Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-30 04:58:46.414 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37906 10 6452 1 2025-09-30 04:59:46.817 00:00:11.287 TCP 1.101.0.1:3000 -> 23.104.0.1:39938 10 6452 1 2025-09-30 05:00:34.645 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 05:00:34.535 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 05:00:34.590 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 05:00:34.552 00:00:00.033 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 05:00:34.654 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 05:00:48.140 00:00:10.536 TCP 1.101.0.1:3000 -> 23.104.0.1:34418 10 6452 1 2025-09-30 05:01:48.716 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:42438 10 6452 1 2025-09-30 05:02:49.126 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:50174 10 6452 1 2025-09-30 05:03:49.536 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:45976 10 6452 1 2025-09-30 05:00:36.951 00:05:00.187 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 05:00:36.949 00:05:00.192 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 05:04:49.898 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:47448 10 6452 1 2025-09-30 05:05:34.808 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 05:05:34.810 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 05:05:34.833 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 05:05:34.582 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 05:05:34.891 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 05:05:50.321 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44686 10 6452 1 2025-09-30 05:06:50.750 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41460 10 6452 1 2025-09-30 05:07:51.116 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58152 10 6452 1 2025-09-30 05:08:51.520 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:44822 10 6452 1 2025-09-30 05:09:51.880 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56540 10 6452 1 2025-09-30 05:10:35.033 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 05:06:36.949 00:05:00.193 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 05:10:35.003 00:00:00.035 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 05:10:34.848 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 05:10:34.950 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 05:10:34.952 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 05:06:36.951 00:05:00.188 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 05:10:52.289 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37598 10 6452 1 2025-09-30 05:11:52.694 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43152 10 6452 1 2025-09-30 05:12:53.113 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:46354 10 6452 1 2025-09-30 05:13:53.514 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37324 10 6452 1 2025-09-30 05:14:53.917 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37020 11 6492 1 2025-09-30 05:15:35.144 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 05:15:35.057 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 05:15:34.925 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 05:15:35.063 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 05:15:34.877 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 05:15:54.324 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:39552 10 6452 1 2025-09-30 05:12:36.954 00:05:00.189 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 05:12:36.951 00:05:00.194 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 05:16:54.689 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54574 10 6452 1 2025-09-30 05:17:55.106 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53328 10 6452 1 2025-09-30 05:18:55.510 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38800 10 6452 1 2025-09-30 05:19:55.916 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51620 10 6452 1 2025-09-30 05:20:34.882 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 05:20:34.721 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 05:20:35.155 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 05:20:35.091 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 05:20:35.237 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 05:20:56.312 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43130 10 6452 1 2025-09-30 05:21:56.716 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:37440 10 6452 1 2025-09-30 05:18:36.957 00:05:00.188 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 05:18:36.955 00:05:00.194 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 05:22:57.133 00:00:10.434 TCP 1.101.0.1:3000 -> 23.104.0.1:40270 13 13939 1 2025-09-30 05:23:57.608 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54200 10 6452 1 2025-09-30 05:24:57.970 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36114 10 6452 1 2025-09-30 05:25:35.223 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 05:25:35.379 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 05:25:35.474 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 05:25:35.423 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 05:25:35.556 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 05:25:58.339 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:49334 10 6452 1 2025-09-30 05:26:58.698 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53146 10 6452 1 2025-09-30 05:27:59.114 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:51404 12 10369 1 2025-09-30 05:24:36.956 00:05:00.191 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 05:24:36.955 00:05:00.195 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 05:28:59.591 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39628 10 6452 1 2025-09-30 05:29:59.999 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51764 10 6452 1 2025-09-30 05:30:35.116 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 05:30:35.334 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 05:30:35.191 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 05:30:35.033 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 05:30:35.259 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 05:31:00.402 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47312 10 6452 1 2025-09-30 05:32:00.804 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50600 10 6452 1 2025-09-30 05:33:01.210 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49522 10 6452 1 2025-09-30 05:34:01.570 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59240 10 6452 1 2025-09-30 05:30:36.958 00:05:00.190 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 05:30:36.956 00:05:00.195 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 05:35:01.933 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:49504 10 6452 1 2025-09-30 05:35:35.423 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 05:35:35.340 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 05:35:35.352 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 05:35:35.338 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 05:35:35.331 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 05:36:02.362 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50524 10 6452 1 2025-09-30 05:37:02.765 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:51582 10 6452 1 2025-09-30 05:38:03.183 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49720 10 6452 1 2025-09-30 05:39:03.585 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:44110 10 6452 1 2025-09-30 05:40:03.951 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:58228 10 6452 1 2025-09-30 05:40:35.770 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 05:40:35.866 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 05:40:35.941 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 05:40:35.944 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 05:36:36.959 00:05:00.190 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 05:36:36.956 00:05:00.195 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 05:40:36.024 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 05:41:04.378 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:32994 10 6452 1 2025-09-30 05:42:04.778 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36270 10 6452 1 2025-09-30 05:43:05.185 00:00:10.568 TCP 1.101.0.1:3000 -> 23.104.0.1:32830 10 6452 1 2025-09-30 05:44:05.799 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36038 10 6452 1 2025-09-30 05:45:06.205 00:00:10.753 TCP 1.101.0.1:3000 -> 23.104.0.1:45888 10 6452 1 2025-09-30 05:45:35.490 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 05:45:35.543 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 05:45:35.574 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 05:45:35.772 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 05:45:35.657 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 05:46:07.006 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57282 10 6452 1 2025-09-30 05:42:36.957 00:05:00.195 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 05:42:36.960 00:05:00.190 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 05:47:07.410 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38532 10 6452 1 2025-09-30 05:48:07.814 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45672 10 6452 1 2025-09-30 05:49:08.215 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52376 10 6452 1 2025-09-30 05:50:08.620 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59490 10 6452 1 2025-09-30 05:50:35.750 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 05:50:35.762 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 05:50:35.399 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 05:50:35.667 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 05:50:35.672 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 05:51:09.026 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48350 10 6452 1 2025-09-30 05:52:09.431 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:38804 10 6452 1 2025-09-30 05:48:36.963 00:05:00.189 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 05:48:36.961 00:05:00.194 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 05:53:09.795 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43432 10 6452 1 2025-09-30 05:54:10.201 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40946 10 6452 1 2025-09-30 05:55:10.605 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44622 10 6452 1 2025-09-30 05:55:35.727 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 05:55:35.648 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 05:55:35.718 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 05:55:35.644 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 05:55:35.852 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 05:56:11.012 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:32868 10 6452 1 2025-09-30 05:57:11.415 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50054 10 6452 1 2025-09-30 05:58:11.828 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60464 10 6452 1 2025-09-30 05:54:36.963 00:05:00.189 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 05:54:36.961 00:05:00.194 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 Summary: total flows: 140, total bytes: 428444, total packets: 1026, avg bps: 938, avg pps: 0, avg bpp: 417 Time window: 2025-09-30 04:58:46 - 2025-09-30 05:59:37 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0037s User: 0.0012s Wall: 0.0023s flows/second: 61590.4 Runtime: 0.0023s