Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-12 23:59:06.152 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36686 10 6452 1 2025-10-13 00:00:06.559 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35522 10 6452 1 2025-10-13 00:01:06.990 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:46398 12 10369 1 2025-10-13 00:01:44.081 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 00:01:44.063 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 00:01:44.012 00:00:00.041 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:01:44.083 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:01:44.168 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 00:02:07.468 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56050 10 6452 1 2025-10-13 00:03:07.845 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:44750 10 6452 1 2025-10-12 23:58:43.373 00:06:00.437 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 23:58:43.370 00:06:00.442 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 00:04:08.266 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50170 10 6452 1 2025-10-13 00:05:08.665 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57380 12 6556 1 2025-10-13 00:06:09.102 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40520 10 6452 1 2025-10-13 00:06:44.282 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 00:06:44.283 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 00:06:44.174 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:06:44.230 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:06:44.313 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 00:07:09.504 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57726 10 6452 1 2025-10-13 00:08:09.915 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:41902 10 6452 1 2025-10-13 00:09:10.277 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55020 10 6452 1 2025-10-13 00:10:10.679 00:00:10.864 TCP 1.101.0.1:3000 -> 23.104.0.1:60492 10 6452 1 2025-10-13 00:05:43.374 00:06:00.437 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 00:05:43.373 00:06:00.441 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 00:11:11.581 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44446 10 6452 1 2025-10-13 00:11:44.458 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 00:11:44.415 00:00:00.032 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 00:11:44.222 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:11:44.302 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:11:44.385 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 00:12:11.986 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53712 10 6452 1 2025-10-13 00:13:12.403 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41570 10 6452 1 2025-10-13 00:14:12.804 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58438 10 6452 1 2025-10-13 00:15:13.213 00:00:11.015 TCP 1.101.0.1:3000 -> 23.104.0.1:41586 10 6452 1 2025-10-13 00:16:14.269 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51064 10 6452 1 2025-10-13 00:16:44.628 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 00:16:44.628 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 00:16:44.501 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 00:16:44.298 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:16:44.546 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:17:14.631 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38826 10 6452 1 2025-10-13 00:12:43.376 00:06:00.439 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 00:12:43.374 00:06:00.444 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 00:18:15.032 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41538 10 6452 1 2025-10-13 00:19:15.431 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39372 10 6452 1 2025-10-13 00:20:15.853 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:37708 10 6452 1 2025-10-13 00:21:16.278 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50504 10 6452 1 2025-10-13 00:21:44.620 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 00:21:44.347 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 00:21:44.594 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 00:21:44.207 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:21:44.538 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:22:16.683 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49110 10 6452 1 2025-10-13 00:23:17.106 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39380 10 6452 1 2025-10-13 00:24:17.513 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41418 10 6452 1 2025-10-13 00:19:43.380 00:06:00.438 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 00:19:43.384 00:06:00.432 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 00:25:17.927 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:56644 10 6452 1 2025-10-13 00:26:18.351 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55970 10 6452 1 2025-10-13 00:26:44.610 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:26:44.736 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 00:26:44.449 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 00:26:44.476 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:26:44.693 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 00:27:18.757 00:00:10.574 TCP 1.101.0.1:3000 -> 23.104.0.1:42948 10 6452 1 2025-10-13 00:28:19.370 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56192 10 6452 1 2025-10-13 00:29:19.772 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:33300 10 6452 1 2025-10-13 00:30:20.183 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58500 10 6452 1 2025-10-13 00:31:44.859 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 00:26:43.386 00:06:00.437 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 00:31:44.575 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 00:31:44.694 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:31:20.540 00:00:19.690 TCP 1.101.0.1:3000 -> 23.104.0.1:49614 10 6452 1 2025-10-13 00:31:44.728 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:26:43.383 00:06:00.443 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 00:31:44.810 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 00:32:30.279 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58230 10 6452 1 2025-10-13 00:33:30.677 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:33316 10 6452 1 2025-10-13 00:34:31.062 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49852 10 6452 1 2025-10-13 00:35:31.467 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58736 10 6452 1 2025-10-13 00:36:44.876 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 00:36:44.792 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 00:36:44.795 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 00:36:44.968 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:36:44.793 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:36:31.867 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:56588 10 6452 1 2025-10-13 00:37:32.230 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:40242 10 6452 1 2025-10-13 00:38:32.594 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40932 10 6452 1 2025-10-13 00:33:43.388 00:06:00.439 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 00:33:43.386 00:06:00.444 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 00:39:33.003 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44086 10 6452 1 2025-10-13 00:40:33.406 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35174 10 6452 1 2025-10-13 00:41:45.215 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 00:41:44.904 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 00:41:44.745 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:41:33.813 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:39646 10 6452 1 2025-10-13 00:41:44.985 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 00:41:45.133 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:42:34.221 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42610 10 6452 1 2025-10-13 00:43:34.625 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53382 10 6452 1 2025-10-13 00:44:35.029 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:45440 10 6452 1 2025-10-13 00:40:43.389 00:06:00.443 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 00:40:43.392 00:06:00.437 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 00:45:35.390 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55112 10 6452 1 2025-10-13 00:46:44.926 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 00:46:44.857 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 00:46:44.749 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:46:44.832 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 00:46:45.103 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:46:35.793 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:33884 12 10369 1 2025-10-13 00:47:36.274 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40928 12 6556 1 2025-10-13 00:48:36.679 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37886 10 6452 1 2025-10-13 00:49:37.096 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:59232 10 6452 1 2025-10-13 00:50:37.463 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58428 10 6452 1 2025-10-13 00:51:44.938 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:51:45.120 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:51:37.866 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52792 10 6452 1 2025-10-13 00:51:45.208 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 00:51:45.052 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 00:51:45.203 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 00:47:43.394 00:06:00.437 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 00:47:43.391 00:06:00.443 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 00:52:38.279 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53722 10 6452 1 2025-10-13 00:53:38.677 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:40436 10 6452 1 2025-10-13 00:54:39.103 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43522 10 6452 1 2025-10-13 00:55:39.509 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44368 10 6452 1 2025-10-13 00:56:45.426 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 00:56:45.361 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 00:56:45.438 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 00:56:45.259 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:56:45.344 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:56:39.871 00:00:10.518 TCP 1.101.0.1:3000 -> 23.104.0.1:33050 10 6452 1 2025-10-13 00:57:40.433 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54380 10 6452 1 Summary: total flows: 135, total bytes: 417606, total packets: 1002, avg bps: 941, avg pps: 0, avg bpp: 416 Time window: 2025-10-12 23:58:43 - 2025-10-13 00:57:50 Total flows processed: 135, passed: 135, Blocks skipped: 0, Bytes read: 14104 Sys: 0.0044s User: 0.0009s Wall: 0.0021s flows/second: 65498.1 Runtime: 0.0021s