Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-25 11:59:39.489 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47876 10 6452 1 2025-10-25 12:00:39.908 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34928 10 6452 1 2025-10-25 11:57:49.802 00:05:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 11:57:49.804 00:05:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 12:01:40.307 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35334 10 6452 1 2025-10-25 12:02:45.781 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 12:02:45.540 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 12:02:45.865 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 12:02:45.479 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 12:02:45.699 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 12:02:40.719 00:00:10.916 TCP 1.101.0.1:3000 -> 23.104.0.1:43706 10 6452 1 2025-10-25 12:03:41.670 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57538 10 6452 1 2025-10-25 12:04:42.103 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35948 10 6452 1 2025-10-25 12:05:42.505 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34944 10 6452 1 2025-10-25 12:06:42.869 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40916 10 6452 1 2025-10-25 12:07:45.865 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 12:07:45.748 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 12:07:45.538 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 12:07:45.609 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 12:07:45.692 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 12:03:49.819 00:05:00.265 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 12:07:43.280 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45488 10 6452 1 2025-10-25 12:03:49.816 00:05:00.271 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 12:08:43.683 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:57252 10 6452 1 2025-10-25 12:09:44.041 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56314 10 6452 1 2025-10-25 12:10:44.442 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59748 10 6452 1 2025-10-25 12:11:44.851 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:50132 10 6452 1 2025-10-25 12:12:45.859 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 12:12:45.777 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 12:12:45.833 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 12:12:45.718 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 12:12:45.749 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 12:12:45.275 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46488 10 6452 1 2025-10-25 12:09:49.804 00:05:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 12:09:49.807 00:05:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 12:13:45.688 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:33390 10 6452 1 2025-10-25 12:14:46.062 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46946 10 6452 1 2025-10-25 12:15:46.462 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43356 10 6452 1 2025-10-25 12:16:46.825 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35238 10 6452 1 2025-10-25 12:17:45.784 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 12:17:45.775 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 12:17:45.518 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 12:17:45.835 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 12:17:45.917 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 12:17:47.225 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33534 10 6452 1 2025-10-25 12:18:47.628 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36748 10 6452 1 2025-10-25 12:15:49.807 00:05:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 12:15:49.804 00:05:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 12:19:48.029 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49418 10 6452 1 2025-10-25 12:20:48.438 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59612 10 6452 1 2025-10-25 12:21:48.844 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:48522 10 6452 1 2025-10-25 12:22:45.928 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 12:22:45.964 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 12:22:45.838 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 12:22:45.883 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 12:22:45.844 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 12:22:49.278 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:43956 10 6452 1 2025-10-25 12:23:49.701 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54088 10 6452 1 2025-10-25 12:24:50.122 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38576 10 6452 1 2025-10-25 12:21:49.814 00:05:00.277 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 12:21:49.817 00:05:00.272 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 12:25:50.532 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33336 10 6452 1 2025-10-25 12:26:50.939 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:36720 10 6452 1 2025-10-25 12:27:46.187 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 12:27:46.171 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 12:27:45.922 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 12:27:45.686 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 12:27:46.105 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 12:27:51.362 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57634 10 6452 1 2025-10-25 12:28:51.767 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:38926 10 6452 1 2025-10-25 12:29:52.179 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47186 10 6452 1 2025-10-25 12:30:52.576 00:00:17.133 TCP 1.101.0.1:3000 -> 23.104.0.1:51500 10 6452 1 2025-10-25 12:27:49.820 00:05:00.270 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 12:27:49.818 00:05:00.275 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 12:31:59.760 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:35638 10 6452 1 2025-10-25 12:32:46.326 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 12:32:46.169 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 12:32:46.081 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 12:32:45.996 00:00:00.047 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 12:32:46.246 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 12:33:00.183 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47024 10 6452 1 2025-10-25 12:34:00.583 00:00:10.688 TCP 1.101.0.1:3000 -> 23.104.0.1:60070 10 6452 1 2025-10-25 12:35:01.320 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57644 10 6452 1 2025-10-25 12:36:01.725 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:51254 12 10375 1 2025-10-25 12:37:02.205 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35328 10 6452 1 2025-10-25 12:37:46.010 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 12:33:49.821 00:05:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 12:37:46.062 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 12:37:46.064 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 12:37:46.079 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 12:37:45.927 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 12:33:49.824 00:05:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 12:38:02.611 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34458 10 6452 1 2025-10-25 12:39:03.016 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59182 10 6452 1 2025-10-25 12:40:03.423 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40674 10 6452 1 2025-10-25 12:41:03.827 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44480 10 6452 1 2025-10-25 12:42:04.192 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:44380 10 6452 1 2025-10-25 12:42:46.485 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 12:42:46.263 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 12:42:46.529 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 12:42:46.573 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 12:42:46.403 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 12:43:04.562 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51640 10 6452 1 2025-10-25 12:39:49.822 00:05:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 12:39:49.824 00:05:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 12:44:04.966 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41596 10 6452 1 2025-10-25 12:45:05.372 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48996 10 6452 1 2025-10-25 12:46:05.773 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54630 10 6452 1 2025-10-25 12:47:06.179 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:47112 10 6452 1 2025-10-25 12:47:46.373 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 12:47:46.509 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 12:47:46.412 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 12:47:46.596 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 12:47:46.681 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 12:48:06.550 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38112 10 6452 1 2025-10-25 12:49:06.957 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54192 10 6452 1 2025-10-25 12:45:49.827 00:05:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 12:45:49.825 00:05:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 12:50:07.367 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51022 10 6452 1 2025-10-25 12:51:07.728 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:50488 10 6452 1 2025-10-25 12:52:08.139 00:00:10.498 TCP 1.101.0.1:3000 -> 23.104.0.1:59398 10 6452 1 2025-10-25 12:52:46.501 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 12:52:46.443 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 12:52:46.478 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 12:52:46.654 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 12:52:46.737 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 12:53:08.676 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38966 10 6452 1 2025-10-25 12:54:09.103 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:47730 10 6452 1 2025-10-25 12:55:09.475 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56572 10 6452 1 2025-10-25 12:51:49.824 00:05:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 12:51:49.826 00:05:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 12:56:09.879 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54820 10 6452 1 2025-10-25 12:57:10.282 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39744 10 6452 1 2025-10-25 12:57:46.565 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 12:57:46.780 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 12:57:46.643 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 12:57:46.511 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 12:57:46.482 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 12:58:10.690 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47806 10 6452 1 Summary: total flows: 139, total bytes: 414471, total packets: 1012, avg bps: 913, avg pps: 0, avg bpp: 409 Time window: 2025-10-25 11:57:49 - 2025-10-25 12:58:21 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0029s User: 0.0020s Wall: 0.0041s flows/second: 33737.0 Runtime: 0.0041s