Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-13 04:59:19.887 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:50596 10 6452 1 2025-10-13 05:00:20.307 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39574 10 6452 1 2025-10-13 05:01:20.687 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36434 10 6452 1 2025-10-13 05:01:51.060 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:01:50.877 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 05:01:51.070 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 05:01:51.093 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:01:51.141 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 05:02:21.115 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57946 10 6452 1 2025-10-13 05:03:21.526 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58174 10 6452 1 2025-10-13 05:04:21.939 00:00:10.966 TCP 1.101.0.1:3000 -> 23.104.0.1:54932 10 6452 1 2025-10-13 04:59:43.457 00:06:00.467 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 04:59:43.459 00:06:00.463 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 05:05:22.938 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46242 10 6452 1 2025-10-13 05:06:23.351 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35422 10 6452 1 2025-10-13 05:06:50.329 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 05:06:50.007 00:00:00.046 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 05:06:50.321 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 05:06:50.296 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:06:50.247 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:07:23.721 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:55406 10 6452 1 2025-10-13 05:08:24.148 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50402 10 6452 1 2025-10-13 05:09:24.549 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45492 10 6452 1 2025-10-13 05:10:24.952 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49104 10 6452 1 2025-10-13 05:11:25.361 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60714 10 6452 1 2025-10-13 05:06:43.460 00:06:00.464 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 05:06:43.459 00:06:00.469 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 05:11:50.466 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 05:11:50.468 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 05:11:50.373 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:11:50.522 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:11:50.605 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 05:12:25.724 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50096 10 6452 1 2025-10-13 05:13:26.138 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39420 10 6452 1 2025-10-13 05:14:26.548 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35288 10 6452 1 2025-10-13 05:15:26.946 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:56838 10 6452 1 2025-10-13 05:16:27.369 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:56100 12 10375 1 2025-10-13 05:16:50.440 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 05:16:50.319 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:16:50.282 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:16:50.517 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 05:16:50.364 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 05:17:27.807 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:59426 10 6452 1 2025-10-13 05:18:28.192 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40866 10 6452 1 2025-10-13 05:13:43.458 00:06:00.469 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 05:13:43.461 00:06:00.464 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 05:19:28.597 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59656 10 6452 1 2025-10-13 05:20:28.996 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50572 10 6452 1 2025-10-13 05:21:29.404 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44080 10 6452 1 2025-10-13 05:21:50.736 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 05:21:50.800 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 05:21:50.628 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:21:50.797 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:21:50.880 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 05:22:29.808 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:54480 10 6452 1 2025-10-13 05:23:30.188 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:51870 10 6452 1 2025-10-13 05:24:30.594 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:53872 10 6452 1 2025-10-13 05:25:30.962 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38890 10 6452 1 2025-10-13 05:20:43.462 00:06:00.465 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 05:20:43.460 00:06:00.470 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 05:26:31.364 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57872 10 6452 1 2025-10-13 05:26:50.790 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 05:26:50.708 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 05:26:50.706 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 05:26:50.592 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:26:50.707 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:27:31.727 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:47820 10 6452 1 2025-10-13 05:28:32.108 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:59244 10 6452 1 2025-10-13 05:29:32.506 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33864 10 6452 1 2025-10-13 05:30:32.911 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53732 10 6452 1 2025-10-13 05:31:33.318 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:53802 10 6452 1 2025-10-13 05:31:50.556 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 05:31:50.750 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 05:31:50.616 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:31:50.743 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:31:50.826 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 05:27:43.463 00:06:00.467 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 05:32:33.688 00:00:10.816 TCP 1.101.0.1:3000 -> 23.104.0.1:55184 10 6452 1 2025-10-13 05:27:43.460 00:06:00.473 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 05:33:34.542 00:00:14.000 TCP 1.101.0.1:3000 -> 23.104.0.1:42658 10 6452 1 2025-10-13 05:34:38.582 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58064 10 6452 1 2025-10-13 05:35:38.984 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52794 10 6452 1 2025-10-13 05:36:39.393 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34470 10 6452 1 2025-10-13 05:36:50.700 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 05:36:50.782 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:36:50.698 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:36:50.781 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 05:36:50.782 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 05:37:39.795 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43478 10 6452 1 2025-10-13 05:38:40.196 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43392 10 6452 1 2025-10-13 05:34:43.469 00:06:00.462 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 05:34:43.468 00:06:00.467 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 05:39:40.598 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36976 10 6452 1 2025-10-13 05:40:41.002 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:55636 10 6452 1 2025-10-13 05:41:50.711 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 05:41:50.858 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 05:41:41.405 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:48084 10 6452 1 2025-10-13 05:41:51.047 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 05:41:50.950 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:41:50.627 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:42:41.774 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48502 10 6452 1 2025-10-13 05:43:42.178 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35000 10 6452 1 2025-10-13 05:44:42.584 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56498 10 6452 1 2025-10-13 05:45:42.991 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33396 10 6452 1 2025-10-13 05:41:43.470 00:06:00.462 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 05:41:43.467 00:06:00.467 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 05:46:51.264 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 05:46:51.006 00:00:00.044 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 05:46:51.181 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 05:46:50.950 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:46:43.355 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49894 10 6452 1 2025-10-13 05:46:51.182 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:47:43.759 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:39882 10 6452 1 2025-10-13 05:48:44.133 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57252 10 6452 1 2025-10-13 05:49:44.541 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39526 10 6452 1 2025-10-13 05:50:44.943 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:55026 10 6452 1 2025-10-13 05:51:51.229 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 05:51:51.232 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 05:51:50.967 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:51:51.055 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:51:51.137 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 05:51:45.372 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:43772 12 10369 1 2025-10-13 05:52:45.852 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:48516 10 6452 1 2025-10-13 05:48:43.472 00:06:00.462 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 05:48:43.469 00:06:00.467 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 05:53:46.281 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39814 10 6452 1 2025-10-13 05:54:46.678 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:32960 10 6452 1 2025-10-13 05:55:47.095 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48214 10 6452 1 2025-10-13 05:56:51.282 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:56:51.182 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 05:56:51.185 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 05:56:50.858 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:56:51.364 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 05:56:47.505 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60300 10 6452 1 2025-10-13 05:57:47.909 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54758 10 6452 1 Summary: total flows: 135, total bytes: 417404, total packets: 998, avg bps: 949, avg pps: 0, avg bpp: 418 Time window: 2025-10-13 04:59:19 - 2025-10-13 05:57:58 Total flows processed: 135, passed: 135, Blocks skipped: 0, Bytes read: 14104 Sys: 0.0035s User: 0.0012s Wall: 0.0025s flows/second: 54241.9 Runtime: 0.0025s