Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-14 05:58:49.186 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53078 10 6452 1 2025-10-14 05:59:49.548 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51760 10 6452 1 2025-10-14 06:00:49.951 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58840 10 6452 1 2025-10-14 06:01:50.357 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38238 10 6452 1 2025-10-14 06:02:20.405 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 06:02:20.092 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 06:02:20.092 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 06:02:20.090 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 06:02:20.323 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 06:02:50.766 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:47044 10 6452 1 2025-10-14 05:59:43.922 00:05:00.474 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 05:59:43.920 00:05:00.479 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 06:03:51.180 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42706 10 6452 1 2025-10-14 06:04:51.542 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33336 10 6452 1 2025-10-14 06:05:51.943 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:47696 10 6452 1 2025-10-14 06:06:52.357 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47756 10 6452 1 2025-10-14 06:07:20.559 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 06:07:20.443 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 06:07:20.375 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 06:07:20.438 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 06:07:20.525 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 06:07:52.755 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:39406 10 6452 1 2025-10-14 06:08:53.132 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42870 10 6452 1 2025-10-14 06:05:43.922 00:05:00.477 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 06:05:43.925 00:05:00.472 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 06:09:53.499 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:55336 10 6452 1 2025-10-14 06:10:53.856 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:50048 10 6452 1 2025-10-14 06:11:54.273 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:52182 10 6452 1 2025-10-14 06:12:20.500 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 06:12:20.569 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 06:12:20.530 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 06:12:20.387 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 06:12:20.470 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 06:12:54.678 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43074 10 6452 1 2025-10-14 06:13:55.119 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47826 10 6452 1 2025-10-14 06:14:55.518 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56956 10 6452 1 2025-10-14 06:11:43.923 00:05:00.478 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 06:11:43.926 00:05:00.473 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 06:15:55.923 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:45276 10 6452 1 2025-10-14 06:16:56.336 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:48540 10 6452 1 2025-10-14 06:17:20.791 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 06:17:20.758 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 06:17:20.742 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 06:17:20.708 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 06:17:20.761 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 06:17:56.699 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57604 10 6452 1 2025-10-14 06:18:57.110 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37346 10 6452 1 2025-10-14 06:19:57.512 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:39142 10 6452 1 2025-10-14 06:20:57.881 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46638 10 6452 1 2025-10-14 06:17:43.928 00:05:00.473 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 06:17:43.926 00:05:00.478 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 06:21:58.285 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39612 11 6504 1 2025-10-14 06:22:20.927 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 06:22:20.839 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 06:22:20.837 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 06:22:20.645 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 06:22:20.838 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 06:22:58.697 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:52482 10 6452 1 2025-10-14 06:23:59.062 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:51696 10 6452 1 2025-10-14 06:24:59.483 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52858 10 6452 1 2025-10-14 06:25:59.883 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:56492 12 6556 1 2025-10-14 06:27:00.303 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:37496 10 6452 1 2025-10-14 06:27:20.888 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 06:27:20.800 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 06:27:20.946 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 06:27:20.749 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 06:27:20.804 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 06:23:43.928 00:05:00.476 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 06:23:43.931 00:05:00.471 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 06:28:00.657 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38114 10 6452 1 2025-10-14 06:29:01.018 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:48412 10 6452 1 2025-10-14 06:30:01.422 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:52732 10 6452 1 2025-10-14 06:31:01.781 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36720 10 6452 1 2025-10-14 06:32:02.183 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45096 10 6452 1 2025-10-14 06:32:20.882 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 06:32:20.880 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 06:32:20.939 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 06:32:20.882 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 06:32:20.964 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 06:33:02.590 00:00:11.200 TCP 1.101.0.1:3000 -> 23.104.0.1:49762 10 6452 1 2025-10-14 06:29:43.934 00:05:00.469 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 06:29:43.932 00:05:00.474 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 06:34:03.832 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48428 10 6452 1 2025-10-14 06:35:04.241 00:00:10.870 TCP 1.101.0.1:3000 -> 23.104.0.1:50406 10 6452 1 2025-10-14 06:36:05.149 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57828 10 6452 1 2025-10-14 06:37:05.558 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:44078 10 6452 1 2025-10-14 06:37:21.041 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 06:37:20.771 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 06:37:20.915 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 06:37:21.072 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 06:37:20.958 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 06:38:05.933 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:47252 10 6452 1 2025-10-14 06:39:06.348 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43130 10 6452 1 2025-10-14 06:35:43.936 00:05:00.471 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 06:35:43.932 00:05:00.477 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 06:40:06.751 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60808 10 6452 1 2025-10-14 06:41:07.154 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48754 10 6452 1 2025-10-14 06:42:07.570 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53090 10 6452 1 2025-10-14 06:42:20.863 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 06:42:21.011 00:00:00.039 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 06:42:20.992 00:00:00.034 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 06:42:20.958 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 06:42:21.042 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 06:43:07.969 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48750 10 6452 1 2025-10-14 06:44:08.373 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:32794 10 6452 1 2025-10-14 06:45:08.735 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39588 10 6452 1 2025-10-14 06:41:43.937 00:05:00.472 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 06:41:43.941 00:05:00.467 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 06:46:09.145 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:43806 10 6452 1 2025-10-14 06:47:09.517 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38700 10 6452 1 2025-10-14 06:47:21.157 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 06:47:21.083 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 06:47:20.998 00:00:00.044 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 06:47:21.156 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 06:47:21.243 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 06:48:09.939 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:33518 10 6452 1 2025-10-14 06:49:10.321 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43370 10 6452 1 2025-10-14 06:50:10.724 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38836 10 6452 1 2025-10-14 06:51:11.101 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:48186 10 6452 1 2025-10-14 06:47:43.939 00:05:00.473 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 06:47:43.940 00:05:00.469 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 06:52:21.279 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 06:52:21.281 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 06:52:21.288 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 06:52:21.282 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 06:52:11.505 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52512 10 6452 1 2025-10-14 06:52:21.363 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 06:53:11.907 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48342 10 6452 1 2025-10-14 06:54:12.327 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52210 10 6452 1 2025-10-14 06:55:12.727 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:47306 10 6452 1 2025-10-14 06:56:13.143 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48950 10 6452 1 2025-10-14 06:57:21.382 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 06:57:21.379 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 06:57:21.129 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 06:57:13.547 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57238 10 6452 1 2025-10-14 06:57:21.384 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 06:57:21.467 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 06:53:43.942 00:05:00.471 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 06:53:43.940 00:05:00.476 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 06:58:13.952 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59284 10 6452 1 Summary: total flows: 140, total bytes: 417156, total packets: 1023, avg bps: 928, avg pps: 0, avg bpp: 407 Time window: 2025-10-14 05:58:49 - 2025-10-14 06:58:44 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0028s User: 0.0018s Wall: 0.0020s flows/second: 71029.7 Runtime: 0.0020s