Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-06 01:59:15.217 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36302 10 6452 1 2025-10-06 02:00:15.630 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:41160 10 6452 1 2025-10-06 01:56:39.797 00:05:00.434 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-06 02:01:16.016 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56236 10 6452 1 2025-10-06 01:57:39.796 00:05:00.438 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-06 02:02:16.416 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47760 10 6452 1 2025-10-06 02:03:24.626 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 02:03:25.076 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 02:03:25.074 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 02:03:25.174 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 02:03:16.821 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:46042 10 6452 1 2025-10-06 02:03:25.258 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 02:04:17.195 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:45400 12 10369 1 2025-10-06 02:05:17.671 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45560 10 6452 1 2025-10-06 02:06:18.032 00:00:11.044 TCP 1.101.0.1:3000 -> 23.104.0.1:49508 10 6452 1 2025-10-06 02:02:39.800 00:05:00.436 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-06 02:07:19.121 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50746 10 6452 1 2025-10-06 02:03:39.797 00:05:00.441 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-06 02:08:24.428 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 02:08:24.431 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 02:08:24.592 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 02:08:24.422 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 02:08:24.674 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 02:08:19.528 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46050 10 6452 1 2025-10-06 02:09:19.927 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:57338 10 6452 1 2025-10-06 02:10:20.353 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35396 10 6452 1 2025-10-06 02:11:20.761 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48412 10 6452 1 2025-10-06 02:12:21.163 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35432 10 6452 1 2025-10-06 02:08:39.800 00:05:00.436 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-06 02:13:24.520 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 02:13:24.588 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 02:13:24.473 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 02:13:24.594 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 02:13:24.676 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 02:13:21.564 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34976 10 6452 1 2025-10-06 02:09:39.799 00:05:00.441 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-06 02:14:21.967 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42414 10 6452 1 2025-10-06 02:15:22.371 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:42892 10 6452 1 2025-10-06 02:16:22.733 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58286 10 6452 1 2025-10-06 02:17:23.140 00:00:10.554 TCP 1.101.0.1:3000 -> 23.104.0.1:50258 10 6452 1 2025-10-06 02:18:24.805 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 02:18:24.718 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 02:18:24.897 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 02:18:24.579 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 02:18:24.721 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 02:18:23.732 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53754 10 6452 1 2025-10-06 02:14:39.802 00:05:00.437 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-06 02:19:24.143 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:48078 10 6452 1 2025-10-06 02:15:39.799 00:05:00.442 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-06 02:20:24.541 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36162 10 6452 1 2025-10-06 02:21:24.942 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53884 10 6452 1 2025-10-06 02:22:25.356 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35148 10 6452 1 2025-10-06 02:23:24.744 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 02:23:24.779 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 02:23:24.858 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 02:23:24.748 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 02:23:24.941 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 02:23:25.762 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:53030 10 6452 1 2025-10-06 02:24:26.133 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:47248 10 6452 1 2025-10-06 02:20:39.805 00:05:00.439 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-06 02:21:39.805 00:05:00.442 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-06 02:25:26.527 00:00:22.868 TCP 1.101.0.1:3000 -> 23.104.0.1:40290 10 6452 1 2025-10-06 02:26:39.458 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42786 10 6452 1 2025-10-06 02:27:39.857 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:60586 10 6452 1 2025-10-06 02:28:24.824 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 02:28:24.842 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 02:28:24.840 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 02:28:24.913 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 02:28:24.742 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 02:28:40.240 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51906 10 6452 1 2025-10-06 02:29:40.648 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53716 10 6452 1 2025-10-06 02:26:39.808 00:05:00.438 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-06 02:30:41.064 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:44524 10 6452 1 2025-10-06 02:27:39.805 00:05:00.443 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-06 02:31:41.430 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42262 10 6452 1 2025-10-06 02:32:41.839 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:56994 10 6452 1 2025-10-06 02:33:24.811 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 02:33:24.832 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 02:33:24.805 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 02:33:24.890 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 02:33:25.076 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 02:33:42.215 00:00:10.421 TCP 1.101.0.1:3000 -> 23.104.0.1:43406 11 6504 1 2025-10-06 02:34:42.675 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43746 10 6452 1 2025-10-06 02:35:43.103 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55660 10 6452 1 2025-10-06 02:32:39.810 00:05:00.438 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-06 02:36:43.507 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51246 10 6452 1 2025-10-06 02:33:39.807 00:05:00.443 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-06 02:37:43.912 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47324 10 6452 1 2025-10-06 02:38:24.897 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 02:38:24.725 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 02:38:25.225 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 02:38:25.127 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 02:38:25.210 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 02:38:44.277 00:00:10.562 TCP 1.101.0.1:3000 -> 23.104.0.1:59820 10 6452 1 2025-10-06 02:39:44.878 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44846 10 6452 1 2025-10-06 02:40:45.280 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38102 10 6452 1 2025-10-06 02:41:45.685 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39004 10 6452 1 2025-10-06 02:38:39.810 00:05:00.438 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-06 02:42:46.107 00:00:10.430 TCP 1.101.0.1:3000 -> 23.104.0.1:48248 10 6452 1 2025-10-06 02:43:25.248 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 02:43:25.165 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 02:43:25.170 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 02:43:25.297 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 02:43:25.165 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 02:39:39.809 00:05:00.442 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-06 02:43:46.600 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:36524 10 6452 1 2025-10-06 02:44:46.975 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38870 10 6452 1 2025-10-06 02:45:47.379 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57746 10 6452 1 2025-10-06 02:46:47.782 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49436 10 6452 1 2025-10-06 02:47:48.190 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34280 10 6452 1 2025-10-06 02:48:25.527 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 02:48:25.367 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 02:48:25.406 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 02:48:24.997 00:00:00.044 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 02:48:25.445 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 02:44:39.813 00:05:00.437 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-06 02:48:48.591 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58004 10 6452 1 2025-10-06 02:45:39.810 00:05:00.442 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-06 02:49:48.957 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48176 10 6452 1 2025-10-06 02:50:49.322 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46446 10 6452 1 2025-10-06 02:51:49.730 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38260 10 6452 1 2025-10-06 02:52:50.140 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51364 10 6452 1 2025-10-06 02:53:25.477 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 02:53:25.465 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 02:53:25.464 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 02:53:25.270 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 02:53:25.395 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 02:53:50.545 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49988 10 6452 1 2025-10-06 02:50:39.814 00:05:00.437 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-06 02:54:50.945 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45418 10 6452 1 2025-10-06 02:51:39.813 00:05:00.442 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-06 02:55:51.353 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59844 10 6452 1 2025-10-06 02:56:51.760 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:58180 10 6452 1 2025-10-06 02:57:52.176 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38004 10 6452 1 2025-10-06 02:58:25.501 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 02:58:25.546 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 02:58:25.257 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 02:58:25.306 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 02:58:25.390 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 139, total bytes: 414517, total packets: 1013, avg bps: 894, avg pps: 0, avg bpp: 409 Time window: 2025-10-06 01:56:39 - 2025-10-06 02:58:25 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0055s User: 0.0000s Wall: 0.0021s flows/second: 67314.2 Runtime: 0.0021s