Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-14 01:59:09.471 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:52220 10 6452 1 2025-10-14 02:00:09.833 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:42348 10 6452 1 2025-10-14 02:01:10.274 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33034 10 6452 1 2025-10-14 02:02:15.685 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 02:02:15.687 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 02:02:15.697 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 02:02:15.659 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 02:02:15.602 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 02:02:10.675 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56956 10 6452 1 2025-10-14 02:03:11.100 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38876 10 6452 1 2025-10-14 01:59:43.825 00:05:00.489 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 01:59:43.829 00:05:00.483 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 02:04:11.499 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60604 10 6452 1 2025-10-14 02:05:11.903 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44030 12 6556 1 2025-10-14 02:06:12.309 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:36140 10 6452 1 2025-10-14 02:07:15.263 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 02:07:15.387 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 02:07:15.441 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 02:07:15.557 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 02:07:15.639 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 02:07:12.672 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55578 10 6452 1 2025-10-14 02:08:13.114 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40258 10 6452 1 2025-10-14 02:09:13.517 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46202 10 6452 1 2025-10-14 02:05:43.832 00:05:00.482 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 02:05:43.830 00:05:00.486 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 02:10:13.922 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:46992 10 6452 1 2025-10-14 02:11:14.337 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51612 10 6452 1 2025-10-14 02:12:15.983 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 02:12:15.936 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 02:12:15.860 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 02:12:15.845 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 02:12:15.927 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 02:12:14.743 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:33146 10 6452 1 2025-10-14 02:13:15.114 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45552 10 6452 1 2025-10-14 02:14:15.518 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43672 10 6452 1 2025-10-14 02:15:15.920 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40464 10 6452 1 2025-10-14 02:11:43.836 00:05:00.478 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 02:11:43.835 00:05:00.483 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 02:16:16.324 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53170 10 6452 1 2025-10-14 02:17:15.832 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 02:17:15.695 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 02:17:15.648 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 02:17:15.865 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 02:17:15.948 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 02:17:16.726 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59412 10 6452 1 2025-10-14 02:18:17.135 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43792 10 6452 1 2025-10-14 02:19:17.537 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48720 10 6452 1 2025-10-14 02:20:17.939 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:57852 10 6452 1 2025-10-14 02:21:18.314 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58436 10 6452 1 2025-10-14 02:17:43.836 00:05:00.484 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 02:17:43.838 00:05:00.479 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 02:22:16.111 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 02:22:16.113 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 02:22:15.959 00:00:00.015 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 02:22:16.119 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 02:22:16.202 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 02:22:18.721 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:48898 10 6452 1 2025-10-14 02:23:19.146 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51838 10 6452 1 2025-10-14 02:24:19.553 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55850 10 6452 1 2025-10-14 02:25:19.953 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:59804 10 6452 1 2025-10-14 02:26:20.330 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45744 10 6452 1 2025-10-14 02:27:15.632 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 02:27:15.820 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 02:27:15.911 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 02:27:15.897 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 02:27:15.981 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 02:27:20.739 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:34444 10 6452 1 2025-10-14 02:23:43.842 00:05:00.477 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 02:23:43.838 00:05:00.483 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 02:28:21.116 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43364 10 6452 1 2025-10-14 02:29:21.519 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:47548 10 6452 1 2025-10-14 02:30:21.932 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:44646 10 6452 1 2025-10-14 02:31:22.330 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58634 10 6452 1 2025-10-14 02:32:16.137 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 02:32:16.108 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 02:32:16.065 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 02:32:16.055 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 02:32:15.966 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 02:32:22.736 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42788 10 6452 1 2025-10-14 02:33:23.149 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54148 10 6452 1 2025-10-14 02:29:43.843 00:05:00.479 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 02:29:43.839 00:05:00.485 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 02:34:23.553 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48418 10 6452 1 2025-10-14 02:35:23.959 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53822 10 6452 1 2025-10-14 02:36:24.366 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:43520 12 10375 1 2025-10-14 02:37:16.315 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 02:37:16.151 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 02:37:16.151 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 02:37:16.065 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 02:37:16.398 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 02:37:24.849 00:00:10.558 TCP 1.101.0.1:3000 -> 23.104.0.1:59126 10 6452 1 2025-10-14 02:38:25.449 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55290 10 6452 1 2025-10-14 02:39:25.853 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:36886 10 6452 1 2025-10-14 02:35:43.846 00:05:00.479 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 02:35:43.844 00:05:00.484 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 02:40:26.235 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56478 10 6452 1 2025-10-14 02:41:26.637 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:36160 10 6452 1 2025-10-14 02:42:16.433 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 02:42:16.209 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 02:42:16.488 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 02:42:16.237 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 02:42:16.291 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 02:42:26.998 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33682 10 6452 1 2025-10-14 02:43:27.402 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38032 10 6452 1 2025-10-14 02:44:27.801 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:45824 10 6452 1 2025-10-14 02:45:28.180 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59858 10 6452 1 2025-10-14 02:41:43.847 00:05:00.479 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 02:41:43.845 00:05:00.484 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 02:46:28.583 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40946 10 6452 1 2025-10-14 02:47:16.354 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 02:47:16.349 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 02:47:16.320 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 02:47:16.223 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 02:47:16.306 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 02:47:28.988 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45894 10 6452 1 2025-10-14 02:48:29.399 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54752 10 6452 1 2025-10-14 02:49:29.802 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49844 10 6452 1 2025-10-14 02:50:30.212 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:57476 10 6452 1 2025-10-14 02:47:43.847 00:05:00.482 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 02:47:43.849 00:05:00.477 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 02:51:30.574 00:00:10.797 TCP 1.101.0.1:3000 -> 23.104.0.1:57430 10 6452 1 2025-10-14 02:52:16.523 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 02:52:16.626 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 02:52:16.544 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 02:52:16.364 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 02:52:16.447 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 02:52:31.412 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41260 10 6452 1 2025-10-14 02:53:31.817 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:49472 10 6452 1 2025-10-14 02:54:32.194 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55882 10 6452 1 2025-10-14 02:55:32.617 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42110 10 6452 1 2025-10-14 02:56:33.019 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52108 10 6452 1 2025-10-14 02:57:16.611 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 02:57:16.489 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 02:57:16.682 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 02:57:16.331 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 02:57:16.699 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 02:57:33.422 00:00:10.858 TCP 1.101.0.1:3000 -> 23.104.0.1:44176 10 6452 1 2025-10-14 02:53:43.850 00:05:00.481 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 02:53:43.853 00:05:00.477 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 02:58:34.315 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33844 10 6452 1 Summary: total flows: 140, total bytes: 421027, total packets: 1024, avg bps: 942, avg pps: 0, avg bpp: 411 Time window: 2025-10-14 01:59:09 - 2025-10-14 02:58:44 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0038s User: 0.0019s Wall: 0.0018s flows/second: 76339.4 Runtime: 0.0019s