Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-14 10:59:01.387 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44614 10 6452 1 2025-10-14 11:00:01.801 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57400 10 6452 1 2025-10-14 11:01:02.197 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46498 10 6452 1 2025-10-14 11:02:02.606 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38952 10 6452 1 2025-10-14 11:02:26.274 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 11:02:26.193 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 11:02:26.321 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 11:02:26.190 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 11:02:26.226 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 11:03:03.007 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51162 10 6452 1 2025-10-14 10:58:44.064 00:06:00.440 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-14 10:58:44.066 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-10-14 11:04:03.405 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60718 10 6452 1 2025-10-14 11:05:03.772 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39802 10 6452 1 2025-10-14 11:06:04.179 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:36942 12 10375 1 2025-10-14 11:07:04.608 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57906 10 6452 1 2025-10-14 11:07:26.400 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 11:07:26.259 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 11:07:26.318 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 11:07:26.329 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 11:07:26.416 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 11:08:05.010 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:42020 10 6452 1 2025-10-14 11:09:05.409 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40918 10 6452 1 2025-10-14 11:04:44.501 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-10-14 11:05:44.068 00:04:00.439 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 11:10:05.809 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38078 10 6452 1 2025-10-14 11:11:06.209 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43602 10 6452 1 2025-10-14 11:12:06.614 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54450 10 6452 1 2025-10-14 11:12:26.727 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 11:12:26.528 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 11:12:26.420 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 11:12:26.518 00:00:00.042 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 11:12:26.601 00:00:00.042 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 11:13:06.981 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43072 10 6452 1 2025-10-14 11:14:07.388 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:48534 10 6452 1 2025-10-14 11:15:07.749 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58138 10 6452 1 2025-10-14 11:10:44.068 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-10-14 11:16:08.154 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57984 10 6452 1 2025-10-14 11:11:44.071 00:06:00.434 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-14 11:17:08.553 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45126 10 6452 1 2025-10-14 11:17:26.742 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 11:17:26.663 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 11:17:26.660 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 11:17:26.305 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 11:17:26.658 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 11:18:08.952 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40126 10 6452 1 2025-10-14 11:19:09.363 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51134 10 6452 1 2025-10-14 11:18:44.070 00:01:00.434 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-14 11:20:09.768 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:50570 10 6452 1 2025-10-14 11:21:10.190 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45244 10 6452 1 2025-10-14 11:16:44.506 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 790 1 2025-10-14 11:22:10.594 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41904 10 6452 1 2025-10-14 11:22:26.805 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 11:22:26.585 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 11:22:26.449 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 11:22:26.679 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 11:22:26.762 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 11:23:11.022 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42962 10 6452 1 2025-10-14 11:24:11.434 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37324 10 6452 1 2025-10-14 11:20:44.071 00:04:00.436 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 11:25:11.840 00:00:10.470 TCP 1.101.0.1:3000 -> 23.104.0.1:47486 10 6452 1 2025-10-14 11:26:12.352 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55704 10 6452 1 2025-10-14 11:27:12.756 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:55600 10 6452 1 2025-10-14 11:27:26.806 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 11:27:26.618 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 11:27:26.641 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 11:27:26.975 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 11:27:27.058 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 11:28:13.147 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43756 10 6452 1 2025-10-14 11:23:44.070 00:06:00.439 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-14 11:29:13.552 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33800 10 6452 1 2025-10-14 11:25:44.072 00:04:00.434 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 11:30:13.965 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37770 10 6452 1 2025-10-14 11:31:14.372 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:42474 10 6452 1 2025-10-14 11:32:27.219 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 11:32:27.036 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 11:32:26.739 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 11:32:14.743 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45958 10 6452 1 2025-10-14 11:32:27.135 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 11:32:27.134 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 11:33:15.146 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:42754 10 6452 1 2025-10-14 11:34:15.541 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57070 10 6452 1 2025-10-14 11:30:44.073 00:04:00.433 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-14 11:35:15.945 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:51416 10 6452 1 2025-10-14 11:30:44.070 00:06:00.440 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-14 11:36:16.366 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53778 10 6452 1 2025-10-14 11:37:27.040 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 11:37:26.882 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 11:37:26.894 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 11:37:26.747 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 11:37:16.760 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:56750 10 6452 1 2025-10-14 11:37:26.958 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 11:38:17.129 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:48230 10 6452 1 2025-10-14 11:39:17.493 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33398 10 6452 1 2025-10-14 11:40:17.859 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:51442 10 6452 1 2025-10-14 11:35:44.074 00:06:00.435 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-14 11:41:18.274 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42190 10 6452 1 2025-10-14 11:37:44.072 00:04:00.438 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 11:42:27.086 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 11:42:27.089 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 11:42:26.932 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 11:42:18.676 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:57370 10 6452 1 2025-10-14 11:42:27.081 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 11:42:27.164 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 11:43:19.116 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41158 10 6452 1 2025-10-14 11:44:19.520 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57702 10 6452 1 2025-10-14 11:45:19.922 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56456 10 6452 1 2025-10-14 11:46:20.342 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:40310 10 6452 1 2025-10-14 11:42:44.077 00:04:00.437 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-14 11:47:27.090 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 11:47:27.093 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 11:47:26.975 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 11:47:26.916 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 11:47:27.172 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 11:47:20.695 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51556 10 6452 1 2025-10-14 11:42:44.079 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-10-14 11:48:21.106 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55638 10 6452 1 2025-10-14 11:49:21.513 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53298 10 6452 1 2025-10-14 11:50:21.917 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:55742 11 6492 1 2025-10-14 11:51:22.336 00:00:10.435 TCP 1.101.0.1:3000 -> 23.104.0.1:43708 11 6504 1 2025-10-14 11:52:27.239 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 11:52:27.248 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 11:52:27.175 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 11:52:27.364 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 11:52:27.447 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 11:52:22.819 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58910 10 6452 1 2025-10-14 11:47:44.078 00:06:00.439 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-14 11:53:23.223 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47174 10 6452 1 2025-10-14 11:48:44.511 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-10-14 11:54:23.628 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39910 10 6452 1 2025-10-14 11:55:24.050 00:00:10.459 TCP 1.101.0.1:3000 -> 23.104.0.1:53604 10 6452 1 2025-10-14 11:56:24.548 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37696 10 6452 1 2025-10-14 11:55:44.082 00:01:00.432 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-14 11:57:27.517 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-14 11:57:27.439 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-14 11:57:27.439 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-14 11:57:27.195 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 11:57:27.435 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-14 11:57:24.950 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:34910 10 6452 1 2025-10-14 11:58:25.365 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35710 10 6452 1 Summary: total flows: 140, total bytes: 420400, total packets: 1014, avg bps: 936, avg pps: 0, avg bpp: 414 Time window: 2025-10-14 10:58:44 - 2025-10-14 11:58:35 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0026s User: 0.0013s Wall: 0.0023s flows/second: 61429.3 Runtime: 0.0023s