Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-07 15:58:45.600 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57420 10 6452 1 2025-10-07 15:59:10.003 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 15:59:10.185 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 15:59:10.181 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 15:59:09.919 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 15:59:09.994 00:00:00.038 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 15:59:46.003 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41980 10 6452 1 2025-10-07 16:00:46.408 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45432 10 6452 1 2025-10-07 15:57:40.749 00:05:00.322 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-07 15:57:40.747 00:05:00.327 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-07 16:01:46.771 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:41418 10 6452 1 2025-10-07 16:02:47.184 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:57678 10 6452 1 2025-10-07 16:03:47.543 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:44480 10 6452 1 2025-10-07 16:04:10.248 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 16:04:10.264 00:00:00.029 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 16:04:09.823 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 16:04:10.165 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 16:04:10.170 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 16:04:47.905 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:40754 10 6452 1 2025-10-07 16:05:48.341 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35130 10 6452 1 2025-10-07 16:06:48.745 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52458 10 6452 1 2025-10-07 16:03:40.748 00:05:00.328 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-07 16:03:40.750 00:05:00.323 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-07 16:07:49.150 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35656 10 6452 1 2025-10-07 16:08:49.554 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57802 10 6452 1 2025-10-07 16:09:10.114 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 16:09:10.144 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 16:09:10.231 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 16:09:10.124 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 16:09:10.319 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 16:09:49.959 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:60910 10 6452 1 2025-10-07 16:10:50.375 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39002 10 6452 1 2025-10-07 16:11:50.767 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:47910 10 6452 1 2025-10-07 16:12:51.182 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37640 10 6452 1 2025-10-07 16:09:40.752 00:05:00.323 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-07 16:09:40.750 00:05:00.327 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-07 16:14:11.079 00:00:00.030 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 16:13:51.595 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42392 10 6452 1 2025-10-07 16:14:10.592 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 16:14:09.942 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 16:14:10.604 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 16:14:10.998 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 16:14:51.957 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39028 10 6452 1 2025-10-07 16:15:52.359 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35282 10 6452 1 2025-10-07 16:16:52.758 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:50810 10 6452 1 2025-10-07 16:17:53.185 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:50584 10 6452 1 2025-10-07 16:18:53.598 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36576 10 6452 1 2025-10-07 16:19:10.528 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 16:19:10.271 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 16:19:10.448 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 16:19:10.573 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 16:19:10.531 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 16:15:40.752 00:05:00.326 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-07 16:15:40.755 00:05:00.321 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-07 16:19:53.965 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35874 10 6452 1 2025-10-07 16:20:54.375 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36894 10 6452 1 2025-10-07 16:21:54.780 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58226 10 6452 1 2025-10-07 16:22:55.193 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60508 10 6452 1 2025-10-07 16:24:10.722 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 16:23:55.601 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46980 10 6452 1 2025-10-07 16:24:10.602 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 16:24:10.315 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 16:24:10.639 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 16:24:10.695 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 16:24:56.009 00:00:10.433 TCP 1.101.0.1:3000 -> 23.104.0.1:33640 12 10375 1 2025-10-07 16:21:40.755 00:05:00.322 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-07 16:21:40.753 00:05:00.326 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-07 16:25:56.495 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:38460 10 6452 1 2025-10-07 16:26:56.852 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:39534 10 6452 1 2025-10-07 16:27:57.269 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50228 10 6452 1 2025-10-07 16:29:10.685 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 16:28:57.683 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36792 10 6452 1 2025-10-07 16:29:10.821 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 16:29:10.619 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 16:29:10.603 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 16:29:10.604 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 16:29:58.110 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:34308 10 6452 1 2025-10-07 16:30:58.512 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:55142 10 6452 1 2025-10-07 16:27:40.756 00:05:00.322 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-07 16:27:40.755 00:05:00.327 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-07 16:31:58.910 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54220 12 6556 1 2025-10-07 16:32:59.320 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41330 10 6452 1 2025-10-07 16:34:11.236 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 16:33:59.721 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58946 10 6452 1 2025-10-07 16:34:11.085 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 16:34:11.209 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 16:34:11.153 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 16:34:11.248 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 16:35:00.113 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35052 10 6452 1 2025-10-07 16:36:00.527 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49368 10 6452 1 2025-10-07 16:37:00.931 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:38292 10 6452 1 2025-10-07 16:33:40.759 00:05:00.320 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-07 16:33:40.756 00:05:00.326 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-07 16:38:01.349 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52624 10 6452 1 2025-10-07 16:39:10.885 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 16:39:10.796 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 16:39:10.960 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 16:39:11.077 00:00:00.036 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 16:39:01.758 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:44724 10 6452 1 2025-10-07 16:39:10.995 00:00:00.036 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 16:40:02.132 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:47496 10 6452 1 2025-10-07 16:41:02.504 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40536 10 6452 1 2025-10-07 16:42:02.903 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59112 12 6556 1 2025-10-07 16:43:03.314 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50940 10 6452 1 2025-10-07 16:39:40.756 00:05:00.328 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-07 16:39:40.759 00:05:00.322 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-07 16:44:10.804 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 16:44:10.726 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 16:44:10.902 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 16:44:11.176 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 16:44:03.725 00:00:11.092 TCP 1.101.0.1:3000 -> 23.104.0.1:48192 10 6452 1 2025-10-07 16:44:11.092 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 16:45:04.856 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:48852 10 6452 1 2025-10-07 16:46:05.236 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48870 10 6452 1 2025-10-07 16:47:05.639 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53510 10 6452 1 2025-10-07 16:48:06.046 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54862 10 6452 1 2025-10-07 16:49:10.796 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 16:49:11.116 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 16:49:11.075 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 16:49:11.077 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 16:49:11.159 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 16:49:06.410 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38008 10 6452 1 2025-10-07 16:45:40.763 00:05:00.321 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-07 16:45:40.766 00:05:00.316 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-07 16:50:06.813 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55296 10 6452 1 2025-10-07 16:51:07.238 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60218 10 6452 1 2025-10-07 16:52:07.646 00:00:10.566 TCP 1.101.0.1:3000 -> 23.104.0.1:33618 10 6452 1 2025-10-07 16:53:08.253 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54476 10 6452 1 2025-10-07 16:54:11.628 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 16:54:11.469 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 16:54:11.441 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 16:54:11.546 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 16:54:11.412 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 16:54:08.653 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45526 10 6452 1 2025-10-07 16:55:09.017 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45158 10 6452 1 2025-10-07 16:51:40.764 00:05:00.321 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-07 16:51:40.767 00:05:00.316 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-07 16:56:09.421 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60484 10 6452 1 2025-10-07 16:57:09.824 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41988 10 6452 1 2025-10-07 16:58:10.224 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:49722 10 6452 1 Summary: total flows: 140, total bytes: 421131, total packets: 1026, avg bps: 925, avg pps: 0, avg bpp: 410 Time window: 2025-10-07 15:57:40 - 2025-10-07 16:58:20 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0037s User: 0.0009s Wall: 0.0019s flows/second: 73336.2 Runtime: 0.0019s