Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-20 06:58:52.441 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:53014 10 6452 1 2025-10-20 06:59:52.863 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:51748 10 6452 1 2025-10-20 07:00:14.940 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 07:00:14.755 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 07:00:14.752 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 07:00:14.369 00:00:00.032 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 07:00:14.857 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 07:00:53.237 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43464 10 6452 1 2025-10-20 06:56:47.094 00:06:00.240 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 06:56:47.098 00:06:00.235 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 07:01:53.599 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:50448 10 6452 1 2025-10-20 07:02:53.996 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:37852 10 6452 1 2025-10-20 07:03:54.413 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39056 10 6452 1 2025-10-20 07:04:54.816 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54424 10 6452 1 2025-10-20 07:05:14.947 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 07:05:14.864 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 07:05:14.781 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 07:05:14.788 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 07:05:14.572 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 07:05:55.221 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34948 10 6452 1 2025-10-20 07:06:55.619 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53842 10 6452 1 2025-10-20 07:07:56.018 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:46056 10 6452 1 2025-10-20 07:03:47.098 00:06:00.236 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 07:03:47.095 00:06:00.241 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 07:08:56.385 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41634 10 6452 1 2025-10-20 07:09:56.785 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:44738 11 6504 1 2025-10-20 07:10:14.888 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 07:10:14.842 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 07:10:14.826 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 07:10:14.908 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 07:10:15.062 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 07:10:57.243 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:46980 10 6452 1 2025-10-20 07:11:57.608 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38058 10 6452 1 2025-10-20 07:12:58.013 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40228 10 6452 1 2025-10-20 07:13:58.413 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51202 10 6452 1 2025-10-20 07:14:58.774 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52810 10 6452 1 2025-10-20 07:15:14.966 00:00:00.014 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 07:15:14.861 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 07:15:14.873 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 07:15:15.079 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 07:15:14.977 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 07:10:47.097 00:06:00.243 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 07:10:47.099 00:06:00.238 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 07:15:59.138 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58136 10 6452 1 2025-10-20 07:16:59.505 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36746 10 6452 1 2025-10-20 07:17:59.913 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:53480 11 6504 1 2025-10-20 07:19:00.334 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38198 10 6452 1 2025-10-20 07:20:14.904 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 07:20:00.750 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46574 10 6452 1 2025-10-20 07:20:14.904 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 07:20:15.227 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 07:20:15.145 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 07:20:15.144 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 07:21:01.157 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48070 10 6452 1 2025-10-20 07:22:01.560 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36238 10 6452 1 2025-10-20 07:17:47.101 00:06:00.241 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 07:17:47.098 00:06:00.247 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 07:23:01.963 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41974 10 6452 1 2025-10-20 07:24:02.369 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52800 10 6452 1 2025-10-20 07:25:02.778 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43806 10 6452 1 2025-10-20 07:25:15.208 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 07:25:15.215 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 07:25:15.004 00:00:00.053 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 07:25:15.320 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 07:25:15.404 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 07:26:03.198 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:41874 10 6452 1 2025-10-20 07:27:03.639 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36162 10 6452 1 2025-10-20 07:28:04.037 00:00:16.738 TCP 1.101.0.1:3000 -> 23.104.0.1:35270 10 6452 1 2025-10-20 07:29:10.816 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50878 10 6452 1 2025-10-20 07:24:47.101 00:06:00.250 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 07:24:47.102 00:06:00.245 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 07:30:15.421 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 07:30:15.529 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 07:30:15.425 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 07:30:15.163 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 07:30:15.339 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 07:30:11.219 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56098 10 6452 1 2025-10-20 07:31:11.631 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51302 10 6452 1 2025-10-20 07:32:12.038 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46366 10 6452 1 2025-10-20 07:33:12.438 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48674 10 6452 1 2025-10-20 07:34:12.844 00:00:10.450 TCP 1.101.0.1:3000 -> 23.104.0.1:52094 10 6452 1 2025-10-20 07:35:15.518 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 07:35:15.434 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 07:35:15.509 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 07:35:15.445 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 07:35:15.436 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 07:35:13.338 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41258 10 6452 1 2025-10-20 07:36:13.737 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42228 10 6452 1 2025-10-20 07:31:47.102 00:06:00.249 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 07:31:47.105 00:06:00.244 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 07:37:14.112 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42074 12 6556 1 2025-10-20 07:38:14.520 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:32816 10 6452 1 2025-10-20 07:39:14.892 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44378 10 6452 1 2025-10-20 07:40:15.647 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 07:40:15.656 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 07:40:15.661 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 07:40:15.437 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 07:40:15.565 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 07:40:15.300 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:46880 10 6452 1 2025-10-20 07:41:15.656 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38418 10 6452 1 2025-10-20 07:42:16.063 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40706 10 6452 1 2025-10-20 07:43:16.464 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:58536 12 10375 1 2025-10-20 07:38:47.106 00:06:00.248 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 07:38:47.104 00:06:00.253 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 07:44:16.948 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:37106 10 6452 1 2025-10-20 07:45:15.609 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 07:45:15.612 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 07:45:15.615 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 07:45:15.421 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 07:45:15.504 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 07:45:17.360 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49358 10 6452 1 2025-10-20 07:46:17.760 00:00:10.831 TCP 1.101.0.1:3000 -> 23.104.0.1:57078 10 6452 1 2025-10-20 07:47:18.628 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46156 10 6452 1 2025-10-20 07:48:19.040 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:49622 12 10375 1 2025-10-20 07:49:19.517 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47820 10 6452 1 2025-10-20 07:50:15.678 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 07:50:15.840 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 07:50:15.772 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 07:50:15.847 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 07:50:15.929 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 07:50:19.919 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46368 10 6452 1 2025-10-20 07:45:47.105 00:06:00.253 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 07:45:47.107 00:06:00.248 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 07:51:20.281 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34972 10 6452 1 2025-10-20 07:52:20.686 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42436 10 6452 1 2025-10-20 07:53:21.114 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60376 10 6452 1 2025-10-20 07:54:21.522 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54400 10 6452 1 2025-10-20 07:55:15.858 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 07:55:15.700 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 07:55:15.912 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 07:55:15.858 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 07:55:15.940 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 07:55:21.936 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:41104 10 6452 1 2025-10-20 07:56:22.359 00:00:10.968 TCP 1.101.0.1:3000 -> 23.104.0.1:36982 10 6452 1 2025-10-20 07:57:23.375 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45702 10 6452 1 2025-10-20 07:52:47.108 00:06:00.254 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 07:52:47.106 00:06:00.259 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 07:58:23.780 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38774 10 6452 1 Summary: total flows: 138, total bytes: 425792, total packets: 1040, avg bps: 915, avg pps: 0, avg bpp: 409 Time window: 2025-10-20 06:56:47 - 2025-10-20 07:58:47 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0041s User: 0.0010s Wall: 0.0026s flows/second: 53489.9 Runtime: 0.0026s