Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-13 03:58:55.030 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54422 10 6452 1 2025-10-13 03:59:55.392 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49892 10 6452 1 2025-10-13 04:00:55.749 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43126 10 6452 1 2025-10-13 03:56:43.439 00:06:00.450 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 03:56:43.441 00:06:00.445 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 04:01:49.070 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 04:01:48.987 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 04:01:48.802 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 04:01:48.892 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 04:01:48.796 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 04:01:56.151 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:36802 10 6452 1 2025-10-13 04:02:56.515 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43278 10 6452 1 2025-10-13 04:03:56.928 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:43972 10 6452 1 2025-10-13 04:04:57.351 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39568 10 6452 1 2025-10-13 04:05:57.752 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:33256 10 6452 1 2025-10-13 04:06:49.221 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 04:06:48.991 00:00:00.050 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 04:06:49.196 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 04:06:48.933 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 04:06:49.139 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 04:06:58.150 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:53516 10 6452 1 2025-10-13 04:07:58.513 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40776 10 6452 1 2025-10-13 04:03:43.444 00:06:00.446 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 04:03:43.441 00:06:00.451 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 04:08:58.917 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:37358 10 6452 1 2025-10-13 04:09:59.341 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35324 10 6452 1 2025-10-13 04:10:59.746 00:00:10.474 TCP 1.101.0.1:3000 -> 23.104.0.1:47512 12 10375 1 2025-10-13 04:11:49.121 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 04:11:49.121 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 04:11:48.837 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 04:11:49.009 00:00:00.032 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 04:11:49.092 00:00:00.033 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 04:12:00.260 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39378 10 6452 1 2025-10-13 04:13:00.665 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:47536 10 6452 1 2025-10-13 04:14:01.036 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:44432 10 6452 1 2025-10-13 04:15:01.439 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50302 10 6452 1 2025-10-13 04:10:43.445 00:06:00.448 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 04:10:43.442 00:06:00.453 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 04:16:01.843 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:42122 10 6452 1 2025-10-13 04:16:49.278 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 04:16:49.281 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 04:16:49.159 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 04:16:49.158 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 04:16:49.359 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 04:17:02.266 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49798 10 6452 1 2025-10-13 04:18:02.667 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35946 10 6452 1 2025-10-13 04:19:03.094 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34126 10 6452 1 2025-10-13 04:20:03.499 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59526 10 6452 1 2025-10-13 04:21:03.897 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:56334 10 6452 1 2025-10-13 04:21:49.509 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 04:21:49.315 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 04:21:49.367 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 04:21:49.460 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 04:21:49.427 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 04:22:04.273 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40828 10 6452 1 2025-10-13 04:17:43.445 00:06:00.451 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 04:17:43.447 00:06:00.446 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 04:23:04.680 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53584 10 6452 1 2025-10-13 04:24:05.104 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47508 10 6452 1 2025-10-13 04:25:05.505 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:38868 10 6452 1 2025-10-13 04:26:05.874 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:33936 10 6452 1 2025-10-13 04:26:49.561 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 04:26:49.261 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 04:26:49.426 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 04:26:49.336 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 04:26:49.479 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 04:27:06.251 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40070 10 6452 1 2025-10-13 04:28:06.664 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35390 10 6452 1 2025-10-13 04:29:07.098 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42160 10 6452 1 2025-10-13 04:24:43.449 00:06:00.446 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 04:24:43.445 00:06:00.451 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 04:30:07.505 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33682 10 6452 1 2025-10-13 04:31:07.909 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:52506 10 6452 1 2025-10-13 04:31:49.604 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 04:31:49.515 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 04:31:49.439 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 04:31:49.377 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 04:31:49.521 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 04:32:08.335 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40780 10 6452 1 2025-10-13 04:33:08.738 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51488 10 6452 1 2025-10-13 04:34:09.143 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53808 10 6452 1 2025-10-13 04:35:09.547 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57332 10 6452 1 2025-10-13 04:36:09.953 00:00:11.046 TCP 1.101.0.1:3000 -> 23.104.0.1:55414 12 10375 1 2025-10-13 04:31:43.450 00:06:00.451 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 04:31:43.447 00:06:00.457 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 04:36:49.761 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 04:36:49.859 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 04:36:49.780 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 04:36:49.603 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 04:36:49.679 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 04:37:11.065 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46490 10 6452 1 2025-10-13 04:38:11.475 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:35526 10 6452 1 2025-10-13 04:39:11.848 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:44438 10 6452 1 2025-10-13 04:40:12.275 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33886 10 6452 1 2025-10-13 04:41:12.680 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38000 10 6452 1 2025-10-13 04:41:49.807 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 04:41:49.587 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 04:41:49.469 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 04:41:49.750 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 04:41:49.832 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 04:42:13.108 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:48664 10 6452 1 2025-10-13 04:43:13.466 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:41704 10 6452 1 2025-10-13 04:38:43.452 00:06:00.449 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 04:38:43.450 00:06:00.455 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 04:44:13.891 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:52522 10 6452 1 2025-10-13 04:45:14.311 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33578 10 6452 1 2025-10-13 04:46:14.674 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40296 10 6452 1 2025-10-13 04:46:49.769 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 04:46:49.860 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 04:46:49.630 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 04:46:49.870 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 04:46:49.953 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 04:47:15.105 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55124 10 6452 1 2025-10-13 04:48:15.506 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39710 10 6452 1 2025-10-13 04:49:15.868 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50152 10 6452 1 2025-10-13 04:50:16.282 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38482 10 6452 1 2025-10-13 04:45:43.452 00:06:00.455 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 04:45:43.454 00:06:00.450 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 04:51:16.685 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45872 10 6452 1 2025-10-13 04:51:49.905 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 04:51:49.898 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 04:51:49.648 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 04:51:49.849 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 04:51:49.988 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 04:52:17.109 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43918 10 6452 1 2025-10-13 04:53:17.510 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38218 10 6452 1 2025-10-13 04:54:17.912 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44806 10 6452 1 2025-10-13 04:55:18.321 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:60112 10 6452 1 2025-10-13 04:56:18.733 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:40872 10 6452 1 2025-10-13 04:56:50.182 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 04:56:50.083 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 04:56:50.151 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 04:56:50.261 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 04:56:50.166 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 04:57:19.114 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46508 10 6452 1 2025-10-13 04:52:43.456 00:06:00.450 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 04:52:43.454 00:06:00.455 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 04:58:19.514 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60650 10 6452 1 Summary: total flows: 138, total bytes: 425584, total packets: 1036, avg bps: 915, avg pps: 0, avg bpp: 410 Time window: 2025-10-13 03:56:43 - 2025-10-13 04:58:43 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0023s User: 0.0023s Wall: 0.0023s flows/second: 60205.3 Runtime: 0.0023s