Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-03 17:58:48.527 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48894 10 6452 1 2025-10-03 17:59:48.927 00:00:10.911 TCP 1.101.0.1:3000 -> 23.104.0.1:46146 10 6452 1 2025-10-03 17:55:38.663 00:06:00.331 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 18:00:49.877 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41108 10 6452 1 2025-10-03 18:01:50.237 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36420 10 6452 1 2025-10-03 18:02:17.309 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 18:02:16.985 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 18:02:17.224 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 18:02:17.106 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:02:17.225 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:02:50.646 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48730 10 6452 1 2025-10-03 17:58:38.665 00:06:00.326 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 18:03:51.010 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50498 10 6452 1 2025-10-03 18:04:51.412 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46738 10 6452 1 2025-10-03 18:05:51.814 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:43846 10 6452 1 2025-10-03 18:06:52.232 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58434 10 6452 1 2025-10-03 18:07:17.116 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 18:07:17.200 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:07:17.191 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:07:17.205 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 18:07:17.274 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 18:02:38.663 00:06:00.335 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 18:07:52.637 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52386 10 6452 1 2025-10-03 18:08:53.058 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59382 10 6452 1 2025-10-03 18:09:53.464 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41828 10 6452 1 2025-10-03 18:05:38.667 00:06:00.329 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 18:10:53.868 00:00:10.879 TCP 1.101.0.1:3000 -> 23.104.0.1:39324 10 6452 1 2025-10-03 18:11:54.786 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58616 10 6452 1 2025-10-03 18:12:17.095 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:12:17.288 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 18:12:17.122 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 18:12:17.135 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:12:17.177 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 18:12:55.149 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:35818 10 6452 1 2025-10-03 18:09:38.670 00:05:00.330 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 18:13:55.545 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35592 10 6452 1 2025-10-03 18:14:55.945 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:59888 10 6452 1 2025-10-03 18:15:56.362 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44156 10 6452 1 2025-10-03 18:16:56.765 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:32794 10 6452 1 2025-10-03 18:17:17.418 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 18:17:17.429 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 18:17:17.426 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 18:17:17.378 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:17:17.336 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:12:38.681 00:06:00.317 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 18:17:57.176 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:49458 10 6452 1 2025-10-03 18:18:57.539 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49704 10 6452 1 2025-10-03 18:15:38.679 00:05:00.323 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 18:19:57.902 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58888 12 6556 1 2025-10-03 18:20:58.314 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:59340 10 6452 1 2025-10-03 18:21:58.683 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59412 10 6452 1 2025-10-03 18:22:17.571 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 18:22:17.534 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 18:22:17.479 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 18:22:17.334 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:22:17.488 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:22:59.108 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:34024 10 6452 1 2025-10-03 18:19:38.682 00:05:00.318 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 18:23:59.484 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37424 10 6452 1 2025-10-03 18:24:59.853 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:58798 10 6452 1 2025-10-03 18:21:38.680 00:05:00.324 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 18:26:00.235 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:32778 10 6452 1 2025-10-03 18:27:00.632 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49010 10 6452 1 2025-10-03 18:27:17.638 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 18:27:17.559 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 18:27:17.622 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 18:27:17.585 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:27:17.555 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:28:01.032 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:52786 10 6452 1 2025-10-03 18:29:01.401 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:58704 10 6452 1 2025-10-03 18:25:38.683 00:05:00.350 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 18:30:01.767 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45274 10 6452 1 2025-10-03 18:31:02.180 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36926 10 6452 1 2025-10-03 18:27:38.682 00:05:00.357 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 18:32:02.582 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38450 10 6452 1 2025-10-03 18:32:17.711 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:32:17.769 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 18:32:17.878 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 18:32:17.467 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:32:17.793 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 18:33:02.985 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60602 10 6452 1 2025-10-03 18:34:03.400 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45150 10 6452 1 2025-10-03 18:35:03.806 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:35800 10 6452 1 2025-10-03 18:31:38.685 00:05:00.352 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 18:36:04.211 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:55200 10 6452 1 2025-10-03 18:37:04.646 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35792 10 6452 1 2025-10-03 18:37:17.814 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 18:37:17.866 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 18:37:17.892 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:37:17.754 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:37:17.836 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 18:33:38.684 00:05:00.358 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 18:38:05.013 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53870 10 6452 1 2025-10-03 18:39:05.424 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54442 10 6452 1 2025-10-03 18:40:05.827 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:56298 10 6452 1 2025-10-03 18:41:06.253 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54548 10 6452 1 2025-10-03 18:37:38.686 00:05:00.353 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 18:42:18.020 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 18:42:17.871 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 18:42:17.814 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 18:42:17.764 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:42:06.661 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34172 10 6452 1 2025-10-03 18:42:17.936 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:43:07.082 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34044 10 6452 1 2025-10-03 18:39:38.683 00:05:00.358 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 18:44:07.484 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48374 10 6452 1 2025-10-03 18:45:07.884 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:36344 10 6452 1 2025-10-03 18:46:08.308 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60220 10 6452 1 2025-10-03 18:47:18.050 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 18:47:18.042 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 18:47:17.874 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:47:17.986 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:47:08.707 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48980 10 6452 1 2025-10-03 18:47:18.070 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 18:43:38.687 00:05:00.353 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 18:48:09.113 00:00:10.915 TCP 1.101.0.1:3000 -> 23.104.0.1:43004 10 6452 1 2025-10-03 18:49:10.097 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33330 10 6452 1 2025-10-03 18:45:38.685 00:05:00.358 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 18:50:10.499 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60864 10 6452 1 2025-10-03 18:51:10.902 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:46618 10 6452 1 2025-10-03 18:52:18.168 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 18:52:17.978 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 18:52:17.975 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 18:52:17.936 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:52:18.086 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:52:11.310 00:00:10.885 TCP 1.101.0.1:3000 -> 23.104.0.1:47858 10 6452 1 2025-10-03 18:53:12.233 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60358 10 6452 1 2025-10-03 18:49:38.689 00:05:00.352 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-03 18:54:12.630 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42142 10 6452 1 2025-10-03 18:55:13.033 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49100 10 6452 1 2025-10-03 18:51:38.688 00:05:00.356 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-03 18:56:13.393 00:00:10.469 TCP 1.101.0.1:3000 -> 23.104.0.1:44958 10 6452 1 2025-10-03 18:57:18.112 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:57:18.360 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 18:57:18.305 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 18:57:18.261 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 18:57:18.443 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 18:57:13.900 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:38694 10 6452 1 2025-10-03 18:58:14.268 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:39684 10 6452 1 Summary: total flows: 139, total bytes: 416981, total packets: 1020, avg bps: 885, avg pps: 0, avg bpp: 408 Time window: 2025-10-03 17:55:38 - 2025-10-03 18:58:24 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0051s User: 0.0007s Wall: 0.0022s flows/second: 64649.4 Runtime: 0.0022s