Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-11 17:58:41.228 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:55866 10 6452 1 2025-10-11 17:55:42.653 00:05:00.468 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-11 17:59:41.593 00:00:15.687 TCP 1.101.0.1:3000 -> 23.104.0.1:60736 10 6452 1 2025-10-11 18:00:47.320 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56890 10 6452 1 2025-10-11 18:01:08.152 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 18:01:08.066 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 18:01:08.101 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 18:01:07.935 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:01:08.070 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:01:47.726 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:49142 10 6452 1 2025-10-11 18:02:48.112 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53060 10 6452 1 2025-10-11 18:03:48.516 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45214 10 6452 1 2025-10-11 18:00:42.657 00:05:00.462 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-11 18:04:48.926 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:56288 10 6452 1 2025-10-11 18:01:42.654 00:05:00.468 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-11 18:05:49.347 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:43246 10 6452 1 2025-10-11 18:06:08.305 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 18:06:07.990 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:06:08.223 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:06:08.268 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 18:06:08.232 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 18:06:49.710 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41516 10 6452 1 2025-10-11 18:07:50.118 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56798 10 6452 1 2025-10-11 18:08:50.516 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52996 10 6452 1 2025-10-11 18:09:50.875 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39208 10 6452 1 2025-10-11 18:06:42.657 00:05:00.463 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-11 18:10:51.282 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35852 10 6452 1 2025-10-11 18:11:08.121 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:11:08.191 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 18:11:08.288 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 18:11:08.016 00:00:00.040 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:11:08.206 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 18:07:42.655 00:05:00.468 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-11 18:11:51.682 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41500 10 6452 1 2025-10-11 18:12:52.113 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:37700 10 6452 1 2025-10-11 18:13:52.532 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52858 10 6452 1 2025-10-11 18:14:52.938 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:58738 10 6452 1 2025-10-11 18:15:53.349 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:55390 12 10375 1 2025-10-11 18:16:08.472 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 18:16:08.347 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:16:08.066 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:16:08.067 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 18:16:08.149 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 18:12:42.659 00:05:00.462 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-11 18:16:53.786 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58564 10 6452 1 2025-10-11 18:13:42.656 00:05:00.468 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-11 18:17:54.195 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:59286 10 6452 1 2025-10-11 18:18:54.607 00:00:10.471 TCP 1.101.0.1:3000 -> 23.104.0.1:40296 10 6452 1 2025-10-11 18:19:55.119 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36486 10 6452 1 2025-10-11 18:21:08.585 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 18:21:08.348 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 18:21:08.184 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:20:55.518 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37840 10 6452 1 2025-10-11 18:21:08.460 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:21:08.543 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 18:21:55.926 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:33524 10 6452 1 2025-10-11 18:18:42.660 00:05:00.463 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-11 18:22:56.343 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:42190 11 6504 1 2025-10-11 18:19:42.659 00:05:00.467 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-11 18:23:56.769 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46030 10 6452 1 2025-10-11 18:24:57.180 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43324 10 6452 1 2025-10-11 18:26:08.587 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 18:26:08.635 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 18:26:08.386 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:26:08.539 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:25:57.581 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36676 10 6452 1 2025-10-11 18:26:08.623 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 18:26:57.988 00:00:10.427 TCP 1.101.0.1:3000 -> 23.104.0.1:42268 11 6504 1 2025-10-11 18:27:58.455 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42580 10 6452 1 2025-10-11 18:24:42.662 00:05:00.462 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-11 18:28:58.858 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:57826 10 6452 1 2025-10-11 18:25:42.659 00:05:00.466 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-11 18:29:59.278 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34910 10 6452 1 2025-10-11 18:31:09.477 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 18:31:09.396 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:31:09.390 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 18:31:09.390 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 18:31:09.047 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:30:59.682 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:44118 10 6452 1 2025-10-11 18:32:00.058 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:39106 10 6452 1 2025-10-11 18:33:00.422 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54874 10 6452 1 2025-10-11 18:34:00.824 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60952 10 6452 1 2025-10-11 18:30:42.662 00:05:00.463 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-11 18:35:01.226 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40806 10 6452 1 2025-10-11 18:31:42.661 00:05:00.468 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-11 18:36:08.721 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 18:36:08.662 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 18:36:08.580 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:36:08.720 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:36:08.802 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 18:36:01.640 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34160 10 6452 1 2025-10-11 18:37:02.040 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45382 10 6452 1 2025-10-11 18:38:02.444 00:00:10.575 TCP 1.101.0.1:3000 -> 23.104.0.1:33258 10 6452 1 2025-10-11 18:39:03.062 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48476 10 6452 1 2025-10-11 18:40:03.471 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36914 10 6452 1 2025-10-11 18:36:42.665 00:05:00.462 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-11 18:41:08.623 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 18:41:08.793 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 18:41:08.544 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:41:08.712 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:41:08.795 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 18:41:03.881 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55002 10 6452 1 2025-10-11 18:37:42.664 00:05:00.465 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-11 18:42:04.280 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41384 10 6452 1 2025-10-11 18:43:04.686 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46188 10 6452 1 2025-10-11 18:44:05.106 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:32782 10 6452 1 2025-10-11 18:45:05.463 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58170 10 6452 1 2025-10-11 18:46:08.827 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 18:46:08.914 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:46:08.908 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:46:08.836 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 18:46:08.989 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 18:46:05.867 00:00:10.406 TCP 1.101.0.1:3000 -> 23.104.0.1:40940 12 10369 1 2025-10-11 18:42:42.666 00:05:00.462 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-11 18:47:06.312 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47264 10 6452 1 2025-10-11 18:43:42.665 00:05:00.467 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-11 18:48:06.716 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:40522 10 6452 1 2025-10-11 18:49:07.140 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45124 10 6452 1 2025-10-11 18:50:07.547 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45264 10 6452 1 2025-10-11 18:51:09.209 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 18:51:09.225 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 18:51:08.910 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:51:09.219 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:51:09.302 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 18:51:07.955 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:32784 10 6452 1 2025-10-11 18:52:08.321 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45610 10 6452 1 2025-10-11 18:48:42.670 00:05:00.462 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-11 18:53:08.689 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52174 10 6452 1 2025-10-11 18:49:42.666 00:05:00.468 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-11 18:54:09.111 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44356 10 6452 1 2025-10-11 18:55:09.516 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:56286 10 6452 1 2025-10-11 18:56:09.251 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 18:56:09.109 00:00:00.029 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 18:56:09.184 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:56:09.253 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:56:09.335 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 18:56:09.884 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38366 10 6452 1 2025-10-11 18:57:10.287 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35662 10 6452 1 2025-10-11 18:58:10.696 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57036 10 6452 1 2025-10-11 18:54:42.673 00:05:00.459 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 Summary: total flows: 140, total bytes: 424944, total packets: 1026, avg bps: 885, avg pps: 0, avg bpp: 414 Time window: 2025-10-11 17:55:42 - 2025-10-11 18:59:43 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0031s User: 0.0019s Wall: 0.0040s flows/second: 35105.1 Runtime: 0.0040s