Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-13 14:59:30.724 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:45314 10 6452 1 2025-10-13 15:00:31.145 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:51066 10 6452 1 2025-10-13 15:01:31.553 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:57182 12 10369 1 2025-10-13 15:02:02.410 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:02:02.328 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 15:02:02.399 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 15:02:02.254 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:02:02.493 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 15:02:32.037 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:53414 10 6452 1 2025-10-13 14:59:43.638 00:05:00.493 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 15:03:32.422 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57754 10 6452 1 2025-10-13 14:59:43.642 00:05:00.488 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 15:04:32.824 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54150 10 6452 1 2025-10-13 15:05:33.192 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50706 10 6452 1 2025-10-13 15:06:33.589 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43160 10 6452 1 2025-10-13 15:07:02.211 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:07:02.219 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 15:07:02.109 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 15:07:02.312 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:07:02.295 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 15:07:34.007 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:55746 10 6452 1 2025-10-13 15:08:34.364 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37406 10 6452 1 2025-10-13 15:05:43.639 00:05:00.496 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 15:05:43.641 00:05:00.490 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 15:09:34.769 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45028 10 6452 1 2025-10-13 15:10:35.173 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36022 10 6452 1 2025-10-13 15:11:35.587 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:36508 10 6452 1 2025-10-13 15:12:02.358 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 15:12:02.360 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 15:12:02.194 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:12:02.246 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:12:02.328 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 15:12:35.952 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:52252 10 6452 1 2025-10-13 15:13:36.361 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38618 10 6452 1 2025-10-13 15:14:36.770 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:51002 10 6452 1 2025-10-13 15:11:43.642 00:05:00.490 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 15:11:43.639 00:05:00.496 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 15:15:37.200 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49452 10 6452 1 2025-10-13 15:16:37.601 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38854 10 6452 1 2025-10-13 15:17:02.434 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 15:17:02.350 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 15:17:02.393 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:17:02.601 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:17:02.683 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 15:17:38.004 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58082 10 6452 1 2025-10-13 15:18:38.402 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43016 10 6452 1 2025-10-13 15:19:38.804 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33046 10 6452 1 2025-10-13 15:20:39.208 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39664 10 6452 1 2025-10-13 15:17:43.644 00:05:00.490 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 15:17:43.642 00:05:00.496 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 15:21:39.616 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:52890 10 6452 1 2025-10-13 15:22:02.673 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 15:22:02.590 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 15:22:02.594 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 15:22:02.464 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:22:02.590 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:22:39.977 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55590 10 6452 1 2025-10-13 15:23:40.380 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38286 10 6452 1 2025-10-13 15:24:40.787 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59538 10 6452 1 2025-10-13 15:25:41.194 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55764 10 6452 1 2025-10-13 15:26:41.599 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54452 10 6452 1 2025-10-13 15:27:02.795 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 15:27:02.449 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 15:27:02.710 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 15:27:02.674 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:27:02.711 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:23:43.648 00:05:00.487 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 15:23:43.647 00:05:00.493 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 15:27:42.001 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:38780 10 6452 1 2025-10-13 15:28:42.358 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42078 10 6452 1 2025-10-13 15:29:42.762 00:00:10.718 TCP 1.101.0.1:3000 -> 23.104.0.1:50600 10 6452 1 2025-10-13 15:30:43.524 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35268 10 6452 1 2025-10-13 15:31:43.927 00:00:10.451 TCP 1.101.0.1:3000 -> 23.104.0.1:44632 12 10375 1 2025-10-13 15:32:02.890 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 15:32:03.097 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 15:32:02.874 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:32:02.890 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:32:02.972 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 15:32:44.417 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38646 10 6452 1 2025-10-13 15:29:43.650 00:05:00.487 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 15:29:43.647 00:05:00.492 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 15:33:44.823 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:57672 10 6452 1 2025-10-13 15:34:45.199 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36654 10 6452 1 2025-10-13 15:35:45.600 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53250 10 6452 1 2025-10-13 15:36:46.007 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:33484 10 6452 1 2025-10-13 15:37:02.776 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 15:37:02.683 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 15:37:02.694 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:37:02.693 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:37:02.900 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 15:37:46.370 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56016 10 6452 1 2025-10-13 15:38:46.769 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:34030 10 6452 1 2025-10-13 15:35:43.651 00:05:00.487 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 15:35:43.649 00:05:00.492 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 15:39:47.147 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35462 12 6556 1 2025-10-13 15:40:47.551 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35852 10 6452 1 2025-10-13 15:41:47.951 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:45876 10 6452 1 2025-10-13 15:42:02.979 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 15:42:02.984 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 15:42:03.154 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:42:03.296 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:42:03.378 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 15:42:48.360 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41438 10 6452 1 2025-10-13 15:43:48.765 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:36402 10 6452 1 2025-10-13 15:44:49.134 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46104 12 6556 1 2025-10-13 15:41:43.654 00:05:00.486 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 15:41:43.650 00:05:00.492 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 15:45:49.552 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39154 10 6452 1 2025-10-13 15:47:03.202 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 15:47:03.211 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 15:47:03.110 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 15:47:02.751 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:46:49.963 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58824 10 6452 1 2025-10-13 15:47:03.119 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:47:50.368 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52298 10 6452 1 2025-10-13 15:48:50.769 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58008 10 6452 1 2025-10-13 15:49:51.181 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:34480 10 6452 1 2025-10-13 15:50:51.574 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35236 10 6452 1 2025-10-13 15:47:43.655 00:05:00.487 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 15:47:43.653 00:05:00.491 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 15:52:03.483 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 15:52:03.206 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 15:52:03.111 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 15:52:03.248 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:51:51.940 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:36176 10 6452 1 2025-10-13 15:52:03.401 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:52:52.352 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48350 10 6452 1 2025-10-13 15:53:52.750 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:45544 10 6452 1 2025-10-13 15:54:53.165 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57914 10 6452 1 2025-10-13 15:55:53.568 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49130 10 6452 1 2025-10-13 15:57:03.148 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:56:53.977 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51394 10 6452 1 2025-10-13 15:57:03.246 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 15:57:03.333 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 15:57:03.252 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:57:03.231 00:00:00.047 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 15:53:43.653 00:05:00.492 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 15:53:43.655 00:05:00.487 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 15:57:54.390 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:33806 10 6452 1 Summary: total flows: 139, total bytes: 418596, total packets: 1018, avg bps: 942, avg pps: 0, avg bpp: 411 Time window: 2025-10-13 14:59:30 - 2025-10-13 15:58:44 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0114s User: 0.0009s Wall: 0.0038s flows/second: 36367.6 Runtime: 0.0038s