Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-08 01:59:04.401 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38688 10 6452 1 2025-10-08 01:59:22.059 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 01:59:21.840 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 01:59:22.053 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 01:59:22.213 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 01:59:22.135 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 02:00:04.804 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:39578 10 6452 1 2025-10-08 02:01:05.219 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53316 10 6452 1 2025-10-08 01:57:40.935 00:05:00.342 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 01:57:40.937 00:05:00.338 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 02:02:05.628 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51452 10 6452 1 2025-10-08 02:03:06.044 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48774 10 6452 1 2025-10-08 02:04:06.454 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46990 10 6452 1 2025-10-08 02:04:22.243 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 02:04:22.147 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:04:22.243 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:04:22.243 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 02:04:22.326 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 02:05:06.866 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:45344 10 6452 1 2025-10-08 02:06:07.235 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41426 10 6452 1 2025-10-08 02:07:07.600 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60886 10 6452 1 2025-10-08 02:03:40.939 00:05:00.337 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 02:03:40.938 00:05:00.342 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 02:08:07.996 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36848 10 6452 1 2025-10-08 02:09:08.403 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:55908 10 6452 1 2025-10-08 02:09:22.714 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 02:09:22.337 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 02:09:22.090 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:09:22.631 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:09:22.353 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 02:10:08.775 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:47398 10 6452 1 2025-10-08 02:11:09.192 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51220 10 6452 1 2025-10-08 02:12:09.597 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42648 10 6452 1 2025-10-08 02:13:10.000 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49850 10 6452 1 2025-10-08 02:09:40.943 00:05:00.335 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 02:09:40.941 00:05:00.340 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 02:14:10.407 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:51914 10 6452 1 2025-10-08 02:14:22.438 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 02:14:22.446 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:14:22.475 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:14:22.396 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 02:14:22.558 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 02:15:10.786 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54696 10 6452 1 2025-10-08 02:16:11.186 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37698 10 6452 1 2025-10-08 02:17:11.591 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47588 10 6452 1 2025-10-08 02:18:12.006 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:35414 10 6452 1 2025-10-08 02:19:22.631 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 02:19:22.461 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:19:12.365 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47238 10 6452 1 2025-10-08 02:19:22.632 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:19:22.625 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 02:19:22.714 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 02:15:40.943 00:05:00.339 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 02:15:40.947 00:05:00.334 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 02:20:12.774 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56202 10 6452 1 2025-10-08 02:21:13.146 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56646 10 6452 1 2025-10-08 02:22:13.555 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44124 10 6452 1 2025-10-08 02:23:13.964 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54742 10 6452 1 2025-10-08 02:24:14.323 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:51630 10 6452 1 2025-10-08 02:24:22.659 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 02:24:22.598 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:24:22.564 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:24:22.660 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 02:24:22.647 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 02:25:14.732 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40976 10 6452 1 2025-10-08 02:21:40.948 00:05:00.333 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 02:21:40.945 00:05:00.338 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 02:26:15.142 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:37744 10 6452 1 2025-10-08 02:27:15.506 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48216 10 6452 1 2025-10-08 02:28:15.911 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35508 10 6452 1 2025-10-08 02:29:22.634 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 02:29:22.709 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:29:22.847 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:29:22.534 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 02:29:22.930 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 02:29:16.315 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:32874 10 6452 1 2025-10-08 02:30:16.723 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55762 10 6452 1 2025-10-08 02:31:17.139 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49444 10 6452 1 2025-10-08 02:27:40.959 00:05:00.323 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 02:27:40.957 00:05:00.329 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 02:32:17.505 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43890 10 6452 1 2025-10-08 02:33:17.910 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59912 10 6452 1 2025-10-08 02:34:22.880 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 02:34:22.946 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 02:34:22.597 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:34:22.798 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:34:22.881 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 02:34:18.273 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56782 10 6452 1 2025-10-08 02:35:18.680 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33480 10 6452 1 2025-10-08 02:36:19.115 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:46236 10 6452 1 2025-10-08 02:37:19.522 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54850 10 6452 1 2025-10-08 02:33:40.958 00:05:00.327 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 02:33:40.961 00:05:00.323 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 02:38:19.929 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:60976 10 6452 1 2025-10-08 02:39:23.710 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 02:39:23.404 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 02:39:23.427 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:39:23.628 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:39:23.404 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 02:39:20.361 00:00:10.860 TCP 1.101.0.1:3000 -> 23.104.0.1:52050 12 10375 1 2025-10-08 02:40:21.270 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:46246 10 6452 1 2025-10-08 02:41:21.633 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60128 10 6452 1 2025-10-08 02:42:22.050 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42112 10 6452 1 2025-10-08 02:43:22.414 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47448 10 6452 1 2025-10-08 02:39:40.959 00:05:00.328 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 02:39:40.963 00:05:00.322 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 02:44:22.913 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 02:44:22.923 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 02:44:22.870 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:44:22.830 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:44:22.804 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 02:44:22.818 00:00:10.413 TCP 1.101.0.1:3000 -> 23.104.0.1:34286 11 6504 1 2025-10-08 02:45:23.268 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58026 10 6452 1 2025-10-08 02:46:23.672 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37160 10 6452 1 2025-10-08 02:47:24.097 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33236 10 6452 1 2025-10-08 02:48:24.504 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58592 10 6452 1 2025-10-08 02:49:23.098 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 02:49:22.916 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:49:23.229 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:49:22.902 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 02:49:23.312 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 02:49:24.912 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42480 10 6452 1 2025-10-08 02:45:40.963 00:05:00.322 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 02:45:40.962 00:05:00.328 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 02:50:25.321 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39284 10 6452 1 2025-10-08 02:51:25.725 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40160 10 6452 1 2025-10-08 02:52:26.132 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:34164 10 6452 1 2025-10-08 02:53:26.506 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35140 10 6452 1 2025-10-08 02:54:23.352 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 02:54:23.198 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 02:54:23.199 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:54:23.268 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 02:54:23.305 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 02:54:26.907 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:34596 10 6452 1 2025-10-08 02:55:27.329 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39826 10 6452 1 2025-10-08 02:51:40.964 00:05:00.323 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 02:51:40.961 00:05:00.328 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 02:56:27.731 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34062 10 6452 1 2025-10-08 02:57:28.105 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47386 10 6452 1 2025-10-08 02:58:28.506 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45122 10 6452 1 Summary: total flows: 140, total bytes: 420975, total packets: 1023, avg bps: 920, avg pps: 0, avg bpp: 411 Time window: 2025-10-08 01:57:40 - 2025-10-08 02:58:38 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0031s User: 0.0021s Wall: 0.0026s flows/second: 54155.0 Runtime: 0.0026s