Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-24 05:59:32.144 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47934 10 6452 1 2025-10-24 05:55:49.113 00:04:00.253 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-24 05:58:49.365 00:01:00.000 TCP 179.21.23.21:38570 -> 179.21.23.23:179 3 194 1 2025-10-24 06:00:32.543 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:39002 10 6452 1 2025-10-24 06:01:32.987 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49754 10 6452 1 2025-10-24 06:02:09.414 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 06:02:09.452 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 06:02:08.978 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 06:02:09.151 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 06:02:09.237 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 06:02:33.394 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:32834 10 6452 1 2025-10-24 06:03:33.762 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:49442 10 6452 1 2025-10-24 06:04:34.129 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:57370 10 6452 1 2025-10-24 06:00:49.118 00:04:00.246 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-24 06:05:34.534 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:32924 10 6452 1 2025-10-24 06:00:49.116 00:06:00.252 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 06:06:34.950 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43276 10 6452 1 2025-10-24 06:07:09.110 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 06:07:09.195 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 06:07:08.989 00:00:00.051 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 06:07:09.174 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 06:07:09.071 00:00:00.051 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 06:07:35.363 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:45506 10 6452 1 2025-10-24 06:08:35.721 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:42302 10 6452 1 2025-10-24 06:09:36.140 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44086 10 6452 1 2025-10-24 06:05:49.119 00:04:00.247 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-24 06:10:36.543 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44484 10 6452 1 2025-10-24 06:11:36.945 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:36794 10 6452 1 2025-10-24 06:12:09.222 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 06:12:09.253 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 06:12:08.836 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 06:12:09.247 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 06:12:09.329 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 06:12:37.363 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40716 10 6452 1 2025-10-24 06:07:49.118 00:06:00.252 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 06:13:37.765 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:34288 10 6452 1 2025-10-24 06:14:38.184 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52184 10 6452 1 2025-10-24 06:10:49.121 00:06:00.247 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 06:15:38.589 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41326 10 6452 1 2025-10-24 06:14:49.118 00:02:00.253 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-24 06:16:38.994 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60390 10 6452 1 2025-10-24 06:17:09.502 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 06:17:09.310 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 06:17:09.357 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 06:17:09.238 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 06:17:09.319 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 06:17:39.398 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42744 10 6452 1 2025-10-24 06:18:39.799 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45686 10 6452 1 2025-10-24 06:19:40.203 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37974 10 6452 1 2025-10-24 06:20:40.606 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43958 10 6452 1 2025-10-24 06:17:49.120 00:04:00.253 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-24 06:21:40.975 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:33842 10 6452 1 2025-10-24 06:22:09.575 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 06:22:09.433 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 06:22:09.547 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 06:22:09.569 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 06:22:09.494 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 06:17:49.122 00:06:00.248 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 06:22:41.396 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49696 10 6452 1 2025-10-24 06:23:41.799 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36486 10 6452 1 2025-10-24 06:24:42.202 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47490 10 6452 1 2025-10-24 06:25:42.610 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57382 10 6452 1 2025-10-24 06:22:49.121 00:04:00.252 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-24 06:26:43.015 00:00:13.778 TCP 1.101.0.1:3000 -> 23.104.0.1:45590 10 6452 1 2025-10-24 06:27:09.483 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 06:27:09.553 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 06:27:09.340 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 06:27:09.605 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 06:27:09.689 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 06:27:46.831 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:40164 10 6452 1 2025-10-24 06:28:47.259 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58350 10 6452 1 2025-10-24 06:24:49.124 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-10-24 06:29:47.668 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:58486 12 10375 1 2025-10-24 06:30:48.149 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:45580 10 6452 1 2025-10-24 06:30:49.371 00:01:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 3 194 1 2025-10-24 06:27:49.122 00:04:00.252 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-24 06:31:48.513 00:00:12.011 TCP 1.101.0.1:3000 -> 23.104.0.1:36278 10 6452 1 2025-10-24 06:32:11.962 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 06:32:10.891 00:00:00.042 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 06:32:10.803 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 06:32:11.882 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 06:32:10.866 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 06:32:50.563 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:47398 10 6452 1 2025-10-24 06:33:50.930 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:58864 10 6452 1 2025-10-24 06:34:51.343 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:44768 10 6452 1 2025-10-24 06:35:51.745 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49560 10 6452 1 2025-10-24 06:32:49.129 00:04:00.243 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-24 06:32:49.128 00:04:00.247 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-24 06:36:52.148 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60756 10 6452 1 2025-10-24 06:37:09.748 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 06:37:09.758 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 06:37:09.614 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 06:37:09.823 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 06:37:09.905 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 06:37:52.554 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:44946 10 6452 1 2025-10-24 06:38:52.960 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:42136 10 6452 1 2025-10-24 06:39:53.343 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:35806 12 6556 1 2025-10-24 06:40:53.767 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:55556 10 6452 1 2025-10-24 06:37:49.134 00:04:00.239 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-24 06:41:54.189 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40580 10 6452 1 2025-10-24 06:42:09.905 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 06:42:09.825 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 06:42:09.825 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 06:42:09.701 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 06:42:09.822 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 06:37:49.131 00:06:00.246 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-24 06:42:54.596 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35928 10 6452 1 2025-10-24 06:43:55.023 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40550 10 6452 1 2025-10-24 06:44:55.421 00:00:10.580 TCP 1.101.0.1:3000 -> 23.104.0.1:35796 10 6452 1 2025-10-24 06:45:56.041 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56744 10 6452 1 2025-10-24 06:42:49.135 00:04:00.239 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-24 06:47:09.935 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 06:46:56.445 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58026 10 6452 1 2025-10-24 06:47:10.007 00:00:00.039 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 06:47:09.985 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 06:47:10.008 00:00:00.036 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 06:47:10.090 00:00:00.037 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 06:47:56.814 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33746 10 6452 1 2025-10-24 06:44:49.133 00:04:00.244 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-24 06:48:57.215 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34240 10 6452 1 2025-10-24 06:49:57.625 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41632 10 6452 1 2025-10-24 06:50:57.981 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48142 10 6452 1 2025-10-24 06:51:58.392 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40616 10 6452 1 2025-10-24 06:52:10.217 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 06:52:10.667 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 06:52:10.219 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 06:52:10.126 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 06:52:10.134 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 06:47:49.136 00:06:00.241 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-24 06:52:58.798 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44718 10 6452 1 2025-10-24 06:49:49.133 00:04:00.246 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-24 06:53:59.200 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35128 10 6452 1 2025-10-24 06:54:59.562 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51632 10 6452 1 2025-10-24 06:55:59.968 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38750 10 6452 1 2025-10-24 06:57:09.944 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 06:57:10.397 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 06:57:09.991 00:00:00.035 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 06:57:10.314 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 06:57:00.371 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39228 10 6452 1 2025-10-24 06:57:10.201 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 06:58:00.733 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41376 10 6452 1 2025-10-24 06:54:49.136 00:04:00.249 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-24 06:54:49.138 00:04:00.244 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 Summary: total flows: 143, total bytes: 415138, total packets: 1023, avg bps: 878, avg pps: 0, avg bpp: 405 Time window: 2025-10-24 05:55:49 - 2025-10-24 06:58:49 Total flows processed: 143, passed: 143, Blocks skipped: 0, Bytes read: 14936 Sys: 0.0032s User: 0.0016s Wall: 0.0018s flows/second: 78229.5 Runtime: 0.0018s