Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-23 05:58:59.522 00:00:10.892 TCP 1.101.0.1:3000 -> 23.104.0.1:58780 10 6452 1 2025-10-23 06:00:00.455 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:35990 10 6452 1 2025-10-23 06:01:00.864 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:59070 10 6452 1 2025-10-23 06:01:40.180 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 06:01:40.072 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 06:01:40.118 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 06:01:40.123 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 06:01:40.200 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 06:02:01.279 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:58046 10 6452 1 2025-10-23 06:03:01.640 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41284 10 6452 1 2025-10-23 05:58:48.553 00:06:00.327 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 06:04:02.056 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:33024 10 6452 1 2025-10-23 05:59:48.555 00:06:00.323 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 06:05:02.469 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43938 10 6452 1 2025-10-23 06:06:02.869 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39706 10 6452 1 2025-10-23 06:06:40.297 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 06:06:40.381 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 06:06:40.303 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 06:06:40.214 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 06:06:40.379 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 06:07:03.279 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:46538 10 6452 1 2025-10-23 06:08:03.679 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:54720 10 6452 1 2025-10-23 06:09:04.057 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53048 10 6452 1 2025-10-23 06:10:04.474 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33010 10 6452 1 2025-10-23 06:05:48.555 00:06:00.326 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 06:11:04.872 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:43248 10 6452 1 2025-10-23 06:11:40.417 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 06:11:40.460 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 06:11:40.416 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 06:11:40.293 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 06:11:40.500 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 06:06:48.560 00:06:00.319 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 06:12:05.240 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:48592 10 6452 1 2025-10-23 06:13:05.603 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57696 10 6452 1 2025-10-23 06:14:05.967 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35874 10 6452 1 2025-10-23 06:15:06.373 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37272 10 6452 1 2025-10-23 06:16:06.779 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57184 10 6452 1 2025-10-23 06:16:40.685 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 06:16:40.602 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 06:16:40.329 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 06:16:40.603 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 06:16:40.602 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 06:17:07.185 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44766 10 6452 1 2025-10-23 06:12:48.555 00:06:00.327 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 06:18:07.590 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:38776 10 6452 1 2025-10-23 06:13:48.562 00:06:00.319 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 06:19:08.003 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35480 10 6452 1 2025-10-23 06:20:08.369 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:36744 12 10375 1 2025-10-23 06:21:08.846 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:42934 10 6452 1 2025-10-23 06:21:40.698 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 06:21:40.527 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 06:21:40.371 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 06:21:40.615 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 06:21:40.536 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 06:22:09.268 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47554 10 6452 1 2025-10-23 06:23:09.675 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51150 10 6452 1 2025-10-23 06:24:10.113 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:41836 10 6452 1 2025-10-23 06:19:48.560 00:06:00.326 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 06:25:10.487 00:00:11.031 TCP 1.101.0.1:3000 -> 23.104.0.1:49888 10 6452 1 2025-10-23 06:20:48.563 00:06:00.321 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 06:26:11.565 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42740 10 6452 1 2025-10-23 06:26:40.770 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 06:26:40.686 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 06:26:40.713 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 06:26:40.688 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 06:26:40.753 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 06:27:11.968 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:59412 10 6452 1 2025-10-23 06:28:12.337 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59118 10 6452 1 2025-10-23 06:29:12.741 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:34850 10 6452 1 2025-10-23 06:30:13.115 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53972 10 6452 1 2025-10-23 06:31:13.512 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47598 10 6452 1 2025-10-23 06:31:40.939 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 06:31:40.835 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 06:31:40.917 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 06:31:40.987 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 06:31:41.097 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 06:26:48.562 00:06:00.327 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 06:32:13.914 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39660 10 6452 1 2025-10-23 06:27:48.564 00:06:00.322 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 06:33:14.315 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35894 10 6452 1 2025-10-23 06:34:14.718 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37594 10 6452 1 2025-10-23 06:35:15.108 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:41220 10 6452 1 2025-10-23 06:36:15.482 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45372 10 6452 1 2025-10-23 06:36:40.778 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 06:36:40.925 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 06:36:40.927 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 06:36:40.973 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 06:36:41.007 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 06:37:15.845 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:40444 10 6452 1 2025-10-23 06:38:16.268 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49336 10 6452 1 2025-10-23 06:33:48.563 00:06:00.326 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 06:39:16.678 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57782 10 6452 1 2025-10-23 06:34:48.565 00:06:00.321 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 06:40:17.108 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:32842 10 6452 1 2025-10-23 06:41:17.476 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44690 10 6452 1 2025-10-23 06:41:40.883 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 06:41:40.891 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 06:41:41.073 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 06:41:41.151 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 06:41:41.233 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 06:42:17.837 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:33280 10 6452 1 2025-10-23 06:43:18.260 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53032 10 6452 1 2025-10-23 06:44:18.669 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55860 10 6452 1 2025-10-23 06:45:19.106 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48618 12 6556 1 2025-10-23 06:40:48.566 00:06:00.329 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 06:46:19.514 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48112 10 6452 1 2025-10-23 06:46:40.928 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 06:46:40.965 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 06:46:41.198 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 06:46:41.116 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 06:46:41.056 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 06:41:48.568 00:06:00.323 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 06:47:19.925 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:59466 10 6452 1 2025-10-23 06:48:20.352 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34900 11 6504 1 2025-10-23 06:49:20.758 00:00:11.551 TCP 1.101.0.1:3000 -> 23.104.0.1:37558 10 6452 1 2025-10-23 06:50:22.342 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:44164 12 10375 1 2025-10-23 06:51:22.818 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:49244 10 6452 1 2025-10-23 06:51:41.184 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 06:51:41.240 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 06:51:41.254 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 06:51:41.102 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 06:51:41.237 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 06:52:23.183 00:00:11.043 TCP 1.101.0.1:3000 -> 23.104.0.1:56468 10 6452 1 2025-10-23 06:47:48.566 00:06:00.328 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-23 06:53:24.261 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49294 10 6452 1 2025-10-23 06:48:48.570 00:06:00.322 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-23 06:54:24.669 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:39118 10 6452 1 2025-10-23 06:55:25.110 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:49054 10 6452 1 2025-10-23 06:56:25.478 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47468 10 6452 1 2025-10-23 06:56:41.194 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-23 06:56:41.315 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-23 06:56:40.984 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 06:56:41.110 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-23 06:56:41.111 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-23 06:57:25.873 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34294 10 6452 1 2025-10-23 06:58:26.275 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47246 10 6452 1 Summary: total flows: 136, total bytes: 424018, total packets: 1011, avg bps: 945, avg pps: 0, avg bpp: 419 Time window: 2025-10-23 05:58:48 - 2025-10-23 06:58:36 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0110s User: 0.0055s Wall: 0.0022s flows/second: 62246.3 Runtime: 0.0022s