Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-12 13:58:42.425 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50016 10 6452 1 2025-10-12 13:59:42.832 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39086 10 6452 1 2025-10-12 14:00:43.235 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:51996 10 6452 1 2025-10-12 14:01:32.410 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 14:01:32.362 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 14:01:32.365 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 14:01:32.231 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 14:01:32.327 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 13:56:43.126 00:06:00.413 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 13:56:43.129 00:06:00.408 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 14:01:43.597 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51074 10 6452 1 2025-10-12 14:02:44.004 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44948 10 6452 1 2025-10-12 14:03:44.404 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42064 10 6452 1 2025-10-12 14:04:44.804 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:40486 10 6452 1 2025-10-12 14:05:45.182 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60356 10 6452 1 2025-10-12 14:06:32.172 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 14:06:32.095 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 14:06:32.028 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 14:06:32.169 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 14:06:32.252 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 14:06:45.590 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45574 10 6452 1 2025-10-12 14:07:45.991 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57440 10 6452 1 2025-10-12 14:03:43.131 00:06:00.407 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 14:03:43.130 00:06:00.412 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 14:08:46.399 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56134 10 6452 1 2025-10-12 14:09:46.803 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:50226 10 6452 1 2025-10-12 14:10:47.220 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:39122 10 6452 1 2025-10-12 14:11:32.490 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 14:11:32.423 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 14:11:32.486 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 14:11:32.417 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 14:11:32.569 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 14:11:47.584 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46912 10 6452 1 2025-10-12 14:12:47.990 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48896 10 6452 1 2025-10-12 14:13:48.394 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:54556 10 6452 1 2025-10-12 14:14:48.758 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:54504 10 6452 1 2025-10-12 14:10:43.139 00:06:00.431 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 14:10:43.136 00:06:00.436 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 14:15:49.172 00:00:10.610 TCP 1.101.0.1:3000 -> 23.104.0.1:33188 10 6452 1 2025-10-12 14:16:32.639 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 14:16:32.350 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 14:16:32.355 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 14:16:32.189 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 14:16:32.554 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 14:16:49.827 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40298 10 6452 1 2025-10-12 14:17:50.229 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59938 10 6452 1 2025-10-12 14:18:50.633 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40474 10 6452 1 2025-10-12 14:19:51.033 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58166 10 6452 1 2025-10-12 14:20:51.437 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40102 10 6452 1 2025-10-12 14:21:32.590 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 14:21:32.519 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 14:21:32.540 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 14:21:32.517 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 14:21:32.599 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 14:21:51.840 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:44404 10 6452 1 2025-10-12 14:17:43.140 00:06:00.433 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 14:17:43.137 00:06:00.438 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 14:22:52.212 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:33038 10 6452 1 2025-10-12 14:23:52.624 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43332 10 6452 1 2025-10-12 14:24:53.039 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38168 10 6452 1 2025-10-12 14:25:53.453 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57834 10 6452 1 2025-10-12 14:26:32.687 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 14:26:32.656 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 14:26:32.430 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 14:26:32.628 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 14:26:32.604 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 14:26:53.878 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52094 10 6452 1 2025-10-12 14:27:54.284 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48112 10 6452 1 2025-10-12 14:28:54.687 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48536 10 6452 1 2025-10-12 14:24:43.140 00:06:00.434 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 14:24:43.139 00:06:00.439 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 14:29:55.108 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54480 10 6452 1 2025-10-12 14:30:55.509 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46316 10 6452 1 2025-10-12 14:31:33.226 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 14:31:33.285 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 14:31:33.389 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 14:31:33.229 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 14:31:33.311 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 14:31:55.912 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:49680 10 6452 1 2025-10-12 14:32:56.316 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52302 10 6452 1 2025-10-12 14:33:56.715 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:53680 10 6452 1 2025-10-12 14:34:57.134 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50052 10 6452 1 2025-10-12 14:35:57.535 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:47758 12 10369 1 2025-10-12 14:36:32.646 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 14:36:32.946 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 14:36:32.670 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 14:36:32.857 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 14:36:32.939 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 14:31:43.144 00:06:00.461 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 14:31:43.140 00:06:00.467 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 14:36:58.016 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:33972 10 6452 1 2025-10-12 14:37:58.392 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:41252 10 6452 1 2025-10-12 14:38:58.761 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:44078 10 6452 1 2025-10-12 14:39:59.190 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45124 10 6452 1 2025-10-12 14:40:59.596 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45968 10 6452 1 2025-10-12 14:41:32.878 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 14:41:32.953 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 14:41:32.820 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 14:41:32.740 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 14:41:33.036 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 14:42:00.009 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37778 10 6452 1 2025-10-12 14:43:00.372 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:58220 10 6452 1 2025-10-12 14:38:43.145 00:06:00.461 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 14:38:43.144 00:06:00.467 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 14:44:00.747 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56384 10 6452 1 2025-10-12 14:45:01.115 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58678 10 6452 1 2025-10-12 14:46:01.512 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58916 10 6452 1 2025-10-12 14:46:33.167 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 14:46:32.832 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 14:46:33.081 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 14:46:32.870 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 14:46:32.873 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 14:47:01.917 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38214 10 6452 1 2025-10-12 14:48:02.322 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:60538 10 6452 1 2025-10-12 14:49:02.682 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37476 10 6452 1 2025-10-12 14:50:03.112 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:55472 10 6452 1 2025-10-12 14:45:43.149 00:06:00.461 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 14:45:43.147 00:06:00.466 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 14:51:03.473 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:57586 10 6452 1 2025-10-12 14:51:33.114 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 14:51:32.912 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 14:51:33.012 00:00:00.042 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 14:51:33.121 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 14:51:33.094 00:00:00.043 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 14:52:03.834 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:46906 10 6452 1 2025-10-12 14:53:04.267 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45510 10 6452 1 2025-10-12 14:54:04.673 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38766 10 6452 1 2025-10-12 14:55:05.107 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34046 10 6452 1 2025-10-12 14:56:05.511 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50018 10 6452 1 2025-10-12 14:56:33.191 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 14:56:33.171 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 14:56:33.111 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 14:56:33.055 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 14:56:33.103 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 14:57:05.915 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51146 10 6452 1 2025-10-12 14:52:43.152 00:06:00.459 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 14:52:43.149 00:06:00.464 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 14:58:06.317 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40280 10 6452 1 Summary: total flows: 138, total bytes: 421655, total packets: 1034, avg bps: 906, avg pps: 0, avg bpp: 407 Time window: 2025-10-12 13:56:43 - 2025-10-12 14:58:43 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0056s User: 0.0000s Wall: 0.0025s flows/second: 55109.4 Runtime: 0.0025s