Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-25 12:59:11.111 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:56110 10 6452 1 2025-10-25 13:00:11.480 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:47528 10 6452 1 2025-10-25 13:01:11.849 00:00:10.465 TCP 1.101.0.1:3000 -> 23.104.0.1:37620 12 10369 1 2025-10-25 12:57:49.831 00:05:00.277 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 12:57:49.828 00:05:00.283 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 13:02:12.352 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43304 10 6452 1 2025-10-25 13:02:46.907 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 13:02:46.863 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 13:02:46.801 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:02:46.829 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:02:46.913 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 13:03:12.755 00:00:17.879 TCP 1.101.0.1:3000 -> 23.104.0.1:46254 10 6452 1 2025-10-25 13:04:20.664 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39758 10 6452 1 2025-10-25 13:05:21.096 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50644 10 6452 1 2025-10-25 13:06:21.500 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54368 10 6452 1 2025-10-25 13:07:21.904 00:00:10.897 TCP 1.101.0.1:3000 -> 23.104.0.1:57420 12 6556 1 2025-10-25 13:07:46.681 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 13:07:46.921 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 13:07:46.799 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:07:46.963 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:07:47.046 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 13:03:49.838 00:05:00.274 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 13:03:49.842 00:05:00.268 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 13:08:22.844 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:47260 10 6452 1 2025-10-25 13:09:23.230 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:60260 10 6452 1 2025-10-25 13:10:23.625 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34484 10 6452 1 2025-10-25 13:11:23.989 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:56646 12 10375 1 2025-10-25 13:12:24.461 00:00:14.358 TCP 1.101.0.1:3000 -> 23.104.0.1:34246 10 6452 1 2025-10-25 13:12:47.066 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 13:12:46.869 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 13:12:46.746 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 13:12:46.894 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:12:46.983 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:13:28.874 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51874 10 6452 1 2025-10-25 13:09:49.841 00:05:00.269 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 13:09:49.840 00:05:00.274 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 13:14:29.240 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57046 10 6452 1 2025-10-25 13:15:29.650 00:00:10.408 TCP 1.101.0.1:3000 -> 23.104.0.1:49486 12 10369 1 2025-10-25 13:16:30.106 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43016 10 6452 1 2025-10-25 13:17:30.510 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44644 10 6452 1 2025-10-25 13:17:47.355 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 13:17:47.273 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:17:47.273 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 13:17:47.158 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 13:17:47.298 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:18:30.915 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:55606 11 6504 1 2025-10-25 13:19:31.373 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48110 10 6452 1 2025-10-25 13:15:49.843 00:05:00.268 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 13:15:49.840 00:05:00.273 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 13:20:31.773 00:00:10.405 TCP 1.101.0.1:3000 -> 23.104.0.1:34890 13 13943 1 2025-10-25 13:21:32.224 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43146 10 6452 1 2025-10-25 13:22:47.230 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 13:22:47.142 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 13:22:47.231 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 13:22:47.164 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:22:47.147 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:22:32.631 00:00:13.444 TCP 1.101.0.1:3000 -> 23.104.0.1:34178 10 6452 1 2025-10-25 13:23:36.116 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49660 10 6452 1 2025-10-25 13:24:36.521 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41514 10 6452 1 2025-10-25 13:21:49.841 00:05:00.274 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 13:21:49.843 00:05:00.269 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 13:25:36.928 00:00:20.561 TCP 1.101.0.1:3000 -> 23.104.0.1:60854 10 6452 1 2025-10-25 13:26:47.527 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59166 10 6452 1 2025-10-25 13:27:47.416 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 13:27:47.274 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 13:27:47.334 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 13:27:47.235 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:27:47.333 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:27:47.930 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42172 10 6452 1 2025-10-25 13:28:48.337 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58260 10 6452 1 2025-10-25 13:29:48.753 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55486 10 6452 1 2025-10-25 13:30:49.157 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43270 10 6452 1 2025-10-25 13:27:49.845 00:05:00.268 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 13:27:49.843 00:05:00.273 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 13:31:49.559 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52796 10 6452 1 2025-10-25 13:32:47.542 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 13:32:47.526 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 13:32:47.340 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 13:32:47.332 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:32:47.459 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:32:49.955 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:46534 10 6452 1 2025-10-25 13:33:50.325 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36862 10 6452 1 2025-10-25 13:34:50.719 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54132 10 6452 1 2025-10-25 13:35:51.116 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40780 10 6452 1 2025-10-25 13:36:51.521 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41640 10 6452 1 2025-10-25 13:37:47.573 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 13:33:49.843 00:05:00.274 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 13:37:47.492 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 13:37:47.546 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 13:37:47.233 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:37:47.492 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:33:49.847 00:05:00.269 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 13:37:51.925 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:56362 10 6452 1 2025-10-25 13:38:52.356 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59120 10 6452 1 2025-10-25 13:39:52.768 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:52472 10 6452 1 2025-10-25 13:40:53.189 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:52642 12 10584 1 2025-10-25 13:41:53.626 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33262 10 6661 1 2025-10-25 13:42:47.864 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 13:42:47.901 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 13:42:47.682 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:42:47.567 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:42:47.649 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 13:42:54.033 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40238 10 6661 1 2025-10-25 13:39:49.846 00:05:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 13:39:49.844 00:05:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 13:43:54.433 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42628 10 6661 1 2025-10-25 13:44:54.839 00:00:10.404 TCP 1.101.0.1:3000 -> 23.104.0.1:56420 10 6661 1 2025-10-25 13:45:55.285 00:00:10.448 TCP 1.101.0.1:3000 -> 23.104.0.1:34006 12 10793 1 2025-10-25 13:46:55.794 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42892 10 6870 1 2025-10-25 13:47:47.849 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 13:47:47.627 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 13:47:47.574 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:47:47.767 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:47:47.690 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 13:47:56.204 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:38730 10 6870 1 2025-10-25 13:48:56.560 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:35544 10 6870 1 2025-10-25 13:45:49.848 00:05:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 13:45:49.845 00:05:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 13:49:56.978 00:00:10.712 TCP 1.101.0.1:3000 -> 23.104.0.1:50878 10 6870 1 2025-10-25 13:50:57.732 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:59436 10 6870 1 2025-10-25 13:51:58.151 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33014 10 6870 1 2025-10-25 13:52:47.630 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 13:52:47.921 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 13:52:47.649 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:52:47.828 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:52:47.909 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 13:52:58.555 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:56486 10 6870 1 2025-10-25 13:53:58.928 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:45966 10 6870 1 2025-10-25 13:54:59.344 00:00:10.585 TCP 1.101.0.1:3000 -> 23.104.0.1:53504 10 6870 1 2025-10-25 13:51:49.848 00:05:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 13:51:49.850 00:05:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 13:55:59.970 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45180 10 6870 1 2025-10-25 13:57:00.382 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57002 10 6870 1 2025-10-25 13:57:48.047 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 13:57:47.997 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 13:57:47.769 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 13:57:47.963 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:57:47.965 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:58:00.785 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56568 10 6870 1 Summary: total flows: 139, total bytes: 444277, total packets: 1026, avg bps: 981, avg pps: 0, avg bpp: 433 Time window: 2025-10-25 12:57:49 - 2025-10-25 13:58:11 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0044s User: 0.0009s Wall: 0.0018s flows/second: 79202.3 Runtime: 0.0018s