Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-04 15:58:58.138 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:43802 12 10375 1 2025-10-04 15:59:58.614 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:45478 10 6452 1 2025-10-04 16:00:59.022 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53032 10 6452 1 2025-10-04 16:01:59.422 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59530 10 6452 1 2025-10-04 16:02:43.559 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 16:02:43.390 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 16:02:43.566 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 16:02:43.476 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 16:02:43.386 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 16:02:59.840 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:45878 10 6452 1 2025-10-04 16:04:00.269 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42934 10 6452 1 2025-10-04 15:59:39.145 00:06:00.355 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-04 15:59:39.149 00:06:00.350 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-04 16:05:00.636 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39616 10 6452 1 2025-10-04 16:06:01.050 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50414 10 6452 1 2025-10-04 16:07:01.458 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47506 10 6452 1 2025-10-04 16:07:43.830 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 16:07:43.811 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 16:07:43.762 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 16:07:43.762 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 16:07:43.846 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 16:08:01.855 00:00:11.100 TCP 1.101.0.1:3000 -> 23.104.0.1:54956 10 6452 1 2025-10-04 16:09:02.979 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:40556 10 6452 1 2025-10-04 16:10:03.349 00:00:10.854 TCP 1.101.0.1:3000 -> 23.104.0.1:51600 10 6452 1 2025-10-04 16:11:04.238 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44922 10 6452 1 2025-10-04 16:06:39.156 00:06:00.344 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-04 16:06:39.154 00:06:00.348 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-04 16:12:04.639 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40726 10 6452 1 2025-10-04 16:12:43.792 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 16:12:43.875 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 16:12:43.677 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 16:12:43.769 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 16:12:43.759 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 16:13:05.048 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:48906 12 10375 1 2025-10-04 16:14:05.492 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37552 10 6452 1 2025-10-04 16:15:05.896 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:33468 10 6452 1 2025-10-04 16:16:06.258 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59986 10 6452 1 2025-10-04 16:17:06.674 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46116 10 6452 1 2025-10-04 16:17:43.813 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 16:17:43.559 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 16:17:43.886 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 16:17:43.882 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 16:17:43.969 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 16:18:07.102 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54272 10 6452 1 2025-10-04 16:13:39.157 00:06:00.343 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-04 16:13:39.154 00:06:00.348 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-04 16:19:07.507 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56450 10 6452 1 2025-10-04 16:20:07.916 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:53882 10 6452 1 2025-10-04 16:21:08.316 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57460 10 6452 1 2025-10-04 16:22:08.717 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:45188 10 6452 1 2025-10-04 16:22:43.930 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 16:22:43.549 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 16:22:43.927 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 16:22:43.814 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 16:22:44.012 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 16:23:09.128 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:49840 10 6452 1 2025-10-04 16:24:09.494 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:42360 10 6452 1 2025-10-04 16:25:09.856 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:36746 10 6452 1 2025-10-04 16:20:39.158 00:06:00.343 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-04 16:20:39.157 00:06:00.347 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-04 16:26:10.232 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47280 10 6452 1 2025-10-04 16:27:10.633 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55956 10 6452 1 2025-10-04 16:27:43.915 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 16:27:43.821 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 16:27:43.983 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 16:27:43.986 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 16:27:44.065 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 16:28:11.049 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:48142 10 6452 1 2025-10-04 16:29:11.470 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57288 10 6452 1 2025-10-04 16:30:11.871 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:47904 10 6452 1 2025-10-04 16:31:12.240 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56538 10 6452 1 2025-10-04 16:32:12.645 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46640 10 6452 1 2025-10-04 16:27:39.160 00:06:00.345 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-04 16:27:39.157 00:06:00.350 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-04 16:32:44.420 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 16:32:44.190 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 16:32:44.269 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 16:32:44.337 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 16:32:44.204 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 16:33:13.070 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:51044 10 6452 1 2025-10-04 16:34:13.486 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51046 10 6452 1 2025-10-04 16:35:13.889 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:49794 10 6452 1 2025-10-04 16:36:14.279 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:59304 10 6452 1 2025-10-04 16:37:14.658 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59146 10 6452 1 2025-10-04 16:37:44.113 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 16:37:44.031 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 16:37:44.157 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 16:37:44.164 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 16:37:44.127 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 16:38:15.069 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58444 10 6452 1 2025-10-04 16:39:15.476 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46902 10 6452 1 2025-10-04 16:34:39.161 00:06:00.345 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-04 16:34:39.160 00:06:00.350 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-04 16:40:15.879 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50814 10 6452 1 2025-10-04 16:41:16.291 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40760 10 6452 1 2025-10-04 16:42:16.693 00:00:10.677 TCP 1.101.0.1:3000 -> 23.104.0.1:41032 10 6452 1 2025-10-04 16:42:44.359 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 16:42:44.399 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 16:42:43.943 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 16:42:44.276 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 16:42:44.033 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 16:43:17.410 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54274 10 6452 1 2025-10-04 16:44:17.811 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60910 10 6452 1 2025-10-04 16:45:18.215 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52082 10 6452 1 2025-10-04 16:46:18.621 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33060 10 6452 1 2025-10-04 16:41:39.159 00:06:00.351 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-04 16:41:39.164 00:06:00.345 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-04 16:47:19.029 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54444 12 6556 1 2025-10-04 16:47:44.970 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 16:47:44.656 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 16:47:44.898 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 16:47:44.777 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 16:47:45.052 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 16:48:19.432 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50648 10 6452 1 2025-10-04 16:49:19.793 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52642 10 6452 1 2025-10-04 16:50:20.203 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35122 10 6452 1 2025-10-04 16:51:20.607 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38448 10 6452 1 2025-10-04 16:52:21.012 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46228 10 6452 1 2025-10-04 16:52:44.609 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 16:52:44.582 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 16:52:44.536 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 16:52:44.529 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 16:52:44.462 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 16:53:21.420 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41418 10 6452 1 2025-10-04 16:48:39.161 00:06:00.351 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-04 16:48:39.164 00:06:00.345 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-04 16:54:21.788 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:39502 10 6452 1 2025-10-04 16:55:22.152 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:53218 10 6452 1 2025-10-04 16:56:22.558 00:00:10.691 TCP 1.101.0.1:3000 -> 23.104.0.1:60922 10 6452 1 2025-10-04 16:57:23.308 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48082 10 6452 1 2025-10-04 16:57:44.836 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 16:57:44.794 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 16:57:44.633 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 16:57:44.753 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 16:57:44.753 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 16:58:23.710 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36732 10 6452 1 Summary: total flows: 136, total bytes: 423966, total packets: 1010, avg bps: 948, avg pps: 0, avg bpp: 419 Time window: 2025-10-04 15:58:58 - 2025-10-04 16:58:34 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0040s User: 0.0008s Wall: 0.0031s flows/second: 43929.6 Runtime: 0.0031s