Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-25 13:59:01.190 00:00:10.450 TCP 1.101.0.1:3000 -> 23.104.0.1:59978 10 6870 1 2025-10-25 14:00:01.678 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58552 10 6870 1 2025-10-25 14:01:02.112 00:00:10.929 TCP 1.101.0.1:3000 -> 23.104.0.1:33766 10 6870 1 2025-10-25 13:57:49.851 00:05:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 13:57:49.849 00:05:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 14:02:03.105 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37916 10 6870 1 2025-10-25 14:02:47.788 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 14:02:47.797 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 14:02:47.650 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:02:47.982 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:02:48.065 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 14:03:03.510 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39350 10 6870 1 2025-10-25 14:04:03.912 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35870 10 6870 1 2025-10-25 14:05:04.282 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33162 10 6870 1 2025-10-25 14:06:04.684 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34088 10 6870 1 2025-10-25 14:07:05.112 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:55110 10 6870 1 2025-10-25 14:07:48.172 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 14:07:47.960 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 14:07:48.205 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 14:07:47.922 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:07:48.090 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:03:49.852 00:05:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 14:03:49.853 00:05:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 14:08:05.473 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42956 10 6870 1 2025-10-25 14:09:05.878 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58396 10 6870 1 2025-10-25 14:10:06.283 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51320 10 6870 1 2025-10-25 14:11:06.696 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:53198 10 6870 1 2025-10-25 14:12:07.108 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50030 10 6870 1 2025-10-25 14:12:48.060 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 14:12:48.147 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 14:12:48.261 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:12:48.236 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:12:48.318 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 14:13:07.511 00:00:10.701 TCP 1.101.0.1:3000 -> 23.104.0.1:53418 10 6870 1 2025-10-25 14:09:49.855 00:05:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 14:09:49.853 00:05:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 14:14:08.249 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45736 10 6870 1 2025-10-25 14:15:08.656 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:36400 10 6870 1 2025-10-25 14:16:09.082 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35304 10 6870 1 2025-10-25 14:17:09.487 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39344 10 6870 1 2025-10-25 14:17:48.414 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 14:17:48.148 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 14:17:48.374 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:17:48.019 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:17:48.101 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 14:18:09.892 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:49322 10 6870 1 2025-10-25 14:19:10.259 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:45622 10 6870 1 2025-10-25 14:15:49.856 00:05:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 14:15:49.853 00:05:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 14:20:10.677 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33922 10 6870 1 2025-10-25 14:21:11.113 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43664 10 6870 1 2025-10-25 14:22:11.475 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44834 10 6870 1 2025-10-25 14:22:48.634 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 14:22:48.612 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 14:22:48.552 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 14:22:48.547 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:22:48.552 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:23:11.835 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:47132 10 6870 1 2025-10-25 14:24:12.194 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33986 10 6870 1 2025-10-25 14:25:12.598 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:50968 11 6922 1 2025-10-25 14:21:49.854 00:05:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 14:21:49.857 00:05:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 14:26:13.063 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47418 10 6870 1 2025-10-25 14:27:13.463 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50082 10 6870 1 2025-10-25 14:27:48.337 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 14:27:48.437 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 14:27:48.376 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:27:48.339 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:27:48.423 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 14:28:13.867 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:40272 10 6870 1 2025-10-25 14:29:14.238 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:54842 10 6870 1 2025-10-25 14:30:14.596 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:34752 10 6870 1 2025-10-25 14:31:14.972 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:41138 10 6870 1 2025-10-25 14:27:49.855 00:05:00.287 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 14:27:49.858 00:05:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 14:32:15.343 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:58064 10 6870 1 2025-10-25 14:32:48.818 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 14:32:49.077 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 14:32:48.717 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:32:48.809 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:32:48.891 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 14:33:15.710 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60394 10 6870 1 2025-10-25 14:34:16.120 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39064 10 6870 1 2025-10-25 14:35:16.522 00:00:11.004 TCP 1.101.0.1:3000 -> 23.104.0.1:53038 10 6870 1 2025-10-25 14:36:17.563 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56710 10 6870 1 2025-10-25 14:37:17.966 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45240 10 6870 1 2025-10-25 14:37:48.789 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 14:37:48.703 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 14:37:48.843 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 14:37:48.749 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:37:48.706 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:33:49.860 00:05:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 14:33:49.857 00:05:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 14:38:18.372 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47304 10 6870 1 2025-10-25 14:39:18.778 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:56528 10 6870 1 2025-10-25 14:40:19.141 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45908 10 6870 1 2025-10-25 14:41:19.548 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37584 10 6870 1 2025-10-25 14:42:19.954 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44848 10 6870 1 2025-10-25 14:42:48.820 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 14:42:48.819 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 14:42:48.740 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:42:48.736 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:42:48.820 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 14:43:20.319 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38554 10 6870 1 2025-10-25 14:39:49.858 00:05:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 14:39:49.861 00:05:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 14:44:20.719 00:00:10.481 TCP 1.101.0.1:3000 -> 23.104.0.1:54536 10 6870 1 2025-10-25 14:45:21.237 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49210 10 6870 1 2025-10-25 14:46:21.642 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35590 10 6870 1 2025-10-25 14:47:22.040 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59014 10 6870 1 2025-10-25 14:47:49.112 00:00:00.035 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 14:47:48.680 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 14:47:49.049 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 14:47:48.733 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:47:49.030 00:00:00.035 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:48:22.451 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53150 10 6870 1 2025-10-25 14:49:22.858 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:50806 10 6870 1 2025-10-25 14:45:49.860 00:05:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 14:45:49.863 00:05:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 14:50:23.230 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39242 10 6870 1 2025-10-25 14:51:23.635 00:00:10.527 TCP 1.101.0.1:3000 -> 23.104.0.1:33396 14 14716 1 2025-10-25 14:52:24.206 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35196 10 6870 1 2025-10-25 14:52:48.952 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 14:52:49.066 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 14:52:49.026 00:00:00.036 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:52:48.944 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:52:49.027 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 14:53:24.601 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:51960 10 6870 1 2025-10-25 14:54:24.969 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57586 10 6870 1 2025-10-25 14:55:25.383 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:40298 10 6870 1 2025-10-25 14:51:49.863 00:05:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 14:51:49.863 00:05:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 14:56:25.793 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42348 10 6870 1 2025-10-25 14:57:26.198 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36252 10 6870 1 2025-10-25 14:57:49.070 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 14:57:48.996 00:00:00.044 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 14:57:49.191 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 14:57:49.191 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:57:48.987 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 14:58:26.600 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41144 10 6870 1 Summary: total flows: 140, total bytes: 449978, total packets: 1025, avg bps: 987, avg pps: 0, avg bpp: 439 Time window: 2025-10-25 13:57:49 - 2025-10-25 14:58:36 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0025s User: 0.0025s Wall: 0.0026s flows/second: 52967.9 Runtime: 0.0027s