Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-12 14:59:06.721 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:54522 10 6452 1 2025-10-12 15:00:07.128 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39558 10 6452 1 2025-10-12 15:01:07.530 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52576 10 6452 1 2025-10-12 15:01:33.363 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 15:01:33.359 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 15:01:33.187 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 15:01:33.360 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 15:01:33.445 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 15:02:07.929 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:38966 10 6452 1 2025-10-12 15:03:08.349 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58762 10 6452 1 2025-10-12 15:04:08.755 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42956 10 6452 1 2025-10-12 14:59:43.154 00:06:00.459 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 14:59:43.151 00:06:00.463 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 15:05:09.156 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:48630 10 6452 1 2025-10-12 15:06:09.575 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:55642 12 10375 1 2025-10-12 15:06:33.751 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 15:06:33.539 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 15:06:33.536 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 15:06:33.437 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 15:06:33.668 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 15:07:10.056 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38294 10 6452 1 2025-10-12 15:08:10.457 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41442 10 6452 1 2025-10-12 15:09:10.863 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:57644 10 6452 1 2025-10-12 15:10:11.277 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53668 10 6452 1 2025-10-12 15:11:11.683 00:00:10.452 TCP 1.101.0.1:3000 -> 23.104.0.1:34646 12 10375 1 2025-10-12 15:11:33.538 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 15:11:33.576 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 15:11:33.495 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 15:11:33.577 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 15:11:33.661 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 15:06:43.155 00:06:00.460 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 15:06:43.153 00:06:00.465 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 15:12:12.169 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60020 10 6452 1 2025-10-12 15:13:12.575 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35190 10 6452 1 2025-10-12 15:14:12.980 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57134 10 6452 1 2025-10-12 15:15:13.383 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52672 10 6452 1 2025-10-12 15:16:13.791 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46056 10 6452 1 2025-10-12 15:16:33.852 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 15:16:33.640 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 15:16:33.755 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 15:16:33.709 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 15:16:33.768 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 15:17:14.203 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57852 10 6452 1 2025-10-12 15:18:14.563 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43854 10 6452 1 2025-10-12 15:13:43.153 00:06:00.466 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 15:13:43.156 00:06:00.461 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 15:19:14.965 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39030 10 6452 1 2025-10-12 15:20:15.371 00:00:10.424 TCP 1.101.0.1:3000 -> 23.104.0.1:51038 10 6452 1 2025-10-12 15:21:15.791 00:00:10.425 TCP 1.101.0.1:3000 -> 23.104.0.1:58538 11 6504 1 2025-10-12 15:21:33.958 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 15:21:33.708 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 15:21:33.708 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 15:21:33.462 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 15:21:33.875 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 15:22:16.257 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:58716 10 6452 1 2025-10-12 15:23:16.620 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:44932 10 6452 1 2025-10-12 15:24:17.019 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:37566 10 6452 1 2025-10-12 15:25:17.413 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34092 10 6452 1 2025-10-12 15:20:43.157 00:06:00.466 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 15:20:43.158 00:06:00.461 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 15:26:17.817 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53278 10 6452 1 2025-10-12 15:26:34.562 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 15:26:34.560 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 15:26:34.579 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 15:26:34.626 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 15:26:34.709 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 15:27:18.220 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:53070 10 6452 1 2025-10-12 15:28:18.656 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:47624 10 6452 1 2025-10-12 15:29:19.095 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33274 10 6452 1 2025-10-12 15:30:19.506 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44510 10 6452 1 2025-10-12 15:31:34.143 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 15:31:34.111 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 15:31:34.173 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 15:31:19.909 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41038 10 6452 1 2025-10-12 15:31:33.984 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 15:31:34.255 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 15:32:20.319 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46768 10 6452 1 2025-10-12 15:27:43.157 00:06:00.465 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 15:27:43.159 00:06:00.461 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 15:33:20.720 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:48080 10 6452 1 2025-10-12 15:34:21.115 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:56718 10 6452 1 2025-10-12 15:35:21.475 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45680 10 6452 1 2025-10-12 15:36:34.097 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 15:36:33.874 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 15:36:33.773 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 15:36:33.877 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 15:36:21.888 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56292 12 6556 1 2025-10-12 15:36:33.960 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 15:37:22.300 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39646 10 6452 1 2025-10-12 15:38:22.705 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:39750 10 6452 1 2025-10-12 15:39:23.150 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54188 10 6452 1 2025-10-12 15:34:43.161 00:06:00.463 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 15:34:43.159 00:06:00.468 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 15:40:23.554 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55812 10 6452 1 2025-10-12 15:41:34.226 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 15:41:34.127 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 15:41:34.189 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 15:41:34.174 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 15:41:23.955 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:36738 10 6452 1 2025-10-12 15:41:34.258 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 15:42:24.381 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37208 10 6452 1 2025-10-12 15:43:24.742 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49600 10 6452 1 2025-10-12 15:44:25.155 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46908 10 6452 1 2025-10-12 15:45:25.565 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:42166 10 6452 1 2025-10-12 15:46:34.275 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 15:46:34.218 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 15:46:34.237 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 15:46:34.149 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 15:46:34.232 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 15:46:25.928 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:39692 10 6452 1 2025-10-12 15:41:43.159 00:06:00.469 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 15:41:43.162 00:06:00.464 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 15:47:26.362 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36844 10 6452 1 2025-10-12 15:48:26.766 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37732 10 6452 1 2025-10-12 15:49:27.188 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49302 10 6452 1 2025-10-12 15:50:27.585 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50432 10 6452 1 2025-10-12 15:51:34.377 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 15:51:34.240 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 15:51:34.422 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 15:51:34.378 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 15:51:34.505 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 15:51:27.988 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:47786 10 6452 1 2025-10-12 15:52:28.354 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51376 10 6452 1 2025-10-12 15:53:28.757 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:54674 10 6452 1 2025-10-12 15:48:43.160 00:06:00.471 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 15:48:43.163 00:06:00.466 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 15:54:29.170 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57716 10 6452 1 2025-10-12 15:55:29.577 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56916 10 6452 1 2025-10-12 15:56:34.518 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 15:56:34.436 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 15:56:34.387 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 15:56:34.389 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 15:56:34.435 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 15:56:29.983 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44596 10 6452 1 2025-10-12 15:57:30.384 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39398 10 6452 1 2025-10-12 15:58:30.749 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:52010 10 6452 1 Summary: total flows: 136, total bytes: 424018, total packets: 1011, avg bps: 949, avg pps: 0, avg bpp: 419 Time window: 2025-10-12 14:59:06 - 2025-10-12 15:58:41 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0037s User: 0.0018s Wall: 0.0019s flows/second: 71580.5 Runtime: 0.0019s