Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-20 03:54:47.042 00:06:00.212 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 03:54:47.044 00:06:00.208 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 03:59:38.874 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60220 10 6452 1 2025-10-20 04:00:11.482 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 04:00:11.588 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:00:11.249 00:00:00.062 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:00:11.309 00:00:00.041 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 04:00:11.331 00:00:00.062 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 04:00:39.283 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33676 10 6452 1 2025-10-20 04:01:39.685 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:37028 10 6452 1 2025-10-20 04:02:40.111 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38864 10 6452 1 2025-10-20 04:03:40.517 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41742 10 6452 1 2025-10-20 04:04:40.925 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:37548 10 6452 1 2025-10-20 04:05:11.309 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 04:05:11.227 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 04:05:11.262 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:05:11.111 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:05:11.196 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 04:05:41.342 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33158 10 6452 1 2025-10-20 04:01:47.046 00:06:00.211 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 04:01:47.043 00:06:00.216 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 04:06:41.749 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50100 10 6452 1 2025-10-20 04:07:42.150 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41236 10 6452 1 2025-10-20 04:08:42.556 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39478 10 6452 1 2025-10-20 04:09:42.960 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39234 10 6452 1 2025-10-20 04:10:11.276 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 04:10:11.277 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 04:10:11.215 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:10:10.998 00:00:00.041 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:10:11.079 00:00:00.042 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 04:10:43.371 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:34618 10 6452 1 2025-10-20 04:11:43.725 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48762 10 6452 1 2025-10-20 04:12:44.136 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:48848 10 6452 1 2025-10-20 04:08:47.047 00:06:00.215 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 04:08:47.050 00:06:00.210 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 04:13:44.497 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40606 10 6452 1 2025-10-20 04:14:44.900 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:48858 10 6452 1 2025-10-20 04:15:11.580 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 04:15:11.154 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 04:15:11.454 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 04:15:11.310 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:15:11.497 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:15:45.277 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53586 10 6452 1 2025-10-20 04:16:45.635 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59262 10 6452 1 2025-10-20 04:17:46.067 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:50022 10 6452 1 2025-10-20 04:18:46.473 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53832 10 6452 1 2025-10-20 04:19:46.871 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55690 10 6452 1 2025-10-20 04:20:11.974 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 04:20:11.811 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 04:20:11.638 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 04:20:11.805 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:20:11.890 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:15:47.050 00:06:00.212 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 04:15:47.048 00:06:00.217 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 04:20:47.271 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37910 10 6452 1 2025-10-20 04:21:47.637 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:40270 10 6452 1 2025-10-20 04:22:48.064 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53194 10 6452 1 2025-10-20 04:23:48.466 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40902 10 6452 1 2025-10-20 04:24:48.866 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49060 10 6452 1 2025-10-20 04:25:11.560 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 04:25:11.726 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 04:25:11.592 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 04:25:11.482 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:25:11.478 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:25:49.281 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:40762 10 6452 1 2025-10-20 04:26:49.664 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44924 10 6452 1 2025-10-20 04:22:47.053 00:06:00.212 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 04:22:47.052 00:06:00.218 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 04:27:50.081 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56394 10 6452 1 2025-10-20 04:28:50.510 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34200 10 6452 1 2025-10-20 04:29:50.916 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50014 10 6452 1 2025-10-20 04:30:11.758 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 04:30:11.758 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 04:30:11.725 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:30:11.683 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:30:11.766 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 04:30:51.323 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36590 10 6452 1 2025-10-20 04:31:51.729 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:50038 10 6452 1 2025-10-20 04:32:52.145 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:52192 10 6452 1 2025-10-20 04:33:52.566 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38090 10 6452 1 2025-10-20 04:29:47.052 00:06:00.218 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 04:29:47.056 00:06:00.212 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 04:34:52.974 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51434 10 6452 1 2025-10-20 04:35:11.667 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 04:35:11.766 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 04:35:11.610 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:35:11.829 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:35:11.912 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 04:35:53.381 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56110 10 6452 1 2025-10-20 04:36:53.781 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49910 10 6452 1 2025-10-20 04:37:54.193 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40200 10 6452 1 2025-10-20 04:38:54.594 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60492 10 6452 1 2025-10-20 04:39:55.009 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50708 10 6452 1 2025-10-20 04:40:11.931 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:40:11.951 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 04:40:11.859 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 04:40:11.585 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:40:12.015 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 04:40:55.409 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40844 10 6452 1 2025-10-20 04:36:47.059 00:06:00.209 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 04:36:47.057 00:06:00.215 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 04:41:55.812 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:37002 10 6452 1 2025-10-20 04:42:56.186 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55860 10 6452 1 2025-10-20 04:43:56.590 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42826 10 6452 1 2025-10-20 04:44:56.989 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33450 10 6452 1 2025-10-20 04:45:12.071 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 04:45:12.075 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 04:45:12.069 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:45:12.071 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:45:12.155 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 04:45:57.392 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:47490 11 6504 1 2025-10-20 04:46:57.812 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47894 10 6452 1 2025-10-20 04:47:58.212 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37950 10 6452 1 2025-10-20 04:43:47.065 00:06:00.208 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 04:43:47.062 00:06:00.213 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 04:48:58.615 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54916 10 6452 1 2025-10-20 04:49:59.018 00:00:10.427 TCP 1.101.0.1:3000 -> 23.104.0.1:49208 10 6452 1 2025-10-20 04:50:12.117 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 04:50:12.124 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 04:50:12.068 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:50:12.117 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:50:12.201 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 04:50:59.478 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:39880 10 6452 1 2025-10-20 04:51:59.896 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57552 10 6452 1 2025-10-20 04:53:00.320 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45906 10 6452 1 2025-10-20 04:54:00.732 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:42474 10 6452 1 2025-10-20 04:55:11.918 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 04:55:12.171 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 04:55:12.299 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:55:01.148 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:39198 10 6452 1 2025-10-20 04:55:12.172 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 04:55:12.255 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 04:50:47.066 00:06:00.210 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 04:50:47.065 00:06:00.215 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 04:56:01.559 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36840 10 6452 1 2025-10-20 04:57:01.968 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:43420 10 6452 1 2025-10-20 04:58:02.341 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52180 10 6452 1 Summary: total flows: 137, total bytes: 411338, total packets: 1023, avg bps: 864, avg pps: 0, avg bpp: 402 Time window: 2025-10-20 03:54:47 - 2025-10-20 04:58:12 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0039s User: 0.0019s Wall: 0.0020s flows/second: 68948.8 Runtime: 0.0020s