Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-13 12:58:41.509 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52004 10 6452 1 2025-10-13 12:59:41.914 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49816 10 6452 1 2025-10-13 13:00:42.317 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:38326 10 6452 1 2025-10-13 13:01:42.675 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52286 10 6452 1 2025-10-13 13:01:59.757 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 13:01:59.925 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 13:01:59.699 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 13:02:00.059 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 13:02:00.142 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 13:02:43.107 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50848 10 6452 1 2025-10-13 12:59:43.594 00:05:00.498 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 12:59:43.596 00:05:00.493 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 13:03:43.505 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:50060 10 6452 1 2025-10-13 13:04:43.870 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:49616 10 6452 1 2025-10-13 13:05:44.292 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53404 10 6452 1 2025-10-13 13:06:59.814 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 13:06:44.694 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:39590 10 6452 1 2025-10-13 13:06:59.810 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 13:06:59.931 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 13:06:59.975 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 13:07:00.058 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 13:07:45.123 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41948 10 6452 1 2025-10-13 13:08:45.533 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43808 10 6452 1 2025-10-13 13:05:43.599 00:05:00.493 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 13:05:43.596 00:05:00.498 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 13:09:45.945 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:39966 10 6452 1 2025-10-13 13:10:46.361 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33162 10 6452 1 2025-10-13 13:11:46.764 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:56864 10 6452 1 2025-10-13 13:11:59.957 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 13:11:59.961 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 13:12:00.115 00:00:00.033 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 13:12:00.192 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 13:12:00.040 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 13:12:47.188 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:56202 10 6452 1 2025-10-13 13:13:47.613 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51990 10 6452 1 2025-10-13 13:14:48.019 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35972 10 6452 1 2025-10-13 13:11:43.599 00:05:00.494 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 13:11:43.597 00:05:00.498 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 13:15:48.416 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:37624 10 6452 1 2025-10-13 13:16:59.896 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 13:16:59.888 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 13:16:48.779 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60926 10 6452 1 2025-10-13 13:17:00.078 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 13:17:00.091 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 13:17:00.181 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 13:17:49.191 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42098 10 6452 1 2025-10-13 13:18:49.586 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33710 10 6452 1 2025-10-13 13:19:49.990 00:00:10.863 TCP 1.101.0.1:3000 -> 23.104.0.1:50966 10 6452 1 2025-10-13 13:20:50.889 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:48292 10 6452 1 2025-10-13 13:17:43.600 00:05:00.494 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 13:17:43.597 00:05:00.499 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 13:21:59.866 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 13:22:00.337 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 13:21:59.985 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 13:22:00.374 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 13:21:51.320 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:57232 10 6452 1 2025-10-13 13:22:00.457 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 13:22:51.722 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53640 10 6452 1 2025-10-13 13:23:52.134 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:51686 10 6452 1 2025-10-13 13:24:52.517 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60106 10 6452 1 2025-10-13 13:25:52.916 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39426 10 6452 1 2025-10-13 13:27:00.403 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 13:27:00.320 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 13:27:00.302 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 13:27:00.221 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 13:26:53.320 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52922 10 6452 1 2025-10-13 13:27:00.320 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 13:23:43.599 00:05:00.502 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 13:23:43.602 00:05:00.496 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 13:27:53.727 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34128 10 6452 1 2025-10-13 13:28:54.131 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38400 10 6452 1 2025-10-13 13:29:54.536 00:00:10.578 TCP 1.101.0.1:3000 -> 23.104.0.1:58072 10 6452 1 2025-10-13 13:30:55.135 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:48192 10 6452 1 2025-10-13 13:32:00.420 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 13:32:00.570 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 13:32:00.483 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 13:32:00.541 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 13:32:00.624 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 13:31:55.520 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58144 10 6452 1 2025-10-13 13:32:55.932 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:53454 10 6452 1 2025-10-13 13:29:43.602 00:05:00.494 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 13:29:43.600 00:05:00.499 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 13:33:56.353 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47104 10 6452 1 2025-10-13 13:34:56.756 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60992 10 6452 1 2025-10-13 13:35:57.156 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60622 10 6452 1 2025-10-13 13:37:00.549 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 13:37:00.532 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 13:37:00.536 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 13:37:00.316 00:00:00.012 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 13:37:00.466 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 13:36:57.560 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59564 10 6452 1 2025-10-13 13:37:57.964 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44770 10 6452 1 2025-10-13 13:38:58.366 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45340 10 6452 1 2025-10-13 13:35:43.607 00:05:00.491 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 13:35:43.605 00:05:00.496 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 13:39:58.766 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:46890 10 6452 1 2025-10-13 13:40:59.188 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:60574 10 6452 1 2025-10-13 13:42:00.507 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 13:42:00.587 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 13:42:00.394 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 13:42:00.426 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 13:42:00.424 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 13:41:59.560 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:50612 10 6452 1 2025-10-13 13:42:59.961 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:36106 10 6452 1 2025-10-13 13:44:00.385 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:51800 10 6452 1 2025-10-13 13:45:00.750 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48186 10 6452 1 2025-10-13 13:41:43.606 00:05:00.495 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 13:41:43.608 00:05:00.491 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 13:46:01.153 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58752 10 6452 1 2025-10-13 13:47:00.561 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 13:47:00.554 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 13:47:00.553 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 13:47:00.723 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 13:47:00.644 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 13:47:01.559 00:00:10.541 TCP 1.101.0.1:3000 -> 23.104.0.1:37344 10 6452 1 2025-10-13 13:48:02.144 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53532 10 6452 1 2025-10-13 13:49:02.547 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52426 10 6452 1 2025-10-13 13:50:02.951 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35328 10 6452 1 2025-10-13 13:51:03.358 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57432 10 6452 1 2025-10-13 13:47:43.612 00:05:00.487 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 13:47:43.611 00:05:00.492 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 13:52:00.958 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 13:52:00.854 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 13:52:00.720 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 13:52:00.767 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 13:52:00.851 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 13:52:03.759 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:43330 10 6452 1 2025-10-13 13:53:04.176 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:53168 10 6452 1 2025-10-13 13:54:04.539 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52760 10 6452 1 2025-10-13 13:55:04.900 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:50958 10 6452 1 2025-10-13 13:56:05.268 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59272 10 6452 1 2025-10-13 13:57:00.899 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 13:57:00.843 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 13:57:00.740 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 13:57:00.895 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 13:57:00.823 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 13:57:05.671 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43294 10 6452 1 2025-10-13 13:53:43.614 00:05:00.488 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 13:53:43.617 00:05:00.482 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 13:58:06.101 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57030 10 6452 1 Summary: total flows: 140, total bytes: 417000, total packets: 1020, avg bps: 925, avg pps: 0, avg bpp: 408 Time window: 2025-10-13 12:58:41 - 2025-10-13 13:58:44 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0046s User: 0.0009s Wall: 0.0030s flows/second: 47153.5 Runtime: 0.0030s