Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-17 04:59:28.996 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51374 10 6452 1 2025-10-17 04:54:45.484 00:06:00.339 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 05:00:29.359 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42916 10 6452 1 2025-10-17 05:01:29.770 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34144 10 6452 1 2025-10-17 05:02:30.138 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52978 10 6452 1 2025-10-17 05:03:30.501 00:00:10.712 TCP 1.101.0.1:3000 -> 23.104.0.1:50228 10 6452 1 2025-10-17 05:03:45.687 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 05:03:45.585 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 05:03:45.492 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 05:03:45.747 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 05:03:45.829 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 05:04:31.263 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47894 10 6452 1 2025-10-17 05:05:31.662 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58814 10 6452 1 2025-10-17 05:00:45.487 00:06:00.334 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 05:06:32.090 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39084 10 6452 1 2025-10-17 05:01:45.485 00:06:00.340 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 05:07:32.496 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57686 10 6452 1 2025-10-17 05:08:32.898 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:60464 10 6452 1 2025-10-17 05:08:46.253 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 05:08:45.995 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 05:08:46.002 00:00:00.041 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 05:08:45.738 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 05:08:46.172 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 05:09:33.276 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38534 10 6452 1 2025-10-17 05:10:33.637 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43316 10 6452 1 2025-10-17 05:11:34.040 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36784 10 6452 1 2025-10-17 05:12:34.448 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:39812 12 10375 1 2025-10-17 05:07:45.488 00:06:00.338 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 05:13:46.059 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 05:13:46.053 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 05:13:45.979 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 05:13:45.905 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 05:13:34.888 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39364 10 6452 1 2025-10-17 05:13:45.987 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 05:08:45.486 00:06:00.343 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 05:14:35.297 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44170 10 6452 1 2025-10-17 05:15:35.712 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52410 10 6452 1 2025-10-17 05:16:36.114 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39550 10 6452 1 2025-10-17 05:17:36.516 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:56818 12 10375 1 2025-10-17 05:18:46.383 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 05:18:37.001 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51788 10 6452 1 2025-10-17 05:18:46.422 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 05:18:46.276 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 05:18:45.929 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 05:18:46.465 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 05:19:37.402 00:00:11.036 TCP 1.101.0.1:3000 -> 23.104.0.1:44780 10 6452 1 2025-10-17 05:14:45.497 00:06:00.334 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 05:15:45.496 00:06:00.339 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 05:20:38.474 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37016 10 6452 1 2025-10-17 05:21:38.872 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53334 10 6452 1 2025-10-17 05:22:39.236 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:44320 10 6452 1 2025-10-17 05:23:46.242 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 05:23:46.156 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 05:23:39.604 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44764 10 6452 1 2025-10-17 05:23:46.087 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 05:23:45.976 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 05:23:46.159 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 05:24:40.010 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:44272 10 6452 1 2025-10-17 05:25:40.376 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33284 10 6452 1 2025-10-17 05:21:45.499 00:06:00.335 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 05:26:40.775 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:39758 10 6452 1 2025-10-17 05:22:45.497 00:06:00.341 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 05:27:41.212 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42342 10 6452 1 2025-10-17 05:28:46.165 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 05:28:46.162 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 05:28:46.101 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 05:28:46.073 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 05:28:46.156 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 05:28:41.620 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:36746 10 6452 1 2025-10-17 05:29:42.053 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39636 10 6452 1 2025-10-17 05:30:42.461 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54796 10 6452 1 2025-10-17 05:31:42.865 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46038 10 6452 1 2025-10-17 05:32:43.272 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:50788 10 6452 1 2025-10-17 05:33:46.649 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 05:33:46.496 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 05:28:45.501 00:06:00.334 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 05:33:46.339 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 05:33:46.455 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 05:33:46.567 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 05:33:43.654 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47662 10 6452 1 2025-10-17 05:29:45.499 00:06:00.340 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 05:34:44.014 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:42174 10 6452 1 2025-10-17 05:35:44.371 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:39314 10 6452 1 2025-10-17 05:36:44.744 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36830 10 6452 1 2025-10-17 05:37:45.152 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57604 10 6452 1 2025-10-17 05:38:46.512 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 05:38:46.383 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 05:38:46.403 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 05:38:46.435 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 05:38:46.518 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 05:38:45.554 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50642 10 6452 1 2025-10-17 05:39:45.976 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34308 10 6452 1 2025-10-17 05:35:45.504 00:06:00.331 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 05:40:46.385 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51002 10 6452 1 2025-10-17 05:36:45.503 00:06:00.336 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 05:41:46.790 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40022 10 6452 1 2025-10-17 05:42:47.196 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49452 10 6452 1 2025-10-17 05:43:46.501 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 05:43:46.420 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 05:43:46.646 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 05:43:46.575 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 05:43:46.659 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 05:43:47.561 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49916 10 6452 1 2025-10-17 05:44:47.978 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:34610 10 6452 1 2025-10-17 05:45:48.400 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50482 11 6492 1 2025-10-17 05:46:48.809 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:46156 10 6452 1 2025-10-17 05:42:45.505 00:06:00.331 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 05:47:49.188 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54732 10 6452 1 2025-10-17 05:48:46.770 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 05:48:46.561 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 05:48:46.778 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 05:48:46.667 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 05:43:45.503 00:06:00.337 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 05:48:46.860 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 05:48:49.590 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:58202 10 6452 1 2025-10-17 05:49:49.956 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36276 10 6452 1 2025-10-17 05:50:50.362 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58134 10 6452 1 2025-10-17 05:51:50.769 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:47338 10 6452 1 2025-10-17 05:52:51.183 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35494 10 6452 1 2025-10-17 05:53:46.900 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 05:53:46.798 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 05:53:46.627 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 05:53:46.818 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 05:53:46.795 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 05:53:51.590 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38854 10 6452 1 2025-10-17 05:49:45.507 00:06:00.331 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-17 05:54:51.997 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48924 10 6452 1 2025-10-17 05:50:45.506 00:06:00.335 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-17 05:55:52.358 00:00:10.811 TCP 1.101.0.1:3000 -> 23.104.0.1:37570 10 6452 1 2025-10-17 05:56:53.180 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:57550 10 6452 1 2025-10-17 05:57:53.546 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38426 10 6452 1 2025-10-17 05:58:46.886 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 05:58:46.921 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 05:58:46.796 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 05:58:46.744 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 05:58:46.803 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 Summary: total flows: 136, total bytes: 418311, total packets: 1013, avg bps: 871, avg pps: 0, avg bpp: 412 Time window: 2025-10-17 04:54:45 - 2025-10-17 05:58:46 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0028s User: 0.0019s Wall: 0.0022s flows/second: 62355.2 Runtime: 0.0022s