Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-20 18:58:56.295 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:41554 10 6452 1 2025-10-20 18:59:56.659 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:50396 10 6452 1 2025-10-20 19:00:29.480 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 19:00:29.156 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 19:00:29.285 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 19:00:29.321 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 19:00:29.397 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 19:00:57.102 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52378 10 6452 1 2025-10-20 19:01:57.506 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38140 10 6452 1 2025-10-20 18:57:47.328 00:06:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 18:57:47.326 00:06:00.261 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 19:02:57.916 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41954 10 6452 1 2025-10-20 19:03:58.319 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35390 10 6452 1 2025-10-20 19:04:58.717 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55200 11 6504 1 2025-10-20 19:05:30.069 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 19:05:29.984 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 19:05:29.988 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 19:05:30.102 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 19:05:29.987 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 19:05:59.131 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53462 10 6452 1 2025-10-20 19:06:59.533 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34700 10 6452 1 2025-10-20 19:07:59.941 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47244 10 6452 1 2025-10-20 19:09:00.356 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56294 10 6452 1 2025-10-20 19:04:47.332 00:06:00.256 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 19:04:47.330 00:06:00.261 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 19:10:00.772 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:50936 12 6556 1 2025-10-20 19:10:29.522 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 19:10:29.280 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 19:10:29.282 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 19:10:29.172 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 19:10:29.441 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 19:11:01.193 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59726 10 6452 1 2025-10-20 19:12:01.599 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54890 10 6452 1 2025-10-20 19:13:01.962 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40402 10 6452 1 2025-10-20 19:14:02.372 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40738 10 6452 1 2025-10-20 19:15:02.771 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:54892 10 6452 1 2025-10-20 19:15:29.731 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 19:15:29.649 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 19:15:29.937 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 19:15:29.852 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 19:15:29.764 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 19:16:03.177 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:33790 10 6452 1 2025-10-20 19:11:47.329 00:06:00.262 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 19:11:47.332 00:06:00.256 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 19:17:03.618 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60624 10 6452 1 2025-10-20 19:18:04.021 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45146 12 6556 1 2025-10-20 19:19:04.420 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:55198 12 10375 1 2025-10-20 19:20:04.860 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:34494 10 6452 1 2025-10-20 19:20:29.438 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 19:20:29.598 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 19:20:29.616 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 19:20:29.606 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 19:20:29.690 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 19:21:05.254 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56988 10 6452 1 2025-10-20 19:22:05.672 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57668 10 6452 1 2025-10-20 19:23:06.038 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36796 10 6452 1 2025-10-20 19:18:47.333 00:06:00.259 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 19:18:47.335 00:06:00.254 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 19:24:06.444 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:42308 10 6452 1 2025-10-20 19:25:06.869 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39242 10 6452 1 2025-10-20 19:25:29.640 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 19:25:29.642 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 19:25:29.428 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 19:25:29.713 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 19:25:29.795 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 19:26:07.279 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48296 10 6452 1 2025-10-20 19:27:07.676 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58960 10 6452 1 2025-10-20 19:28:08.111 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56920 10 6452 1 2025-10-20 19:29:08.518 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42928 10 6452 1 2025-10-20 19:30:08.919 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57250 10 6452 1 2025-10-20 19:30:29.859 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 19:30:29.450 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 19:30:29.851 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 19:30:29.803 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 19:30:29.934 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 19:25:47.338 00:06:00.254 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 19:25:47.335 00:06:00.260 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 19:31:09.337 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46542 10 6452 1 2025-10-20 19:32:09.760 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:40112 10 6452 1 2025-10-20 19:33:10.134 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52116 10 6452 1 2025-10-20 19:34:10.539 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36162 10 6452 1 2025-10-20 19:35:10.941 00:00:10.684 TCP 1.101.0.1:3000 -> 23.104.0.1:41756 10 6452 1 2025-10-20 19:35:29.867 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 19:35:29.710 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 19:35:29.720 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 19:35:29.706 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 19:35:29.788 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 19:36:11.663 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41274 10 6452 1 2025-10-20 19:37:12.095 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40556 10 6452 1 2025-10-20 19:32:47.339 00:06:00.257 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 19:32:47.342 00:06:00.252 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 19:38:12.461 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46714 10 6452 1 2025-10-20 19:39:12.867 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37334 10 6452 1 2025-10-20 19:40:13.277 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:47254 11 6504 1 2025-10-20 19:40:29.973 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 19:40:30.104 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 19:40:30.013 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 19:40:30.107 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 19:40:30.189 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 19:41:13.738 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55362 10 6452 1 2025-10-20 19:42:14.146 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58778 10 6452 1 2025-10-20 19:43:14.553 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46912 10 6452 1 2025-10-20 19:44:14.959 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:48674 10 6452 1 2025-10-20 19:39:47.340 00:06:00.261 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 19:39:47.337 00:06:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 19:45:29.885 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 19:45:29.960 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 19:45:15.389 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48802 10 6452 1 2025-10-20 19:45:29.853 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 19:45:30.079 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 19:45:30.043 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 19:46:15.793 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:36864 10 6452 1 2025-10-20 19:47:16.161 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:58194 10 6452 1 2025-10-20 19:48:16.571 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46184 10 6452 1 2025-10-20 19:49:16.978 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36594 10 6452 1 2025-10-20 19:50:17.386 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48580 10 6452 1 2025-10-20 19:50:30.156 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 19:50:30.009 00:00:00.040 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 19:50:30.010 00:00:00.043 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 19:50:30.168 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 19:50:30.091 00:00:00.041 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 19:51:17.790 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53034 10 6452 1 2025-10-20 19:46:47.342 00:06:00.263 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 19:46:47.339 00:06:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 19:52:18.195 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34340 10 6452 1 2025-10-20 19:53:18.595 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60096 10 6452 1 2025-10-20 19:54:18.966 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34292 10 6452 1 2025-10-20 19:55:19.370 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34706 10 6452 1 2025-10-20 19:55:30.400 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 19:55:30.160 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 19:55:30.405 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 19:55:30.371 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 19:55:30.484 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 19:56:19.779 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50440 10 6452 1 2025-10-20 19:57:20.187 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38784 10 6452 1 2025-10-20 19:58:20.600 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43814 10 6452 1 2025-10-20 19:53:47.343 00:06:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 19:53:47.345 00:06:00.263 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 Summary: total flows: 138, total bytes: 421973, total packets: 1040, avg bps: 907, avg pps: 0, avg bpp: 405 Time window: 2025-10-20 18:57:47 - 2025-10-20 19:59:47 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0047s User: 0.0000s Wall: 0.0024s flows/second: 58377.6 Runtime: 0.0024s