Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-20 05:59:28.094 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:49380 10 6452 1 2025-10-20 06:00:13.232 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 06:00:13.277 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 06:00:13.251 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 06:00:13.301 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 06:00:13.385 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 06:00:28.467 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37120 10 6452 1 2025-10-20 06:01:28.869 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40220 10 6452 1 2025-10-20 06:02:29.276 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:43602 10 6452 1 2025-10-20 06:03:29.637 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:42392 10 6452 1 2025-10-20 06:04:30.001 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49436 10 6452 1 2025-10-20 06:05:13.679 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 06:05:13.429 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 06:05:13.596 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 06:05:13.605 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 06:05:13.497 00:00:00.030 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 06:05:30.404 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:43784 10 6452 1 2025-10-20 06:00:47.081 00:06:00.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 06:00:47.078 00:06:00.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 06:06:30.835 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:58120 10 6452 1 2025-10-20 06:07:31.250 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39186 10 6452 1 2025-10-20 06:08:31.660 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:60608 12 10375 1 2025-10-20 06:09:32.138 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:57666 10 6452 1 2025-10-20 06:10:13.858 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 06:10:13.774 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 06:10:13.496 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 06:10:13.775 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 06:10:13.676 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 06:10:32.514 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60504 10 6452 1 2025-10-20 06:11:32.919 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:35640 10 6452 1 2025-10-20 06:12:33.299 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:39956 10 6452 1 2025-10-20 06:07:47.083 00:06:00.223 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 06:07:47.083 00:06:00.227 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 06:13:33.697 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43660 10 6452 1 2025-10-20 06:14:34.110 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43998 10 6452 1 2025-10-20 06:15:13.951 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 06:15:13.782 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 06:15:13.781 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 06:15:13.924 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 06:15:13.868 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 06:15:34.513 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43448 10 6452 1 2025-10-20 06:16:34.918 00:00:11.032 TCP 1.101.0.1:3000 -> 23.104.0.1:48904 10 6452 1 2025-10-20 06:17:35.989 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:53606 10 6452 1 2025-10-20 06:18:36.348 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:48978 10 6452 1 2025-10-20 06:14:47.087 00:06:00.235 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 06:19:36.708 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50582 10 6452 1 2025-10-20 06:14:47.085 00:06:00.240 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 06:20:13.907 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 06:20:13.950 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 06:20:13.838 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 06:20:13.824 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 06:20:13.907 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 06:20:37.115 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:33232 10 6452 1 2025-10-20 06:21:37.473 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:60210 10 6452 1 2025-10-20 06:22:37.873 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48338 10 6452 1 2025-10-20 06:23:38.279 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36620 10 6452 1 2025-10-20 06:24:38.687 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54644 10 6452 1 2025-10-20 06:25:13.944 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 06:25:14.091 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 06:25:14.013 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 06:25:14.009 00:00:00.037 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 06:25:14.092 00:00:00.037 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 06:25:39.113 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54562 10 6452 1 2025-10-20 06:21:47.088 00:06:00.238 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 06:26:39.474 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:46946 10 6452 1 2025-10-20 06:21:47.085 00:06:00.242 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 06:27:39.827 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:35070 10 6452 1 2025-10-20 06:28:40.255 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:37480 12 10375 1 2025-10-20 06:29:40.733 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46572 10 6452 1 2025-10-20 06:30:14.291 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 06:30:14.155 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 06:30:14.088 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 06:30:14.151 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 06:30:14.210 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 06:30:41.137 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55146 10 6452 1 2025-10-20 06:31:41.544 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49144 10 6452 1 2025-10-20 06:32:41.949 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44916 10 6452 1 2025-10-20 06:28:47.089 00:06:00.237 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 06:28:47.086 00:06:00.243 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 06:33:42.352 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36422 10 6452 1 2025-10-20 06:34:42.756 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:56484 10 6452 1 2025-10-20 06:35:14.555 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 06:35:14.408 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 06:35:14.516 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 06:35:14.498 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 06:35:14.581 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 06:35:43.197 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55184 10 6452 1 2025-10-20 06:36:43.596 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:46054 10 6452 1 2025-10-20 06:37:43.964 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:51600 10 6452 1 2025-10-20 06:38:44.326 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47358 10 6452 1 2025-10-20 06:39:44.740 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54068 10 6452 1 2025-10-20 06:40:14.347 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 06:40:14.351 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 06:40:14.316 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 06:40:14.276 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 06:40:14.359 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 06:35:47.091 00:06:00.237 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 06:35:47.088 00:06:00.242 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 06:40:45.114 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:50666 10 6452 1 2025-10-20 06:41:45.516 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46268 10 6452 1 2025-10-20 06:42:45.913 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54722 10 6452 1 2025-10-20 06:43:46.321 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:56232 10 6452 1 2025-10-20 06:44:46.686 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46396 10 6452 1 2025-10-20 06:45:14.541 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 06:45:14.389 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 06:45:14.535 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 06:45:14.223 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 06:45:14.458 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 06:45:47.153 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40474 10 6452 1 2025-10-20 06:46:47.558 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35444 10 6452 1 2025-10-20 06:42:47.095 00:06:00.234 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 06:42:47.093 00:06:00.239 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 06:47:47.959 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:45378 10 6452 1 2025-10-20 06:48:48.385 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59900 10 6452 1 2025-10-20 06:49:48.789 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59202 10 6452 1 2025-10-20 06:50:14.638 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 06:50:14.600 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 06:50:14.602 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 06:50:14.341 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 06:50:14.555 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 06:50:49.194 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37862 10 6452 1 2025-10-20 06:51:49.596 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44854 10 6452 1 2025-10-20 06:52:49.996 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:55156 10 6452 1 2025-10-20 06:53:50.412 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53544 10 6452 1 2025-10-20 06:49:47.093 00:06:00.243 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 06:49:47.096 00:06:00.237 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 06:54:50.827 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52990 10 6452 1 2025-10-20 06:55:14.686 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 06:55:14.687 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 06:55:14.796 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 06:55:14.533 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 06:55:14.618 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 06:55:51.227 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:58814 10 6452 1 2025-10-20 06:56:51.629 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37916 10 6452 1 2025-10-20 06:57:52.038 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33176 10 6452 1 Summary: total flows: 135, total bytes: 417410, total packets: 998, avg bps: 950, avg pps: 0, avg bpp: 418 Time window: 2025-10-20 05:59:28 - 2025-10-20 06:58:02 Total flows processed: 135, passed: 135, Blocks skipped: 0, Bytes read: 14104 Sys: 0.0045s User: 0.0000s Wall: 0.0025s flows/second: 53337.5 Runtime: 0.0026s