Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-05 03:59:29.116 00:00:10.790 TCP 1.101.0.1:3000 -> 23.104.0.1:55794 10 6452 1 2025-10-05 04:00:29.957 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:41970 10 6452 1 2025-10-05 04:01:30.376 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:38566 10 6452 1 2025-10-05 04:02:30.734 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40650 10 6452 1 2025-10-05 04:02:58.072 00:00:00.051 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 04:02:57.750 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 04:02:57.990 00:00:00.051 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 04:02:57.938 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 04:02:57.950 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 04:03:31.107 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38634 10 6452 1 2025-10-05 04:04:31.501 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60668 10 6452 1 2025-10-05 04:00:39.361 00:06:00.385 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 04:00:39.358 00:06:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 04:05:31.913 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47924 10 6452 1 2025-10-05 04:06:32.317 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35450 10 6452 1 2025-10-05 04:07:32.721 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:52200 10 6452 1 2025-10-05 04:07:58.287 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 04:07:58.062 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 04:07:57.917 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 04:07:58.204 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 04:07:58.067 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 04:08:33.136 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46884 10 6452 1 2025-10-05 04:09:33.540 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:35268 10 6452 1 2025-10-05 04:10:33.905 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39120 10 6452 1 2025-10-05 04:11:34.311 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:51558 10 6452 1 2025-10-05 04:07:39.364 00:06:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 04:07:39.361 00:06:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 04:12:34.675 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35366 10 6452 1 2025-10-05 04:12:58.145 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 04:12:58.162 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 04:12:57.950 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 04:12:58.144 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 04:12:58.033 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 04:13:35.099 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41170 10 6452 1 2025-10-05 04:14:35.506 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59368 10 6452 1 2025-10-05 04:15:35.910 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55524 10 6452 1 2025-10-05 04:16:36.276 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55058 10 6452 1 2025-10-05 04:17:36.679 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39004 10 6452 1 2025-10-05 04:17:58.572 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 04:17:58.768 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 04:17:58.677 00:00:00.038 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 04:17:58.490 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 04:17:58.771 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 04:18:37.113 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55580 10 6452 1 2025-10-05 04:14:39.367 00:06:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 04:14:39.365 00:06:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 04:19:37.512 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37972 10 6452 1 2025-10-05 04:20:37.873 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45560 10 6452 1 2025-10-05 04:21:38.279 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:37032 10 6452 1 2025-10-05 04:22:38.681 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:53350 10 6452 1 2025-10-05 04:22:58.194 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 04:22:58.466 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 04:22:58.248 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 04:22:58.112 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 04:22:58.205 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 04:23:39.057 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57980 10 6452 1 2025-10-05 04:24:39.465 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51138 10 6452 1 2025-10-05 04:25:39.862 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:42662 10 6452 1 2025-10-05 04:21:39.369 00:06:00.385 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 04:21:39.367 00:06:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 04:26:40.250 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38474 10 6452 1 2025-10-05 04:27:40.656 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:42520 10 6452 1 2025-10-05 04:27:58.511 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 04:27:58.452 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 04:27:58.454 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 04:27:58.514 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 04:27:58.536 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 04:28:41.043 00:00:10.542 TCP 1.101.0.1:3000 -> 23.104.0.1:54666 10 6452 1 2025-10-05 04:29:41.621 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56716 10 6452 1 2025-10-05 04:30:42.021 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45028 10 6452 1 2025-10-05 04:31:42.423 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50614 10 6452 1 2025-10-05 04:32:42.827 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:49876 10 6452 1 2025-10-05 04:32:58.535 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 04:32:58.502 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 04:32:58.585 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 04:32:58.541 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 04:32:58.667 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 04:28:39.373 00:06:00.384 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 04:28:39.369 00:06:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 04:33:43.226 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35404 10 6452 1 2025-10-05 04:34:43.632 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45958 10 6452 1 2025-10-05 04:35:44.063 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39118 10 6452 1 2025-10-05 04:36:44.425 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35574 10 6452 1 2025-10-05 04:37:44.825 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:44066 10 6452 1 2025-10-05 04:37:59.121 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 04:37:58.643 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 04:37:59.255 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 04:37:58.753 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 04:37:59.338 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 04:38:45.187 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56960 10 6452 1 2025-10-05 04:39:45.589 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:49700 10 6452 1 2025-10-05 04:35:39.371 00:06:00.391 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 04:35:39.374 00:06:00.385 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 04:40:46.009 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45938 10 6452 1 2025-10-05 04:41:46.380 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:47742 10 6452 1 2025-10-05 04:42:58.847 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 04:42:58.936 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 04:42:58.681 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 04:42:46.759 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34202 10 6452 1 2025-10-05 04:42:58.764 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 04:42:58.838 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 04:43:47.171 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34272 10 6452 1 2025-10-05 04:44:47.535 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33082 10 6452 1 2025-10-05 04:45:47.937 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:37686 10 6452 1 2025-10-05 04:46:48.363 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54798 10 6452 1 2025-10-05 04:42:39.372 00:06:00.391 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 04:42:39.374 00:06:00.387 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 04:47:48.763 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:38578 10 6452 1 2025-10-05 04:47:58.641 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 04:47:58.530 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 04:47:58.945 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 04:47:58.883 00:00:00.032 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 04:47:59.028 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 04:48:49.182 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58818 10 6452 1 2025-10-05 04:49:49.585 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60674 10 6452 1 2025-10-05 04:50:49.987 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41842 10 6452 1 2025-10-05 04:51:50.394 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53746 10 6452 1 2025-10-05 04:52:58.759 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 04:52:59.001 00:00:00.038 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 04:52:58.909 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 04:52:58.760 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 04:52:58.991 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 04:52:50.795 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:39102 10 6452 1 2025-10-05 04:53:51.230 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:34284 12 10369 1 2025-10-05 04:49:39.379 00:06:00.385 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 04:49:39.376 00:06:00.391 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 04:54:51.708 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57476 10 6452 1 2025-10-05 04:55:52.118 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60484 10 6452 1 2025-10-05 04:56:52.526 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58130 10 6452 1 2025-10-05 04:57:59.360 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 04:57:59.266 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 04:57:58.939 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 04:57:59.277 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 04:57:59.271 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 04:57:52.935 00:00:10.541 TCP 1.101.0.1:3000 -> 23.104.0.1:57770 10 6452 1 Summary: total flows: 135, total bytes: 413481, total packets: 996, avg bps: 941, avg pps: 0, avg bpp: 415 Time window: 2025-10-05 03:59:29 - 2025-10-05 04:58:03 Total flows processed: 135, passed: 135, Blocks skipped: 0, Bytes read: 14104 Sys: 0.0046s User: 0.0008s Wall: 0.0021s flows/second: 62998.6 Runtime: 0.0022s