Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-12 19:59:20.948 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:44940 10 6452 1 2025-10-12 20:00:21.360 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40030 10 6452 1 2025-10-12 20:01:21.767 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:56542 10 6452 1 2025-10-12 20:01:39.444 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 20:01:39.290 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 20:01:39.296 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 20:01:39.306 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 20:01:39.361 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 20:02:22.185 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57022 10 6452 1 2025-10-12 20:03:22.589 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54976 10 6452 1 2025-10-12 20:04:22.995 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:55900 10 6452 1 2025-10-12 20:05:23.363 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34894 10 6452 1 2025-10-12 20:00:43.280 00:06:00.433 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 20:00:43.277 00:06:00.438 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 20:06:23.766 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:50584 10 6452 1 2025-10-12 20:06:39.377 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 20:06:39.372 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 20:06:38.984 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 20:06:39.375 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 20:06:39.459 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 20:07:24.188 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37624 10 6452 1 2025-10-12 20:08:24.592 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50164 10 6452 1 2025-10-12 20:09:25.005 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49858 10 6452 1 2025-10-12 20:10:25.402 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47900 10 6452 1 2025-10-12 20:11:39.592 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 20:11:39.510 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 20:11:39.292 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 20:11:39.422 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 20:11:39.370 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 20:11:25.763 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:58854 10 6452 1 2025-10-12 20:12:26.180 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33942 10 6452 1 2025-10-12 20:07:43.282 00:06:00.444 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 20:07:43.284 00:06:00.439 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 20:13:26.582 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34788 10 6452 1 2025-10-12 20:14:26.988 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36044 10 6452 1 2025-10-12 20:15:27.392 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51022 10 6452 1 2025-10-12 20:16:39.888 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 20:16:39.867 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 20:16:39.730 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 20:16:39.869 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 20:16:27.794 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59552 10 6452 1 2025-10-12 20:16:39.805 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 20:17:28.202 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37192 10 6452 1 2025-10-12 20:18:28.596 00:00:11.390 TCP 1.101.0.1:3000 -> 23.104.0.1:34526 10 6452 1 2025-10-12 20:14:43.286 00:06:00.439 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 20:19:30.028 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:58102 10 6452 1 2025-10-12 20:14:43.284 00:06:00.444 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 20:20:30.391 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55126 10 6452 1 2025-10-12 20:21:39.790 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 20:21:39.790 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 20:21:39.743 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 20:21:39.595 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 20:21:39.679 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 20:21:30.794 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36780 10 6452 1 2025-10-12 20:22:31.197 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37652 10 6452 1 2025-10-12 20:23:31.598 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56048 10 6452 1 2025-10-12 20:24:32.008 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35116 10 6452 1 2025-10-12 20:25:32.405 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49882 10 6452 1 2025-10-12 20:26:39.842 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 20:26:39.736 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 20:26:39.833 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 20:26:39.929 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 20:26:39.819 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 20:21:43.288 00:06:00.442 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 20:26:32.809 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42606 10 6452 1 2025-10-12 20:21:43.286 00:06:00.447 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 20:27:33.219 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54814 10 6452 1 2025-10-12 20:28:33.625 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49432 10 6452 1 2025-10-12 20:29:34.028 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48978 10 6452 1 2025-10-12 20:30:34.425 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54094 10 6452 1 2025-10-12 20:31:39.784 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 20:31:39.688 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 20:31:39.747 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 20:31:39.895 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 20:31:39.979 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 20:31:34.834 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:49590 10 6452 1 2025-10-12 20:32:35.250 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58372 10 6452 1 2025-10-12 20:28:43.290 00:06:00.440 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 20:28:43.288 00:06:00.445 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 20:33:35.651 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44966 10 6452 1 2025-10-12 20:34:36.073 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43462 10 6452 1 2025-10-12 20:35:36.475 00:00:11.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59660 10 6452 1 2025-10-12 20:36:39.949 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 20:36:39.959 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 20:36:39.920 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 20:36:39.942 00:00:00.029 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 20:36:40.027 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 20:36:37.886 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:42304 10 6452 1 2025-10-12 20:37:38.308 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:59426 10 6452 1 2025-10-12 20:38:38.677 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46276 10 6452 1 2025-10-12 20:39:39.112 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37812 10 6452 1 2025-10-12 20:35:43.290 00:06:00.445 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 20:35:43.293 00:06:00.440 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 20:40:39.473 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:43044 10 6452 1 2025-10-12 20:41:40.537 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 20:41:40.534 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 20:41:40.391 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 20:41:40.435 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 20:41:40.519 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 20:41:39.886 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:36378 10 6452 1 2025-10-12 20:42:40.319 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:44056 10 6452 1 2025-10-12 20:43:40.727 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:43106 10 6452 1 2025-10-12 20:44:41.141 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:39744 10 6452 1 2025-10-12 20:45:41.509 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50848 10 6452 1 2025-10-12 20:46:40.326 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 20:46:40.184 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 20:46:40.093 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 20:46:40.245 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 20:46:40.261 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 20:46:41.914 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:36986 12 10375 1 2025-10-12 20:42:43.294 00:06:00.440 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 20:42:43.292 00:06:00.444 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 20:47:42.393 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50624 10 6452 1 2025-10-12 20:48:42.794 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38344 10 6452 1 2025-10-12 20:49:43.194 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52352 10 6452 1 2025-10-12 20:50:43.599 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45244 10 6452 1 2025-10-12 20:51:40.308 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 20:51:40.218 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 20:51:40.132 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 20:51:40.226 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 20:51:40.112 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 20:51:44.009 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:34672 10 6452 1 2025-10-12 20:52:44.409 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56206 10 6452 1 2025-10-12 20:53:44.817 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46468 10 6452 1 2025-10-12 20:49:43.298 00:06:00.439 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 20:49:43.295 00:06:00.444 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 20:54:45.216 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:40750 10 6452 1 2025-10-12 20:55:45.612 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49316 10 6452 1 2025-10-12 20:56:40.432 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 20:56:40.476 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 20:56:40.297 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 20:56:40.351 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 20:56:40.351 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 20:56:46.022 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50532 10 6452 1 2025-10-12 20:57:46.426 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35458 10 6452 1 Summary: total flows: 135, total bytes: 413487, total packets: 996, avg bps: 940, avg pps: 0, avg bpp: 415 Time window: 2025-10-12 19:59:20 - 2025-10-12 20:57:56 Total flows processed: 135, passed: 135, Blocks skipped: 0, Bytes read: 14104 Sys: 0.0042s User: 0.0021s Wall: 0.0023s flows/second: 58543.3 Runtime: 0.0023s