Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-13 05:58:48.312 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53132 10 6452 1 2025-10-13 05:59:48.715 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54036 10 6452 1 2025-10-13 05:55:43.473 00:06:00.461 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 05:55:43.470 00:06:00.467 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 06:00:49.132 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:34294 10 6452 1 2025-10-13 06:01:51.520 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 06:01:51.463 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 06:01:51.423 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:01:51.520 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:01:51.603 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 06:01:49.498 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:54644 10 6452 1 2025-10-13 06:02:49.912 00:00:10.617 TCP 1.101.0.1:3000 -> 23.104.0.1:45510 10 6452 1 2025-10-13 06:03:50.569 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:33612 10 6452 1 2025-10-13 06:04:50.970 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:54640 10 6452 1 2025-10-13 06:05:51.382 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33444 10 6452 1 2025-10-13 06:06:51.798 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 06:06:51.665 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 06:06:51.338 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:06:51.730 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:06:51.813 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 06:06:51.797 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59272 10 6452 1 2025-10-13 06:02:43.475 00:06:00.460 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 06:02:43.473 00:06:00.465 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 06:07:52.207 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35322 10 6452 1 2025-10-13 06:08:52.617 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35418 10 6452 1 2025-10-13 06:09:53.019 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47330 10 6452 1 2025-10-13 06:10:53.420 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60682 10 6452 1 2025-10-13 06:11:51.514 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 06:11:51.521 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 06:11:51.407 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:11:51.514 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:11:51.596 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 06:11:53.825 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40598 10 6452 1 2025-10-13 06:12:54.229 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51178 10 6452 1 2025-10-13 06:13:54.632 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53116 10 6452 1 2025-10-13 06:09:43.475 00:06:00.465 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 06:09:43.477 00:06:00.460 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 06:14:55.038 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51198 10 6452 1 2025-10-13 06:15:55.442 00:00:10.937 TCP 1.101.0.1:3000 -> 23.104.0.1:48112 10 6452 1 2025-10-13 06:16:51.535 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 06:16:51.538 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 06:16:51.573 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:16:51.704 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:16:51.786 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 06:16:56.419 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56446 10 6452 1 2025-10-13 06:17:56.822 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:53600 10 6452 1 2025-10-13 06:18:57.223 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60048 10 6452 1 2025-10-13 06:19:57.631 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46576 10 6452 1 2025-10-13 06:20:58.027 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47356 10 6452 1 2025-10-13 06:16:43.480 00:06:00.462 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 06:16:43.477 00:06:00.467 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 06:21:51.822 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 06:21:52.038 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 06:21:52.051 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:21:52.129 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:21:52.212 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 06:21:58.428 00:00:10.411 TCP 1.101.0.1:3000 -> 23.104.0.1:33394 11 6504 1 2025-10-13 06:22:58.879 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:43704 10 6452 1 2025-10-13 06:23:59.242 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35896 10 6452 1 2025-10-13 06:24:59.652 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50602 10 6452 1 2025-10-13 06:26:00.065 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55742 10 6452 1 2025-10-13 06:26:51.773 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 06:26:51.668 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 06:26:51.708 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:26:51.774 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:26:51.857 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 06:27:00.470 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41006 10 6452 1 2025-10-13 06:28:00.877 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58918 10 6452 1 2025-10-13 06:23:43.478 00:06:00.468 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 06:23:43.482 00:06:00.462 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 06:29:01.282 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58342 10 6452 1 2025-10-13 06:30:01.686 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:60380 10 6452 1 2025-10-13 06:31:02.062 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35414 10 6452 1 2025-10-13 06:31:51.985 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 06:31:51.919 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:31:51.934 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:31:51.877 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 06:31:52.019 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 06:32:02.463 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:58334 10 6452 1 2025-10-13 06:33:02.847 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:44258 10 6452 1 2025-10-13 06:34:03.282 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:57738 10 6452 1 2025-10-13 06:35:03.767 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52262 10 6452 1 2025-10-13 06:30:43.485 00:06:00.459 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 06:30:43.482 00:06:00.465 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 06:36:04.179 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41582 10 6452 1 2025-10-13 06:36:51.765 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 06:36:52.068 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 06:36:51.914 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:36:52.057 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:36:52.141 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 06:37:04.582 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:40250 10 6452 1 2025-10-13 06:38:04.945 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:44066 10 6452 1 2025-10-13 06:39:05.370 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:41100 10 6452 1 2025-10-13 06:40:05.732 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50988 10 6452 1 2025-10-13 06:41:06.109 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35230 10 6452 1 2025-10-13 06:41:52.368 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 06:41:51.996 00:00:00.040 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 06:41:52.215 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 06:41:52.080 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:41:52.286 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:42:06.515 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:36562 10 6452 1 2025-10-13 06:37:43.483 00:06:00.466 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 06:37:43.485 00:06:00.461 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 06:43:06.882 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45796 10 6452 1 2025-10-13 06:44:07.287 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33030 10 6452 1 2025-10-13 06:45:07.690 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:52078 10 6452 1 2025-10-13 06:46:08.107 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:58658 12 10375 1 2025-10-13 06:46:52.251 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 06:46:52.318 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 06:46:52.265 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 06:46:52.240 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:46:52.169 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:47:08.547 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54680 10 6452 1 2025-10-13 06:48:08.911 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60270 10 6452 1 2025-10-13 06:49:09.317 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49194 10 6452 1 2025-10-13 06:44:43.484 00:06:00.467 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 06:44:43.487 00:06:00.462 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 06:50:09.723 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:35734 10 6452 1 2025-10-13 06:51:10.135 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43654 10 6452 1 2025-10-13 06:51:52.353 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 06:51:52.347 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 06:51:52.300 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:51:52.351 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:51:52.434 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 06:52:10.501 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48704 10 6452 1 2025-10-13 06:53:10.915 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57794 10 6452 1 2025-10-13 06:54:11.320 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:57604 10 6452 1 2025-10-13 06:55:11.742 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:36294 10 6452 1 2025-10-13 06:56:12.157 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51962 10 6452 1 2025-10-13 06:51:43.487 00:06:00.466 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 06:51:43.489 00:06:00.461 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 06:56:52.456 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 06:56:52.510 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 06:56:52.511 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 06:56:52.344 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:56:52.374 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:57:12.518 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39940 10 6452 1 2025-10-13 06:58:12.929 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:47302 10 6452 1 Summary: total flows: 138, total bytes: 421713, total packets: 1035, avg bps: 897, avg pps: 0, avg bpp: 407 Time window: 2025-10-13 05:55:43 - 2025-10-13 06:58:23 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0010s User: 0.0038s Wall: 0.0021s flows/second: 66629.9 Runtime: 0.0021s