Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-12 08:59:25.022 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37738 10 6452 1 2025-10-12 08:55:42.935 00:05:00.506 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 09:00:25.420 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34276 10 6452 1 2025-10-12 09:01:26.353 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 09:01:26.280 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 09:01:26.272 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 09:01:26.165 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 09:01:26.269 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 09:01:25.824 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:50376 10 6452 1 2025-10-12 09:02:26.189 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38498 10 6452 1 2025-10-12 09:03:26.595 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:39852 10 6452 1 2025-10-12 09:04:26.964 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42274 10 6452 1 2025-10-12 09:00:42.938 00:05:00.504 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 09:05:27.362 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:53714 10 6452 1 2025-10-12 09:01:42.935 00:05:00.510 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 09:06:26.307 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 09:06:26.195 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 09:06:26.264 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 09:06:26.073 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 09:06:26.389 00:00:00.030 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 09:06:27.774 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51940 10 6452 1 2025-10-12 09:07:28.182 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60042 10 6452 1 2025-10-12 09:08:28.585 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55490 10 6452 1 2025-10-12 09:09:28.990 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:55624 10 6452 1 2025-10-12 09:10:29.396 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:42190 10 6452 1 2025-10-12 09:06:42.939 00:05:00.504 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 09:11:26.378 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 09:11:26.326 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 09:11:26.119 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 09:11:26.024 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 09:11:26.107 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 09:07:42.937 00:05:00.510 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 09:11:29.791 00:00:21.034 TCP 1.101.0.1:3000 -> 23.104.0.1:57348 10 6452 1 2025-10-12 09:12:40.879 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53574 10 6452 1 2025-10-12 09:13:41.281 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56944 10 6452 1 2025-10-12 09:14:41.687 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:38120 10 6452 1 2025-10-12 09:15:42.110 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54624 10 6452 1 2025-10-12 09:16:26.340 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 09:16:26.265 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 09:16:26.268 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 09:16:26.290 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 09:16:26.422 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 09:12:42.949 00:05:00.499 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 09:16:42.513 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49362 10 6452 1 2025-10-12 09:13:42.944 00:05:00.507 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 09:17:42.917 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:57214 10 6452 1 2025-10-12 09:18:43.315 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33406 10 6452 1 2025-10-12 09:19:43.726 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46250 12 6556 1 2025-10-12 09:20:44.131 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38690 10 6452 1 2025-10-12 09:21:26.918 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 09:21:26.702 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 09:21:26.703 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 09:21:26.739 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 09:21:26.836 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 09:21:44.538 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60656 10 6452 1 2025-10-12 09:18:42.948 00:05:00.501 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 09:22:44.946 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:34200 10 6452 1 2025-10-12 09:19:42.945 00:05:00.506 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 09:23:45.366 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34408 10 6452 1 2025-10-12 09:24:45.767 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:52076 10 6452 1 2025-10-12 09:25:46.183 00:00:10.927 TCP 1.101.0.1:3000 -> 23.104.0.1:41276 10 6452 1 2025-10-12 09:26:26.512 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 09:26:26.578 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 09:26:26.446 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 09:26:26.674 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 09:26:26.757 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 09:26:47.147 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45462 10 6452 1 2025-10-12 09:27:47.550 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51740 10 6452 1 2025-10-12 09:24:42.949 00:05:00.501 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 09:28:47.952 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:60124 10 6452 1 2025-10-12 09:25:42.947 00:05:00.506 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 09:29:48.316 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39546 10 6452 1 2025-10-12 09:30:48.721 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:37590 10 6452 1 2025-10-12 09:31:26.873 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 09:31:26.683 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 09:31:26.677 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 09:31:26.536 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 09:31:26.788 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 09:31:49.139 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57610 10 6452 1 2025-10-12 09:32:49.544 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38200 10 6452 1 2025-10-12 09:33:49.911 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44706 10 6452 1 2025-10-12 09:30:42.950 00:05:00.505 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 09:34:50.315 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39858 10 6452 1 2025-10-12 09:31:42.948 00:05:00.509 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 09:35:50.726 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:52866 10 6452 1 2025-10-12 09:36:26.901 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 09:36:26.896 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 09:36:26.903 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 09:36:26.787 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 09:36:26.983 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 09:36:51.139 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47300 10 6452 1 2025-10-12 09:37:51.539 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:58962 10 6452 1 2025-10-12 09:38:51.966 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41094 10 6452 1 2025-10-12 09:39:52.367 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58082 10 6452 1 2025-10-12 09:36:42.959 00:05:00.498 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 09:40:52.775 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:54546 10 6452 1 2025-10-12 09:41:27.326 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 09:41:27.245 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 09:41:26.912 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 09:41:27.243 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 09:41:27.165 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 09:37:42.956 00:05:00.503 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 09:41:53.190 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34596 10 6452 1 2025-10-12 09:42:53.548 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47156 10 6452 1 2025-10-12 09:43:53.961 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:50284 10 6452 1 2025-10-12 09:44:54.380 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40014 10 6452 1 2025-10-12 09:45:54.784 00:00:10.455 TCP 1.101.0.1:3000 -> 23.104.0.1:39132 14 10479 1 2025-10-12 09:46:27.046 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 09:46:27.047 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 09:46:26.953 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 09:46:27.011 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 09:46:27.094 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 09:42:42.959 00:05:00.501 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 09:46:55.279 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54622 10 6452 1 2025-10-12 09:43:42.958 00:05:00.505 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 09:47:55.684 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41350 10 6452 1 2025-10-12 09:48:56.111 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:53934 10 6452 1 2025-10-12 09:49:56.508 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34308 10 6452 1 2025-10-12 09:50:56.868 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35056 10 6452 1 2025-10-12 09:51:27.187 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 09:51:27.226 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 09:51:27.103 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 09:51:27.124 00:00:00.014 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 09:51:27.103 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 09:51:57.283 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:58098 10 6452 1 2025-10-12 09:48:42.971 00:05:00.490 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 09:52:57.651 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44156 10 6452 1 2025-10-12 09:49:42.970 00:05:00.496 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 09:53:58.050 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45548 10 6452 1 2025-10-12 09:54:58.454 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53468 10 6452 1 2025-10-12 09:55:58.818 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:45666 10 6452 1 2025-10-12 09:56:27.285 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 09:56:27.249 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 09:56:26.864 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 09:56:27.246 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 09:56:27.329 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 09:56:59.195 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43220 10 6452 1 2025-10-12 09:57:59.599 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50610 10 6452 1 2025-10-12 09:54:42.982 00:05:00.481 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 Summary: total flows: 139, total bytes: 414679, total packets: 1016, avg bps: 863, avg pps: 0, avg bpp: 408 Time window: 2025-10-12 08:55:42 - 2025-10-12 09:59:43 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0029s User: 0.0010s Wall: 0.0012s flows/second: 112376.3 Runtime: 0.0013s