Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-13 11:59:16.663 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41910 10 6452 1 2025-10-13 12:00:17.029 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36036 10 6452 1 2025-10-13 12:01:17.438 00:00:10.435 TCP 1.101.0.1:3000 -> 23.104.0.1:59934 12 10375 1 2025-10-13 12:01:58.913 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 12:01:58.831 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 12:01:58.467 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 12:01:58.782 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 12:01:58.698 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 12:02:17.918 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54198 10 6452 1 2025-10-13 12:03:18.320 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60048 10 6452 1 2025-10-13 11:59:43.580 00:05:00.490 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 11:59:43.579 00:05:00.495 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 12:04:18.726 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44988 10 6452 1 2025-10-13 12:05:19.138 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36838 10 6452 1 2025-10-13 12:06:19.506 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40160 10 6452 1 2025-10-13 12:06:58.615 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 12:06:58.645 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 12:06:58.615 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 12:06:58.619 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 12:06:58.699 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 12:07:19.913 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52100 10 6452 1 2025-10-13 12:08:20.324 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58382 10 6452 1 2025-10-13 12:09:20.727 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:37852 10 6452 1 2025-10-13 12:05:43.585 00:05:00.486 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 12:05:43.582 00:05:00.492 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 12:10:21.120 00:00:10.432 TCP 1.101.0.1:3000 -> 23.104.0.1:39066 11 6504 1 2025-10-13 12:11:21.590 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:51508 10 6452 1 2025-10-13 12:11:58.900 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 12:11:58.818 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 12:11:58.752 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 12:11:58.747 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 12:11:58.584 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 12:12:21.951 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:46828 10 6452 1 2025-10-13 12:13:22.334 00:00:10.404 TCP 1.101.0.1:3000 -> 23.104.0.1:57132 10 6452 1 2025-10-13 12:14:22.774 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54782 10 6452 1 2025-10-13 12:15:23.187 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46242 10 6452 1 2025-10-13 12:11:43.585 00:05:00.487 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 12:11:43.584 00:05:00.492 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 12:16:23.591 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41988 10 6452 1 2025-10-13 12:16:58.950 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 12:16:58.956 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 12:16:58.907 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 12:16:58.822 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 12:16:58.905 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 12:17:23.998 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53580 10 6452 1 2025-10-13 12:18:24.410 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59084 12 6556 1 2025-10-13 12:19:24.818 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55340 10 6452 1 2025-10-13 12:20:25.217 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51354 10 6452 1 2025-10-13 12:21:25.620 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:50174 12 10375 1 2025-10-13 12:17:43.586 00:05:00.487 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 12:17:43.584 00:05:00.492 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 12:21:58.994 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 12:21:58.677 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 12:21:58.805 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 12:21:59.095 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 12:21:59.178 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 12:22:26.113 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39520 10 6452 1 2025-10-13 12:23:26.529 00:00:11.198 TCP 1.101.0.1:3000 -> 23.104.0.1:52790 10 6452 1 2025-10-13 12:24:27.776 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37948 10 6452 1 2025-10-13 12:25:28.185 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45652 10 6452 1 2025-10-13 12:26:28.586 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45448 10 6452 1 2025-10-13 12:26:59.152 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 12:26:59.180 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 12:26:59.216 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 12:26:59.198 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 12:26:59.299 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 12:27:29.000 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52444 10 6452 1 2025-10-13 12:23:43.584 00:05:00.494 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 12:23:43.586 00:05:00.488 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 12:28:29.409 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45348 10 6452 1 2025-10-13 12:29:29.772 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:42486 10 6452 1 2025-10-13 12:30:30.181 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:46054 10 6452 1 2025-10-13 12:31:30.606 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:42602 10 6452 1 2025-10-13 12:31:59.212 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 12:31:59.147 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 12:31:59.260 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 12:31:59.221 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 12:31:59.129 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 12:32:31.005 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42974 10 6452 1 2025-10-13 12:29:43.591 00:05:00.486 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 12:33:31.410 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35972 10 6452 1 2025-10-13 12:29:43.589 00:05:00.491 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 12:34:31.814 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:58416 10 6452 1 2025-10-13 12:35:32.183 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34228 10 6452 1 2025-10-13 12:36:32.586 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60460 10 6452 1 2025-10-13 12:36:59.325 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 12:36:59.359 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 12:36:59.241 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 12:36:59.243 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 12:36:59.316 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 12:37:32.949 00:00:10.600 TCP 1.101.0.1:3000 -> 23.104.0.1:46006 10 6452 1 2025-10-13 12:38:33.586 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54780 10 6452 1 2025-10-13 12:35:43.593 00:05:00.485 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 12:39:33.951 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:47898 10 6452 1 2025-10-13 12:35:43.591 00:05:00.490 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 12:40:34.318 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55460 10 6452 1 2025-10-13 12:41:34.727 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:39316 10 6452 1 2025-10-13 12:41:59.531 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 12:41:59.265 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 12:41:59.477 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 12:41:59.413 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 12:41:59.561 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 12:42:35.102 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:38488 11 6492 1 2025-10-13 12:43:35.504 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48786 10 6452 1 2025-10-13 12:44:35.907 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:40344 10 6452 1 2025-10-13 12:41:43.592 00:05:00.495 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 12:41:43.594 00:05:00.490 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 12:45:36.287 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49242 10 6452 1 2025-10-13 12:46:36.646 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48598 10 6452 1 2025-10-13 12:46:59.462 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 12:46:59.700 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 12:46:59.700 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 12:46:59.065 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 12:46:59.382 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 12:47:37.069 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36732 10 6452 1 2025-10-13 12:48:37.433 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60738 10 6452 1 2025-10-13 12:49:37.838 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:47892 10 6452 1 2025-10-13 12:50:38.228 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42616 10 6452 1 2025-10-13 12:47:43.592 00:05:00.496 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 12:47:43.594 00:05:00.491 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 12:51:38.632 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58850 10 6452 1 2025-10-13 12:51:59.496 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 12:51:59.495 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 12:51:59.588 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 12:51:59.614 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 12:51:59.698 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 12:52:39.036 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59108 10 6452 1 2025-10-13 12:53:39.440 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35276 10 6452 1 2025-10-13 12:54:39.845 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:51676 10 6452 1 2025-10-13 12:55:40.272 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35670 10 6452 1 2025-10-13 12:56:40.681 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53760 10 6452 1 2025-10-13 12:56:59.847 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 12:56:59.573 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 12:56:59.766 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 12:56:59.666 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 12:56:59.764 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 12:53:43.594 00:05:00.497 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 12:53:43.595 00:05:00.493 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 12:57:41.108 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41710 10 6452 1 Summary: total flows: 139, total bytes: 418590, total packets: 1018, avg bps: 938, avg pps: 0, avg bpp: 411 Time window: 2025-10-13 11:59:16 - 2025-10-13 12:58:44 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0033s User: 0.0016s Wall: 0.0018s flows/second: 78224.6 Runtime: 0.0018s