Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-25 16:59:24.595 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56444 10 6452 1 2025-10-25 17:00:24.996 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54916 10 6452 1 2025-10-25 17:01:25.400 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:59084 12 10375 1 2025-10-25 16:57:49.911 00:05:00.282 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 16:57:49.915 00:05:00.277 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 17:02:25.840 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:37266 10 6452 1 2025-10-25 17:02:51.583 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 17:02:51.495 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 17:02:51.530 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 17:02:51.587 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 17:02:51.671 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 17:03:26.268 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58368 10 6452 1 2025-10-25 17:04:26.677 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:60932 10 6452 1 2025-10-25 17:05:27.034 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46070 10 6452 1 2025-10-25 17:06:27.436 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36076 10 6452 1 2025-10-25 17:07:27.836 00:00:10.354 TCP 1.101.0.1:3000 -> 23.104.0.1:47042 10 6452 1 2025-10-25 17:03:49.913 00:05:00.287 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 17:07:51.910 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 17:07:51.783 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 17:03:49.916 00:05:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 17:07:51.726 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 17:07:51.368 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 17:07:51.828 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 17:08:28.234 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45512 10 6452 1 2025-10-25 17:09:28.639 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43452 10 6452 1 2025-10-25 17:10:29.055 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33172 10 6452 1 2025-10-25 17:11:29.463 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45794 10 6452 1 2025-10-25 17:12:29.866 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40638 10 6452 1 2025-10-25 17:12:51.808 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 17:12:51.878 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 17:12:51.905 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 17:12:51.937 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 17:12:52.019 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 17:13:30.277 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41640 10 6452 1 2025-10-25 17:09:49.914 00:05:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 17:09:49.917 00:05:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 17:14:30.681 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:56144 10 6452 1 2025-10-25 17:15:31.041 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43376 10 6452 1 2025-10-25 17:16:31.443 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53264 10 6452 1 2025-10-25 17:17:31.844 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:38262 10 6452 1 2025-10-25 17:17:51.855 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 17:17:52.015 00:00:00.039 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 17:17:52.049 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 17:17:51.965 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 17:17:51.771 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 17:18:32.269 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56174 10 6452 1 2025-10-25 17:19:32.669 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36172 10 6452 1 2025-10-25 17:15:49.918 00:05:00.283 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 17:15:49.921 00:05:00.278 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 17:20:33.102 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38272 10 6452 1 2025-10-25 17:21:33.508 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:50136 10 6452 1 2025-10-25 17:22:33.941 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:46004 10 6452 1 2025-10-25 17:22:51.919 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 17:22:52.005 00:00:00.033 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 17:22:52.096 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 17:22:51.804 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 17:22:51.837 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 17:23:34.363 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:44094 10 6452 1 2025-10-25 17:24:34.737 00:00:11.173 TCP 1.101.0.1:3000 -> 23.104.0.1:54496 10 6452 1 2025-10-25 17:25:35.951 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40936 10 6452 1 2025-10-25 17:21:49.923 00:05:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 17:21:49.920 00:05:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 17:26:36.359 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50892 10 6452 1 2025-10-25 17:27:36.760 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:36074 10 6452 1 2025-10-25 17:27:52.185 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 17:27:52.192 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 17:27:52.127 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 17:27:52.064 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 17:27:52.147 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 17:28:37.181 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39214 10 6452 1 2025-10-25 17:29:37.545 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:58600 10 6452 1 2025-10-25 17:30:37.942 00:00:10.449 TCP 1.101.0.1:3000 -> 23.104.0.1:60594 12 10375 1 2025-10-25 17:31:38.432 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39552 10 6452 1 2025-10-25 17:27:49.925 00:05:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 17:27:49.923 00:05:00.283 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 17:32:52.274 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 17:32:38.842 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:53856 10 6452 1 2025-10-25 17:32:52.237 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 17:32:52.133 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 17:32:52.159 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 17:32:52.192 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 17:33:39.268 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53990 10 6452 1 2025-10-25 17:34:39.670 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:32946 10 6452 1 2025-10-25 17:35:40.033 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:48682 10 6452 1 2025-10-25 17:36:40.391 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42106 10 6452 1 2025-10-25 17:37:52.452 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 17:37:40.798 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:44526 10 6452 1 2025-10-25 17:37:52.246 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 17:33:49.929 00:05:00.276 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 17:37:52.368 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 17:37:52.249 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 17:37:52.540 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 17:33:49.926 00:05:00.281 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 17:38:41.184 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42238 10 6452 1 2025-10-25 17:39:41.591 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55576 10 6452 1 2025-10-25 17:40:41.992 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45440 10 6452 1 2025-10-25 17:41:42.405 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41538 10 6452 1 2025-10-25 17:42:52.274 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 17:42:52.416 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 17:42:42.831 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:57878 10 6452 1 2025-10-25 17:42:52.221 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 17:42:52.411 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 17:42:52.494 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 17:39:49.930 00:05:00.277 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 17:43:43.261 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40482 12 6556 1 2025-10-25 17:39:49.927 00:05:00.282 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 17:44:43.671 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34706 10 6452 1 2025-10-25 17:45:44.095 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36194 10 6452 1 2025-10-25 17:46:44.495 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46926 10 6452 1 2025-10-25 17:47:52.489 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 17:47:52.491 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 17:47:52.407 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 17:47:52.530 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 17:47:52.406 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 17:47:44.899 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60176 10 6452 1 2025-10-25 17:48:45.309 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43314 10 6452 1 2025-10-25 17:45:49.933 00:05:00.274 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 17:45:49.931 00:05:00.279 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 17:49:45.672 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59746 10 6452 1 2025-10-25 17:50:46.108 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39002 10 6452 1 2025-10-25 17:51:46.515 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33292 10 6452 1 2025-10-25 17:52:52.706 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 17:52:52.729 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 17:52:52.561 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 17:52:52.551 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 17:52:52.634 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 17:52:46.919 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:47660 10 6452 1 2025-10-25 17:53:47.299 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59744 10 6452 1 2025-10-25 17:54:47.704 00:00:14.465 TCP 1.101.0.1:3000 -> 23.104.0.1:38820 10 6452 1 2025-10-25 17:51:49.935 00:05:00.278 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 17:51:49.938 00:05:00.273 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 17:55:52.220 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:57262 10 6452 1 2025-10-25 17:56:52.580 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51796 10 6452 1 2025-10-25 17:57:52.795 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 17:57:52.652 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 17:57:52.789 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 17:57:52.638 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 17:57:52.713 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 17:57:52.992 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58676 10 6452 1 Summary: total flows: 139, total bytes: 418498, total packets: 1016, avg bps: 926, avg pps: 0, avg bpp: 411 Time window: 2025-10-25 16:57:49 - 2025-10-25 17:58:03 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0052s User: 0.0000s Wall: 0.0017s flows/second: 79428.9 Runtime: 0.0018s