Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-17 03:58:54.352 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54876 10 6452 1 2025-10-17 03:59:54.753 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:47506 10 6452 1 2025-10-17 04:00:55.120 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34944 10 6452 1 2025-10-17 04:01:55.524 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45338 10 6452 1 2025-10-17 03:57:45.475 00:06:00.328 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 04:02:55.888 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:56468 12 6556 1 2025-10-17 04:03:44.508 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 04:03:44.411 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 04:03:44.324 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 04:03:44.577 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 04:03:44.659 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 03:58:45.472 00:06:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 04:03:56.314 00:00:10.805 TCP 1.101.0.1:3000 -> 23.104.0.1:56826 10 6452 1 2025-10-17 04:04:57.153 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:52198 10 6452 1 2025-10-17 04:05:57.539 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60056 10 6452 1 2025-10-17 04:06:57.955 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53708 10 6452 1 2025-10-17 04:07:58.357 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55310 10 6452 1 2025-10-17 04:08:44.887 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 04:08:44.794 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 04:08:45.313 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 04:08:45.271 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 04:08:45.230 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 04:08:58.770 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60548 10 6452 1 2025-10-17 04:04:45.476 00:06:00.329 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 04:09:59.181 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42684 10 6452 1 2025-10-17 04:05:45.474 00:06:00.335 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 04:10:59.579 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:34826 10 6452 1 2025-10-17 04:11:59.941 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:39014 10 6452 1 2025-10-17 04:13:00.362 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:46488 10 6452 1 2025-10-17 04:13:44.652 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 04:13:44.583 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 04:13:44.804 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 04:13:44.812 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 04:13:44.570 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 04:14:00.717 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60868 10 6452 1 2025-10-17 04:15:01.125 00:00:18.394 TCP 1.101.0.1:3000 -> 23.104.0.1:60716 10 6452 1 2025-10-17 04:16:09.551 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32942 10 6452 1 2025-10-17 04:11:45.477 00:06:00.329 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 04:17:09.957 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34822 10 6452 1 2025-10-17 04:12:45.474 00:06:00.335 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 04:18:10.361 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33972 10 6452 1 2025-10-17 04:18:44.923 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 04:18:44.821 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 04:18:44.895 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 04:18:44.820 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 04:18:44.903 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 04:19:10.762 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:40598 10 6452 1 2025-10-17 04:20:11.188 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:53496 10 6452 1 2025-10-17 04:21:11.578 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42260 10 6452 1 2025-10-17 04:22:11.981 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56918 10 6452 1 2025-10-17 04:23:12.392 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45212 10 6452 1 2025-10-17 04:23:44.931 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 04:23:44.927 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 04:23:44.946 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 04:23:44.849 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 04:23:44.849 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 04:18:45.479 00:06:00.329 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 04:24:12.792 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36986 10 6452 1 2025-10-17 04:19:45.476 00:06:00.336 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 04:25:13.154 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38482 10 6452 1 2025-10-17 04:26:13.559 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:34076 10 6452 1 2025-10-17 04:27:13.986 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42438 10 6452 1 2025-10-17 04:28:14.392 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46100 10 6452 1 2025-10-17 04:28:44.878 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 04:28:44.961 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 04:28:44.998 00:00:00.040 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 04:28:45.157 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 04:28:45.192 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 04:29:14.807 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:47270 10 6452 1 2025-10-17 04:30:15.226 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42224 10 6452 1 2025-10-17 04:25:45.479 00:06:00.331 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 04:31:15.637 00:00:11.157 TCP 1.101.0.1:3000 -> 23.104.0.1:50328 10 6452 1 2025-10-17 04:26:45.477 00:06:00.336 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 04:32:16.857 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:51658 10 6452 1 2025-10-17 04:33:17.273 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41266 10 6452 1 2025-10-17 04:33:45.135 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 04:33:45.250 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 04:33:45.012 00:00:00.042 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 04:33:45.235 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 04:33:45.319 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 04:34:17.678 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59566 10 6452 1 2025-10-17 04:35:18.113 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60148 10 6452 1 2025-10-17 04:36:18.522 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:54276 10 6452 1 2025-10-17 04:37:18.911 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43066 10 6452 1 2025-10-17 04:32:45.480 00:06:00.331 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 04:38:19.316 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:45486 11 6504 1 2025-10-17 04:38:44.902 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 04:38:45.092 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 04:38:45.118 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 04:38:45.096 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 04:38:45.179 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 04:33:45.478 00:06:00.340 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 04:39:19.776 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40888 10 6452 1 2025-10-17 04:40:20.186 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43084 10 6452 1 2025-10-17 04:41:20.587 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45980 10 6452 1 2025-10-17 04:42:20.993 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45574 10 6452 1 2025-10-17 04:43:21.399 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52688 10 6452 1 2025-10-17 04:43:45.354 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 04:43:45.268 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 04:43:45.351 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 04:43:45.353 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 04:43:45.350 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 04:44:21.760 00:00:11.089 TCP 1.101.0.1:3000 -> 23.104.0.1:33732 10 6452 1 2025-10-17 04:39:45.481 00:06:00.335 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 04:45:22.890 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:43748 10 6452 1 2025-10-17 04:40:45.481 00:06:00.339 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 04:46:23.262 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41428 10 6452 1 2025-10-17 04:47:23.665 00:00:10.911 TCP 1.101.0.1:3000 -> 23.104.0.1:42480 10 6452 1 2025-10-17 04:48:24.614 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33416 10 6452 1 2025-10-17 04:48:45.579 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 04:48:45.619 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 04:48:45.310 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 04:48:45.448 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 04:48:45.497 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 04:49:25.019 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39148 10 6452 1 2025-10-17 04:50:25.421 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59562 10 6452 1 2025-10-17 04:51:25.826 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55648 10 6452 1 2025-10-17 04:46:45.484 00:06:00.333 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 04:52:26.226 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38408 10 6452 1 2025-10-17 04:47:45.482 00:06:00.339 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 04:53:26.631 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35780 10 6452 1 2025-10-17 04:53:45.623 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 04:53:45.536 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 04:53:45.439 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 04:53:45.541 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 04:53:45.649 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 04:54:27.055 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54242 10 6452 1 2025-10-17 04:55:27.421 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:38318 10 6452 1 2025-10-17 04:56:27.788 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:54910 10 6452 1 2025-10-17 04:57:28.167 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:35476 10 6452 1 2025-10-17 04:58:28.587 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40832 10 6452 1 2025-10-17 04:58:45.771 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 04:58:45.699 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 04:53:45.487 00:06:00.333 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 04:58:45.606 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 04:58:45.445 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 04:58:45.688 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 Summary: total flows: 137, total bytes: 417033, total packets: 1021, avg bps: 896, avg pps: 0, avg bpp: 408 Time window: 2025-10-17 03:57:45 - 2025-10-17 04:59:45 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0038s User: 0.0008s Wall: 0.0030s flows/second: 46080.2 Runtime: 0.0030s