Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-30 05:59:12.232 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52678 10 6452 1 2025-09-30 05:55:36.961 00:05:00.195 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 06:00:12.595 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34504 10 6452 1 2025-09-30 06:00:36.246 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 06:00:35.993 00:00:00.048 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 05:56:36.964 00:05:00.189 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 06:00:35.873 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 06:00:35.821 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 06:00:36.164 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 06:01:12.996 00:00:10.576 TCP 1.101.0.1:3000 -> 23.104.0.1:48438 10 6452 1 2025-09-30 06:02:13.611 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:56382 10 6452 1 2025-09-30 06:03:13.970 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59594 10 6452 1 2025-09-30 06:04:14.381 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57450 10 6452 1 2025-09-30 06:05:14.783 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35176 10 6452 1 2025-09-30 06:05:35.971 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 06:05:36.188 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 06:05:35.823 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 06:05:35.808 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 06:05:35.892 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 06:01:36.963 00:05:00.194 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 06:06:15.187 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50366 10 6452 1 2025-09-30 06:02:36.965 00:05:00.190 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 06:07:15.598 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58874 10 6452 1 2025-09-30 06:08:16.002 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42554 10 6452 1 2025-09-30 06:09:16.404 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:45828 10 6452 1 2025-09-30 06:10:36.069 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 06:10:36.217 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 06:10:16.811 00:00:19.627 TCP 1.101.0.1:3000 -> 23.104.0.1:45870 10 6452 1 2025-09-30 06:10:36.002 00:00:00.051 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 06:10:36.130 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 06:10:35.985 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 06:07:36.964 00:05:00.194 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 06:11:26.517 00:00:10.877 TCP 1.101.0.1:3000 -> 23.104.0.1:39490 10 6452 1 2025-09-30 06:08:36.967 00:05:00.188 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 06:12:27.427 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36966 10 6452 1 2025-09-30 06:13:27.834 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:36728 10 6452 1 2025-09-30 06:14:28.258 00:00:10.537 TCP 1.101.0.1:3000 -> 23.104.0.1:60348 10 6452 1 2025-09-30 06:15:36.441 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 06:15:36.451 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 06:15:36.241 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 06:15:28.832 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38232 10 6452 1 2025-09-30 06:15:36.378 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 06:15:36.461 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 06:16:29.236 00:00:10.955 TCP 1.101.0.1:3000 -> 23.104.0.1:44892 10 6452 1 2025-09-30 06:13:36.966 00:05:00.193 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 06:17:30.225 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48744 10 6452 1 2025-09-30 06:14:36.976 00:05:00.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 06:18:30.627 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46928 10 6452 1 2025-09-30 06:19:31.040 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33398 10 6452 1 2025-09-30 06:20:36.378 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 06:20:36.488 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 06:20:36.176 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 06:20:36.091 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 06:20:36.294 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 06:20:31.442 00:00:11.049 TCP 1.101.0.1:3000 -> 23.104.0.1:34752 10 6452 1 2025-09-30 06:21:32.529 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36118 10 6452 1 2025-09-30 06:22:32.933 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:35464 10 6452 1 2025-09-30 06:19:36.974 00:05:00.185 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 06:23:33.352 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57648 10 6452 1 2025-09-30 06:20:36.976 00:05:00.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 06:24:33.755 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:45644 10 6452 1 2025-09-30 06:25:36.408 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 06:25:36.417 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 06:25:36.318 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 06:25:36.242 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 06:25:36.401 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 06:25:34.118 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:36672 10 6452 1 2025-09-30 06:26:34.485 00:00:10.555 TCP 1.101.0.1:3000 -> 23.104.0.1:51760 10 6452 1 2025-09-30 06:27:35.107 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50460 10 6452 1 2025-09-30 06:28:35.514 00:00:10.590 TCP 1.101.0.1:3000 -> 23.104.0.1:57378 10 6452 1 2025-09-30 06:25:36.977 00:05:00.186 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 06:29:36.133 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48620 10 6452 1 2025-09-30 06:30:36.526 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 06:30:36.345 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 06:26:36.980 00:05:00.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 06:30:36.617 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 06:30:36.541 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 06:30:36.443 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 06:30:36.534 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36942 10 6452 1 2025-09-30 06:31:36.933 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:42598 10 6452 1 2025-09-30 06:32:37.350 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:44574 10 6452 1 2025-09-30 06:33:37.718 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53686 10 6452 1 2025-09-30 06:34:38.123 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:48830 10 6452 1 2025-09-30 06:35:37.011 00:00:00.039 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 06:35:37.121 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 06:35:36.809 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 06:35:36.920 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 06:35:37.003 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 06:31:36.977 00:05:00.185 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 06:35:38.487 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:59894 10 6452 1 2025-09-30 06:32:36.981 00:05:00.180 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 06:36:38.918 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35248 10 6452 1 2025-09-30 06:37:39.322 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56796 10 6452 1 2025-09-30 06:38:39.745 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49272 10 6452 1 2025-09-30 06:39:40.110 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48724 10 6452 1 2025-09-30 06:40:36.736 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 06:40:36.738 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 06:40:36.605 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 06:40:36.829 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 06:40:36.913 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 06:40:40.519 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49024 10 6452 1 2025-09-30 06:37:36.979 00:05:00.186 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 06:41:40.885 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:35478 10 6452 1 2025-09-30 06:38:36.981 00:05:00.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 06:42:41.248 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:57734 12 10369 1 2025-09-30 06:43:41.728 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58414 10 6452 1 2025-09-30 06:44:42.141 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33846 10 6452 1 2025-09-30 06:45:37.004 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 06:45:36.919 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 06:45:36.854 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 06:45:36.872 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 06:45:36.920 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 06:45:42.504 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57496 10 6452 1 2025-09-30 06:46:42.908 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53472 12 6556 1 2025-09-30 06:43:36.980 00:05:00.186 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 06:47:43.316 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35888 10 6452 1 2025-09-30 06:44:36.982 00:05:00.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 06:48:43.717 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55992 10 6452 1 2025-09-30 06:49:44.130 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:34794 10 6452 1 2025-09-30 06:50:36.920 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 06:50:37.088 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 06:50:37.010 00:00:00.040 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 06:50:37.082 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 06:50:37.164 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 06:50:44.527 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59626 10 6452 1 2025-09-30 06:51:44.934 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:54760 10 6452 1 2025-09-30 06:52:45.359 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44908 10 6452 1 2025-09-30 06:49:36.981 00:05:00.186 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 06:53:45.760 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:56624 10 6452 1 2025-09-30 06:50:36.983 00:05:00.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 06:54:46.175 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:51742 10 6452 1 2025-09-30 06:55:37.194 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 06:55:37.190 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 06:55:37.233 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 06:55:37.366 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 06:55:37.450 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 06:55:46.576 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45458 10 6452 1 2025-09-30 06:56:46.988 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53618 10 6452 1 2025-09-30 06:57:47.350 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44736 10 6452 1 Summary: total flows: 139, total bytes: 414569, total packets: 1014, avg bps: 886, avg pps: 0, avg bpp: 408 Time window: 2025-09-30 05:55:36 - 2025-09-30 06:57:57 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0038s User: 0.0009s Wall: 0.0013s flows/second: 108587.9 Runtime: 0.0013s