Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-11 23:59:22.456 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55612 10 6452 1 2025-10-12 00:00:22.860 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:53764 10 6452 1 2025-10-12 00:01:15.263 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 00:01:15.233 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 00:01:15.180 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:01:15.179 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:01:15.174 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 00:01:23.292 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49404 10 6452 1 2025-10-12 00:02:23.696 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49772 10 6452 1 2025-10-11 23:58:42.791 00:05:00.456 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 00:03:24.108 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38738 10 6452 1 2025-10-12 00:04:24.506 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41256 10 6452 1 2025-10-12 00:00:42.788 00:05:00.462 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 00:05:24.902 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:42740 10 6452 1 2025-10-12 00:06:15.521 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 00:06:15.436 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 00:06:15.450 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:06:15.437 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:06:15.375 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 00:06:25.267 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:58428 10 6452 1 2025-10-12 00:07:25.625 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34590 10 6452 1 2025-10-12 00:08:25.994 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44584 10 6452 1 2025-10-12 00:04:42.791 00:05:00.457 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 00:09:26.401 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36920 10 6452 1 2025-10-12 00:10:26.815 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56302 10 6452 1 2025-10-12 00:06:42.789 00:05:00.462 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 00:11:15.371 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 00:11:15.369 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 00:11:15.231 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:11:15.289 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:11:15.565 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 00:11:27.220 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36394 10 6452 1 2025-10-12 00:12:27.627 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41908 10 6452 1 2025-10-12 00:13:28.028 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:32928 10 6452 1 2025-10-12 00:14:28.436 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54386 10 6452 1 2025-10-12 00:10:42.795 00:05:00.455 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 00:15:28.860 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:57676 10 6452 1 2025-10-12 00:16:15.770 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 00:16:15.835 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:16:15.683 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:16:15.675 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 00:16:15.767 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 00:16:29.282 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53950 10 6452 1 2025-10-12 00:12:42.792 00:05:00.463 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 00:17:29.690 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60542 10 6452 1 2025-10-12 00:18:30.059 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:43050 10 6452 1 2025-10-12 00:19:30.422 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49972 10 6452 1 2025-10-12 00:16:42.797 00:05:00.456 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 00:20:30.826 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52636 10 6452 1 2025-10-12 00:21:16.140 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 00:21:15.864 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:21:16.205 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 00:21:16.057 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:21:16.205 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 00:21:31.228 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57210 10 6452 1 2025-10-12 00:18:42.794 00:05:00.480 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 00:22:31.633 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45066 10 6452 1 2025-10-12 00:23:32.038 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:46242 10 6452 1 2025-10-12 00:24:32.406 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35868 10 6452 1 2025-10-12 00:25:32.812 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33054 10 6452 1 2025-10-12 00:26:15.856 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 00:26:15.720 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 00:26:15.699 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:26:15.772 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:26:15.466 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 00:22:42.799 00:05:00.474 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 00:26:33.214 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:51686 10 6452 1 2025-10-12 00:27:33.611 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57470 10 6452 1 2025-10-12 00:28:34.024 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47380 10 6452 1 2025-10-12 00:24:42.798 00:05:00.477 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 00:29:34.431 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50378 10 6452 1 2025-10-12 00:30:34.836 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:44462 10 6452 1 2025-10-12 00:31:15.909 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 00:31:15.718 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:31:15.914 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 00:31:15.801 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 00:31:15.977 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:31:35.210 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:46068 10 6452 1 2025-10-12 00:32:35.586 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49950 10 6452 1 2025-10-12 00:28:42.802 00:05:00.472 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 00:33:35.987 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:59532 10 6452 1 2025-10-12 00:30:42.798 00:05:00.477 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 00:34:36.360 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59408 10 6452 1 2025-10-12 00:35:36.764 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:59976 10 6452 1 2025-10-12 00:36:16.211 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 00:36:15.773 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:36:15.827 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 00:36:16.142 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 00:36:16.130 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:36:37.141 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52568 10 6452 1 2025-10-12 00:37:37.542 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52782 10 6452 1 2025-10-12 00:34:42.802 00:05:00.474 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 00:38:37.943 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:57278 10 6452 1 2025-10-12 00:39:38.331 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50358 10 6452 1 2025-10-12 00:36:42.800 00:05:00.481 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 00:40:38.733 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:41520 10 6452 1 2025-10-12 00:41:16.639 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 00:41:16.457 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:41:16.796 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:41:16.800 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 00:41:16.878 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 00:41:39.116 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43296 10 6452 1 2025-10-12 00:42:39.515 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41972 10 6452 1 2025-10-12 00:43:39.918 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36136 10 6452 1 2025-10-12 00:40:42.803 00:05:00.479 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 00:44:40.320 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46768 10 6452 1 2025-10-12 00:45:40.730 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36068 10 6452 1 2025-10-12 00:46:16.309 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 00:46:16.104 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 00:46:16.195 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:46:16.226 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:46:16.225 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 00:42:42.800 00:05:00.485 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 00:46:41.132 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43616 10 6452 1 2025-10-12 00:47:41.535 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58956 10 6452 1 2025-10-12 00:48:41.898 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:43780 10 6452 1 2025-10-12 00:49:42.273 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47618 10 6452 1 2025-10-12 00:46:42.806 00:05:00.477 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 00:50:42.639 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50910 10 6452 1 2025-10-12 00:51:16.364 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 00:51:15.903 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:51:16.194 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 00:51:16.281 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:51:16.285 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 00:51:43.035 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57432 10 6452 1 2025-10-12 00:48:42.803 00:05:00.482 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 00:52:43.440 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41516 12 6556 1 2025-10-12 00:53:43.842 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:47262 10 6452 1 2025-10-12 00:54:44.222 00:00:10.488 TCP 1.101.0.1:3000 -> 23.104.0.1:51094 10 6452 1 2025-10-12 00:55:44.746 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:41262 10 6452 1 2025-10-12 00:56:16.217 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 00:56:16.133 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:56:16.222 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 00:56:16.292 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 00:56:16.306 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 00:52:42.806 00:05:00.478 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 00:56:45.162 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46056 10 6452 1 2025-10-12 00:57:45.568 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56038 10 6452 1 2025-10-12 00:54:42.804 00:05:00.483 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 Summary: total flows: 139, total bytes: 410652, total packets: 1012, avg bps: 897, avg pps: 0, avg bpp: 405 Time window: 2025-10-11 23:58:42 - 2025-10-12 00:59:43 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0043s User: 0.0009s Wall: 0.0024s flows/second: 58576.1 Runtime: 0.0024s