Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-12 05:59:06.204 00:00:15.315 TCP 1.101.0.1:3000 -> 23.104.0.1:49936 10 6452 1 2025-10-12 05:55:42.890 00:05:00.485 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 06:00:11.579 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39994 10 6452 1 2025-10-12 06:01:22.556 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 06:01:22.435 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 06:01:22.374 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 06:01:11.981 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34148 10 6452 1 2025-10-12 06:01:22.101 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 06:01:22.640 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 06:02:12.388 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38984 10 6452 1 2025-10-12 06:03:12.797 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55188 10 6452 1 2025-10-12 06:04:13.209 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:42658 10 6452 1 2025-10-12 06:00:42.898 00:05:00.476 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 06:05:13.570 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41302 10 6452 1 2025-10-12 06:01:42.895 00:05:00.481 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 06:06:22.851 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 06:06:22.768 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 06:06:22.832 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 06:06:13.976 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39046 10 6452 1 2025-10-12 06:06:22.446 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 06:06:22.149 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 06:07:14.388 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47890 10 6452 1 2025-10-12 06:08:14.791 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:37158 10 6452 1 2025-10-12 06:09:15.160 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55730 10 6452 1 2025-10-12 06:10:15.584 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40758 10 6452 1 2025-10-12 06:06:42.900 00:05:00.475 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 06:11:22.706 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 06:11:22.709 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 06:11:22.646 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 06:11:22.703 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 06:11:22.786 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 06:11:15.985 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:49968 10 6452 1 2025-10-12 06:07:42.897 00:05:00.481 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 06:12:16.350 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:45502 10 6452 1 2025-10-12 06:13:16.704 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38564 10 6452 1 2025-10-12 06:14:17.103 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:34732 10 6452 1 2025-10-12 06:15:17.509 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:45340 10 6452 1 2025-10-12 06:16:22.597 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 06:16:22.865 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 06:16:22.626 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 06:16:22.829 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 06:16:22.912 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 06:16:17.879 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50216 10 6452 1 2025-10-12 06:12:42.903 00:05:00.474 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 06:17:18.282 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53450 10 6452 1 2025-10-12 06:13:42.899 00:05:00.481 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 06:18:18.685 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48992 10 6452 1 2025-10-12 06:19:19.115 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34414 10 6452 1 2025-10-12 06:20:19.486 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46172 10 6452 1 2025-10-12 06:21:23.053 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 06:21:22.972 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 06:21:22.915 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 06:21:22.897 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 06:21:22.980 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 06:21:19.888 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:50024 10 6452 1 2025-10-12 06:22:20.317 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46346 10 6452 1 2025-10-12 06:18:42.903 00:05:00.475 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 06:23:20.720 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:42346 10 6452 1 2025-10-12 06:19:42.900 00:05:00.482 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 06:24:21.142 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40568 10 6452 1 2025-10-12 06:25:21.543 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36174 10 6452 1 2025-10-12 06:26:23.265 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 06:26:22.865 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 06:26:22.498 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 06:26:22.857 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 06:26:22.940 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 06:26:21.948 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48566 10 6452 1 2025-10-12 06:27:22.354 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:54978 10 6452 1 2025-10-12 06:28:22.756 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:41972 10 6452 1 2025-10-12 06:24:42.906 00:05:00.475 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 06:29:23.129 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38366 10 6452 1 2025-10-12 06:25:42.903 00:05:00.480 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 06:30:23.536 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:36372 10 6452 1 2025-10-12 06:31:22.972 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 06:31:23.087 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 06:31:22.984 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 06:31:22.963 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 06:31:22.889 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 06:31:23.915 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46908 10 6452 1 2025-10-12 06:32:24.320 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54540 10 6452 1 2025-10-12 06:33:24.722 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:45008 10 6452 1 2025-10-12 06:34:25.141 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54434 10 6452 1 2025-10-12 06:30:42.906 00:05:00.475 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 06:35:25.542 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42550 10 6452 1 2025-10-12 06:31:42.905 00:05:00.480 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 06:36:23.067 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 06:36:23.121 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 06:36:23.113 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 06:36:23.121 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 06:36:23.204 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 06:36:25.908 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34896 10 6452 1 2025-10-12 06:37:26.318 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59024 10 6452 1 2025-10-12 06:38:26.724 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37162 10 6452 1 2025-10-12 06:39:27.115 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:55742 10 6452 1 2025-10-12 06:40:27.480 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57218 10 6452 1 2025-10-12 06:36:42.909 00:05:00.476 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 06:41:23.316 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 06:41:23.380 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 06:41:23.380 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 06:41:23.423 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 06:41:23.234 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 06:41:27.886 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:50994 12 6556 1 2025-10-12 06:37:42.905 00:05:00.483 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 06:42:28.311 00:00:10.430 TCP 1.101.0.1:3000 -> 23.104.0.1:52620 10 6452 1 2025-10-12 06:43:28.775 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56688 10 6452 1 2025-10-12 06:44:29.181 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:48694 10 6452 1 2025-10-12 06:45:29.544 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:34880 10 6452 1 2025-10-12 06:46:23.487 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 06:46:23.479 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 06:46:23.488 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 06:46:23.253 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 06:46:23.406 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 06:42:42.908 00:05:00.479 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 06:46:29.962 00:00:10.456 TCP 1.101.0.1:3000 -> 23.104.0.1:51100 12 10369 1 2025-10-12 06:47:30.449 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55034 10 6452 1 2025-10-12 06:43:42.907 00:05:00.484 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 06:48:30.849 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:59140 10 6452 1 2025-10-12 06:49:31.270 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56076 10 6452 1 2025-10-12 06:50:31.630 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40554 10 6452 1 2025-10-12 06:51:23.509 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 06:51:23.547 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 06:51:23.542 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 06:51:23.321 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 06:51:23.427 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 06:51:31.991 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:35222 10 6452 1 2025-10-12 06:48:42.910 00:05:00.479 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 06:52:32.356 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59776 10 6452 1 2025-10-12 06:49:42.909 00:05:00.483 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 06:53:32.766 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37418 10 6452 1 2025-10-12 06:54:33.177 00:00:10.764 TCP 1.101.0.1:3000 -> 23.104.0.1:39690 10 6452 1 2025-10-12 06:55:33.982 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46770 10 6452 1 2025-10-12 06:56:23.922 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 06:56:23.677 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 06:56:23.626 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 06:56:23.916 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 06:56:23.709 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 06:56:34.395 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48506 10 6452 1 2025-10-12 06:57:34.802 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52000 10 6452 1 2025-10-12 06:54:42.912 00:05:00.479 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 06:58:35.207 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56624 10 6452 1 Summary: total flows: 140, total bytes: 421021, total packets: 1024, avg bps: 877, avg pps: 0, avg bpp: 411 Time window: 2025-10-12 05:55:42 - 2025-10-12 06:59:43 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0044s User: 0.0000s Wall: 0.0019s flows/second: 74301.2 Runtime: 0.0019s