Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-13 04:59:19.887 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:50596 10 6452 1 2025-10-13 05:00:20.308 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:39574 10 6452 1 2025-10-13 05:01:20.689 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36434 10 6452 1 2025-10-13 05:01:51.143 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 05:01:50.878 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 05:01:51.093 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:01:51.060 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:01:51.070 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 05:02:21.115 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57946 10 6452 1 2025-10-13 04:57:43.458 00:06:00.462 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 05:03:21.526 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58174 10 6452 1 2025-10-13 04:58:43.457 00:06:00.467 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 05:04:21.939 00:00:10.967 TCP 1.101.0.1:3000 -> 23.104.0.1:54932 10 6452 1 2025-10-13 05:05:22.938 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46242 10 6452 1 2025-10-13 05:06:23.352 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35422 10 6452 1 2025-10-13 05:06:50.330 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 05:06:50.008 00:00:00.046 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 05:06:50.297 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:06:50.248 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:06:50.322 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 05:07:23.720 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:55406 10 6452 1 2025-10-13 05:08:24.148 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50402 10 6452 1 2025-10-13 05:09:24.550 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45492 10 6452 1 2025-10-13 05:04:43.460 00:06:00.463 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 05:10:24.951 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49104 10 6452 1 2025-10-13 05:05:43.457 00:06:00.468 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 05:11:25.360 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60714 10 6452 1 2025-10-13 05:11:50.466 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 05:11:50.373 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:11:50.522 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:11:50.468 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 05:11:50.604 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 05:12:25.725 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50096 10 6452 1 2025-10-13 05:13:26.139 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39420 10 6452 1 2025-10-13 05:14:26.547 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35288 10 6452 1 2025-10-13 05:15:26.946 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:56838 10 6452 1 2025-10-13 05:16:27.369 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:56100 12 10375 1 2025-10-13 05:11:43.460 00:06:00.463 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 05:16:50.516 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 05:16:50.318 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:16:50.281 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:16:50.439 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 05:16:50.364 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 05:17:27.808 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:59426 10 6452 1 2025-10-13 05:12:43.458 00:06:00.469 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 05:18:28.192 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40866 10 6452 1 2025-10-13 05:19:28.596 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59656 10 6452 1 2025-10-13 05:20:28.997 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50572 10 6452 1 2025-10-13 05:21:29.403 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44080 10 6452 1 2025-10-13 05:21:50.880 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 05:21:50.736 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 05:21:50.628 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:21:50.798 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:21:50.800 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 05:22:29.809 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:54480 10 6452 1 2025-10-13 05:23:30.187 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:51870 10 6452 1 2025-10-13 05:18:43.461 00:06:00.465 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 05:24:30.595 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:53872 10 6452 1 2025-10-13 05:19:43.459 00:06:00.470 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 05:25:30.962 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38890 10 6452 1 2025-10-13 05:26:31.364 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57872 10 6452 1 2025-10-13 05:26:50.708 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 05:26:50.592 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:26:50.707 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:26:50.706 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 05:26:50.789 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 05:27:31.728 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:47820 10 6452 1 2025-10-13 05:28:32.108 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:59244 10 6452 1 2025-10-13 05:29:32.506 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33864 10 6452 1 2025-10-13 05:30:32.910 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53732 10 6452 1 2025-10-13 05:25:43.462 00:06:00.466 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 05:26:43.459 00:06:00.472 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 05:31:33.318 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:53802 10 6452 1 2025-10-13 05:31:50.555 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 05:31:50.616 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:31:50.742 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:31:50.749 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 05:31:50.826 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 05:32:33.686 00:00:10.816 TCP 1.101.0.1:3000 -> 23.104.0.1:55184 10 6452 1 2025-10-13 05:33:34.541 00:00:14.000 TCP 1.101.0.1:3000 -> 23.104.0.1:42658 10 6452 1 2025-10-13 05:34:38.582 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58064 10 6452 1 2025-10-13 05:35:38.982 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52794 10 6452 1 2025-10-13 05:36:50.781 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 05:36:50.782 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 05:36:50.782 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:36:50.698 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:36:50.700 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 05:36:39.393 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34470 10 6452 1 2025-10-13 05:32:43.463 00:06:00.468 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 05:37:39.795 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43478 10 6452 1 2025-10-13 05:33:43.465 00:06:00.469 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 05:38:40.195 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43392 10 6452 1 2025-10-13 05:39:40.599 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36976 10 6452 1 2025-10-13 05:40:41.002 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:55636 10 6452 1 2025-10-13 05:41:50.711 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 05:41:50.859 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 05:41:50.950 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:41:50.628 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:41:51.049 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 05:41:41.407 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:48084 10 6452 1 2025-10-13 05:42:41.774 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48502 10 6452 1 2025-10-13 05:43:42.179 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35000 10 6452 1 2025-10-13 05:39:43.469 00:06:00.464 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 05:44:42.583 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56498 10 6452 1 2025-10-13 05:40:43.467 00:06:00.468 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 05:45:42.989 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33396 10 6452 1 2025-10-13 05:46:50.952 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:46:51.007 00:00:00.043 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 05:46:51.182 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:46:51.181 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 05:46:43.355 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49894 10 6452 1 2025-10-13 05:46:51.264 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 05:47:43.758 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:39882 10 6452 1 2025-10-13 05:48:44.135 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57252 10 6452 1 2025-10-13 05:49:44.542 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39526 10 6452 1 2025-10-13 05:50:44.943 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:55026 10 6452 1 2025-10-13 05:46:43.471 00:06:00.463 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 05:51:51.137 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 05:51:50.968 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:51:45.373 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:43772 12 10369 1 2025-10-13 05:51:51.230 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 05:51:51.055 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:51:51.233 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 05:47:43.468 00:06:00.468 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 05:52:45.853 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:48516 10 6452 1 2025-10-13 05:53:46.280 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39814 10 6452 1 2025-10-13 05:54:46.679 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:32960 10 6452 1 2025-10-13 05:55:47.095 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48214 10 6452 1 2025-10-13 05:56:50.856 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:56:51.364 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 05:56:51.281 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 05:56:51.184 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 05:56:51.181 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 05:56:47.505 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60300 10 6452 1 2025-10-13 05:57:47.909 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54758 10 6452 1 2025-10-13 05:53:43.473 00:06:00.462 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 Summary: total flows: 136, total bytes: 418265, total packets: 1012, avg bps: 899, avg pps: 0, avg bpp: 413 Time window: 2025-10-13 04:57:43 - 2025-10-13 05:59:43 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0061s User: 0.0000s Wall: 0.0013s flows/second: 108631.8 Runtime: 0.0013s