Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-12 12:59:15.998 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49114 10 6452 1 2025-10-12 13:00:16.397 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57428 10 6452 1 2025-10-12 13:01:16.803 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:48406 10 6452 1 2025-10-12 13:01:30.997 00:00:00.042 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 13:01:30.889 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 13:01:30.843 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 13:01:30.952 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 13:01:31.036 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 13:02:17.186 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39784 10 6452 1 2025-10-12 13:03:17.588 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56860 10 6452 1 2025-10-12 13:04:17.988 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:54664 10 6452 1 2025-10-12 13:05:18.361 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54954 10 6452 1 2025-10-12 13:00:43.083 00:06:00.440 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 13:00:43.079 00:06:00.445 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 13:06:18.767 00:00:10.452 TCP 1.101.0.1:3000 -> 23.104.0.1:47058 12 10375 1 2025-10-12 13:06:31.117 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 13:06:30.952 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 13:06:30.807 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 13:06:31.116 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 13:06:30.892 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 13:07:19.257 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51434 10 6452 1 2025-10-12 13:08:19.661 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42322 10 6452 1 2025-10-12 13:09:20.095 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46132 10 6452 1 2025-10-12 13:10:20.497 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:43014 10 6452 1 2025-10-12 13:11:20.859 00:00:11.077 TCP 1.101.0.1:3000 -> 23.104.0.1:54266 10 6452 1 2025-10-12 13:11:31.089 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 13:11:31.085 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 13:11:31.134 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 13:11:30.949 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 13:11:31.172 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 13:12:21.975 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49086 10 6452 1 2025-10-12 13:07:43.084 00:06:00.443 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 13:07:43.082 00:06:00.447 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 13:13:22.383 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58058 10 6452 1 2025-10-12 13:14:22.790 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35876 10 6452 1 2025-10-12 13:15:23.151 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50440 10 6452 1 2025-10-12 13:16:31.258 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 13:16:31.257 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 13:16:31.200 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 13:16:23.555 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50430 10 6452 1 2025-10-12 13:16:31.254 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 13:16:31.337 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 13:17:23.958 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49338 10 6452 1 2025-10-12 13:18:24.366 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57340 10 6452 1 2025-10-12 13:19:24.726 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35920 10 6452 1 2025-10-12 13:14:43.086 00:06:00.443 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 13:14:43.084 00:06:00.447 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 13:20:25.132 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:50798 10 6452 1 2025-10-12 13:21:31.198 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 13:21:31.101 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 13:21:31.099 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 13:21:31.284 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 13:21:31.282 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 13:21:25.505 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59838 10 6452 1 2025-10-12 13:22:25.906 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:32856 10 6452 1 2025-10-12 13:23:26.314 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37650 10 6452 1 2025-10-12 13:24:26.716 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:41372 10 6452 1 2025-10-12 13:25:27.139 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:34568 10 6452 1 2025-10-12 13:26:31.666 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 13:26:31.489 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 13:26:31.398 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 13:26:31.595 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 13:26:31.678 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 13:26:27.553 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46348 10 6452 1 2025-10-12 13:21:43.089 00:06:00.441 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 13:21:43.086 00:06:00.446 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 13:27:27.957 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:47662 10 6452 1 2025-10-12 13:28:28.324 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43840 10 6452 1 2025-10-12 13:29:28.684 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56118 10 6452 1 2025-10-12 13:30:29.112 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36064 10 6452 1 2025-10-12 13:31:31.493 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 13:31:31.493 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 13:31:31.427 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 13:31:31.532 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 13:31:31.616 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 13:31:29.518 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:50516 10 6452 1 2025-10-12 13:32:29.935 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:34174 10 6452 1 2025-10-12 13:28:43.089 00:06:00.443 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 13:33:30.361 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:53696 10 6452 1 2025-10-12 13:28:43.087 00:06:00.447 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 13:34:30.722 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:47444 10 6452 1 2025-10-12 13:35:31.102 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58190 10 6452 1 2025-10-12 13:36:31.480 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 13:36:31.521 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 13:36:31.573 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 13:36:31.516 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 13:36:31.604 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 13:36:31.462 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53260 10 6452 1 2025-10-12 13:37:31.863 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49164 10 6452 1 2025-10-12 13:38:32.270 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51900 10 6452 1 2025-10-12 13:39:32.674 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46920 12 6556 1 2025-10-12 13:35:43.122 00:06:00.411 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 13:40:33.105 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36176 10 6452 1 2025-10-12 13:35:43.119 00:06:00.417 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 13:41:31.618 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 13:41:31.523 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 13:41:31.706 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 13:41:31.623 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 13:41:31.706 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 13:41:33.514 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34720 10 6452 1 2025-10-12 13:42:33.921 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:40224 10 6452 1 2025-10-12 13:43:34.287 00:00:11.397 TCP 1.101.0.1:3000 -> 23.104.0.1:54406 10 6452 1 2025-10-12 13:44:35.726 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44022 10 6452 1 2025-10-12 13:45:36.137 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47506 10 6452 1 2025-10-12 13:46:31.850 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 13:46:31.859 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 13:46:31.575 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 13:46:31.859 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 13:46:31.942 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 13:46:36.537 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34224 10 6452 1 2025-10-12 13:42:43.121 00:06:00.416 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 13:42:43.124 00:06:00.411 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 13:47:36.936 00:00:11.496 TCP 1.101.0.1:3000 -> 23.104.0.1:56662 11 6504 1 2025-10-12 13:48:38.471 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52504 10 6452 1 2025-10-12 13:49:38.831 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:42980 10 6452 1 2025-10-12 13:50:39.207 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40224 10 6452 1 2025-10-12 13:51:31.740 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 13:51:31.929 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 13:51:31.893 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 13:51:31.900 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 13:51:31.975 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 13:51:39.612 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40028 10 6452 1 2025-10-12 13:52:40.022 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44158 10 6452 1 2025-10-12 13:53:40.424 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:58730 10 6452 1 2025-10-12 13:49:43.127 00:06:00.408 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 13:49:43.125 00:06:00.413 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 13:54:40.788 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48248 10 6452 1 2025-10-12 13:55:41.200 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43780 10 6452 1 2025-10-12 13:56:32.062 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 13:56:31.980 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 13:56:31.923 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 13:56:31.863 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 13:56:31.978 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 13:56:41.604 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:55378 10 6452 1 2025-10-12 13:57:42.026 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44286 10 6452 1 Summary: total flows: 135, total bytes: 413643, total packets: 999, avg bps: 941, avg pps: 0, avg bpp: 414 Time window: 2025-10-12 12:59:15 - 2025-10-12 13:57:52 Total flows processed: 135, passed: 135, Blocks skipped: 0, Bytes read: 14104 Sys: 0.0019s User: 0.0028s Wall: 0.0022s flows/second: 62670.8 Runtime: 0.0022s