Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-12 01:59:11.577 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43010 10 6452 1 2025-10-12 01:55:42.823 00:05:00.474 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 02:00:11.941 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43854 10 6452 1 2025-10-12 02:01:17.635 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 02:01:17.629 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 02:01:17.569 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:01:17.553 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:01:17.554 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 02:01:12.345 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56474 10 6452 1 2025-10-12 02:02:12.751 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:54462 10 6452 1 2025-10-12 02:03:13.114 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52080 10 6452 1 2025-10-12 02:04:13.476 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53186 10 6452 1 2025-10-12 02:00:42.828 00:05:00.468 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 02:05:13.877 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48106 10 6452 1 2025-10-12 02:01:42.825 00:05:00.473 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 02:06:17.812 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 02:06:17.777 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 02:06:17.769 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 02:06:17.505 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:06:17.729 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:06:14.244 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50834 10 6452 1 2025-10-12 02:07:14.650 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38116 10 6452 1 2025-10-12 02:08:15.067 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37786 10 6452 1 2025-10-12 02:09:15.474 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45642 10 6452 1 2025-10-12 02:10:15.877 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:51622 10 6452 1 2025-10-12 02:06:42.828 00:05:00.469 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 02:11:18.543 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 02:11:18.461 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:11:18.807 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 02:11:18.626 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 02:11:18.406 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:11:16.250 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36754 10 6452 1 2025-10-12 02:07:42.825 00:05:00.475 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 02:12:16.615 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58858 10 6452 1 2025-10-12 02:13:17.020 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:41958 10 6452 1 2025-10-12 02:14:17.410 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37188 10 6452 1 2025-10-12 02:15:17.819 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59030 10 6452 1 2025-10-12 02:16:18.140 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 02:16:17.786 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 02:16:17.872 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 02:16:17.680 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:16:18.057 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:16:18.227 00:00:10.456 TCP 1.101.0.1:3000 -> 23.104.0.1:50884 12 10369 1 2025-10-12 02:12:42.829 00:05:00.469 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 02:17:18.721 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:52846 10 6452 1 2025-10-12 02:13:42.827 00:05:00.475 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 02:18:19.117 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47238 10 6452 1 2025-10-12 02:19:19.517 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34130 10 6452 1 2025-10-12 02:20:19.915 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51542 10 6452 1 2025-10-12 02:21:17.919 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 02:21:17.921 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 02:21:17.769 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:21:18.402 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:21:18.484 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 02:21:20.318 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39086 10 6452 1 2025-10-12 02:22:20.727 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:52088 10 6452 1 2025-10-12 02:18:42.830 00:05:00.470 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 02:23:21.116 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:37672 10 6452 1 2025-10-12 02:19:42.828 00:05:00.475 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 02:24:21.496 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51598 10 6452 1 2025-10-12 02:25:21.865 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:53866 10 6452 1 2025-10-12 02:26:17.988 00:00:00.047 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 02:26:17.903 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 02:26:17.962 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:26:18.001 00:00:00.038 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:26:18.083 00:00:00.039 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 02:26:22.280 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53810 10 6452 1 2025-10-12 02:27:22.687 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:39178 10 6452 1 2025-10-12 02:28:23.092 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34664 10 6452 1 2025-10-12 02:24:42.832 00:05:00.472 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 02:29:23.493 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49168 10 6452 1 2025-10-12 02:25:42.830 00:05:00.478 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 02:30:23.898 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:51142 10 6452 1 2025-10-12 02:31:18.330 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 02:31:18.419 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:31:18.454 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:31:18.448 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 02:31:18.536 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 02:31:24.319 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38210 10 6452 1 2025-10-12 02:32:24.722 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:41720 10 6452 1 2025-10-12 02:33:25.133 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56328 10 6452 1 2025-10-12 02:34:25.543 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60950 10 6452 1 2025-10-12 02:30:42.832 00:05:00.475 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 02:35:25.950 00:00:10.446 TCP 1.101.0.1:3000 -> 23.104.0.1:41870 12 10375 1 2025-10-12 02:31:42.830 00:05:00.479 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 02:36:18.252 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 02:36:17.874 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:36:18.308 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:36:17.989 00:00:00.057 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 02:36:18.390 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 02:36:26.439 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:40480 10 6452 1 2025-10-12 02:37:26.858 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:54862 10 6452 1 2025-10-12 02:38:27.281 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34186 10 6452 1 2025-10-12 02:39:27.645 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39986 10 6452 1 2025-10-12 02:40:28.055 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53606 10 6452 1 2025-10-12 02:36:42.836 00:05:00.502 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 02:41:18.398 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:41:18.331 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 02:41:18.221 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 02:41:18.346 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:41:18.481 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 02:41:28.474 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45620 10 6452 1 2025-10-12 02:37:42.833 00:05:00.477 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 02:42:28.879 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55554 10 6452 1 2025-10-12 02:43:29.242 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:34886 10 6452 1 2025-10-12 02:44:29.717 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58242 10 6452 1 2025-10-12 02:45:30.117 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58570 10 6452 1 2025-10-12 02:46:18.455 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 02:46:18.571 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 02:46:18.356 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:46:18.648 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:46:18.731 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 02:42:42.836 00:05:00.473 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 02:46:30.516 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44710 10 6452 1 2025-10-12 02:43:42.833 00:05:00.480 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 02:47:30.922 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56878 10 6452 1 2025-10-12 02:48:31.324 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:58368 10 6452 1 2025-10-12 02:49:31.723 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44370 10 6452 1 2025-10-12 02:50:32.136 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46746 10 6452 1 2025-10-12 02:51:18.711 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 02:51:18.643 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 02:51:18.468 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:51:18.552 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:51:18.635 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 02:51:32.537 00:00:11.007 TCP 1.101.0.1:3000 -> 23.104.0.1:47582 10 6452 1 2025-10-12 02:52:33.583 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50892 10 6452 1 2025-10-12 02:48:42.838 00:05:00.474 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 02:53:33.984 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52720 10 6452 1 2025-10-12 02:49:42.835 00:05:00.479 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 02:54:34.390 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44138 10 6452 1 2025-10-12 02:55:34.801 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:34914 12 10375 1 2025-10-12 02:56:18.717 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 02:56:18.617 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 02:56:18.848 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:56:18.814 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:56:18.897 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 02:56:35.278 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41070 10 6452 1 2025-10-12 02:57:35.645 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42702 10 6452 1 2025-10-12 02:54:42.837 00:05:00.475 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 02:58:36.067 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53512 10 6452 1 Summary: total flows: 140, total bytes: 428763, total packets: 1026, avg bps: 893, avg pps: 0, avg bpp: 417 Time window: 2025-10-12 01:55:42 - 2025-10-12 02:59:43 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0033s User: 0.0011s Wall: 0.0019s flows/second: 75631.4 Runtime: 0.0019s