Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-12 00:58:45.972 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52518 10 6452 1 2025-10-12 00:55:42.806 00:05:00.480 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 00:59:46.379 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:41494 10 6452 1 2025-10-12 01:00:46.796 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54030 10 6452 1 2025-10-12 01:01:16.537 00:00:00.034 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 01:01:16.148 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 01:01:16.248 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 01:01:16.454 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 01:01:16.451 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 01:01:47.200 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42134 10 6452 1 2025-10-12 01:02:47.612 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48698 10 6452 1 2025-10-12 01:03:48.017 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:47128 10 6452 1 2025-10-12 01:00:42.810 00:05:00.476 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 01:04:48.423 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37912 10 6452 1 2025-10-12 01:01:42.808 00:05:00.481 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 01:05:48.822 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43626 10 6452 1 2025-10-12 01:06:16.579 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 01:06:16.640 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 01:06:16.209 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 01:06:16.676 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 01:06:16.758 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 01:06:49.232 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:38780 10 6452 1 2025-10-12 01:07:49.596 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38894 10 6452 1 2025-10-12 01:08:50.002 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:48390 10 6452 1 2025-10-12 01:09:50.403 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40672 10 6452 1 2025-10-12 01:06:42.811 00:05:00.476 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 01:10:50.803 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54744 10 6452 1 2025-10-12 01:11:16.921 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 01:11:16.979 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 01:11:16.914 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 01:11:16.970 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 01:11:16.997 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 01:07:42.809 00:05:00.481 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 01:11:51.201 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55978 10 6452 1 2025-10-12 01:12:51.602 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52314 10 6452 1 2025-10-12 01:13:52.021 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58744 10 6452 1 2025-10-12 01:14:52.424 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42416 10 6452 1 2025-10-12 01:15:52.827 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53826 10 6452 1 2025-10-12 01:16:16.892 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 01:16:16.809 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 01:16:16.621 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 01:16:16.828 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 01:16:16.809 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 01:12:42.811 00:05:00.476 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 01:16:53.232 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51536 10 6452 1 2025-10-12 01:13:42.809 00:05:00.481 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 01:17:53.643 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:56030 10 6452 1 2025-10-12 01:18:54.099 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38178 10 6452 1 2025-10-12 01:19:54.508 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49116 10 6452 1 2025-10-12 01:20:54.915 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:43458 12 10375 1 2025-10-12 01:21:16.883 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 01:21:16.844 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 01:21:16.707 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 01:21:16.810 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 01:21:16.801 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 01:21:55.365 00:00:10.598 TCP 1.101.0.1:3000 -> 23.104.0.1:35030 10 6452 1 2025-10-12 01:18:42.812 00:05:00.476 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 01:22:56.007 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:44584 10 6452 1 2025-10-12 01:19:42.811 00:05:00.480 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 01:23:56.402 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47456 10 6452 1 2025-10-12 01:24:56.807 00:00:10.621 TCP 1.101.0.1:3000 -> 23.104.0.1:37094 10 6452 1 2025-10-12 01:25:57.467 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44472 10 6452 1 2025-10-12 01:26:17.080 00:00:00.038 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 01:26:16.748 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 01:26:16.635 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 01:26:16.740 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 01:26:16.997 00:00:00.038 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 01:26:57.871 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42296 10 6452 1 2025-10-12 01:27:58.274 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:32960 10 6452 1 2025-10-12 01:24:42.814 00:05:00.475 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 01:28:58.636 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:42922 10 6452 1 2025-10-12 01:25:42.811 00:05:00.481 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 01:29:59.021 00:00:10.990 TCP 1.101.0.1:3000 -> 23.104.0.1:53930 10 6452 1 2025-10-12 01:31:00.054 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44712 10 6452 1 2025-10-12 01:31:17.139 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 01:31:16.833 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 01:31:16.971 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 01:31:16.984 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 01:31:17.068 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 01:32:00.462 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44288 10 6452 1 2025-10-12 01:33:00.865 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:53914 10 6452 1 2025-10-12 01:34:01.281 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48738 10 6452 1 2025-10-12 01:30:42.815 00:05:00.473 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 01:35:01.681 00:00:10.462 TCP 1.101.0.1:3000 -> 23.104.0.1:36448 10 6452 1 2025-10-12 01:31:42.813 00:05:00.478 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 01:36:02.183 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47604 10 6452 1 2025-10-12 01:36:17.237 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 01:36:17.088 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 01:36:17.135 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 01:36:17.237 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 01:36:17.320 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 01:37:02.583 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35514 10 6452 1 2025-10-12 01:38:02.985 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59604 10 6452 1 2025-10-12 01:39:03.394 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:44888 10 6452 1 2025-10-12 01:40:03.795 00:00:10.668 TCP 1.101.0.1:3000 -> 23.104.0.1:50604 10 6452 1 2025-10-12 01:36:42.817 00:05:00.473 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 01:41:04.498 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41928 10 6452 1 2025-10-12 01:41:17.305 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 01:41:17.173 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 01:41:17.221 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 01:41:17.381 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 01:41:17.303 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 01:37:42.819 00:05:00.476 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 01:42:04.900 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:52966 12 6556 1 2025-10-12 01:43:05.306 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:42760 10 6452 1 2025-10-12 01:44:05.674 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46238 10 6452 1 2025-10-12 01:45:06.034 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46538 10 6452 1 2025-10-12 01:46:17.458 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 01:46:17.400 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 01:46:17.103 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 01:46:17.400 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 01:46:06.439 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:41686 10 6452 1 2025-10-12 01:46:17.483 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 01:42:42.825 00:05:00.469 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 01:47:06.801 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:50232 10 6452 1 2025-10-12 01:43:42.821 00:05:00.475 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 01:48:07.181 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47746 10 6452 1 2025-10-12 01:49:07.581 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51382 10 6452 1 2025-10-12 01:50:07.989 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40230 10 6452 1 2025-10-12 01:51:17.434 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 01:51:08.406 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42598 10 6452 1 2025-10-12 01:51:17.258 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 01:51:17.355 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 01:51:17.304 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 01:51:17.351 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 01:52:08.811 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55320 10 6452 1 2025-10-12 01:48:42.825 00:05:00.468 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 01:53:09.215 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55804 10 6452 1 2025-10-12 01:49:42.822 00:05:00.474 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 01:54:09.613 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53702 10 6452 1 2025-10-12 01:55:10.022 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50814 10 6452 1 2025-10-12 01:56:17.897 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 01:56:18.120 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 01:56:17.811 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 01:56:17.402 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 01:56:17.813 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 01:56:10.385 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42020 10 6452 1 2025-10-12 01:57:10.789 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57442 10 6452 1 2025-10-12 01:58:11.162 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59822 10 6452 1 2025-10-12 01:54:42.825 00:05:00.469 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 Summary: total flows: 140, total bytes: 421027, total packets: 1024, avg bps: 877, avg pps: 0, avg bpp: 411 Time window: 2025-10-12 00:55:42 - 2025-10-12 01:59:43 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0047s User: 0.0008s Wall: 0.0019s flows/second: 72844.9 Runtime: 0.0019s