Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-01 04:58:57.674 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36508 10 6452 1 2025-10-01 04:59:58.104 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50530 10 6452 1 2025-10-01 05:01:03.144 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 05:01:02.979 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 05:01:03.067 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 05:01:03.116 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 05:01:03.150 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 05:00:58.502 00:00:24.263 TCP 1.101.0.1:3000 -> 23.104.0.1:60842 10 6452 1 2025-10-01 05:02:12.830 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57936 10 6452 1 2025-10-01 05:03:13.228 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48050 10 6452 1 2025-10-01 05:04:13.634 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38482 10 6452 1 2025-10-01 04:59:37.425 00:06:00.181 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 05:05:14.037 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54698 10 6452 1 2025-10-01 05:00:37.428 00:06:00.177 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 05:06:03.574 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 05:06:03.657 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 05:06:03.613 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 05:06:03.490 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 05:06:03.692 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 05:06:14.441 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:49448 10 6452 1 2025-10-01 05:07:14.800 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:35666 10 6452 1 2025-10-01 05:08:15.218 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:32910 10 6452 1 2025-10-01 05:09:15.581 00:00:10.881 TCP 1.101.0.1:3000 -> 23.104.0.1:56456 10 6452 1 2025-10-01 05:10:16.492 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33330 10 6452 1 2025-10-01 05:11:03.647 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 05:11:03.707 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 05:11:03.817 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 05:11:03.750 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 05:11:03.899 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 05:11:16.908 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:56804 10 6452 1 2025-10-01 05:06:37.426 00:06:00.182 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 05:12:17.274 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59212 10 6452 1 2025-10-01 05:07:37.428 00:06:00.178 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 05:13:17.678 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:57080 10 6452 1 2025-10-01 05:14:18.110 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47936 10 6452 1 2025-10-01 05:15:18.512 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39620 10 6452 1 2025-10-01 05:16:03.951 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 05:16:03.795 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 05:16:03.796 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 05:16:03.868 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 05:16:03.928 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 05:16:18.916 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42670 10 6452 1 2025-10-01 05:17:19.315 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57052 10 6452 1 2025-10-01 05:18:19.720 00:00:10.931 TCP 1.101.0.1:3000 -> 23.104.0.1:46066 10 6452 1 2025-10-01 05:13:37.434 00:06:00.179 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 05:19:20.688 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54326 10 6452 1 2025-10-01 05:14:37.436 00:06:00.174 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 05:20:21.109 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40944 10 6452 1 2025-10-01 05:21:03.923 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 05:21:03.969 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 05:21:03.870 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 05:21:03.841 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 05:21:04.005 00:00:00.044 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 05:21:21.521 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:49126 10 6452 1 2025-10-01 05:22:21.943 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:59308 10 6452 1 2025-10-01 05:23:22.359 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41828 10 6452 1 2025-10-01 05:24:22.764 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:42266 10 6452 1 2025-10-01 05:25:23.145 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:32844 10 6452 1 2025-10-01 05:20:37.434 00:06:00.179 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 05:26:04.151 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 05:26:03.994 00:00:00.029 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 05:26:04.070 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 05:26:03.947 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 05:26:04.153 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 05:26:23.550 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:34618 10 6452 1 2025-10-01 05:21:37.437 00:06:00.178 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 05:27:23.987 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40804 10 6452 1 2025-10-01 05:28:24.396 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52916 10 6452 1 2025-10-01 05:29:24.757 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:52156 10 6452 1 2025-10-01 05:30:25.170 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36724 10 6452 1 2025-10-01 05:31:04.036 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 05:31:04.134 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 05:31:04.064 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 05:31:04.151 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 05:31:04.147 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 05:31:25.568 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39286 10 6452 1 2025-10-01 05:32:25.976 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54016 10 6452 1 2025-10-01 05:27:37.437 00:06:00.178 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 05:28:37.441 00:06:00.173 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 05:33:26.378 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:60328 10 6452 1 2025-10-01 05:34:26.738 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52782 10 6452 1 2025-10-01 05:35:27.149 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56284 10 6452 1 2025-10-01 05:36:04.405 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 05:36:04.349 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 05:36:04.311 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 05:36:04.542 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 05:36:04.393 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 05:36:27.551 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59030 10 6452 1 2025-10-01 05:37:27.952 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46196 10 6452 1 2025-10-01 05:38:28.360 00:00:10.405 TCP 1.101.0.1:3000 -> 23.104.0.1:50212 12 10375 1 2025-10-01 05:39:28.805 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:51518 10 6452 1 2025-10-01 05:34:37.438 00:06:00.178 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 05:40:29.184 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44136 10 6452 1 2025-10-01 05:35:37.442 00:06:00.173 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 05:41:04.347 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 05:41:04.266 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 05:41:04.202 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 05:41:04.264 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 05:41:04.402 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 05:41:29.582 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41084 10 6452 1 2025-10-01 05:42:29.984 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35386 10 6452 1 2025-10-01 05:43:30.393 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41520 10 6452 1 2025-10-01 05:44:30.799 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:47558 10 6452 1 2025-10-01 05:45:31.171 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45420 10 6452 1 2025-10-01 05:46:04.457 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 05:46:04.508 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 05:46:04.358 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 05:46:04.375 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 05:46:04.494 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 05:41:37.441 00:06:00.177 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 05:46:31.575 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42380 10 6452 1 2025-10-01 05:42:37.445 00:06:00.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 05:47:31.975 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:42278 10 6452 1 2025-10-01 05:48:32.397 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46912 10 6452 1 2025-10-01 05:49:32.810 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53174 10 6452 1 2025-10-01 05:50:33.218 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:54610 10 6452 1 2025-10-01 05:51:04.906 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 05:51:04.943 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 05:51:04.833 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 05:51:04.938 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 05:51:04.916 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 05:51:33.619 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36504 12 6556 1 2025-10-01 05:52:34.029 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51574 10 6452 1 2025-10-01 05:48:37.443 00:06:00.178 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-01 05:53:34.435 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49378 10 6452 1 2025-10-01 05:49:37.445 00:06:00.172 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-01 05:54:34.837 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:59802 10 6452 1 2025-10-01 05:55:35.219 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55830 10 6452 1 2025-10-01 05:56:04.741 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-01 05:56:04.658 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 05:56:04.491 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-01 05:56:04.652 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-01 05:56:04.419 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-01 05:56:35.630 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33526 10 6452 1 2025-10-01 05:57:36.037 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43150 10 6452 1 2025-10-01 05:58:36.438 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50310 10 6452 1 Summary: total flows: 136, total bytes: 420043, total packets: 1008, avg bps: 936, avg pps: 0, avg bpp: 416 Time window: 2025-10-01 04:58:57 - 2025-10-01 05:58:46 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0024s User: 0.0012s Wall: 0.0021s flows/second: 65603.8 Runtime: 0.0021s