Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-13 21:59:31.526 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49122 10 6452 1 2025-10-13 22:00:31.931 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:53876 10 6452 1 2025-10-13 22:01:32.357 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:42016 12 10375 1 2025-10-13 22:02:11.783 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 22:02:11.665 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 22:02:11.494 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:02:11.719 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:02:11.801 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 22:02:32.795 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33940 10 6452 1 2025-10-13 21:59:43.767 00:05:00.477 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 22:03:33.208 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:58996 10 6452 1 2025-10-13 21:59:43.765 00:05:00.483 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 22:04:33.578 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33020 10 6452 1 2025-10-13 22:05:33.940 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43418 10 6452 1 2025-10-13 22:06:34.347 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:42914 10 6452 1 2025-10-13 22:07:10.764 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 22:07:10.665 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 22:07:10.592 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:07:10.769 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:07:10.852 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 22:07:34.750 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:54770 10 6452 1 2025-10-13 22:08:35.123 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51016 10 6452 1 2025-10-13 22:05:43.770 00:05:00.475 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 22:05:43.767 00:05:00.480 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 22:09:35.481 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35542 10 6452 1 2025-10-13 22:10:35.895 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:53034 10 6452 1 2025-10-13 22:11:36.315 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:55418 12 6556 1 2025-10-13 22:12:11.182 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 22:12:10.698 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 22:12:10.794 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:12:10.937 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:12:11.023 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 22:12:36.739 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42356 10 6452 1 2025-10-13 22:13:37.143 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40500 10 6452 1 2025-10-13 22:14:37.550 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:38870 10 6452 1 2025-10-13 22:11:43.770 00:05:00.476 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 22:11:43.768 00:05:00.481 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 22:15:37.913 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38708 10 6452 1 2025-10-13 22:16:38.319 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43168 10 6452 1 2025-10-13 22:17:11.166 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 22:17:10.866 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 22:17:10.855 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 22:17:10.704 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:17:11.082 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:17:38.716 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46266 10 6452 1 2025-10-13 22:18:39.103 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37766 10 6452 1 2025-10-13 22:19:39.508 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36724 10 6452 1 2025-10-13 22:20:39.915 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43484 10 6452 1 2025-10-13 22:17:43.770 00:05:00.479 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 22:17:43.773 00:05:00.474 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 22:21:40.337 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:58754 10 6452 1 2025-10-13 22:22:10.969 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 22:22:11.137 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 22:22:10.882 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 22:22:10.803 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:22:10.886 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:22:40.755 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33764 10 6452 1 2025-10-13 22:23:41.163 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51348 10 6452 1 2025-10-13 22:24:41.566 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54716 10 6452 1 2025-10-13 22:25:41.974 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:43890 10 6452 1 2025-10-13 22:26:42.397 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:39378 12 10375 1 2025-10-13 22:27:11.230 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 22:27:11.172 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 22:27:10.923 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:27:11.162 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:27:11.245 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 22:23:43.774 00:05:00.477 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 22:23:43.776 00:05:00.472 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 22:27:42.837 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:52164 10 6452 1 2025-10-13 22:28:43.282 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43974 10 6452 1 2025-10-13 22:29:43.690 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50476 10 6452 1 2025-10-13 22:30:44.111 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:43962 10 6452 1 2025-10-13 22:31:44.488 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:59828 12 10369 1 2025-10-13 22:32:11.305 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 22:32:11.223 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:32:11.319 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 22:32:11.228 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 22:32:10.938 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:32:44.925 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46480 10 6452 1 2025-10-13 22:29:43.778 00:05:00.471 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 22:29:43.777 00:05:00.476 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 22:33:45.346 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43470 10 6452 1 2025-10-13 22:34:45.746 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33160 10 6452 1 2025-10-13 22:35:46.147 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37998 10 6452 1 2025-10-13 22:36:46.514 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36458 10 6452 1 2025-10-13 22:37:11.264 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 22:37:11.265 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 22:37:11.290 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:37:11.258 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:37:11.341 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 22:37:46.922 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:32926 10 6452 1 2025-10-13 22:38:47.324 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49022 10 6452 1 2025-10-13 22:35:43.782 00:05:00.471 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 22:35:43.780 00:05:00.477 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 22:39:47.688 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:35742 10 6452 1 2025-10-13 22:40:48.117 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53892 10 6452 1 2025-10-13 22:41:48.524 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54728 10 6452 1 2025-10-13 22:42:11.524 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 22:42:11.368 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 22:42:11.446 00:00:00.030 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 22:42:11.224 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:42:11.441 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:42:48.926 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:55200 10 6452 1 2025-10-13 22:43:49.352 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54574 10 6452 1 2025-10-13 22:44:49.756 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:34734 10 6452 1 2025-10-13 22:41:43.782 00:05:00.475 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 22:41:43.785 00:05:00.471 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 22:45:50.140 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34424 10 6452 1 2025-10-13 22:46:50.550 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46944 10 6452 1 2025-10-13 22:47:11.566 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 22:47:11.899 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 22:47:11.851 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:47:11.760 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:47:11.844 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 22:47:50.952 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42196 10 6452 1 2025-10-13 22:48:51.358 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44046 10 6452 1 2025-10-13 22:49:51.769 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:58486 12 6556 1 2025-10-13 22:50:52.190 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49710 10 6452 1 2025-10-13 22:47:43.784 00:05:00.475 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 22:47:43.787 00:05:00.470 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 22:51:52.594 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59608 10 6452 1 2025-10-13 22:52:11.760 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 22:52:11.781 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:52:11.398 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:52:11.767 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 22:52:11.480 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 22:52:53.010 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41214 10 6452 1 2025-10-13 22:53:53.412 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:36536 10 6452 1 2025-10-13 22:54:53.785 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:35914 10 6452 1 2025-10-13 22:55:54.193 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56512 10 6452 1 2025-10-13 22:56:54.597 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43774 10 6452 1 2025-10-13 22:57:11.674 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 22:57:11.572 00:00:00.034 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 22:57:11.619 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 22:57:11.467 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:57:11.592 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:53:43.785 00:05:00.475 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 22:53:43.787 00:05:00.470 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 22:57:55.010 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:53430 10 6452 1 Summary: total flows: 139, total bytes: 422519, total packets: 1020, avg bps: 951, avg pps: 0, avg bpp: 414 Time window: 2025-10-13 21:59:31 - 2025-10-13 22:58:44 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0028s User: 0.0014s Wall: 0.0022s flows/second: 64349.7 Runtime: 0.0022s