Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-06 13:59:21.993 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45572 10 6452 1 2025-10-06 14:00:22.397 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48706 10 6452 1 2025-10-06 14:01:22.798 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52340 10 6452 1 2025-10-06 14:02:23.204 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:50196 10 6452 1 2025-10-06 14:03:23.568 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45070 10 6452 1 2025-10-06 14:03:38.798 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 14:03:38.693 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 14:03:38.687 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 14:03:38.947 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 14:03:39.031 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 14:04:23.978 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39138 10 6452 1 2025-10-06 13:59:40.095 00:06:00.403 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-06 14:05:24.382 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55400 10 6452 1 2025-10-06 14:00:40.097 00:06:00.397 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-06 14:06:24.790 00:00:10.740 TCP 1.101.0.1:3000 -> 23.104.0.1:58992 10 6452 1 2025-10-06 14:07:25.568 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38814 10 6452 1 2025-10-06 14:08:38.866 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 14:08:25.973 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58288 10 6452 1 2025-10-06 14:08:38.945 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 14:08:39.052 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 14:08:38.778 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 14:08:38.863 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 14:09:26.372 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:40018 10 6452 1 2025-10-06 14:10:26.738 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48454 12 6556 1 2025-10-06 14:11:27.152 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55476 10 6452 1 2025-10-06 14:06:40.095 00:06:00.402 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-06 14:12:27.558 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36816 10 6452 1 2025-10-06 14:07:40.100 00:06:00.397 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-06 14:13:39.234 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 14:13:39.307 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 14:13:39.077 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 14:13:39.232 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 14:13:27.961 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49282 10 6452 1 2025-10-06 14:13:39.316 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 14:14:28.375 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36868 10 6452 1 2025-10-06 14:15:28.774 00:00:10.943 TCP 1.101.0.1:3000 -> 23.104.0.1:54458 10 6452 1 2025-10-06 14:16:29.752 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:45230 10 6452 1 2025-10-06 14:17:30.155 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51540 10 6452 1 2025-10-06 14:18:39.324 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 14:18:38.953 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 14:18:39.156 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 14:18:39.360 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 14:18:30.558 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43902 10 6452 1 2025-10-06 14:18:39.240 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 14:13:40.098 00:06:00.406 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-06 14:14:40.099 00:06:00.402 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-06 14:19:30.966 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34298 10 6452 1 2025-10-06 14:20:31.372 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34110 10 6452 1 2025-10-06 14:21:31.776 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45396 10 6452 1 2025-10-06 14:22:32.190 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:36940 10 6452 1 2025-10-06 14:23:39.342 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 14:23:39.283 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 14:23:39.005 00:00:00.053 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 14:23:39.446 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 14:23:39.530 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 14:23:32.557 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39294 10 6452 1 2025-10-06 14:24:32.961 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58760 10 6452 1 2025-10-06 14:25:33.368 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42308 10 6452 1 2025-10-06 14:20:40.099 00:06:00.404 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-06 14:21:40.102 00:06:00.399 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-06 14:26:33.768 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40924 10 6452 1 2025-10-06 14:27:34.169 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45332 10 6452 1 2025-10-06 14:28:39.437 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 14:28:39.436 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 14:28:39.329 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 14:28:39.437 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 14:28:39.520 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 14:28:34.571 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59440 10 6452 1 2025-10-06 14:29:34.986 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53296 10 6452 1 2025-10-06 14:30:35.355 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40034 10 6452 1 2025-10-06 14:31:35.764 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:43570 10 6452 1 2025-10-06 14:27:40.101 00:06:00.404 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-06 14:32:36.184 00:00:10.432 TCP 1.101.0.1:3000 -> 23.104.0.1:55684 11 6504 1 2025-10-06 14:33:39.839 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 14:33:39.584 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 14:33:39.879 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 14:33:39.922 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 14:33:39.991 00:00:00.070 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 14:28:40.104 00:06:00.399 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-06 14:33:36.672 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46318 10 6452 1 2025-10-06 14:34:37.104 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:52908 10 6452 1 2025-10-06 14:35:37.529 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39946 10 6452 1 2025-10-06 14:36:37.938 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:52958 10 6452 1 2025-10-06 14:37:38.319 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44084 10 6452 1 2025-10-06 14:38:39.618 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 14:38:39.451 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 14:38:39.518 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 14:38:39.487 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 14:38:39.535 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 14:38:38.722 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41694 10 6452 1 2025-10-06 14:34:40.108 00:06:00.397 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-06 14:39:39.128 00:00:10.456 TCP 1.101.0.1:3000 -> 23.104.0.1:59338 12 10375 1 2025-10-06 14:35:40.111 00:06:00.393 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-06 14:40:39.619 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42614 10 6452 1 2025-10-06 14:41:40.020 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:55124 10 6452 1 2025-10-06 14:42:40.436 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43866 10 6452 1 2025-10-06 14:43:39.829 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 14:43:39.706 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 14:43:39.579 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 14:43:39.540 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 14:43:39.745 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 14:43:40.838 00:00:10.914 TCP 1.101.0.1:3000 -> 23.104.0.1:45142 10 6452 1 2025-10-06 14:44:41.791 00:00:10.711 TCP 1.101.0.1:3000 -> 23.104.0.1:55628 12 10375 1 2025-10-06 14:45:42.543 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47424 10 6452 1 2025-10-06 14:41:40.110 00:06:00.398 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-06 14:46:42.947 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48848 10 6452 1 2025-10-06 14:42:40.112 00:06:00.392 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-06 14:47:43.355 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54126 10 6452 1 2025-10-06 14:48:39.904 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 14:48:39.768 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 14:48:39.818 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 14:48:39.723 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 14:48:39.821 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 14:48:43.753 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:54636 10 6452 1 2025-10-06 14:49:44.167 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:51008 10 6452 1 2025-10-06 14:50:44.601 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33018 10 6452 1 2025-10-06 14:51:45.003 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:39920 10 6452 1 2025-10-06 14:52:45.376 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52794 10 6452 1 2025-10-06 14:53:39.969 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 14:53:39.792 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 14:53:39.778 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 14:53:39.873 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 14:53:39.957 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 14:48:40.111 00:06:00.397 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-06 14:53:45.774 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:33620 10 6452 1 2025-10-06 14:49:40.113 00:06:00.393 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-06 14:54:46.193 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38170 10 6452 1 2025-10-06 14:55:46.592 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48968 10 6452 1 2025-10-06 14:56:46.959 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48344 10 6452 1 2025-10-06 14:57:47.362 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36532 10 6452 1 2025-10-06 14:58:39.763 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 14:58:39.935 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 14:58:39.998 00:00:00.043 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 14:58:39.998 00:00:00.041 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 14:58:40.019 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 135, total bytes: 417566, total packets: 1001, avg bps: 938, avg pps: 0, avg bpp: 417 Time window: 2025-10-06 13:59:21 - 2025-10-06 14:58:40 Total flows processed: 135, passed: 135, Blocks skipped: 0, Bytes read: 14104 Sys: 0.0027s User: 0.0018s Wall: 0.0027s flows/second: 49617.2 Runtime: 0.0028s