Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-20 20:58:49.886 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:53072 10 6452 1 2025-10-20 20:59:50.271 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34918 10 6452 1 2025-10-20 21:00:31.723 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 21:00:31.515 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:00:31.687 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:00:31.683 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 21:00:31.771 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 21:00:50.675 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:47506 10 6452 1 2025-10-20 20:56:47.366 00:06:00.262 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 20:56:47.367 00:06:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 21:01:51.041 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:40304 10 6452 1 2025-10-20 21:02:51.441 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51652 10 6452 1 2025-10-20 21:03:51.850 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:35500 10 6452 1 2025-10-20 21:04:52.275 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50480 10 6452 1 2025-10-20 21:05:31.805 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 21:05:31.560 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 21:05:31.601 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:05:31.573 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:05:31.657 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 21:05:52.640 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53818 10 6452 1 2025-10-20 21:06:53.037 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:49242 10 6452 1 2025-10-20 21:07:53.436 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60606 10 6452 1 2025-10-20 21:03:47.369 00:06:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 21:03:47.367 00:06:00.261 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 21:08:53.842 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:38286 10 6452 1 2025-10-20 21:09:54.275 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:32822 10 6452 1 2025-10-20 21:10:31.654 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:10:31.744 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 21:10:31.813 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 21:10:31.682 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:10:31.739 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 21:10:54.675 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:38284 10 6452 1 2025-10-20 21:11:55.038 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53626 10 6452 1 2025-10-20 21:12:55.450 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58330 10 6452 1 2025-10-20 21:13:55.860 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:59268 10 6452 1 2025-10-20 21:14:56.273 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52094 10 6452 1 2025-10-20 21:15:32.752 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 21:15:32.850 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 21:15:32.842 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:15:32.744 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:15:32.826 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 21:10:47.369 00:06:00.261 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 21:10:47.371 00:06:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 21:15:56.684 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54498 12 6556 1 2025-10-20 21:16:57.106 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51682 10 6452 1 2025-10-20 21:17:57.513 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47168 10 6452 1 2025-10-20 21:18:57.919 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52244 10 6452 1 2025-10-20 21:19:58.320 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57322 10 6452 1 2025-10-20 21:20:32.098 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 21:20:32.190 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 21:20:31.895 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:20:32.045 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:20:32.129 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 21:20:58.724 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:44238 10 6452 1 2025-10-20 21:21:59.137 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39966 10 6452 1 2025-10-20 21:17:47.372 00:06:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 21:17:47.370 00:06:00.262 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 21:22:59.542 00:00:10.474 TCP 1.101.0.1:3000 -> 23.104.0.1:60380 10 6452 1 2025-10-20 21:24:00.074 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35646 10 6452 1 2025-10-20 21:25:00.481 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41858 10 6452 1 2025-10-20 21:25:31.925 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:25:32.001 00:00:00.051 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:25:31.994 00:00:00.040 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 21:25:32.173 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 21:25:32.083 00:00:00.052 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 21:26:00.897 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:36920 12 6556 1 2025-10-20 21:27:01.311 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54580 10 6452 1 2025-10-20 21:28:01.712 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36064 10 6452 1 2025-10-20 21:29:02.136 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51780 10 6452 1 2025-10-20 21:24:47.372 00:06:00.264 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 21:24:47.374 00:06:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 21:30:02.539 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52638 10 6452 1 2025-10-20 21:30:32.325 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 21:30:32.079 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 21:30:32.062 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 21:30:32.138 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:30:32.242 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:31:02.941 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:35706 10 6452 1 2025-10-20 21:32:03.369 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:34612 10 6452 1 2025-10-20 21:33:03.729 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40084 10 6452 1 2025-10-20 21:34:04.135 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42314 10 6452 1 2025-10-20 21:35:04.537 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:59866 10 6452 1 2025-10-20 21:35:32.549 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 21:35:32.842 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 21:35:32.219 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:35:32.724 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:35:32.807 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 21:36:04.906 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50734 10 6452 1 2025-10-20 21:31:47.376 00:06:00.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 21:31:47.373 00:06:00.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 21:37:05.315 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40146 10 6452 1 2025-10-20 21:38:05.727 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:34690 10 6452 1 2025-10-20 21:39:06.114 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:42230 12 10375 1 2025-10-20 21:40:06.589 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:60464 10 6452 1 2025-10-20 21:40:32.313 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 21:40:32.404 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 21:40:32.507 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 21:40:32.269 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:40:32.230 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:41:06.966 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:54206 10 6452 1 2025-10-20 21:42:07.437 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:51610 10 6452 1 2025-10-20 21:43:07.809 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43864 10 6452 1 2025-10-20 21:38:47.381 00:06:00.261 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 21:38:47.378 00:06:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 21:44:08.216 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:48020 10 6452 1 2025-10-20 21:45:08.615 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52236 10 6452 1 2025-10-20 21:45:32.627 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 21:45:32.736 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:45:32.709 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:45:32.626 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 21:45:32.792 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 21:46:09.018 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50514 12 6556 1 2025-10-20 21:47:09.425 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:49654 10 6452 1 2025-10-20 21:48:09.789 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:39996 10 6452 1 2025-10-20 21:49:10.216 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44656 10 6452 1 2025-10-20 21:50:10.619 00:00:10.352 TCP 1.101.0.1:3000 -> 23.104.0.1:54044 10 6452 1 2025-10-20 21:50:32.554 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 21:50:32.347 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 21:50:32.509 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:50:32.725 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:50:32.807 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 21:45:47.378 00:06:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 21:45:47.382 00:06:00.261 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 21:51:11.009 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:38918 10 6452 1 2025-10-20 21:52:11.403 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57288 10 6452 1 2025-10-20 21:53:11.806 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60484 10 6452 1 2025-10-20 21:54:12.210 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50108 10 6452 1 2025-10-20 21:55:12.609 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56608 10 6452 1 2025-10-20 21:55:32.504 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-20 21:55:32.593 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-20 21:55:32.555 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:55:32.505 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-20 21:55:32.587 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-20 21:56:13.010 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34680 10 6452 1 2025-10-20 21:57:13.413 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:59670 10 6452 1 2025-10-20 21:52:47.384 00:06:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-20 21:52:47.383 00:06:00.264 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-20 21:58:13.777 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52422 10 6452 1 Summary: total flows: 138, total bytes: 421973, total packets: 1040, avg bps: 907, avg pps: 0, avg bpp: 405 Time window: 2025-10-20 20:56:47 - 2025-10-20 21:58:47 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0028s User: 0.0028s Wall: 0.0024s flows/second: 58301.2 Runtime: 0.0024s