Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-11 17:58:41.230 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:55866 10 6452 1 2025-10-11 17:59:41.592 00:00:15.687 TCP 1.101.0.1:3000 -> 23.104.0.1:60736 10 6452 1 2025-10-11 18:00:47.320 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56890 10 6452 1 2025-10-11 18:01:08.152 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 18:01:08.066 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 18:01:07.936 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:01:08.070 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:01:08.101 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 18:01:47.725 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:49142 10 6452 1 2025-10-11 17:58:42.656 00:05:00.463 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-11 18:02:48.112 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53060 10 6452 1 2025-10-11 18:03:48.516 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45214 10 6452 1 2025-10-11 18:00:42.653 00:05:00.468 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-11 18:04:48.927 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:56288 10 6452 1 2025-10-11 18:05:49.347 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:43246 10 6452 1 2025-10-11 18:06:08.305 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 18:06:08.268 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 18:06:07.989 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:06:08.222 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:06:08.231 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 18:06:49.711 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41516 10 6452 1 2025-10-11 18:07:50.116 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56798 10 6452 1 2025-10-11 18:04:42.657 00:05:00.463 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-11 18:08:50.517 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52996 10 6452 1 2025-10-11 18:09:50.876 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39208 10 6452 1 2025-10-11 18:06:42.655 00:05:00.468 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-11 18:10:51.282 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35852 10 6452 1 2025-10-11 18:11:08.192 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 18:11:08.016 00:00:00.040 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:11:08.122 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:11:08.288 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 18:11:08.206 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 18:11:51.682 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41500 10 6452 1 2025-10-11 18:12:52.114 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:37700 10 6452 1 2025-10-11 18:13:52.531 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:52858 10 6452 1 2025-10-11 18:10:42.659 00:05:00.463 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-11 18:14:52.936 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:58738 10 6452 1 2025-10-11 18:15:53.348 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:55390 12 10375 1 2025-10-11 18:16:08.149 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 18:16:08.067 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 18:16:08.348 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:16:08.066 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:16:08.473 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 18:12:42.656 00:05:00.468 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-11 18:16:53.786 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58564 10 6452 1 2025-10-11 18:17:54.196 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:59286 10 6452 1 2025-10-11 18:18:54.607 00:00:10.472 TCP 1.101.0.1:3000 -> 23.104.0.1:40296 10 6452 1 2025-10-11 18:19:55.119 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36486 10 6452 1 2025-10-11 18:16:42.659 00:05:00.463 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-11 18:20:55.517 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37840 10 6452 1 2025-10-11 18:21:08.541 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 18:21:08.584 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 18:21:08.183 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:21:08.459 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:21:08.347 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 18:21:55.927 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:33524 10 6452 1 2025-10-11 18:18:42.657 00:05:00.468 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-11 18:22:56.343 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:42190 11 6504 1 2025-10-11 18:23:56.769 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46030 10 6452 1 2025-10-11 18:24:57.180 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43324 10 6452 1 2025-10-11 18:26:08.587 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 18:26:08.387 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:26:08.539 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:26:08.636 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 18:25:57.581 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36676 10 6452 1 2025-10-11 18:26:08.622 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 18:22:42.662 00:05:00.460 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-11 18:26:57.987 00:00:10.427 TCP 1.101.0.1:3000 -> 23.104.0.1:42268 11 6504 1 2025-10-11 18:27:58.455 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42580 10 6452 1 2025-10-11 18:24:42.659 00:05:00.467 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-11 18:28:58.858 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:57826 10 6452 1 2025-10-11 18:29:59.279 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34910 10 6452 1 2025-10-11 18:31:09.388 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 18:30:59.682 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:44118 10 6452 1 2025-10-11 18:31:09.045 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:31:09.395 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:31:09.388 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 18:31:09.477 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 18:32:00.058 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:39106 10 6452 1 2025-10-11 18:28:42.661 00:05:00.463 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-11 18:33:00.421 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54874 10 6452 1 2025-10-11 18:34:00.824 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60952 10 6452 1 2025-10-11 18:30:42.660 00:05:00.468 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-11 18:35:01.227 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40806 10 6452 1 2025-10-11 18:36:08.721 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 18:36:08.579 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:36:08.720 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:36:08.661 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 18:36:08.802 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 18:36:01.640 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34160 10 6452 1 2025-10-11 18:37:02.041 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45382 10 6452 1 2025-10-11 18:38:02.444 00:00:10.575 TCP 1.101.0.1:3000 -> 23.104.0.1:33258 10 6452 1 2025-10-11 18:34:42.664 00:05:00.463 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-11 18:39:03.062 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48476 10 6452 1 2025-10-11 18:40:03.471 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36914 10 6452 1 2025-10-11 18:36:42.663 00:05:00.467 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-11 18:41:08.623 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 18:41:08.544 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:41:08.712 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:41:08.793 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 18:41:08.795 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 18:41:03.880 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55002 10 6452 1 2025-10-11 18:42:04.280 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41384 10 6452 1 2025-10-11 18:43:04.686 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46188 10 6452 1 2025-10-11 18:44:05.106 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:32782 10 6452 1 2025-10-11 18:40:42.667 00:05:00.461 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-11 18:45:05.463 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58170 10 6452 1 2025-10-11 18:46:08.834 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 18:46:08.913 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:46:08.907 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:46:08.825 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 18:46:08.990 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 18:46:05.866 00:00:10.407 TCP 1.101.0.1:3000 -> 23.104.0.1:40940 12 10369 1 2025-10-11 18:42:42.664 00:05:00.467 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-11 18:47:06.313 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47264 10 6452 1 2025-10-11 18:48:06.715 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:40522 10 6452 1 2025-10-11 18:49:07.141 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45124 10 6452 1 2025-10-11 18:50:07.548 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45264 10 6452 1 2025-10-11 18:46:42.669 00:05:00.462 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-11 18:51:09.302 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 18:51:09.208 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 18:51:08.909 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:51:09.218 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:51:09.224 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 18:51:07.954 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:32784 10 6452 1 2025-10-11 18:52:08.321 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45610 10 6452 1 2025-10-11 18:48:42.667 00:05:00.466 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-11 18:53:08.688 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52174 10 6452 1 2025-10-11 18:54:09.111 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44356 10 6452 1 2025-10-11 18:55:09.517 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:56286 10 6452 1 2025-10-11 18:56:09.254 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:56:09.110 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-11 18:56:09.252 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-11 18:56:09.185 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-11 18:56:09.335 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-11 18:56:09.885 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38366 10 6452 1 2025-10-11 18:52:42.671 00:05:00.461 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-11 18:57:10.287 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35662 10 6452 1 2025-10-11 18:58:10.695 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57036 10 6452 1 2025-10-11 18:54:42.670 00:05:00.465 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 Summary: total flows: 140, total bytes: 424944, total packets: 1026, avg bps: 928, avg pps: 0, avg bpp: 414 Time window: 2025-10-11 17:58:41 - 2025-10-11 18:59:43 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0020s User: 0.0039s Wall: 0.0024s flows/second: 57687.6 Runtime: 0.0024s