Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-26 04:59:07.754 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:49562 10 6452 1 2025-10-26 05:00:08.177 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41254 10 6452 1 2025-10-26 04:56:50.209 00:04:00.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-26 04:56:50.210 00:04:00.221 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-26 05:01:08.578 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55940 10 6452 1 2025-10-26 05:02:08.978 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:55536 10 6452 1 2025-10-26 05:03:06.178 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 05:03:05.924 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 05:03:05.756 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 05:03:05.933 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 05:03:06.096 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 05:03:09.346 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34398 10 6452 1 2025-10-26 05:04:09.753 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:54628 10 6452 1 2025-10-26 05:05:10.178 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45560 10 6452 1 2025-10-26 05:01:50.211 00:04:00.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-26 05:01:50.208 00:04:00.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-26 05:06:10.584 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53492 10 6452 1 2025-10-26 05:07:10.989 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50338 10 6452 1 2025-10-26 05:06:50.209 00:01:00.227 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-26 05:08:05.933 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 05:08:05.980 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 05:08:05.996 00:00:00.043 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 05:08:06.034 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 05:08:06.079 00:00:00.042 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 05:08:11.402 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54894 10 6452 1 2025-10-26 05:09:11.800 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53988 10 6452 1 2025-10-26 05:10:12.204 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:48102 10 6452 1 2025-10-26 05:06:50.214 00:04:00.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-26 05:08:50.222 00:02:00.216 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-26 05:11:12.603 00:00:10.473 TCP 1.101.0.1:3000 -> 23.104.0.1:39236 14 14298 1 2025-10-26 05:12:13.117 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50406 10 6452 1 2025-10-26 05:11:50.221 00:01:00.217 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-26 05:13:06.191 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 05:13:06.260 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 05:13:06.233 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 05:13:06.103 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 05:13:06.111 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 05:13:13.520 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51876 10 6452 1 2025-10-26 05:14:13.927 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:46874 12 6556 1 2025-10-26 05:15:14.349 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:46872 10 6452 1 2025-10-26 05:11:50.225 00:04:00.212 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-26 05:16:14.708 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:49084 12 10369 1 2025-10-26 05:17:15.187 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42606 10 6452 1 2025-10-26 05:13:50.222 00:04:00.217 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-26 05:18:06.359 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 05:18:06.424 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 05:18:06.515 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 05:18:06.522 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 05:18:06.595 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 05:18:15.586 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:40860 10 6452 1 2025-10-26 05:19:15.952 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:34482 10 6452 1 2025-10-26 05:20:16.319 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42770 10 6452 1 2025-10-26 05:16:50.224 00:04:00.212 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-26 05:21:16.722 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58054 10 6452 1 2025-10-26 05:22:17.125 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35882 10 6452 1 2025-10-26 05:18:50.222 00:04:00.217 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-26 05:23:06.410 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 05:23:06.539 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 05:23:06.425 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 05:23:06.420 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 05:23:06.507 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 05:23:17.540 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35812 10 6452 1 2025-10-26 05:24:17.944 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53206 10 6452 1 2025-10-26 05:25:18.356 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36328 10 6452 1 2025-10-26 05:21:50.226 00:04:00.212 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-26 05:26:18.758 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36290 10 6452 1 2025-10-26 05:27:19.176 00:00:11.261 TCP 1.101.0.1:3000 -> 23.104.0.1:48870 10 6452 1 2025-10-26 05:26:50.228 00:01:00.210 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-26 05:23:50.226 00:04:00.216 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-26 05:28:06.721 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 05:28:06.580 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 05:28:06.435 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 05:28:06.638 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 05:28:06.579 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 05:28:20.486 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:58470 10 6452 1 2025-10-26 05:29:20.845 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:58646 10 6452 1 2025-10-26 05:30:21.273 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49688 10 6452 1 2025-10-26 05:28:50.228 00:02:00.210 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-26 05:31:21.677 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35926 10 6452 1 2025-10-26 05:32:22.109 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47638 10 6452 1 2025-10-26 05:28:50.225 00:04:00.216 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-26 05:31:50.231 00:01:00.208 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-26 05:33:06.681 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 05:33:06.603 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 05:33:06.545 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 05:33:06.598 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 05:33:06.596 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 05:33:22.520 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37692 10 6452 1 2025-10-26 05:34:22.921 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45986 10 6452 1 2025-10-26 05:35:23.320 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:40722 10 6452 1 2025-10-26 05:36:23.780 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:32836 10 6452 1 2025-10-26 05:37:24.183 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:41302 10 6452 1 2025-10-26 05:33:50.230 00:04:00.214 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-26 05:33:50.232 00:04:00.209 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-26 05:38:06.792 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 05:38:06.700 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 05:38:06.567 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 05:38:06.710 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 05:38:06.617 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 05:38:24.595 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57854 10 6452 1 2025-10-26 05:39:25.003 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53430 10 6452 1 2025-10-26 05:40:25.413 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39668 10 6452 1 2025-10-26 05:41:25.823 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58952 10 6452 1 2025-10-26 05:42:26.187 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:52780 10 6452 1 2025-10-26 05:38:50.234 00:04:00.211 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-26 05:38:50.237 00:04:00.205 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-26 05:43:06.948 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 05:43:06.792 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 05:43:06.911 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 05:43:06.866 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 05:43:06.939 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 05:43:26.550 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41372 10 6452 1 2025-10-26 05:44:26.958 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47238 10 6452 1 2025-10-26 05:43:50.237 00:01:00.208 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-26 05:45:27.368 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47920 10 6452 1 2025-10-26 05:46:27.769 00:00:11.050 TCP 1.101.0.1:3000 -> 23.104.0.1:58070 13 10427 1 2025-10-26 05:47:28.858 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:46738 10 6452 1 2025-10-26 05:43:50.240 00:04:00.203 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-26 05:48:06.930 00:00:00.020 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 05:48:06.869 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 05:48:06.748 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 05:48:07.051 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 05:48:06.832 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 05:48:29.277 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44330 10 6452 1 2025-10-26 05:49:29.690 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59590 10 6452 1 2025-10-26 05:45:50.238 00:04:00.209 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-26 05:50:30.111 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40416 10 6452 1 2025-10-26 05:51:30.515 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34884 10 6452 1 2025-10-26 05:52:30.920 00:00:18.099 TCP 1.101.0.1:3000 -> 23.104.0.1:41496 10 6452 1 2025-10-26 05:48:50.245 00:04:00.201 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-26 05:53:07.080 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 05:53:06.989 00:00:00.033 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 05:53:06.933 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 05:53:06.997 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 05:53:06.993 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 05:53:39.064 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39456 10 6452 1 2025-10-26 05:50:50.239 00:04:00.209 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-26 05:54:39.469 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:49170 10 6452 1 2025-10-26 05:55:39.834 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:42164 10 6452 1 2025-10-26 05:56:40.256 00:00:10.853 TCP 1.101.0.1:3000 -> 23.104.0.1:55804 10 6452 1 2025-10-26 05:53:50.242 00:04:00.203 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-26 05:57:41.143 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55834 10 6452 1 2025-10-26 05:58:07.039 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 05:58:06.888 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 05:58:07.060 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 05:58:06.956 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 05:58:07.145 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 147, total bytes: 426513, total packets: 1023, avg bps: 927, avg pps: 0, avg bpp: 416 Time window: 2025-10-26 04:56:50 - 2025-10-26 05:58:07 Total flows processed: 147, passed: 147, Blocks skipped: 0, Bytes read: 15352 Sys: 0.0031s User: 0.0021s Wall: 0.0022s flows/second: 67487.2 Runtime: 0.0022s