Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-12 10:59:25.141 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:51810 11 6504 1 2025-10-12 10:55:42.997 00:05:00.491 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 10:54:43.000 00:06:00.485 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 11:00:25.601 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57910 10 6452 1 2025-10-12 11:01:28.503 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 11:01:28.567 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 11:01:28.614 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 11:01:28.568 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 11:01:28.651 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 11:01:26.009 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:37368 10 6452 1 2025-10-12 11:02:26.403 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58736 10 6452 1 2025-10-12 11:03:26.811 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:48858 10 6452 1 2025-10-12 11:04:27.184 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:33086 10 6452 1 2025-10-12 11:05:27.546 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39036 10 6452 1 2025-10-12 11:06:28.910 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 11:06:28.915 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 11:06:28.833 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 11:06:29.064 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 11:06:29.146 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 11:06:27.953 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:33386 10 6452 1 2025-10-12 11:01:43.003 00:06:00.484 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 11:01:43.002 00:06:00.488 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 11:07:28.375 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:58422 10 6452 1 2025-10-12 11:08:28.809 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52258 10 6452 1 2025-10-12 11:09:29.213 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:42086 10 6452 1 2025-10-12 11:10:29.607 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:45016 10 6452 1 2025-10-12 11:11:28.809 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 11:11:28.733 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 11:11:28.784 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 11:11:28.445 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 11:11:28.726 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 11:11:29.967 00:00:10.721 TCP 1.101.0.1:3000 -> 23.104.0.1:34838 10 6452 1 2025-10-12 11:12:30.718 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:38702 10 6452 1 2025-10-12 11:08:43.037 00:06:00.455 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 11:08:43.038 00:06:00.450 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 11:13:31.140 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33926 10 6452 1 2025-10-12 11:14:31.546 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47172 10 6452 1 2025-10-12 11:15:31.948 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:49998 10 6452 1 2025-10-12 11:16:28.968 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 11:16:28.788 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 11:16:28.997 00:00:00.047 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 11:16:28.775 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 11:16:28.887 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 11:16:32.362 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57244 10 6452 1 2025-10-12 11:17:32.768 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50844 10 6452 1 2025-10-12 11:18:33.176 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41250 10 6452 1 2025-10-12 11:19:33.576 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:60544 11 6504 1 2025-10-12 11:20:34.033 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43772 10 6452 1 2025-10-12 11:15:43.040 00:06:00.453 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 11:15:43.039 00:06:00.458 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 11:21:28.686 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 11:21:28.970 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 11:21:28.897 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 11:21:28.699 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 11:21:28.603 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 11:21:34.442 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:34916 10 6452 1 2025-10-12 11:22:34.863 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:58590 10 6452 1 2025-10-12 11:23:35.280 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52074 10 6452 1 2025-10-12 11:24:35.685 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47370 10 6452 1 2025-10-12 11:25:36.041 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36488 10 6452 1 2025-10-12 11:26:29.085 00:00:00.050 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 11:26:29.079 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 11:26:28.954 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 11:26:28.707 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 11:26:29.004 00:00:00.049 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 11:26:36.444 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60004 10 6452 1 2025-10-12 11:22:43.047 00:06:00.452 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 11:22:43.050 00:06:00.447 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 11:27:36.850 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:56096 10 6452 1 2025-10-12 11:28:37.268 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44216 10 6452 1 2025-10-12 11:29:37.676 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53484 10 6452 1 2025-10-12 11:30:38.101 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:37968 10 6452 1 2025-10-12 11:31:29.199 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 11:31:28.991 00:00:00.043 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 11:31:28.983 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 11:31:29.116 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 11:31:29.189 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 11:31:38.476 00:00:10.865 TCP 1.101.0.1:3000 -> 23.104.0.1:35964 10 6452 1 2025-10-12 11:32:39.382 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60000 10 6452 1 2025-10-12 11:33:39.791 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35272 10 6452 1 2025-10-12 11:29:43.052 00:06:00.448 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 11:29:43.054 00:06:00.444 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 11:34:40.196 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45582 10 6452 1 2025-10-12 11:35:40.598 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59998 10 6452 1 2025-10-12 11:36:29.398 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 11:36:29.262 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 11:36:29.196 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 11:36:29.469 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 11:36:29.315 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 11:36:41.004 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58448 10 6452 1 2025-10-12 11:37:41.366 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35100 10 6452 1 2025-10-12 11:38:41.726 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34814 10 6452 1 2025-10-12 11:39:42.133 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36024 10 6452 1 2025-10-12 11:40:42.545 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55658 10 6452 1 2025-10-12 11:41:29.527 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 11:41:29.347 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 11:41:29.350 00:00:00.032 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 11:41:29.490 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 11:41:29.445 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 11:36:43.052 00:06:00.450 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 11:36:43.055 00:06:00.444 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 11:41:42.946 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:45536 10 6452 1 2025-10-12 11:42:43.363 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42052 10 6452 1 2025-10-12 11:43:43.769 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:37838 10 6452 1 2025-10-12 11:44:44.142 00:00:10.564 TCP 1.101.0.1:3000 -> 23.104.0.1:57856 10 6452 1 2025-10-12 11:45:44.744 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:32994 10 6452 1 2025-10-12 11:46:29.597 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 11:46:29.512 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 11:46:29.428 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 11:46:29.292 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 11:46:29.516 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 11:46:45.114 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:53976 10 6452 1 2025-10-12 11:47:45.509 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34366 10 6452 1 2025-10-12 11:43:43.060 00:06:00.441 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 11:43:43.057 00:06:00.447 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 11:48:45.878 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33984 10 6452 1 2025-10-12 11:49:46.281 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51744 10 6452 1 2025-10-12 11:50:46.689 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36266 10 6452 1 2025-10-12 11:51:29.520 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 11:51:29.555 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 11:51:29.475 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 11:51:29.439 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 11:51:29.543 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 11:51:47.108 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50784 10 6452 1 2025-10-12 11:52:47.516 00:00:10.689 TCP 1.101.0.1:3000 -> 23.104.0.1:56354 10 6452 1 2025-10-12 11:53:48.250 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:47026 10 6452 1 2025-10-12 11:54:48.614 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54348 10 6452 1 2025-10-12 11:50:43.060 00:06:00.443 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 11:50:43.057 00:06:00.448 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 11:55:49.028 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60210 10 6452 1 2025-10-12 11:56:29.774 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 11:56:29.603 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 11:56:29.691 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 11:56:29.731 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 11:56:29.341 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 11:56:49.391 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35136 10 6452 1 2025-10-12 11:57:49.795 00:00:10.352 TCP 1.101.0.1:3000 -> 23.104.0.1:51998 10 6452 1 Summary: total flows: 137, total bytes: 411267, total packets: 1022, avg bps: 866, avg pps: 0, avg bpp: 402 Time window: 2025-10-12 10:54:43 - 2025-10-12 11:58:00 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0021s User: 0.0032s Wall: 0.0020s flows/second: 68220.3 Runtime: 0.0020s