Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-27 03:59:20.987 00:00:10.618 TCP 1.101.0.1:3000 -> 23.104.0.1:34260 10 6870 1 2025-10-27 04:00:21.648 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49734 10 6870 1 2025-10-27 04:01:22.059 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50130 10 6870 1 2025-10-27 03:57:50.726 00:05:00.324 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 04:02:22.462 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:55958 10 6870 1 2025-10-27 03:58:50.729 00:05:00.319 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 04:03:34.157 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 04:03:22.864 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46430 10 6870 1 2025-10-27 04:03:33.873 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 04:03:33.881 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:03:34.074 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:03:33.849 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 04:04:23.269 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:58106 10 6870 1 2025-10-27 04:05:23.669 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57950 10 6870 1 2025-10-27 04:06:24.100 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59666 10 6870 1 2025-10-27 04:07:24.498 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50926 10 6870 1 2025-10-27 04:03:50.727 00:05:00.326 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 04:08:33.804 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 04:08:33.843 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 04:08:33.742 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:08:24.867 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49910 10 6870 1 2025-10-27 04:08:33.722 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:08:33.891 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 04:04:50.730 00:05:00.321 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 04:09:25.282 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50804 10 6870 1 2025-10-27 04:10:25.688 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40764 10 6870 1 2025-10-27 04:11:26.115 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37542 10 6870 1 2025-10-27 04:12:26.480 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41000 10 6870 1 2025-10-27 04:13:34.200 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 04:13:34.064 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 04:13:34.076 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:13:34.118 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:13:34.012 00:00:00.033 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 04:13:26.882 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58842 10 6870 1 2025-10-27 04:09:50.730 00:05:00.326 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 04:14:27.286 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:55912 10 6870 1 2025-10-27 04:10:50.733 00:05:00.321 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 04:15:27.650 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33960 10 6870 1 2025-10-27 04:16:28.072 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45814 10 6870 1 2025-10-27 04:17:28.476 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35090 10 6870 1 2025-10-27 04:18:34.068 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 04:18:33.816 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:18:33.976 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:18:33.774 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 04:18:34.059 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 04:18:28.879 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35990 10 6870 1 2025-10-27 04:19:29.290 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40264 10 6870 1 2025-10-27 04:15:50.730 00:05:00.326 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 04:20:29.654 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55360 10 6870 1 2025-10-27 04:16:50.735 00:05:00.320 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 04:21:30.065 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43688 10 6870 1 2025-10-27 04:22:30.467 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49554 10 6870 1 2025-10-27 04:23:34.255 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 04:23:33.984 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:23:34.186 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:23:34.174 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 04:23:34.270 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 04:23:30.872 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47860 10 6870 1 2025-10-27 04:24:31.279 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59102 10 6870 1 2025-10-27 04:25:31.680 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57602 10 6870 1 2025-10-27 04:21:50.733 00:05:00.326 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 04:26:32.127 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41466 10 6870 1 2025-10-27 04:22:50.736 00:05:00.328 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 04:27:32.530 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50884 10 6870 1 2025-10-27 04:28:34.342 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 04:28:34.096 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 04:28:34.135 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:28:34.261 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:28:34.167 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 04:28:32.932 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:37246 10 6870 1 2025-10-27 04:29:33.354 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38070 10 6870 1 2025-10-27 04:30:33.761 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47078 10 6870 1 2025-10-27 04:31:34.171 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41422 10 6870 1 2025-10-27 04:27:50.734 00:05:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 04:32:34.575 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47622 10 6870 1 2025-10-27 04:28:50.737 00:05:00.328 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 04:33:34.345 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 04:33:34.259 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 04:33:34.189 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:33:34.263 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:33:34.109 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 04:33:34.981 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:51942 10 6870 1 2025-10-27 04:34:35.351 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51646 10 6870 1 2025-10-27 04:35:35.762 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:39868 10 6870 1 2025-10-27 04:36:36.183 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47618 10 6870 1 2025-10-27 04:37:36.596 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:57950 10 6870 1 2025-10-27 04:33:50.734 00:05:00.336 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 04:38:34.475 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 04:38:34.308 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 04:38:34.247 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:38:34.394 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:38:34.312 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 04:38:36.961 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:44084 10 6870 1 2025-10-27 04:34:50.738 00:05:00.331 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 04:39:37.324 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53254 10 6870 1 2025-10-27 04:40:37.687 00:00:10.421 TCP 1.101.0.1:3000 -> 23.104.0.1:47950 11 6922 1 2025-10-27 04:41:38.157 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41770 10 6870 1 2025-10-27 04:42:38.561 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40752 10 6870 1 2025-10-27 04:43:34.616 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 04:43:34.577 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 04:43:34.375 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:43:34.534 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:43:34.488 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 04:43:38.965 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59544 10 6870 1 2025-10-27 04:39:50.734 00:05:00.336 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 04:44:39.368 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56084 10 6870 1 2025-10-27 04:40:50.738 00:05:00.331 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 04:45:39.734 00:00:10.581 TCP 1.101.0.1:3000 -> 23.104.0.1:36878 10 6870 1 2025-10-27 04:46:40.368 00:00:10.460 TCP 1.101.0.1:3000 -> 23.104.0.1:60564 12 10375 1 2025-10-27 04:47:40.868 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:55204 10 6452 1 2025-10-27 04:48:34.750 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 04:48:34.592 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 04:48:34.428 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:48:34.667 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:48:34.586 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 04:48:41.236 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49442 10 6452 1 2025-10-27 04:49:41.642 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:32924 10 6452 1 2025-10-27 04:45:50.739 00:05:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 04:46:50.744 00:05:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 04:50:42.016 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:49406 10 6452 1 2025-10-27 04:51:42.379 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:53338 10 6452 1 2025-10-27 04:52:42.752 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:57712 10 6452 1 2025-10-27 04:53:34.814 00:00:00.018 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 04:53:34.789 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 04:53:34.671 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:53:34.731 00:00:00.019 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:53:34.659 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 04:53:43.148 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:51212 10 6452 1 2025-10-27 04:54:43.513 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:58098 10 6452 1 2025-10-27 04:55:43.875 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56538 10 6452 1 2025-10-27 04:51:50.745 00:05:00.330 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-27 04:52:50.745 00:05:00.325 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-27 04:56:44.274 00:00:10.764 TCP 1.101.0.1:3000 -> 23.104.0.1:55796 10 6452 1 2025-10-27 04:57:45.120 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46340 10 6452 1 2025-10-27 04:58:34.896 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-27 04:58:34.816 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-27 04:58:34.689 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-27 04:58:34.607 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-27 04:58:34.728 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 Summary: total flows: 139, total bytes: 434169, total packets: 1013, avg bps: 953, avg pps: 0, avg bpp: 428 Time window: 2025-10-27 03:57:50 - 2025-10-27 04:58:34 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0045s User: 0.0009s Wall: 0.0019s flows/second: 73352.8 Runtime: 0.0019s