Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-04 10:58:50.723 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:38574 10 6452 1 2025-10-04 10:59:51.110 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35488 10 6452 1 2025-10-04 11:00:51.515 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45940 10 6452 1 2025-10-04 11:01:51.917 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34028 10 6452 1 2025-10-04 11:02:37.739 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 11:02:37.484 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 11:02:37.806 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 11:02:37.658 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 11:02:37.890 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 11:02:52.318 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42048 10 6452 1 2025-10-04 10:58:39.049 00:06:00.351 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-04 10:58:39.052 00:06:00.345 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-04 11:03:52.726 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57418 10 6452 1 2025-10-04 11:04:53.108 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49276 10 6452 1 2025-10-04 11:05:53.513 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43204 10 6452 1 2025-10-04 11:06:53.911 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57882 10 6452 1 2025-10-04 11:07:37.730 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 11:07:37.477 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 11:07:37.603 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 11:07:37.647 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 11:07:37.654 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 11:07:54.322 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59752 10 6452 1 2025-10-04 11:08:54.724 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:55456 10 6452 1 2025-10-04 11:09:55.138 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:60526 10 6452 1 2025-10-04 11:05:39.055 00:06:00.345 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-04 11:05:39.053 00:06:00.350 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-04 11:10:55.506 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37470 10 6452 1 2025-10-04 11:11:55.912 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40970 10 6452 1 2025-10-04 11:12:37.864 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 11:12:37.769 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 11:12:37.425 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 11:12:37.782 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 11:12:37.779 00:00:00.029 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 11:12:56.315 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45560 10 6452 1 2025-10-04 11:13:56.717 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59972 10 6452 1 2025-10-04 11:14:57.127 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49192 10 6452 1 2025-10-04 11:15:57.539 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57092 10 6452 1 2025-10-04 11:16:57.964 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:55108 10 6452 1 2025-10-04 11:17:37.933 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 11:12:39.053 00:06:00.352 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-04 11:17:37.724 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 11:17:37.750 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 11:17:37.852 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 11:17:37.734 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 11:12:39.057 00:06:00.347 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-04 11:17:58.329 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44488 10 6452 1 2025-10-04 11:18:58.746 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:46758 10 6452 1 2025-10-04 11:19:59.123 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35522 10 6452 1 2025-10-04 11:20:59.526 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46032 10 6452 1 2025-10-04 11:21:59.923 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:52998 10 6452 1 2025-10-04 11:22:37.910 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 11:22:37.667 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 11:22:37.828 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 11:22:37.904 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 11:22:37.947 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 11:23:00.339 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54002 10 6452 1 2025-10-04 11:24:00.744 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60636 10 6452 1 2025-10-04 11:19:39.059 00:06:00.345 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-04 11:19:39.057 00:06:00.351 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-04 11:25:01.147 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53132 10 6452 1 2025-10-04 11:26:01.547 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43396 10 6452 1 2025-10-04 11:27:01.943 00:00:10.432 TCP 1.101.0.1:3000 -> 23.104.0.1:52650 11 6504 1 2025-10-04 11:27:38.310 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 11:27:38.281 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 11:27:38.227 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 11:27:38.228 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 11:27:38.332 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 11:28:02.414 00:00:10.955 TCP 1.101.0.1:3000 -> 23.104.0.1:50686 10 6452 1 2025-10-04 11:29:03.405 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:47886 12 10375 1 2025-10-04 11:30:03.886 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:33360 10 6452 1 2025-10-04 11:31:04.259 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34520 10 6452 1 2025-10-04 11:26:39.058 00:06:00.353 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-04 11:26:39.060 00:06:00.348 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-04 11:32:04.666 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46952 10 6452 1 2025-10-04 11:32:38.051 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 11:32:38.114 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 11:32:37.888 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 11:32:37.947 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 11:32:38.133 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 11:33:05.095 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36072 10 6452 1 2025-10-04 11:34:05.496 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50814 10 6452 1 2025-10-04 11:35:05.912 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48826 10 6452 1 2025-10-04 11:36:06.278 00:00:10.758 TCP 1.101.0.1:3000 -> 23.104.0.1:39868 10 6452 1 2025-10-04 11:37:07.100 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53244 10 6452 1 2025-10-04 11:37:39.279 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 11:37:39.194 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 11:37:39.226 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 11:37:39.197 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 11:37:39.256 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 11:38:07.511 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:55054 10 6452 1 2025-10-04 11:33:39.059 00:06:00.352 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-04 11:33:39.062 00:06:00.347 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-04 11:39:07.897 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47214 10 6452 1 2025-10-04 11:40:08.306 00:00:10.542 TCP 1.101.0.1:3000 -> 23.104.0.1:46428 10 6452 1 2025-10-04 11:41:08.882 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40572 10 6452 1 2025-10-04 11:42:09.280 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38188 10 6452 1 2025-10-04 11:42:38.302 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 11:42:38.215 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 11:42:38.252 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 11:42:38.219 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 11:42:38.217 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 11:43:09.682 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48526 10 6452 1 2025-10-04 11:44:10.110 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43962 10 6452 1 2025-10-04 11:45:10.511 00:00:10.673 TCP 1.101.0.1:3000 -> 23.104.0.1:60634 10 6452 1 2025-10-04 11:40:39.068 00:06:00.343 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-04 11:40:39.065 00:06:00.349 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-04 11:46:11.236 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46830 10 6452 1 2025-10-04 11:47:11.592 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56768 10 6452 1 2025-10-04 11:47:38.457 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 11:47:38.145 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 11:47:38.506 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 11:47:38.504 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 11:47:38.589 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 11:48:12.000 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:51252 10 6452 1 2025-10-04 11:49:12.360 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56658 10 6452 1 2025-10-04 11:50:12.769 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:49254 10 6452 1 2025-10-04 11:51:13.131 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52514 10 6452 1 2025-10-04 11:52:13.538 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:54438 10 6452 1 2025-10-04 11:47:39.066 00:06:00.350 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-04 11:52:38.619 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 11:52:38.536 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 11:52:38.233 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 11:52:38.537 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 11:52:38.582 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 11:47:39.070 00:06:00.345 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-04 11:53:13.934 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:56548 10 6452 1 2025-10-04 11:54:14.305 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59072 10 6452 1 2025-10-04 11:55:14.707 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35868 10 6452 1 2025-10-04 11:56:15.109 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51924 10 6452 1 2025-10-04 11:57:15.513 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:41876 10 6452 1 2025-10-04 11:57:38.951 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-04 11:57:38.602 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 11:57:38.950 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-04 11:57:38.955 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-04 11:57:39.033 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-04 11:58:15.927 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:49722 10 6452 1 Summary: total flows: 136, total bytes: 419991, total packets: 1007, avg bps: 936, avg pps: 0, avg bpp: 417 Time window: 2025-10-04 10:58:39 - 2025-10-04 11:58:26 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0040s User: 0.0008s Wall: 0.0019s flows/second: 69922.2 Runtime: 0.0020s