Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-31 03:59:39.366 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56930 10 6452 1 2025-10-31 04:00:29.244 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 04:00:28.922 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 04:00:28.980 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 04:00:29.162 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 04:00:29.214 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 04:00:39.771 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54886 10 6452 1 2025-10-31 04:01:40.186 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:43256 12 6556 1 2025-10-31 04:02:40.594 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60710 10 6452 1 2025-10-31 03:59:52.645 00:05:00.427 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 04:03:40.959 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42630 10 6452 1 2025-10-31 03:59:52.648 00:05:00.423 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 04:04:41.372 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46106 10 6452 1 2025-10-31 04:05:29.160 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 04:05:29.101 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 04:05:29.160 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 04:05:29.035 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 04:05:29.243 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 04:05:41.779 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57058 10 6452 1 2025-10-31 04:06:42.189 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:39120 10 6452 1 2025-10-31 04:07:42.613 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35408 10 6452 1 2025-10-31 04:08:43.021 00:00:11.180 TCP 1.101.0.1:3000 -> 23.104.0.1:44324 10 6452 1 2025-10-31 04:05:52.651 00:05:00.424 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 04:05:52.653 00:05:00.419 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 04:09:44.243 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58682 10 6452 1 2025-10-31 04:10:29.277 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 04:10:29.234 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 04:10:29.190 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 04:10:29.192 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 04:10:29.273 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 04:10:44.648 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:44878 10 6452 1 2025-10-31 04:11:45.064 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33236 10 6452 1 2025-10-31 04:12:45.472 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:60598 10 6452 1 2025-10-31 04:13:45.842 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:50956 10 6452 1 2025-10-31 04:14:46.269 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52670 10 6452 1 2025-10-31 04:15:29.610 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 04:15:29.479 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 04:15:29.619 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 04:15:29.526 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 04:15:29.405 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 04:11:52.653 00:05:00.424 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 04:11:52.656 00:05:00.419 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 04:15:46.671 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35304 10 6452 1 2025-10-31 04:16:47.099 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53268 10 6452 1 2025-10-31 04:17:47.465 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44202 10 6452 1 2025-10-31 04:18:47.868 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48844 10 6452 1 2025-10-31 04:19:48.274 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55228 10 6452 1 2025-10-31 04:20:29.787 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 04:20:29.342 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 04:20:29.539 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 04:20:29.702 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 04:20:29.779 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 04:20:48.675 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41168 10 6452 1 2025-10-31 04:17:52.662 00:05:00.420 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 04:17:52.659 00:05:00.425 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 04:21:49.050 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46762 10 6452 1 2025-10-31 04:22:49.460 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51246 10 6452 1 2025-10-31 04:23:49.857 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:53632 10 6452 1 2025-10-31 04:24:50.274 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:48246 10 6452 1 2025-10-31 04:25:29.594 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 04:25:29.434 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 04:25:29.700 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 04:25:29.697 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 04:25:29.783 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 04:25:50.643 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:38546 10 6452 1 2025-10-31 04:26:51.039 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53970 10 6452 1 2025-10-31 04:23:52.660 00:05:00.425 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 04:23:52.663 00:05:00.420 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 04:27:51.444 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55552 10 6452 1 2025-10-31 04:28:51.843 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:56672 10 6452 1 2025-10-31 04:29:52.273 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51306 10 6452 1 2025-10-31 04:30:29.810 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 04:30:29.727 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 04:30:29.729 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 04:30:29.725 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 04:30:29.500 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 04:30:52.677 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34138 10 6452 1 2025-10-31 04:31:53.111 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:45222 10 6452 1 2025-10-31 04:32:53.487 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34954 10 6452 1 2025-10-31 04:29:52.667 00:05:00.419 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 04:29:52.664 00:05:00.425 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 04:33:53.849 00:00:11.120 TCP 1.101.0.1:3000 -> 23.104.0.1:40544 10 6452 1 2025-10-31 04:34:55.009 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55710 10 6452 1 2025-10-31 04:35:29.989 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 04:35:29.876 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 04:35:29.980 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 04:35:29.918 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 04:35:30.064 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 04:35:55.417 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41604 10 6452 1 2025-10-31 04:36:55.823 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39350 10 6452 1 2025-10-31 04:37:56.224 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:32908 10 6452 1 2025-10-31 04:38:56.586 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42456 10 6452 1 2025-10-31 04:35:52.670 00:05:00.417 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 04:35:52.668 00:05:00.422 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 04:39:56.989 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46930 10 6452 1 2025-10-31 04:40:29.856 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 04:40:29.784 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 04:40:29.864 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 04:40:29.865 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 04:40:29.948 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 04:40:57.404 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55192 10 6452 1 2025-10-31 04:41:57.808 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:34432 10 6452 1 2025-10-31 04:42:58.198 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53444 10 6452 1 2025-10-31 04:43:58.603 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:34322 10 6452 1 2025-10-31 04:44:59.000 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44294 10 6452 1 2025-10-31 04:45:30.127 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 04:45:30.135 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 04:45:29.949 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 04:45:30.044 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 04:45:30.136 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 04:41:52.671 00:05:00.420 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 04:41:52.674 00:05:00.415 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 04:45:59.364 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35070 10 6452 1 2025-10-31 04:46:59.765 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:44422 10 6452 1 2025-10-31 04:48:00.182 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56654 10 6452 1 2025-10-31 04:49:00.585 00:00:10.529 TCP 1.101.0.1:3000 -> 23.104.0.1:57306 10 6452 1 2025-10-31 04:50:01.148 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:47432 10 6452 1 2025-10-31 04:50:30.331 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 04:50:30.227 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 04:50:30.261 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 04:50:30.162 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 04:50:30.343 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 04:51:01.561 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45710 10 6452 1 2025-10-31 04:47:52.672 00:05:00.421 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 04:47:52.675 00:05:00.416 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 04:52:01.965 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:59368 10 6452 1 2025-10-31 04:53:02.378 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51342 10 6452 1 2025-10-31 04:54:02.790 00:00:10.408 TCP 1.101.0.1:3000 -> 23.104.0.1:42692 12 10375 1 2025-10-31 04:55:03.224 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:39026 10 6452 1 2025-10-31 04:55:30.377 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-31 04:55:30.120 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-31 04:55:30.204 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 04:55:30.295 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-31 04:55:30.290 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-31 04:56:03.597 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46730 10 6452 1 2025-10-31 04:57:04.009 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:50236 10 6452 1 2025-10-31 04:53:52.676 00:05:00.416 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-31 04:53:52.674 00:05:00.421 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-31 04:58:04.428 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:50084 10 6452 1 Summary: total flows: 139, total bytes: 414575, total packets: 1014, avg bps: 933, avg pps: 0, avg bpp: 408 Time window: 2025-10-31 03:59:39 - 2025-10-31 04:58:53 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0049s User: 0.0010s Wall: 0.0018s flows/second: 77301.5 Runtime: 0.0018s