Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-23 00:58:55.691 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41772 10 6452 1 2025-10-23 00:59:56.101 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53276 10 6452 1 2025-10-23 01:00:56.496 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43086 10 6452 1 2025-10-23 01:01:34.303 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 01:01:34.219 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 01:01:34.208 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 01:01:34.128 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 01:01:34.171 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 01:01:56.902 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51724 10 6452 1 2025-10-23 00:57:48.462 00:06:00.320 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 01:02:57.303 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48684 10 6452 1 2025-10-23 00:58:48.465 00:06:00.315 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 01:03:57.705 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:34704 10 6452 1 2025-10-23 01:04:58.108 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52308 10 6452 1 2025-10-23 01:05:58.510 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45670 10 6452 1 2025-10-23 01:06:34.340 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 01:06:34.317 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 01:06:34.250 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 01:06:34.257 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 01:06:34.254 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 01:06:58.914 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:55806 10 6452 1 2025-10-23 01:07:59.288 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33966 10 6452 1 2025-10-23 01:08:59.693 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46902 10 6452 1 2025-10-23 01:04:48.465 00:06:00.319 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 01:10:00.105 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53092 10 6452 1 2025-10-23 01:05:48.467 00:06:00.314 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 01:11:00.473 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52798 10 6452 1 2025-10-23 01:11:34.527 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 01:11:34.445 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 01:11:34.396 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 01:11:34.390 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 01:11:34.260 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 01:12:00.889 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:60428 12 6556 1 2025-10-23 01:13:01.313 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34170 10 6452 1 2025-10-23 01:14:01.680 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59440 10 6452 1 2025-10-23 01:15:02.113 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35534 10 6452 1 2025-10-23 01:16:02.517 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44400 10 6452 1 2025-10-23 01:16:34.983 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 01:16:34.586 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 01:16:34.749 00:00:00.040 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 01:16:35.010 00:00:00.045 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 01:16:34.830 00:00:00.041 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 01:11:48.467 00:06:00.319 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 01:17:02.934 00:00:10.749 TCP 1.101.0.1:3000 -> 23.104.0.1:51416 10 6452 1 2025-10-23 01:12:48.471 00:06:00.313 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 01:18:03.749 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42022 10 6452 1 2025-10-23 01:19:04.152 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46566 10 6452 1 2025-10-23 01:20:04.553 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46862 10 6452 1 2025-10-23 01:21:04.963 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56088 10 6452 1 2025-10-23 01:21:34.727 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 01:21:34.643 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 01:21:34.373 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 01:21:34.645 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 01:21:34.308 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 01:22:05.326 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53942 10 6452 1 2025-10-23 01:23:05.774 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54288 10 6452 1 2025-10-23 01:18:48.469 00:06:00.319 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 01:24:06.186 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:57838 10 6452 1 2025-10-23 01:19:48.473 00:06:00.314 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 01:25:06.546 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44568 10 6452 1 2025-10-23 01:26:06.956 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44946 10 6452 1 2025-10-23 01:26:34.776 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 01:26:34.675 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 01:26:34.720 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 01:26:34.640 00:00:00.038 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 01:26:34.803 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 01:27:07.370 00:00:10.907 TCP 1.101.0.1:3000 -> 23.104.0.1:36558 10 6452 1 2025-10-23 01:28:08.316 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:58286 10 6452 1 2025-10-23 01:29:08.681 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57050 10 6452 1 2025-10-23 01:30:09.111 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50672 10 6452 1 2025-10-23 01:25:48.470 00:06:00.321 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 01:31:09.467 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38248 10 6452 1 2025-10-23 01:31:34.840 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 01:31:34.842 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 01:31:34.654 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 01:31:34.757 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 01:31:34.763 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 01:26:48.472 00:06:00.316 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 01:32:09.878 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43604 10 6452 1 2025-10-23 01:33:10.278 00:00:10.461 TCP 1.101.0.1:3000 -> 23.104.0.1:35892 10 6452 1 2025-10-23 01:34:10.782 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:45262 10 6452 1 2025-10-23 01:35:11.147 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:33268 10 6452 1 2025-10-23 01:36:11.566 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44868 10 6452 1 2025-10-23 01:36:35.280 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 01:36:35.366 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 01:36:34.666 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 01:36:35.197 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 01:36:34.846 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 01:37:11.971 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57280 10 6452 1 2025-10-23 01:32:48.472 00:06:00.320 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 01:38:12.378 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41208 10 6452 1 2025-10-23 01:33:48.476 00:06:00.314 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 01:39:12.783 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36404 10 6452 1 2025-10-23 01:40:13.192 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42030 10 6452 1 2025-10-23 01:41:13.591 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58576 10 6452 1 2025-10-23 01:41:35.481 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 01:41:35.251 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 01:41:35.100 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 01:41:35.398 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 01:41:35.169 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 01:42:13.956 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34606 10 6452 1 2025-10-23 01:43:14.320 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56752 10 6452 1 2025-10-23 01:44:14.722 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37386 10 6452 1 2025-10-23 01:39:48.476 00:06:00.317 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 01:45:15.127 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59808 10 6452 1 2025-10-23 01:40:48.480 00:06:00.310 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 01:46:15.534 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39406 10 6452 1 2025-10-23 01:46:35.080 00:00:00.035 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 01:46:35.141 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 01:46:34.955 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 01:46:34.996 00:00:00.036 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 01:46:34.907 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 01:47:15.952 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:60648 10 6452 1 2025-10-23 01:48:16.327 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59260 10 6452 1 2025-10-23 01:49:16.726 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45756 10 6452 1 2025-10-23 01:50:17.143 00:00:10.415 TCP 1.101.0.1:3000 -> 23.104.0.1:60294 12 10375 1 2025-10-23 01:51:17.603 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51616 10 6452 1 2025-10-23 01:51:35.276 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 01:51:35.194 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 01:51:34.955 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 01:51:35.194 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 01:51:35.127 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 01:46:48.478 00:06:00.318 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 01:52:18.013 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53174 10 6452 1 2025-10-23 01:47:48.481 00:06:00.313 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 01:53:18.413 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:50166 10 6452 1 2025-10-23 01:54:18.774 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:45850 10 6452 1 2025-10-23 01:55:19.190 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:34248 10 6452 1 2025-10-23 01:56:19.554 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39794 10 6452 1 2025-10-23 01:56:35.172 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 01:56:35.115 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 01:56:35.089 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 01:56:35.195 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 01:56:35.184 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 01:57:19.958 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57640 10 6452 1 2025-10-23 01:58:20.368 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41940 10 6452 1 2025-10-23 01:53:48.479 00:06:00.318 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 Summary: total flows: 137, total bytes: 420904, total packets: 1022, avg bps: 905, avg pps: 0, avg bpp: 411 Time window: 2025-10-23 00:57:48 - 2025-10-23 01:59:48 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0038s User: 0.0008s Wall: 0.0031s flows/second: 43981.6 Runtime: 0.0031s