Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-16 11:59:27.902 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37678 10 6452 1 2025-10-16 12:00:28.313 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37986 10 6452 1 2025-10-16 12:01:28.717 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:50842 10 6452 1 2025-10-16 12:02:29.132 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33190 10 6452 1 2025-10-16 12:03:25.402 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 12:03:25.092 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 12:03:25.289 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 12:03:25.319 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 12:03:25.267 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 12:03:29.539 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:40692 10 6452 1 2025-10-16 11:58:45.113 00:06:00.388 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 12:04:29.908 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56922 10 6452 1 2025-10-16 11:59:45.111 00:06:00.392 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 12:05:30.315 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38838 10 6452 1 2025-10-16 12:06:30.715 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:51444 12 10369 1 2025-10-16 12:07:31.191 00:00:10.409 TCP 1.101.0.1:3000 -> 23.104.0.1:33964 11 6504 1 2025-10-16 12:08:25.491 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 12:08:25.406 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 12:08:25.320 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 12:08:25.415 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 12:08:25.408 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 12:08:31.641 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50132 10 6452 1 2025-10-16 12:09:32.057 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:55614 10 6452 1 2025-10-16 12:10:32.435 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:57096 10 6452 1 2025-10-16 12:05:45.114 00:06:00.388 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 12:11:32.797 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47406 10 6452 1 2025-10-16 12:06:45.112 00:06:00.392 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 12:12:33.203 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33392 10 6452 1 2025-10-16 12:13:25.693 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 12:13:25.445 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 12:13:25.475 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 12:13:25.780 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 12:13:25.864 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 12:13:33.606 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58376 10 6452 1 2025-10-16 12:14:33.971 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:47172 10 6452 1 2025-10-16 12:15:34.382 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44922 10 6452 1 2025-10-16 12:16:34.789 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:38406 10 6452 1 2025-10-16 12:12:45.116 00:06:00.388 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 12:17:35.150 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46714 10 6452 1 2025-10-16 12:18:25.576 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 12:18:25.313 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 12:18:25.530 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 12:18:25.503 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 12:18:25.587 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 12:13:45.112 00:06:00.393 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 12:18:35.567 00:00:10.526 TCP 1.101.0.1:3000 -> 23.104.0.1:34200 10 6452 1 2025-10-16 12:19:36.132 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57906 10 6452 1 2025-10-16 12:20:36.541 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:41694 10 6452 1 2025-10-16 12:21:36.976 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:36432 12 10375 1 2025-10-16 12:22:37.416 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43822 10 6452 1 2025-10-16 12:23:25.724 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 12:23:25.720 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 12:23:25.689 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 12:23:25.604 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 12:23:25.686 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 12:23:37.777 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:56524 10 6452 1 2025-10-16 12:19:45.118 00:06:00.389 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 12:24:38.140 00:00:10.779 TCP 1.101.0.1:3000 -> 23.104.0.1:33216 11 6504 1 2025-10-16 12:25:38.963 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53642 10 6452 1 2025-10-16 12:20:45.115 00:06:00.395 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 12:26:39.374 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55900 10 6452 1 2025-10-16 12:27:39.784 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37366 10 6452 1 2025-10-16 12:28:25.808 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 12:28:25.720 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 12:28:25.785 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 12:28:25.470 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 12:28:25.724 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 12:28:40.191 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55190 10 6452 1 2025-10-16 12:29:40.601 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41730 10 6452 1 2025-10-16 12:30:41.013 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43518 10 6452 1 2025-10-16 12:26:45.117 00:06:00.393 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 12:31:41.420 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55746 10 6452 1 2025-10-16 12:27:45.116 00:06:00.397 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 12:32:41.827 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59800 10 6452 1 2025-10-16 12:33:26.066 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 12:33:25.839 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 12:33:25.914 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 12:33:25.675 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 12:33:25.984 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 12:33:42.228 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42412 10 6452 1 2025-10-16 12:34:42.629 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:59218 10 6452 1 2025-10-16 12:35:42.999 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:48452 10 6452 1 2025-10-16 12:36:43.358 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52720 10 6452 1 2025-10-16 12:37:43.759 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:46086 10 6452 1 2025-10-16 12:38:25.869 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 12:38:25.970 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 12:38:25.982 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 12:38:25.864 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 12:38:25.946 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 12:33:45.120 00:06:00.394 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 12:38:44.178 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37066 10 6452 1 2025-10-16 12:34:45.119 00:06:00.399 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 12:39:44.541 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49050 10 6452 1 2025-10-16 12:40:44.945 00:00:19.148 TCP 1.101.0.1:3000 -> 23.104.0.1:43804 10 6452 1 2025-10-16 12:41:54.132 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:60766 10 6452 1 2025-10-16 12:42:54.530 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:44780 10 6452 1 2025-10-16 12:43:26.152 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 12:43:26.074 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 12:43:25.831 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 12:43:26.070 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 12:43:26.119 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 12:43:54.928 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:33486 10 6452 1 2025-10-16 12:44:55.301 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42790 10 6452 1 2025-10-16 12:40:45.122 00:06:00.396 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 12:45:55.702 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51068 10 6452 1 2025-10-16 12:41:45.120 00:06:00.401 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 12:46:56.112 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:34732 10 6452 1 2025-10-16 12:47:56.507 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:34188 10 6452 1 2025-10-16 12:48:26.762 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 12:48:26.189 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 12:48:26.543 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 12:48:26.188 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 12:48:26.272 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 12:48:56.877 00:00:10.410 TCP 1.101.0.1:3000 -> 23.104.0.1:53548 12 6556 1 2025-10-16 12:49:57.353 00:00:10.405 TCP 1.101.0.1:3000 -> 23.104.0.1:34178 10 6452 1 2025-10-16 12:50:57.794 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:60982 10 6452 1 2025-10-16 12:51:58.169 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34814 10 6452 1 2025-10-16 12:47:45.125 00:06:00.396 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-16 12:52:58.572 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48424 10 6452 1 2025-10-16 12:53:26.319 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 12:53:26.370 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 12:53:26.409 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 12:53:26.338 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 12:53:26.237 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 12:48:45.121 00:06:00.401 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-16 12:53:58.981 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42802 10 6452 1 2025-10-16 12:54:59.392 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55424 10 6452 1 2025-10-16 12:55:59.795 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:37096 11 6504 1 2025-10-16 12:57:00.265 00:00:10.456 TCP 1.101.0.1:3000 -> 23.104.0.1:59790 12 10375 1 2025-10-16 12:58:00.762 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:48022 10 6452 1 2025-10-16 12:58:26.200 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-16 12:58:26.372 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-16 12:58:26.077 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-16 12:58:26.246 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-16 12:58:26.118 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 Summary: total flows: 135, total bytes: 421587, total packets: 1005, avg bps: 941, avg pps: 0, avg bpp: 419 Time window: 2025-10-16 11:58:45 - 2025-10-16 12:58:26 Total flows processed: 135, passed: 135, Blocks skipped: 0, Bytes read: 14104 Sys: 0.0045s User: 0.0018s Wall: 0.0021s flows/second: 63557.2 Runtime: 0.0022s