Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-13 05:58:48.312 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53132 10 6452 1 2025-10-13 05:54:43.470 00:06:00.467 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 05:59:48.713 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54036 10 6452 1 2025-10-13 06:00:49.133 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:34294 10 6452 1 2025-10-13 06:01:51.603 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 06:01:51.520 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 06:01:51.424 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:01:51.521 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:01:51.464 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 06:01:49.498 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:54644 10 6452 1 2025-10-13 06:02:49.911 00:00:10.618 TCP 1.101.0.1:3000 -> 23.104.0.1:45510 10 6452 1 2025-10-13 06:03:50.570 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:33612 10 6452 1 2025-10-13 06:04:50.969 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:54640 10 6452 1 2025-10-13 06:00:43.474 00:06:00.461 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 06:05:51.382 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33444 10 6452 1 2025-10-13 06:01:43.472 00:06:00.466 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 06:06:51.731 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:06:51.666 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 06:06:51.799 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 06:06:51.339 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:06:51.814 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 06:06:51.797 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59272 10 6452 1 2025-10-13 06:07:52.207 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35322 10 6452 1 2025-10-13 06:08:52.618 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35418 10 6452 1 2025-10-13 06:09:53.021 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47330 10 6452 1 2025-10-13 06:10:53.419 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60682 10 6452 1 2025-10-13 06:11:51.596 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 06:11:51.513 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 06:11:51.406 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:11:51.513 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:11:51.520 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 06:11:53.825 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40598 10 6452 1 2025-10-13 06:07:43.478 00:06:00.459 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 06:12:54.230 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51178 10 6452 1 2025-10-13 06:08:43.474 00:06:00.464 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 06:13:54.632 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53116 10 6452 1 2025-10-13 06:14:55.039 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51198 10 6452 1 2025-10-13 06:15:55.443 00:00:10.937 TCP 1.101.0.1:3000 -> 23.104.0.1:48112 10 6452 1 2025-10-13 06:16:51.787 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 06:16:51.535 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 06:16:51.573 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:16:51.704 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:16:51.538 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 06:16:56.419 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56446 10 6452 1 2025-10-13 06:17:56.821 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:53600 10 6452 1 2025-10-13 06:18:57.223 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60048 10 6452 1 2025-10-13 06:14:43.479 00:06:00.461 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 06:19:57.630 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46576 10 6452 1 2025-10-13 06:15:43.478 00:06:00.466 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 06:20:58.027 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:47356 10 6452 1 2025-10-13 06:21:52.212 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 06:21:51.822 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 06:21:52.051 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:21:52.129 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:21:52.037 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 06:21:58.428 00:00:10.411 TCP 1.101.0.1:3000 -> 23.104.0.1:33394 11 6504 1 2025-10-13 06:22:58.879 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:43704 10 6452 1 2025-10-13 06:23:59.242 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35896 10 6452 1 2025-10-13 06:24:59.652 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50602 10 6452 1 2025-10-13 06:26:00.066 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55742 10 6452 1 2025-10-13 06:21:43.481 00:06:00.461 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 06:26:51.773 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 06:26:51.707 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:26:51.774 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:26:51.668 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 06:26:51.857 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 06:27:00.471 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41006 10 6452 1 2025-10-13 06:22:43.478 00:06:00.466 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 06:28:00.876 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58918 10 6452 1 2025-10-13 06:29:01.283 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58342 10 6452 1 2025-10-13 06:30:01.686 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:60380 10 6452 1 2025-10-13 06:31:02.062 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35414 10 6452 1 2025-10-13 06:31:52.018 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 06:31:51.877 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 06:31:51.920 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:31:51.934 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:31:51.985 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 06:32:02.462 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:58334 10 6452 1 2025-10-13 06:33:02.847 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:44258 10 6452 1 2025-10-13 06:28:43.484 00:06:00.460 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 06:34:03.282 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:57738 10 6452 1 2025-10-13 06:29:43.482 00:06:00.465 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 06:35:03.767 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52262 10 6452 1 2025-10-13 06:36:04.178 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41582 10 6452 1 2025-10-13 06:36:51.766 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 06:36:51.916 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:36:52.058 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:36:52.070 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 06:36:52.140 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 06:37:04.582 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:40250 10 6452 1 2025-10-13 06:38:04.945 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:44066 10 6452 1 2025-10-13 06:39:05.370 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:41100 10 6452 1 2025-10-13 06:40:05.732 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50988 10 6452 1 2025-10-13 06:35:43.486 00:06:00.460 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 06:41:06.110 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35230 10 6452 1 2025-10-13 06:36:43.484 00:06:00.466 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 06:41:51.996 00:00:00.039 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 06:41:52.080 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:41:52.286 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:41:52.215 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 06:41:52.368 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 06:42:06.517 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:36562 10 6452 1 2025-10-13 06:43:06.883 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45796 10 6452 1 2025-10-13 06:44:07.288 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33030 10 6452 1 2025-10-13 06:45:07.690 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:52078 10 6452 1 2025-10-13 06:46:08.108 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:58658 12 10375 1 2025-10-13 06:46:52.251 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 06:46:52.317 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 06:46:52.240 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:46:52.169 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:46:52.265 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 06:47:08.547 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54680 10 6452 1 2025-10-13 06:42:43.487 00:06:00.461 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 06:48:08.909 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60270 10 6452 1 2025-10-13 06:43:43.484 00:06:00.466 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 06:49:09.316 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49194 10 6452 1 2025-10-13 06:50:09.722 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:35734 10 6452 1 2025-10-13 06:51:10.134 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43654 10 6452 1 2025-10-13 06:51:52.353 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 06:51:52.300 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:51:52.351 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:51:52.347 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 06:51:52.434 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 06:52:10.500 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48704 10 6452 1 2025-10-13 06:53:10.915 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57794 10 6452 1 2025-10-13 06:54:11.320 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:57604 10 6452 1 2025-10-13 06:49:43.489 00:06:00.461 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 06:55:11.743 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36294 10 6452 1 2025-10-13 06:50:43.486 00:06:00.466 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 06:56:12.157 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51962 10 6452 1 2025-10-13 06:56:52.458 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 06:56:52.375 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:56:52.511 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 06:56:52.510 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 06:56:52.344 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 06:57:12.517 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:39940 10 6452 1 2025-10-13 06:58:12.931 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:47302 10 6452 1 Summary: total flows: 137, total bytes: 420852, total packets: 1021, avg bps: 881, avg pps: 0, avg bpp: 412 Time window: 2025-10-13 05:54:43 - 2025-10-13 06:58:23 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0047s User: 0.0000s Wall: 0.0021s flows/second: 63988.8 Runtime: 0.0022s