Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-11 23:59:22.455 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55612 10 6452 1 2025-10-11 23:55:42.786 00:05:00.465 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 00:00:22.861 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:53764 10 6452 1 2025-10-12 00:01:15.261 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 00:01:15.181 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:01:15.180 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:01:15.234 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 00:01:15.176 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 00:01:23.292 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49404 10 6452 1 2025-10-12 00:02:23.696 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49772 10 6452 1 2025-10-12 00:03:24.108 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38738 10 6452 1 2025-10-12 00:04:24.507 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41256 10 6452 1 2025-10-12 00:00:42.791 00:05:00.458 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 00:05:24.901 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:42740 10 6452 1 2025-10-12 00:01:42.787 00:05:00.462 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 00:06:15.436 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 00:06:15.375 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 00:06:15.450 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:06:15.437 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:06:15.521 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 00:06:25.267 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:58428 10 6452 1 2025-10-12 00:07:25.624 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34590 10 6452 1 2025-10-12 00:08:25.994 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44584 10 6452 1 2025-10-12 00:09:26.402 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36920 10 6452 1 2025-10-12 00:10:26.813 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56302 10 6452 1 2025-10-12 00:06:42.792 00:05:00.457 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 00:11:15.368 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 00:11:15.565 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 00:11:15.231 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:11:15.289 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:11:15.370 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 00:11:27.219 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36394 10 6452 1 2025-10-12 00:07:42.789 00:05:00.461 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 00:12:27.627 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41908 10 6452 1 2025-10-12 00:13:28.027 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:32928 10 6452 1 2025-10-12 00:14:28.435 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54386 10 6452 1 2025-10-12 00:15:28.860 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:57676 10 6452 1 2025-10-12 00:16:15.770 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 00:16:15.675 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 00:16:15.835 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:16:15.683 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:16:15.765 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 00:16:29.282 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53950 10 6452 1 2025-10-12 00:12:42.794 00:05:00.458 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 00:17:29.690 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60542 10 6452 1 2025-10-12 00:13:42.792 00:05:00.463 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 00:18:30.058 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:43050 10 6452 1 2025-10-12 00:19:30.423 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49972 10 6452 1 2025-10-12 00:20:30.825 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52636 10 6452 1 2025-10-12 00:21:16.140 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 00:21:16.205 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 00:21:16.205 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 00:21:15.864 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:21:16.057 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:21:31.227 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57210 10 6452 1 2025-10-12 00:18:42.798 00:05:00.474 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 00:22:31.634 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45066 10 6452 1 2025-10-12 00:19:42.794 00:05:00.480 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 00:23:32.038 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:46242 10 6452 1 2025-10-12 00:24:32.406 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35868 10 6452 1 2025-10-12 00:25:32.812 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33054 10 6452 1 2025-10-12 00:26:15.855 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 00:26:15.721 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 00:26:15.467 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 00:26:15.700 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:26:15.773 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:26:33.213 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:51686 10 6452 1 2025-10-12 00:27:33.612 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57470 10 6452 1 2025-10-12 00:28:34.024 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47380 10 6452 1 2025-10-12 00:24:42.801 00:05:00.472 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 00:29:34.430 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50378 10 6452 1 2025-10-12 00:25:42.798 00:05:00.477 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 00:30:34.836 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:44462 10 6452 1 2025-10-12 00:31:15.915 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 00:31:15.978 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:31:15.719 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:31:15.910 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 00:31:15.801 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 00:31:35.211 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:46068 10 6452 1 2025-10-12 00:32:35.585 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49950 10 6452 1 2025-10-12 00:33:35.987 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:59532 10 6452 1 2025-10-12 00:30:42.801 00:05:00.472 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 00:34:36.359 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59408 10 6452 1 2025-10-12 00:31:42.799 00:05:00.479 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 00:35:36.763 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:59976 10 6452 1 2025-10-12 00:36:16.212 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 00:36:16.141 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 00:36:15.826 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 00:36:15.772 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:36:16.129 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:36:37.140 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52568 10 6452 1 2025-10-12 00:37:37.543 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52782 10 6452 1 2025-10-12 00:38:37.943 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:57278 10 6452 1 2025-10-12 00:39:38.331 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50358 10 6452 1 2025-10-12 00:36:42.802 00:05:00.476 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 00:40:38.735 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:41520 10 6452 1 2025-10-12 00:41:16.640 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 00:41:16.801 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 00:41:16.458 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:41:16.796 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:41:16.879 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 00:37:42.799 00:05:00.482 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 00:41:39.117 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43296 10 6452 1 2025-10-12 00:42:39.516 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41972 10 6452 1 2025-10-12 00:43:39.919 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36136 10 6452 1 2025-10-12 00:44:40.320 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46768 10 6452 1 2025-10-12 00:45:40.729 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36068 10 6452 1 2025-10-12 00:46:16.104 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 00:46:16.225 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 00:46:16.195 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:46:16.226 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:46:16.308 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 00:42:42.803 00:05:00.479 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 00:46:41.132 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43616 10 6452 1 2025-10-12 00:43:42.801 00:05:00.484 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 00:47:41.535 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58956 10 6452 1 2025-10-12 00:48:41.898 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:43780 10 6452 1 2025-10-12 00:49:42.274 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47618 10 6452 1 2025-10-12 00:50:42.640 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50910 10 6452 1 2025-10-12 00:51:16.194 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 00:51:16.285 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 00:51:15.903 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:51:16.281 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:51:16.363 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 00:51:43.036 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57432 10 6452 1 2025-10-12 00:48:42.806 00:05:00.477 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 00:52:43.440 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41516 12 6556 1 2025-10-12 00:49:42.804 00:05:00.482 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 00:53:43.842 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:47262 10 6452 1 2025-10-12 00:54:44.222 00:00:10.489 TCP 1.101.0.1:3000 -> 23.104.0.1:51094 10 6452 1 2025-10-12 00:55:44.747 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:41262 10 6452 1 2025-10-12 00:56:16.216 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 00:56:16.291 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 00:56:16.132 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:56:16.221 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:56:16.304 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 00:56:45.162 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46056 10 6452 1 2025-10-12 00:57:45.567 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56038 10 6452 1 2025-10-12 00:54:42.806 00:05:00.478 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 Summary: total flows: 139, total bytes: 410652, total packets: 1012, avg bps: 855, avg pps: 0, avg bpp: 405 Time window: 2025-10-11 23:55:42 - 2025-10-12 00:59:43 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0034s User: 0.0011s Wall: 0.0019s flows/second: 73658.7 Runtime: 0.0019s