57.151 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 21:47:57.266 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 21:47:57.205 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 21:47:57.782 00:00:10.963 TCP 1.101.0.1:3000 -> 23.104.0.1:58716 10 6452 1 2025-10-25 21:48:58.784 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56534 10 6452 1 2025-10-25 21:49:59.195 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57966 10 6452 1 2025-10-25 21:45:50.049 00:06:00.242 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 21:50:59.602 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52926 10 6452 1 2025-10-25 21:52:00.004 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:35880 10 6452 1 2025-10-25 21:47:50.052 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-10-25 21:52:57.519 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 21:52:57.332 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 21:52:57.227 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 21:52:57.436 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 21:52:57.341 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 21:53:00.461 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52038 10 6452 1 2025-10-25 21:54:00.864 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57132 10 6452 1 2025-10-25 21:55:01.276 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33946 10 6452 1 2025-10-25 21:56:01.682 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36332 10 6452 1 2025-10-25 21:57:02.101 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50126 10 6452 1 2025-10-25 21:52:50.050 00:06:00.244 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-25 21:57:57.476 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 21:57:57.433 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 21:57:57.302 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 21:57:57.476 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 21:57:57.385 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 21:58:02.504 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:56508 10 6452 1 2025-10-25 21:53:50.289 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 Summary: total flows: 139, total bytes: 414886, total packets: 1019, avg bps: 877, avg pps: 0, avg bpp: 407 Time window: 2025-10-25 20:56:50 - 2025-10-25 21:59:50 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0024s User: 0.0024s Wall: 0.0029s flows/second: 48162.6 Runtime: 0.0029s