Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-20 04:59:02.747 00:00:10.402 TCP 1.101.0.1:3000 -> 23.104.0.1:35256 10 6452 1 2025-10-20 05:00:12.679 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 05:00:11.949 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 05:00:12.596 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 05:00:03.190 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60548 10 6452 1 2025-10-20 05:00:12.567 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 05:00:12.604 00:00:00.029 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 05:01:03.611 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57834 10 6452 1 2025-10-20 05:02:04.022 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:47758 10 6452 1 2025-10-20 04:57:47.069 00:06:00.210 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 04:57:47.066 00:06:00.216 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 05:03:04.393 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:58952 12 10369 1 2025-10-20 05:04:04.866 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:52604 10 6452 1 2025-10-20 05:05:12.527 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 05:05:12.761 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 05:05:12.582 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 05:05:12.608 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 05:05:12.692 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 05:05:05.283 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34142 10 6452 1 2025-10-20 05:06:05.697 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50510 10 6452 1 2025-10-20 05:07:06.112 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55322 10 6452 1 2025-10-20 05:08:06.517 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45030 10 6452 1 2025-10-20 05:09:06.928 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:42184 10 6452 1 2025-10-20 05:04:47.071 00:06:00.209 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 05:04:47.070 00:06:00.214 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 05:10:12.764 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 05:10:12.405 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 05:10:12.576 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 05:10:12.615 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 05:10:12.681 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 05:10:07.356 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46692 10 6452 1 2025-10-20 05:11:07.765 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:54504 10 6452 1 2025-10-20 05:12:08.181 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47648 10 6452 1 2025-10-20 05:13:08.585 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40768 10 6452 1 2025-10-20 05:14:08.984 00:00:10.625 TCP 1.101.0.1:3000 -> 23.104.0.1:47050 10 6452 1 2025-10-20 05:15:12.471 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 05:15:12.645 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 05:15:12.454 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 05:15:12.555 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 05:15:12.639 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 05:15:09.655 00:00:10.911 TCP 1.101.0.1:3000 -> 23.104.0.1:52918 10 6452 1 2025-10-20 05:16:10.601 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:47774 10 6452 1 2025-10-20 05:11:47.072 00:06:00.214 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 05:11:47.068 00:06:00.220 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 05:17:10.964 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42492 10 6452 1 2025-10-20 05:18:11.371 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37184 10 6452 1 2025-10-20 05:19:11.780 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36496 10 6452 1 2025-10-20 05:20:12.557 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 05:20:12.760 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 05:20:12.602 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 05:20:12.951 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 05:20:13.034 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 05:20:12.185 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43544 10 6452 1 2025-10-20 05:21:12.586 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47932 10 6452 1 2025-10-20 05:22:12.993 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:51350 10 6452 1 2025-10-20 05:23:13.355 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40222 10 6452 1 2025-10-20 05:18:47.074 00:06:00.214 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 05:18:47.071 00:06:00.219 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 05:24:13.761 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:44474 10 6452 1 2025-10-20 05:25:12.783 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 05:25:12.767 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 05:25:12.823 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 05:25:12.834 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 05:25:12.849 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 05:25:14.197 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:40236 10 6452 1 2025-10-20 05:26:14.602 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:45480 10 6452 1 2025-10-20 05:27:15.001 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:32860 10 6452 1 2025-10-20 05:28:15.361 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40898 10 6452 1 2025-10-20 05:29:15.729 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:34432 10 6452 1 2025-10-20 05:30:12.895 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 05:30:13.065 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 05:30:12.995 00:00:00.040 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 05:30:12.973 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 05:30:13.055 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 05:30:16.151 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:54374 10 6452 1 2025-10-20 05:25:47.077 00:06:00.213 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 05:25:47.076 00:06:00.218 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 05:31:16.578 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56808 10 6452 1 2025-10-20 05:32:16.986 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55668 10 6452 1 2025-10-20 05:33:17.388 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58534 10 6452 1 2025-10-20 05:34:17.793 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:52000 10 6452 1 2025-10-20 05:35:13.058 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 05:35:12.890 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 05:35:12.888 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 05:35:12.827 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 05:35:12.975 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 05:35:18.221 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56542 10 6452 1 2025-10-20 05:36:18.634 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41404 10 6452 1 2025-10-20 05:37:19.038 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57526 10 6452 1 2025-10-20 05:32:47.075 00:06:00.219 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 05:32:47.077 00:06:00.214 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 05:38:19.444 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58006 10 6452 1 2025-10-20 05:39:19.806 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:45826 10 6452 1 2025-10-20 05:40:12.955 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 05:40:13.135 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 05:40:13.135 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 05:40:12.967 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 05:40:13.037 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 05:40:20.184 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39522 10 6452 1 2025-10-20 05:41:20.587 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46340 10 6452 1 2025-10-20 05:42:20.990 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52150 10 6452 1 2025-10-20 05:43:21.393 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56548 10 6452 1 2025-10-20 05:44:21.805 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40406 10 6452 1 2025-10-20 05:39:47.075 00:06:00.224 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 05:39:47.078 00:06:00.219 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 05:45:13.263 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 05:45:13.260 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 05:45:12.962 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 05:45:13.393 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 05:45:13.475 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 05:45:22.207 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53212 10 6452 1 2025-10-20 05:46:22.606 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:37286 10 6452 1 2025-10-20 05:47:23.001 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42350 10 6452 1 2025-10-20 05:48:23.405 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48672 10 6452 1 2025-10-20 05:49:23.809 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:59528 10 6452 1 2025-10-20 05:50:13.413 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 05:50:13.357 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 05:50:13.320 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 05:50:13.286 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 05:50:13.498 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 05:50:24.239 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54058 10 6452 1 2025-10-20 05:51:24.644 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:55654 10 6452 1 2025-10-20 05:46:47.079 00:06:00.217 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 05:46:47.078 00:06:00.223 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 05:52:25.060 00:00:10.502 TCP 1.101.0.1:3000 -> 23.104.0.1:50888 10 6452 1 2025-10-20 05:53:25.617 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47906 10 6452 1 2025-10-20 05:54:26.025 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48148 10 6452 1 2025-10-20 05:55:13.415 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 05:55:13.333 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 05:55:13.336 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 05:55:13.337 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 05:55:13.304 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 05:55:26.431 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33642 10 6452 1 2025-10-20 05:56:26.838 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:42110 10 6452 1 2025-10-20 05:57:27.263 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41672 10 6452 1 2025-10-20 05:58:27.674 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:42548 10 6452 1 2025-10-20 05:53:47.080 00:06:00.223 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 05:53:47.080 00:06:00.227 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 Summary: total flows: 138, total bytes: 421655, total packets: 1034, avg bps: 906, avg pps: 0, avg bpp: 407 Time window: 2025-10-20 04:57:47 - 2025-10-20 05:59:47 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0020s User: 0.0030s Wall: 0.0023s flows/second: 60318.3 Runtime: 0.0023s