Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-13 13:59:06.499 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:38852 10 6452 1 2025-10-13 14:00:06.855 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:45668 10 6452 1 2025-10-13 14:01:07.274 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39314 10 6452 1 2025-10-13 14:02:00.882 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:02:00.888 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:02:00.819 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:02:00.879 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:02:00.961 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 14:02:07.668 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48108 10 6452 1 2025-10-13 14:03:08.102 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48900 10 6452 1 2025-10-13 13:59:43.622 00:05:00.483 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 13:59:43.619 00:05:00.489 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 14:04:08.512 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50378 10 6452 1 2025-10-13 14:05:08.915 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:44704 10 6452 1 2025-10-13 14:06:09.285 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50050 10 6452 1 2025-10-13 14:07:01.085 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:07:00.640 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:07:01.083 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:07:01.134 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:07:01.166 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 14:07:09.687 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47050 10 6452 1 2025-10-13 14:08:10.110 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38174 10 6452 1 2025-10-13 14:09:10.511 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34838 10 6452 1 2025-10-13 14:05:43.623 00:05:00.483 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 14:05:43.622 00:05:00.487 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 14:10:10.916 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39850 10 6452 1 2025-10-13 14:11:11.318 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:35536 10 6452 1 2025-10-13 14:12:01.112 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:12:01.112 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:12:00.979 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:12:00.988 00:00:00.056 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:12:01.070 00:00:00.056 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 14:12:11.680 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:57410 10 6452 1 2025-10-13 14:13:12.107 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45678 10 6452 1 2025-10-13 14:14:12.510 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43346 10 6452 1 2025-10-13 14:15:12.913 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:54798 10 6452 1 2025-10-13 14:11:43.625 00:05:00.485 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 14:11:43.627 00:05:00.480 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 14:16:13.286 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53892 10 6452 1 2025-10-13 14:17:01.144 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 14:17:01.640 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:17:01.546 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:17:01.061 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:17:01.062 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:17:13.681 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43028 10 6452 1 2025-10-13 14:18:14.109 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44362 10 6452 1 2025-10-13 14:19:14.511 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43898 10 6452 1 2025-10-13 14:20:14.917 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45732 10 6452 1 2025-10-13 14:21:15.316 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45768 10 6452 1 2025-10-13 14:17:43.628 00:05:00.484 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 14:17:43.625 00:05:00.489 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 14:22:01.503 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:22:01.406 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:22:01.347 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:22:01.402 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:22:01.486 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 14:22:15.680 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57570 10 6452 1 2025-10-13 14:23:16.112 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41214 10 6452 1 2025-10-13 14:24:16.508 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35180 10 6452 1 2025-10-13 14:25:16.915 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58956 10 6452 1 2025-10-13 14:26:17.327 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47312 10 6452 1 2025-10-13 14:27:01.526 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 14:27:01.439 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:27:01.562 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:27:01.474 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:27:01.443 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:27:17.739 00:00:10.412 TCP 1.101.0.1:3000 -> 23.104.0.1:39978 10 6452 1 2025-10-13 14:23:43.627 00:05:00.489 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 14:23:43.629 00:05:00.484 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 14:28:18.190 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48904 10 6452 1 2025-10-13 14:29:18.587 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:41462 11 6504 1 2025-10-13 14:30:19.047 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:47842 10 6452 1 2025-10-13 14:31:19.408 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54554 10 6452 1 2025-10-13 14:32:01.452 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:32:01.613 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:32:01.546 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:32:01.612 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:32:01.695 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 14:32:19.770 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:40710 10 6452 1 2025-10-13 14:33:20.181 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57862 10 6452 1 2025-10-13 14:29:43.632 00:05:00.485 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 14:29:43.635 00:05:00.480 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 14:34:20.587 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51338 10 6452 1 2025-10-13 14:35:20.987 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53602 10 6452 1 2025-10-13 14:36:21.392 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:38176 12 10375 1 2025-10-13 14:37:01.696 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:37:01.615 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:37:01.561 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:37:01.744 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:37:01.827 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 14:37:21.828 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:60510 10 6452 1 2025-10-13 14:38:22.211 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35448 10 6452 1 2025-10-13 14:39:22.571 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60612 10 6452 1 2025-10-13 14:35:43.634 00:05:00.486 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 14:35:43.636 00:05:00.480 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 14:40:22.972 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56366 10 6452 1 2025-10-13 14:41:23.384 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:33578 12 10375 1 2025-10-13 14:42:01.846 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:42:01.888 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:42:01.940 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:42:01.896 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:42:02.023 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 14:42:23.873 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55860 10 6452 1 2025-10-13 14:43:24.279 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:48874 10 6452 1 2025-10-13 14:44:24.678 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:46346 12 6556 1 2025-10-13 14:45:25.114 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60526 10 6452 1 2025-10-13 14:41:43.635 00:05:00.481 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 14:41:43.633 00:05:00.486 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 14:46:25.520 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54180 10 6452 1 2025-10-13 14:47:01.953 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 14:47:01.874 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:47:01.794 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:47:01.837 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:47:01.870 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:47:25.929 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:44696 10 6452 1 2025-10-13 14:48:26.357 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50532 10 6452 1 2025-10-13 14:49:26.771 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:50890 10 6452 1 2025-10-13 14:50:27.186 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:60874 10 6452 1 2025-10-13 14:51:27.544 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53012 10 6452 1 2025-10-13 14:47:43.639 00:05:00.483 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 14:47:43.636 00:05:00.487 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 14:52:01.953 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:52:01.846 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:52:02.159 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:52:01.960 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:52:02.044 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 14:52:27.948 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:52996 10 6452 1 2025-10-13 14:53:28.360 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55862 10 6452 1 2025-10-13 14:54:28.768 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:49648 10 6452 1 2025-10-13 14:55:29.137 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48248 10 6452 1 2025-10-13 14:56:29.545 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47862 10 6452 1 2025-10-13 14:57:02.116 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:57:02.116 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:57:02.001 00:00:00.037 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:57:02.112 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:57:02.196 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 14:53:43.639 00:05:00.491 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 14:57:29.908 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46038 10 6452 1 2025-10-13 14:53:43.637 00:05:00.496 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 14:58:30.317 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43584 10 6452 1 Summary: total flows: 140, total bytes: 425002, total packets: 1027, avg bps: 950, avg pps: 0, avg bpp: 413 Time window: 2025-10-13 13:59:06 - 2025-10-13 14:58:44 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0029s User: 0.0019s Wall: 0.0020s flows/second: 70918.2 Runtime: 0.0020s