Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-14 02:59:34.713 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:32824 10 6452 1 2025-10-14 03:00:35.102 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45902 10 6452 1 2025-10-14 03:01:35.521 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:44748 10 6452 1 2025-10-14 03:02:16.791 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 03:02:16.609 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 03:02:16.736 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 03:02:16.734 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 03:02:16.818 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 02:58:43.852 00:05:00.480 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 02:58:43.854 00:05:00.475 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 03:02:35.898 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33250 10 6452 1 2025-10-14 03:03:36.303 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47338 10 6452 1 2025-10-14 03:04:36.710 00:00:10.622 TCP 1.101.0.1:3000 -> 23.104.0.1:55988 10 6452 1 2025-10-14 03:05:37.371 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42032 10 6452 1 2025-10-14 03:06:37.764 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:37972 10 6452 1 2025-10-14 03:07:16.748 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 03:07:16.825 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 03:07:16.539 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 03:07:16.663 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 03:07:16.836 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 03:07:38.133 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60110 10 6452 1 2025-10-14 03:04:43.855 00:05:00.480 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 03:04:43.858 00:05:00.475 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 03:08:38.536 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:43196 10 6452 1 2025-10-14 03:09:38.909 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52308 10 6452 1 2025-10-14 03:10:39.313 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37800 10 6452 1 2025-10-14 03:11:39.709 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:33462 10 6452 1 2025-10-14 03:12:17.075 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 03:12:16.993 00:00:00.033 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 03:12:16.898 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 03:12:16.992 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 03:12:16.868 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 03:12:40.099 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52276 10 6452 1 2025-10-14 03:13:40.504 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43762 10 6452 1 2025-10-14 03:10:43.858 00:05:00.482 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 03:10:43.860 00:05:00.477 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 03:14:40.914 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48044 10 6452 1 2025-10-14 03:15:41.317 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36488 10 6452 1 2025-10-14 03:16:41.713 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49744 10 6452 1 2025-10-14 03:17:17.042 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 03:17:16.983 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 03:17:16.899 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 03:17:16.896 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 03:17:16.982 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 03:17:42.117 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47694 10 6452 1 2025-10-14 03:18:42.522 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:55456 10 6452 1 2025-10-14 03:19:42.884 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:52954 10 6452 1 2025-10-14 03:16:43.857 00:05:00.485 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 03:16:43.860 00:05:00.480 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 03:20:43.244 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37064 10 6452 1 2025-10-14 03:21:43.607 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:47702 10 6452 1 2025-10-14 03:22:17.104 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 03:22:16.694 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 03:22:16.967 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 03:22:17.063 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 03:22:17.050 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 03:22:43.966 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59232 10 6452 1 2025-10-14 03:23:44.368 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35786 10 6452 1 2025-10-14 03:24:44.771 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60960 10 6452 1 2025-10-14 03:25:45.185 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52620 10 6452 1 2025-10-14 03:22:43.861 00:05:00.480 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 03:22:43.859 00:05:00.485 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 03:26:45.585 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:42988 10 6452 1 2025-10-14 03:27:17.399 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 03:27:17.367 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 03:27:17.159 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 03:27:17.317 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 03:27:17.367 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 03:27:45.944 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45666 10 6452 1 2025-10-14 03:28:46.361 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36356 10 6452 1 2025-10-14 03:29:46.765 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:58436 10 6452 1 2025-10-14 03:30:47.181 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49092 10 6452 1 2025-10-14 03:31:47.595 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:42570 10 6452 1 2025-10-14 03:32:17.319 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 03:32:17.284 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 03:32:17.186 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 03:32:17.236 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 03:32:17.290 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 03:28:43.859 00:05:00.485 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 03:28:43.861 00:05:00.480 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 03:32:47.976 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:43052 10 6452 1 2025-10-14 03:33:48.389 00:00:11.085 TCP 1.101.0.1:3000 -> 23.104.0.1:59638 10 6452 1 2025-10-14 03:34:49.509 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46124 10 6452 1 2025-10-14 03:35:49.912 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50038 12 6556 1 2025-10-14 03:36:50.323 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46266 10 6452 1 2025-10-14 03:37:17.356 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 03:37:17.274 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 03:37:17.437 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 03:37:17.458 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 03:37:17.520 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 03:37:50.725 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52314 10 6452 1 2025-10-14 03:34:43.864 00:05:00.479 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 03:34:43.863 00:05:00.483 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 03:38:51.136 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43814 10 6452 1 2025-10-14 03:39:51.535 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:57384 10 6452 1 2025-10-14 03:40:51.889 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:55008 10 6452 1 2025-10-14 03:41:52.304 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:47274 10 6452 1 2025-10-14 03:42:17.551 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 03:42:17.467 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 03:42:17.475 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 03:42:17.229 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 03:42:17.287 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 03:42:52.666 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:49034 10 6452 1 2025-10-14 03:43:53.030 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34554 10 6452 1 2025-10-14 03:40:43.871 00:05:00.472 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 03:40:43.868 00:05:00.477 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 03:44:53.435 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56110 10 6452 1 2025-10-14 03:45:53.841 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:58826 10 6452 1 2025-10-14 03:46:54.266 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:33286 10 6452 1 2025-10-14 03:47:17.633 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 03:47:17.552 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 03:47:17.509 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 03:47:17.551 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 03:47:17.549 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 03:47:54.690 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49210 10 6452 1 2025-10-14 03:48:55.111 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:36316 10 6452 1 2025-10-14 03:49:55.527 00:00:10.697 TCP 1.101.0.1:3000 -> 23.104.0.1:54302 10 6452 1 2025-10-14 03:46:43.870 00:05:00.479 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 03:46:43.873 00:05:00.474 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 03:50:56.267 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40316 10 6452 1 2025-10-14 03:51:56.665 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44126 10 6452 1 2025-10-14 03:52:17.863 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 03:52:17.999 00:00:00.039 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 03:52:18.080 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 03:52:17.781 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 03:52:17.633 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 03:52:57.097 00:00:10.463 TCP 1.101.0.1:3000 -> 23.104.0.1:57070 10 6452 1 2025-10-14 03:53:57.607 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56502 10 6452 1 2025-10-14 03:54:58.011 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:47536 10 6452 1 2025-10-14 03:55:58.365 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43494 10 6452 1 2025-10-14 03:52:43.878 00:05:00.471 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-14 03:52:43.876 00:05:00.476 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-14 03:56:58.762 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40096 10 6452 1 2025-10-14 03:57:17.587 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 03:57:17.708 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 03:57:17.676 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 03:57:17.671 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 03:57:17.759 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 03:57:59.169 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35854 10 6452 1 Summary: total flows: 139, total bytes: 410652, total packets: 1012, avg bps: 921, avg pps: 0, avg bpp: 405 Time window: 2025-10-14 02:58:43 - 2025-10-14 03:58:09 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0038s User: 0.0010s Wall: 0.0017s flows/second: 79744.0 Runtime: 0.0018s