Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-05 10:59:32.630 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35586 10 6452 1 2025-10-05 11:00:33.039 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51368 10 6452 1 2025-10-05 11:01:33.440 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40840 10 6452 1 2025-10-05 11:02:33.842 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:44926 10 6452 1 2025-10-05 11:03:06.431 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 11:03:06.133 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 11:03:06.506 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 11:03:06.359 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 11:03:06.590 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 11:03:34.222 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60108 10 6452 1 2025-10-05 11:04:34.584 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46020 10 6452 1 2025-10-05 11:00:39.476 00:06:00.404 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 11:00:39.479 00:06:00.399 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 11:05:34.985 00:00:10.953 TCP 1.101.0.1:3000 -> 23.104.0.1:45996 10 6452 1 2025-10-05 11:06:35.975 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:58218 10 6452 1 2025-10-05 11:07:36.347 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37484 12 6556 1 2025-10-05 11:08:06.449 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 11:08:06.331 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 11:08:06.578 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 11:08:06.382 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 11:08:06.662 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 11:08:36.746 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35928 10 6452 1 2025-10-05 11:09:37.152 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53284 10 6452 1 2025-10-05 11:10:37.560 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60234 10 6452 1 2025-10-05 11:11:37.971 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39984 10 6452 1 2025-10-05 11:07:39.479 00:06:00.398 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 11:07:39.477 00:06:00.403 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 11:12:38.338 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57332 10 6452 1 2025-10-05 11:13:06.552 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 11:13:06.312 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 11:13:06.820 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 11:13:06.702 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 11:13:06.903 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 11:13:38.737 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:39672 10 6452 1 2025-10-05 11:14:39.111 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41394 10 6452 1 2025-10-05 11:15:39.510 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45292 10 6452 1 2025-10-05 11:16:39.925 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:59578 10 6452 1 2025-10-05 11:17:40.319 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57708 10 6452 1 2025-10-05 11:18:06.789 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 11:18:06.835 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 11:18:06.618 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 11:18:06.705 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 11:18:06.704 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 11:18:40.721 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:35794 10 6452 1 2025-10-05 11:14:39.483 00:06:00.398 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 11:14:39.481 00:06:00.403 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 11:19:41.133 00:00:10.806 TCP 1.101.0.1:3000 -> 23.104.0.1:47000 10 6452 1 2025-10-05 11:20:41.974 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56154 10 6452 1 2025-10-05 11:21:42.339 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:54762 10 6452 1 2025-10-05 11:22:42.709 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34076 10 6452 1 2025-10-05 11:23:06.687 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 11:23:06.809 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 11:23:06.756 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 11:23:06.604 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 11:23:06.744 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 11:23:43.121 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:44176 10 6452 1 2025-10-05 11:24:43.553 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:33122 10 6452 1 2025-10-05 11:25:43.950 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55074 10 6452 1 2025-10-05 11:21:39.486 00:06:00.400 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 11:21:39.483 00:06:00.405 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 11:26:44.363 00:00:10.486 TCP 1.101.0.1:3000 -> 23.104.0.1:46590 10 6452 1 2025-10-05 11:27:44.887 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57874 12 6556 1 2025-10-05 11:28:06.905 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 11:28:06.507 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 11:28:06.848 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 11:28:06.851 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 11:28:06.933 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 11:28:45.300 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:45878 12 10369 1 2025-10-05 11:29:45.775 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38476 10 6452 1 2025-10-05 11:30:46.188 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:37472 10 6452 1 2025-10-05 11:31:46.668 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51352 10 6452 1 2025-10-05 11:32:47.109 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:55888 10 6452 1 2025-10-05 11:33:07.120 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 11:33:07.071 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 11:33:07.129 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 11:33:07.012 00:00:00.029 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 11:33:07.211 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 11:28:39.485 00:06:00.405 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 11:28:39.487 00:06:00.400 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 11:33:47.506 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48738 10 6452 1 2025-10-05 11:34:47.912 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44102 10 6452 1 2025-10-05 11:35:48.277 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39410 10 6452 1 2025-10-05 11:36:48.681 00:00:10.639 TCP 1.101.0.1:3000 -> 23.104.0.1:51544 10 6452 1 2025-10-05 11:37:49.361 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41744 10 6452 1 2025-10-05 11:38:06.976 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 11:38:06.835 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 11:38:07.071 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 11:38:06.972 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 11:38:07.155 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 11:38:49.764 00:00:10.456 TCP 1.101.0.1:3000 -> 23.104.0.1:52830 12 10375 1 2025-10-05 11:39:50.267 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43512 10 6452 1 2025-10-05 11:35:39.488 00:06:00.417 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 11:35:39.486 00:06:00.422 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 11:40:50.667 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43844 10 6452 1 2025-10-05 11:41:51.028 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38064 10 6452 1 2025-10-05 11:42:51.442 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42126 10 6452 1 2025-10-05 11:43:07.117 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 11:43:07.137 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 11:43:07.236 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 11:43:07.117 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 11:43:07.319 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 11:43:51.841 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:43416 10 6452 1 2025-10-05 11:44:52.227 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:49954 10 6452 1 2025-10-05 11:45:52.656 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:56234 10 6452 1 2025-10-05 11:46:53.064 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49612 10 6452 1 2025-10-05 11:42:39.489 00:06:00.417 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 11:42:39.486 00:06:00.423 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 11:48:07.445 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 11:47:53.435 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59066 10 6452 1 2025-10-05 11:48:07.346 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 11:48:06.919 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 11:48:07.363 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 11:48:07.302 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 11:48:53.850 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:48880 10 6452 1 2025-10-05 11:49:54.230 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41904 10 6452 1 2025-10-05 11:50:54.632 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41740 10 6452 1 2025-10-05 11:51:55.049 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50530 10 6452 1 2025-10-05 11:52:55.455 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42120 10 6452 1 2025-10-05 11:53:07.346 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 11:53:07.335 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 11:53:07.340 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 11:53:07.345 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 11:53:07.423 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 11:53:55.863 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59012 10 6452 1 2025-10-05 11:49:39.492 00:06:00.419 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-05 11:49:39.490 00:06:00.424 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-05 11:54:56.278 00:00:10.435 TCP 1.101.0.1:3000 -> 23.104.0.1:46996 10 6452 1 2025-10-05 11:55:56.754 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56404 10 6452 1 2025-10-05 11:56:57.119 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36010 10 6452 1 2025-10-05 11:58:07.571 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 11:58:07.315 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 11:58:07.534 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 11:58:07.493 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 11:57:57.525 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:60126 10 6452 1 2025-10-05 11:58:07.616 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 135, total bytes: 417612, total packets: 1002, avg bps: 950, avg pps: 0, avg bpp: 416 Time window: 2025-10-05 10:59:32 - 2025-10-05 11:58:07 Total flows processed: 135, passed: 135, Blocks skipped: 0, Bytes read: 14104 Sys: 0.0045s User: 0.0009s Wall: 0.0019s flows/second: 70761.2 Runtime: 0.0019s