Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-04 20:59:12.356 00:00:10.626 TCP 1.101.0.1:3000 -> 23.104.0.1:48050 10 6452 1 2025-10-04 21:00:13.035 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:50578 10 6452 1 2025-10-04 21:01:13.396 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45192 10 6452 1 2025-10-04 21:02:13.800 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60058 10 6452 1 2025-10-04 21:02:49.718 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 21:02:49.749 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 21:02:49.796 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 21:02:49.722 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 21:02:49.880 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 21:03:14.207 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:56226 11 6504 1 2025-10-04 21:04:14.670 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54614 10 6452 1 2025-10-04 21:05:15.105 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37748 10 6452 1 2025-10-04 21:00:39.227 00:06:00.381 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-04 21:00:39.224 00:06:00.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-04 21:06:15.504 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53534 10 6452 1 2025-10-04 21:07:15.910 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36216 10 6452 1 2025-10-04 21:07:49.666 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 21:07:49.545 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 21:07:49.671 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 21:07:49.583 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 21:07:49.753 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 21:08:16.315 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37466 10 6452 1 2025-10-04 21:09:16.685 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:33798 10 6452 1 2025-10-04 21:10:17.110 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37642 10 6452 1 2025-10-04 21:11:17.526 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52168 10 6452 1 2025-10-04 21:12:17.924 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:43838 10 6452 1 2025-10-04 21:07:39.230 00:06:00.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-04 21:07:39.228 00:06:00.384 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-04 21:12:49.673 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 21:12:49.686 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 21:12:49.786 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 21:12:49.676 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 21:12:49.871 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 21:13:18.295 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:41320 12 10369 1 2025-10-04 21:14:18.732 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46182 10 6452 1 2025-10-04 21:15:19.138 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57332 10 6452 1 2025-10-04 21:16:19.539 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58246 10 6452 1 2025-10-04 21:17:19.952 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56802 10 6452 1 2025-10-04 21:17:50.206 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 21:17:50.179 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 21:17:49.718 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 21:17:50.124 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 21:17:50.155 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 21:18:20.361 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55516 10 6452 1 2025-10-04 21:19:20.764 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:51916 10 6452 1 2025-10-04 21:14:39.231 00:06:00.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-04 21:14:39.228 00:06:00.386 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-04 21:20:21.135 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56142 10 6452 1 2025-10-04 21:21:21.543 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36520 10 6452 1 2025-10-04 21:22:21.943 00:00:10.788 TCP 1.101.0.1:3000 -> 23.104.0.1:52116 10 6452 1 2025-10-04 21:22:49.909 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 21:22:49.838 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 21:22:49.590 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 21:22:49.826 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 21:22:49.736 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 21:23:22.767 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:39776 10 6452 1 2025-10-04 21:24:23.183 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:55628 10 6452 1 2025-10-04 21:25:23.577 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60754 10 6452 1 2025-10-04 21:26:23.980 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54944 10 6452 1 2025-10-04 21:21:39.231 00:06:00.381 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-04 21:21:39.230 00:06:00.386 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-04 21:27:24.387 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47604 10 6452 1 2025-10-04 21:27:49.999 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 21:27:49.916 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 21:27:49.914 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 21:27:49.901 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 21:27:49.877 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 21:28:24.797 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46226 10 6452 1 2025-10-04 21:29:25.156 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38124 10 6452 1 2025-10-04 21:30:25.557 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33168 10 6452 1 2025-10-04 21:31:25.920 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:45684 10 6452 1 2025-10-04 21:32:26.353 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:55640 10 6452 1 2025-10-04 21:32:50.266 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 21:32:50.182 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 21:32:49.944 00:00:00.018 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 21:32:50.073 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 21:32:49.857 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 21:33:26.716 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:46668 10 6452 1 2025-10-04 21:28:39.234 00:06:00.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-04 21:28:39.232 00:06:00.384 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-04 21:34:27.113 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49110 10 6452 1 2025-10-04 21:35:27.513 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:48356 10 6452 1 2025-10-04 21:36:27.912 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60344 10 6452 1 2025-10-04 21:37:28.312 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41540 10 6452 1 2025-10-04 21:37:50.346 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 21:37:50.198 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 21:37:50.345 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 21:37:50.444 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 21:37:50.429 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 21:38:28.713 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:45860 11 6504 1 2025-10-04 21:39:29.191 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54556 10 6452 1 2025-10-04 21:35:39.236 00:06:00.382 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-04 21:40:29.595 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36898 10 6452 1 2025-10-04 21:35:39.234 00:06:00.386 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-04 21:41:29.966 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36364 10 6452 1 2025-10-04 21:42:30.330 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42866 10 6452 1 2025-10-04 21:42:50.315 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 21:42:50.375 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 21:42:50.365 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 21:42:50.360 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 21:42:50.446 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 21:43:30.735 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51776 10 6452 1 2025-10-04 21:44:31.141 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:58022 10 6452 1 2025-10-04 21:45:31.556 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54750 10 6452 1 2025-10-04 21:46:31.955 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53894 10 6452 1 2025-10-04 21:42:39.235 00:06:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-04 21:42:39.237 00:06:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-04 21:47:32.359 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35922 10 6452 1 2025-10-04 21:47:50.374 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 21:47:50.059 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 21:47:50.544 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 21:47:50.504 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 21:47:50.626 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 21:48:32.772 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:57224 10 6452 1 2025-10-04 21:49:33.193 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39066 10 6452 1 2025-10-04 21:50:33.609 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59164 10 6452 1 2025-10-04 21:51:34.015 00:00:10.597 TCP 1.101.0.1:3000 -> 23.104.0.1:53524 10 6452 1 2025-10-04 21:52:34.641 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:56366 10 6452 1 2025-10-04 21:52:50.514 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 21:52:50.335 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 21:52:50.088 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 21:52:50.433 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 21:52:50.577 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 21:53:35.059 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:41698 10 6452 1 2025-10-04 21:49:39.235 00:06:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-04 21:49:39.238 00:06:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-04 21:54:35.421 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60550 10 6452 1 2025-10-04 21:55:35.784 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33588 10 6452 1 2025-10-04 21:56:36.188 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46008 10 6452 1 2025-10-04 21:57:50.848 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 21:57:50.800 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 21:57:50.673 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 21:57:50.766 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 21:57:50.619 00:00:00.030 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 21:57:36.595 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40074 10 6452 1 2025-10-04 21:58:37.001 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39420 10 6452 1 Summary: total flows: 136, total bytes: 420037, total packets: 1008, avg bps: 939, avg pps: 0, avg bpp: 416 Time window: 2025-10-04 20:59:12 - 2025-10-04 21:58:47 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0035s User: 0.0018s Wall: 0.0018s flows/second: 73994.7 Runtime: 0.0019s