Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-05 04:58:53.514 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54294 10 6452 1 2025-10-05 04:59:53.919 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36074 10 6452 1 2025-10-05 05:00:54.321 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49716 10 6452 1 2025-10-05 04:56:39.380 00:06:00.386 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 04:56:39.377 00:06:00.391 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 05:01:54.681 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55558 10 6452 1 2025-10-05 05:02:59.425 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 05:02:59.129 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 05:02:59.073 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:02:59.343 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:02:59.133 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 05:02:55.107 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40424 10 6452 1 2025-10-05 05:03:55.513 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58266 10 6452 1 2025-10-05 05:04:55.913 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46414 10 6452 1 2025-10-05 05:05:56.318 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44260 10 6452 1 2025-10-05 05:06:56.675 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58938 10 6452 1 2025-10-05 05:07:59.272 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 05:07:59.103 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 05:07:59.212 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:07:59.190 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:07:59.243 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 05:07:57.102 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36080 10 6452 1 2025-10-05 05:03:39.379 00:06:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 05:03:39.381 00:06:00.385 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 05:08:57.506 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42610 10 6452 1 2025-10-05 05:09:57.913 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36508 10 6452 1 2025-10-05 05:10:58.324 00:00:10.577 TCP 1.101.0.1:3000 -> 23.104.0.1:36576 10 6452 1 2025-10-05 05:11:58.940 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48256 10 6452 1 2025-10-05 05:12:59.273 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 05:12:59.351 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 05:12:59.216 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:12:59.189 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:12:59.452 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 05:12:59.350 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43328 10 6452 1 2025-10-05 05:13:59.753 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36940 10 6452 1 2025-10-05 05:15:00.118 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38432 10 6452 1 2025-10-05 05:10:39.384 00:06:00.384 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 05:10:39.381 00:06:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 05:16:00.523 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42722 10 6452 1 2025-10-05 05:17:00.927 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:50878 10 6452 1 2025-10-05 05:17:59.520 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 05:17:59.280 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 05:17:59.399 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:17:59.435 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:17:59.438 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 05:18:01.347 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40606 10 6452 1 2025-10-05 05:19:01.749 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60544 10 6452 1 2025-10-05 05:20:02.152 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42326 10 6452 1 2025-10-05 05:21:02.550 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49546 10 6452 1 2025-10-05 05:22:02.967 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55198 10 6452 1 2025-10-05 05:17:39.386 00:06:00.384 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 05:17:39.384 00:06:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 05:22:59.986 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 05:22:59.813 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 05:22:59.833 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:22:59.903 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:22:59.818 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 05:23:03.372 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49362 10 6452 1 2025-10-05 05:24:03.775 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56970 10 6452 1 2025-10-05 05:25:04.183 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35372 10 6452 1 2025-10-05 05:26:04.548 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50958 10 6452 1 2025-10-05 05:27:04.954 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44716 10 6452 1 2025-10-05 05:27:59.646 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 05:27:59.815 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:27:59.727 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:27:59.640 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 05:27:59.810 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 05:28:05.371 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53928 10 6452 1 2025-10-05 05:29:05.776 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:42766 10 6452 1 2025-10-05 05:24:39.387 00:06:00.384 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 05:24:39.385 00:06:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 05:30:06.143 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49126 10 6452 1 2025-10-05 05:31:06.544 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39636 10 6452 1 2025-10-05 05:32:06.947 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51838 10 6452 1 2025-10-05 05:32:59.792 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 05:32:59.627 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:32:59.738 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:32:59.799 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 05:32:59.820 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 05:33:07.359 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33176 10 6452 1 2025-10-05 05:34:07.770 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:60952 10 6452 1 2025-10-05 05:35:08.180 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45002 10 6452 1 2025-10-05 05:36:08.588 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45528 10 6452 1 2025-10-05 05:31:39.386 00:06:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 05:31:39.388 00:06:00.386 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 05:37:08.952 00:00:11.059 TCP 1.101.0.1:3000 -> 23.104.0.1:37876 10 6452 1 2025-10-05 05:37:59.855 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:37:59.943 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 05:37:59.775 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 05:37:59.784 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:37:59.938 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 05:38:10.049 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:60514 10 6452 1 2025-10-05 05:39:10.418 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53986 10 6452 1 2025-10-05 05:40:10.781 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40674 10 6452 1 2025-10-05 05:41:11.196 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46888 10 6452 1 2025-10-05 05:42:11.599 00:00:10.733 TCP 1.101.0.1:3000 -> 23.104.0.1:40820 10 6452 1 2025-10-05 05:42:59.995 00:00:00.041 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 05:42:59.897 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:43:00.001 00:00:00.053 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:42:59.878 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 05:43:00.084 00:00:00.054 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 05:43:12.377 00:00:11.067 TCP 1.101.0.1:3000 -> 23.104.0.1:41214 12 10375 1 2025-10-05 05:38:39.389 00:06:00.389 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 05:38:39.387 00:06:00.394 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 05:44:13.488 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38076 10 6452 1 2025-10-05 05:45:13.888 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:47770 10 6452 1 2025-10-05 05:46:14.305 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35088 12 6556 1 2025-10-05 05:47:14.709 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38114 10 6452 1 2025-10-05 05:48:00.131 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 05:48:00.163 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:48:00.195 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:48:00.251 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 05:48:00.278 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 05:48:15.114 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45308 10 6452 1 2025-10-05 05:49:15.517 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:35502 10 6452 1 2025-10-05 05:50:15.914 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52890 10 6452 1 2025-10-05 05:45:39.390 00:06:00.389 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 05:45:39.388 00:06:00.394 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 05:51:16.319 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:33422 10 6452 1 2025-10-05 05:52:16.686 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45432 10 6452 1 2025-10-05 05:53:00.209 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 05:52:59.906 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:53:00.077 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:53:00.218 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 05:53:00.160 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 05:53:17.062 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56122 10 6452 1 2025-10-05 05:54:17.462 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48564 10 6452 1 2025-10-05 05:55:17.869 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:36200 10 6452 1 2025-10-05 05:56:18.234 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57848 10 6452 1 2025-10-05 05:57:18.642 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51224 10 6452 1 2025-10-05 05:52:39.389 00:06:00.394 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 05:52:39.392 00:06:00.390 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 05:58:00.357 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 05:58:00.267 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 05:58:00.062 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:58:00.274 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:58:00.271 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 05:58:19.047 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35866 10 6452 1 Summary: total flows: 138, total bytes: 421765, total packets: 1036, avg bps: 906, avg pps: 0, avg bpp: 407 Time window: 2025-10-05 04:56:39 - 2025-10-05 05:58:39 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0035s User: 0.0017s Wall: 0.0017s flows/second: 79770.4 Runtime: 0.0018s