Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-05 06:58:44.910 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:37140 10 6452 1 2025-10-05 06:59:45.285 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58950 10 6452 1 2025-10-05 06:55:39.418 00:06:00.386 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 06:55:39.416 00:06:00.391 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 07:00:45.688 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47656 10 6452 1 2025-10-05 07:01:46.110 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60300 10 6452 1 2025-10-05 07:02:46.476 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48828 10 6452 1 2025-10-05 07:03:01.627 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 07:03:01.678 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:03:01.624 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:03:01.566 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 07:03:01.708 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 07:03:46.889 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:46050 12 6556 1 2025-10-05 07:04:47.309 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36454 10 6452 1 2025-10-05 07:05:47.714 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:49606 10 6452 1 2025-10-05 07:06:48.131 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58876 10 6452 1 2025-10-05 07:02:39.419 00:06:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 07:02:39.421 00:06:00.386 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 07:07:48.537 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36462 10 6452 1 2025-10-05 07:08:01.434 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:08:01.853 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:08:01.778 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 07:08:01.910 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 07:08:01.937 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 07:08:48.897 00:00:10.450 TCP 1.101.0.1:3000 -> 23.104.0.1:42774 14 10473 1 2025-10-05 07:09:49.383 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34702 10 6452 1 2025-10-05 07:10:49.787 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37912 10 6452 1 2025-10-05 07:11:50.191 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59342 10 6452 1 2025-10-05 07:12:50.594 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37278 10 6452 1 2025-10-05 07:13:01.608 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 07:13:01.627 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:13:01.687 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:13:01.767 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 07:13:01.770 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 07:13:50.995 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49560 10 6452 1 2025-10-05 07:09:39.420 00:06:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 07:09:39.423 00:06:00.384 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 07:14:51.408 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33714 10 6452 1 2025-10-05 07:15:51.817 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48594 10 6452 1 2025-10-05 07:16:52.231 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:57206 10 6452 1 2025-10-05 07:18:01.898 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 07:18:01.877 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:18:01.844 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:18:01.899 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 07:17:52.625 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39316 10 6452 1 2025-10-05 07:18:01.929 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 07:18:53.040 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59068 10 6452 1 2025-10-05 07:19:53.451 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46040 10 6452 1 2025-10-05 07:20:53.855 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:58190 10 6452 1 2025-10-05 07:16:39.424 00:06:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 07:16:39.422 00:06:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 07:21:54.275 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34552 10 6452 1 2025-10-05 07:23:02.279 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 07:23:02.341 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 07:23:02.093 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:22:54.676 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40200 10 6452 1 2025-10-05 07:23:02.198 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:23:02.272 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 07:23:55.104 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45090 10 6452 1 2025-10-05 07:24:55.501 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50284 10 6452 1 2025-10-05 07:25:55.906 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:47494 10 6452 1 2025-10-05 07:26:56.275 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57514 10 6452 1 2025-10-05 07:28:02.239 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 07:28:02.078 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 07:28:01.772 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:28:02.156 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:28:01.949 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 07:27:56.679 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55474 10 6452 1 2025-10-05 07:23:39.423 00:06:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 07:23:39.427 00:06:00.384 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 07:28:57.114 00:00:10.780 TCP 1.101.0.1:3000 -> 23.104.0.1:58920 10 6452 1 2025-10-05 07:29:57.934 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:58388 10 6452 1 2025-10-05 07:30:58.349 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41718 10 6452 1 2025-10-05 07:31:58.749 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46230 10 6452 1 2025-10-05 07:33:02.119 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 07:33:01.926 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:33:02.058 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:33:02.061 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 07:33:02.140 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 07:32:59.157 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50188 10 6452 1 2025-10-05 07:33:59.566 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59678 10 6452 1 2025-10-05 07:34:59.977 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:49512 10 6452 1 2025-10-05 07:30:39.428 00:06:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 07:30:39.430 00:06:00.384 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 07:36:00.353 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57810 10 6452 1 2025-10-05 07:37:00.762 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:37794 10 6452 1 2025-10-05 07:38:02.283 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 07:38:02.558 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 07:38:02.313 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:38:02.200 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:38:02.425 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 07:38:01.211 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51630 10 6452 1 2025-10-05 07:39:01.620 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51680 10 6452 1 2025-10-05 07:40:02.022 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:46970 10 6452 1 2025-10-05 07:41:02.419 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58172 10 6452 1 2025-10-05 07:42:02.823 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52860 10 6452 1 2025-10-05 07:37:39.430 00:06:00.388 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 07:37:39.427 00:06:00.393 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 07:43:02.518 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 07:43:02.081 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:43:02.522 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:43:02.361 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 07:43:02.605 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 07:43:03.227 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58022 10 6452 1 2025-10-05 07:44:03.639 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:35582 12 10375 1 2025-10-05 07:45:04.116 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59936 10 6452 1 2025-10-05 07:46:04.517 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54600 10 6452 1 2025-10-05 07:47:04.923 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41854 10 6452 1 2025-10-05 07:48:02.530 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:48:02.547 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:48:02.503 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 07:48:02.544 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 07:48:02.629 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 07:48:05.331 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46684 10 6452 1 2025-10-05 07:49:05.744 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:42026 12 10375 1 2025-10-05 07:44:39.427 00:06:00.393 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 07:44:39.430 00:06:00.388 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 07:50:06.227 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:48906 10 6452 1 2025-10-05 07:51:06.651 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:52644 10 6452 1 2025-10-05 07:52:07.073 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36048 10 6452 1 2025-10-05 07:53:02.609 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 07:53:02.536 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:53:02.528 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:53:02.589 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 07:53:02.473 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 07:53:07.441 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42256 10 6452 1 2025-10-05 07:54:07.853 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:54514 10 6452 1 2025-10-05 07:55:08.236 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:45144 10 6452 1 2025-10-05 07:56:08.596 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:38158 10 6452 1 2025-10-05 07:51:39.430 00:06:00.393 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 07:51:39.432 00:06:00.389 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 07:57:08.956 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:47438 10 6452 1 2025-10-05 07:58:02.981 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 07:58:02.649 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 07:58:02.578 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:58:02.898 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:58:02.766 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 07:58:09.368 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34988 10 6452 1 Summary: total flows: 138, total bytes: 429709, total packets: 1042, avg bps: 914, avg pps: 0, avg bpp: 412 Time window: 2025-10-05 06:55:39 - 2025-10-05 07:58:19 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0037s User: 0.0015s Wall: 0.0022s flows/second: 62104.5 Runtime: 0.0022s