Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-06 15:59:13.590 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38290 10 6661 1 2025-10-06 16:00:13.956 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:50802 10 6661 1 2025-10-06 15:55:40.127 00:06:00.393 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-06 15:55:40.124 00:06:00.398 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-06 16:01:14.324 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48276 10 6661 1 2025-10-06 16:02:14.731 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42396 10 6661 1 2025-10-06 16:03:15.138 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35412 10 6661 1 2025-10-06 16:03:41.285 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 16:03:41.174 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 16:03:41.126 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 16:03:41.284 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 16:03:41.210 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 16:04:15.541 00:00:11.054 TCP 1.101.0.1:3000 -> 23.104.0.1:46604 10 6661 1 2025-10-06 16:05:16.633 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45688 10 6661 1 2025-10-06 16:06:17.038 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:37876 10 6661 1 2025-10-06 16:02:40.129 00:04:00.394 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-06 16:02:40.126 00:04:00.399 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-06 16:07:17.450 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50280 10 6661 1 2025-10-06 16:08:17.853 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:47604 10 6661 1 2025-10-06 16:08:41.326 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 16:08:40.985 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 16:08:41.239 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 16:08:41.462 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 16:08:41.321 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 16:09:18.271 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44608 10 6661 1 2025-10-06 16:10:18.681 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:34854 10 6661 1 2025-10-06 16:11:19.049 00:00:16.515 TCP 1.101.0.1:3000 -> 23.104.0.1:52392 10 6661 1 2025-10-06 16:07:40.131 00:04:00.393 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-06 16:07:40.129 00:04:00.398 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-06 16:12:25.601 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36600 10 6661 1 2025-10-06 16:13:41.477 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 16:13:26.009 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53958 10 6661 1 2025-10-06 16:13:41.391 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 16:13:41.387 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 16:13:41.395 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 16:13:41.397 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 16:14:26.422 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:57942 10 6661 1 2025-10-06 16:15:26.781 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35812 10 6661 1 2025-10-06 16:16:27.193 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58988 10 6661 1 2025-10-06 16:12:40.133 00:04:00.393 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-06 16:12:40.131 00:04:00.398 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-06 16:17:27.594 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:38182 10 6661 1 2025-10-06 16:18:27.991 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35762 10 6661 1 2025-10-06 16:18:42.043 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 16:18:42.088 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 16:18:41.719 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 16:18:41.961 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 16:18:41.883 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 16:19:28.392 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:55694 12 10375 1 2025-10-06 16:20:28.869 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:43702 10 6452 1 2025-10-06 16:17:40.135 00:04:00.394 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-06 16:21:29.236 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39160 10 6452 1 2025-10-06 16:17:40.137 00:04:00.390 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-06 16:22:29.641 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55026 10 6452 1 2025-10-06 16:23:30.063 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:37078 10 6452 1 2025-10-06 16:23:41.733 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 16:23:41.553 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 16:23:41.679 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 16:23:41.649 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 16:23:41.556 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 16:24:30.426 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:59156 10 6452 1 2025-10-06 16:25:30.903 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:41376 10 6452 1 2025-10-06 16:22:40.138 00:04:00.388 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-06 16:22:40.137 00:04:00.394 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-06 16:26:31.312 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:39736 10 6452 1 2025-10-06 16:27:31.676 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55288 10 6452 1 2025-10-06 16:28:42.321 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 16:28:42.235 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 16:28:42.259 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 16:28:42.262 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 16:28:32.100 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:40116 10 6452 1 2025-10-06 16:28:42.342 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 16:29:32.466 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:48444 10 6452 1 2025-10-06 16:30:32.864 00:00:10.865 TCP 1.101.0.1:3000 -> 23.104.0.1:57136 10 6452 1 2025-10-06 16:27:40.141 00:04:00.388 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-06 16:27:40.138 00:04:00.393 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-06 16:31:33.768 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:39740 10 6452 1 2025-10-06 16:32:34.181 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46796 10 6452 1 2025-10-06 16:33:41.808 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 16:33:41.838 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 16:33:34.583 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51778 10 6452 1 2025-10-06 16:33:41.815 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 16:33:41.813 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 16:33:41.898 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 16:34:34.945 00:00:10.409 TCP 1.101.0.1:3000 -> 23.104.0.1:55790 12 10369 1 2025-10-06 16:35:35.397 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57382 10 6452 1 2025-10-06 16:36:35.760 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:40420 10 6452 1 2025-10-06 16:32:40.141 00:06:00.392 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-06 16:32:40.142 00:06:00.388 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-06 16:37:36.132 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43378 10 6452 1 2025-10-06 16:38:42.151 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 16:38:41.869 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 16:38:41.890 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 16:38:42.070 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 16:38:41.865 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 16:38:36.532 00:00:18.339 TCP 1.101.0.1:3000 -> 23.104.0.1:39448 10 6452 1 2025-10-06 16:39:44.912 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:38076 12 10369 1 2025-10-06 16:40:45.393 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49640 10 6452 1 2025-10-06 16:41:45.757 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60866 10 6452 1 2025-10-06 16:42:46.169 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:35298 10 6452 1 2025-10-06 16:39:40.144 00:04:00.386 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-06 16:39:40.143 00:04:00.391 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-06 16:43:41.911 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 16:43:42.087 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 16:43:42.056 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 16:43:42.057 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 16:43:42.139 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 16:43:46.535 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40004 10 6452 1 2025-10-06 16:44:46.942 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:58226 10 6452 1 2025-10-06 16:45:47.360 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55734 10 6452 1 2025-10-06 16:46:47.768 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52482 10 6452 1 2025-10-06 16:47:48.169 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43388 10 6452 1 2025-10-06 16:44:40.145 00:04:00.390 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-06 16:48:42.103 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 16:48:42.264 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 16:48:42.224 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 16:48:41.981 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 16:44:40.142 00:04:00.395 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-06 16:48:42.306 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 16:48:48.576 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56820 10 6452 1 2025-10-06 16:49:48.982 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56688 10 6452 1 2025-10-06 16:50:49.386 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53274 10 6452 1 2025-10-06 16:51:49.790 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58958 10 6452 1 2025-10-06 16:52:50.193 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55492 10 6452 1 2025-10-06 16:49:40.142 00:04:00.401 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-06 16:49:40.145 00:04:00.395 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-06 16:53:42.537 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 16:53:42.279 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 16:53:42.580 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 16:53:42.833 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 16:53:42.662 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 16:53:50.596 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37534 10 6452 1 2025-10-06 16:54:51.000 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:44460 10 6452 1 2025-10-06 16:55:51.399 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35694 10 6452 1 2025-10-06 16:56:51.761 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58108 10 6452 1 2025-10-06 16:57:52.179 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41152 10 6452 1 2025-10-06 16:54:40.158 00:04:00.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-06 16:54:40.161 00:04:00.382 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-06 16:58:42.442 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 16:58:42.383 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 16:58:42.442 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 16:58:42.483 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 16:58:42.525 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 143, total bytes: 427469, total packets: 1032, avg bps: 904, avg pps: 0, avg bpp: 414 Time window: 2025-10-06 15:55:40 - 2025-10-06 16:58:42 Total flows processed: 143, passed: 143, Blocks skipped: 0, Bytes read: 14936 Sys: 0.0033s User: 0.0016s Wall: 0.0025s flows/second: 58299.5 Runtime: 0.0025s