Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-13 20:59:06.031 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49752 10 6452 1 2025-10-13 21:00:06.437 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38478 10 6452 1 2025-10-13 21:01:06.847 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:57894 10 6452 1 2025-10-13 21:02:09.613 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 21:02:09.377 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 21:02:09.532 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 21:02:09.469 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 21:02:09.531 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 21:02:07.234 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41786 10 6452 1 2025-10-13 21:03:07.632 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49776 10 6452 1 2025-10-13 20:59:43.751 00:05:00.476 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 20:59:43.749 00:05:00.481 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 21:04:08.036 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40650 10 6452 1 2025-10-13 21:05:08.443 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48318 10 6452 1 2025-10-13 21:06:08.846 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:57462 10 6452 1 2025-10-13 21:07:09.754 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 21:07:09.465 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 21:07:09.456 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 21:07:09.633 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 21:07:09.671 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 21:07:09.270 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59934 10 6452 1 2025-10-13 21:08:09.685 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49614 10 6452 1 2025-10-13 21:09:10.108 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51632 10 6452 1 2025-10-13 21:05:43.749 00:05:00.483 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 21:05:43.753 00:05:00.477 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 21:10:10.511 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52184 10 6452 1 2025-10-13 21:11:10.923 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:51962 10 6452 1 2025-10-13 21:12:09.800 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 21:12:09.717 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 21:12:09.722 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 21:12:09.712 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 21:12:09.673 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 21:12:11.363 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:55346 10 6452 1 2025-10-13 21:13:11.767 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52338 10 6452 1 2025-10-13 21:14:12.180 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50362 10 6452 1 2025-10-13 21:15:12.585 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54830 10 6452 1 2025-10-13 21:11:43.752 00:05:00.482 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 21:11:43.754 00:05:00.477 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 21:16:13.003 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34526 10 6452 1 2025-10-13 21:17:09.875 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 21:17:09.740 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 21:17:09.463 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 21:17:09.962 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 21:17:10.046 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 21:17:13.411 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:38378 10 6452 1 2025-10-13 21:18:13.770 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52618 10 6452 1 2025-10-13 21:19:14.181 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46336 10 6452 1 2025-10-13 21:20:14.585 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55910 10 6452 1 2025-10-13 21:21:14.989 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51424 10 6452 1 2025-10-13 21:17:43.752 00:05:00.484 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 21:17:43.756 00:05:00.478 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 21:22:09.907 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 21:22:09.826 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 21:22:09.676 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 21:22:09.725 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 21:22:09.825 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 21:22:15.393 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56270 10 6452 1 2025-10-13 21:23:15.798 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39968 10 6452 1 2025-10-13 21:24:16.198 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43254 10 6452 1 2025-10-13 21:25:16.603 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52224 10 6452 1 2025-10-13 21:26:17.006 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:34870 10 6452 1 2025-10-13 21:27:09.928 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 21:27:09.773 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 21:27:09.690 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 21:27:09.983 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 21:27:10.011 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 21:27:17.409 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60036 10 6452 1 2025-10-13 21:23:43.756 00:05:00.482 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 21:23:43.759 00:05:00.477 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 21:28:17.806 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:43100 10 6452 1 2025-10-13 21:29:18.189 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:37094 10 6452 1 2025-10-13 21:30:18.604 00:00:11.179 TCP 1.101.0.1:3000 -> 23.104.0.1:45328 10 6452 1 2025-10-13 21:31:19.865 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53428 10 6452 1 2025-10-13 21:32:09.936 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 21:32:09.938 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 21:32:09.803 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 21:32:09.991 00:00:00.051 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 21:32:10.074 00:00:00.051 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 21:32:20.278 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:48772 10 6452 1 2025-10-13 21:33:20.681 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55768 10 6452 1 2025-10-13 21:29:43.761 00:05:00.476 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 21:29:43.759 00:05:00.481 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 21:34:21.110 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41132 10 6452 1 2025-10-13 21:35:21.511 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59690 10 6452 1 2025-10-13 21:36:21.923 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46890 10 6452 1 2025-10-13 21:37:09.915 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 21:37:10.178 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 21:37:09.994 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 21:37:10.098 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 21:37:10.095 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 21:37:22.330 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:46166 10 6452 1 2025-10-13 21:38:22.691 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47772 10 6452 1 2025-10-13 21:39:23.111 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37286 10 6452 1 2025-10-13 21:35:43.762 00:05:00.475 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 21:35:43.759 00:05:00.480 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 21:40:23.517 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53786 10 6452 1 2025-10-13 21:41:23.924 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:40036 11 6492 1 2025-10-13 21:42:09.873 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 21:42:10.305 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 21:42:10.075 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 21:42:10.075 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 21:42:10.158 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 21:42:24.345 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44456 10 6452 1 2025-10-13 21:43:24.746 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53500 10 6452 1 2025-10-13 21:44:25.149 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:51554 10 6452 1 2025-10-13 21:45:25.560 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54936 10 6452 1 2025-10-13 21:41:43.761 00:05:00.481 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 21:41:43.763 00:05:00.476 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 21:46:25.960 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44426 10 6452 1 2025-10-13 21:47:10.311 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 21:47:10.393 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 21:47:10.296 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 21:47:10.384 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 21:47:10.466 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 21:47:26.367 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59722 10 6452 1 2025-10-13 21:48:26.774 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:34960 10 6452 1 2025-10-13 21:49:27.189 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59892 10 6452 1 2025-10-13 21:50:27.594 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38460 10 6452 1 2025-10-13 21:51:28.000 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:50896 12 10369 1 2025-10-13 21:47:43.761 00:05:00.481 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 21:47:43.764 00:05:00.476 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 21:52:10.374 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 21:52:10.599 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 21:52:10.634 00:00:00.034 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 21:52:10.374 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 21:52:10.456 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 21:52:28.480 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52346 10 6452 1 2025-10-13 21:53:28.883 00:00:10.593 TCP 1.101.0.1:3000 -> 23.104.0.1:44710 10 6452 1 2025-10-13 21:54:29.513 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51856 10 6452 1 2025-10-13 21:55:29.921 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49162 10 6452 1 2025-10-13 21:56:30.332 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44524 10 6452 1 2025-10-13 21:57:10.513 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 21:57:10.404 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 21:57:10.646 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 21:57:10.665 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 21:57:10.747 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 21:57:30.740 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:53656 10 6452 1 2025-10-13 21:53:43.766 00:05:00.477 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 21:53:43.763 00:05:00.481 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 21:58:31.115 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49424 10 6452 1 Summary: total flows: 140, total bytes: 420957, total packets: 1023, avg bps: 941, avg pps: 0, avg bpp: 411 Time window: 2025-10-13 20:59:06 - 2025-10-13 21:58:44 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0036s User: 0.0009s Wall: 0.0015s flows/second: 92531.1 Runtime: 0.0015s