Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-12 01:59:11.577 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43010 10 6452 1 2025-10-12 02:00:11.939 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43854 10 6452 1 2025-10-12 02:01:17.635 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 02:01:17.553 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 02:01:17.568 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:01:17.553 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:01:17.628 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 02:01:12.345 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56474 10 6452 1 2025-10-12 02:02:12.750 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:54462 10 6452 1 2025-10-12 01:58:42.827 00:05:00.468 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 02:03:13.115 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52080 10 6452 1 2025-10-12 02:04:13.476 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53186 10 6452 1 2025-10-12 02:00:42.824 00:05:00.474 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 02:05:13.876 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48106 10 6452 1 2025-10-12 02:06:17.776 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 02:06:17.505 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:06:17.728 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:06:17.769 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 02:06:17.812 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 02:06:14.242 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50834 10 6452 1 2025-10-12 02:07:14.651 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38116 10 6452 1 2025-10-12 02:08:15.067 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37786 10 6452 1 2025-10-12 02:04:42.828 00:05:00.469 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 02:09:15.474 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45642 10 6452 1 2025-10-12 02:10:15.877 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:51622 10 6452 1 2025-10-12 02:06:42.826 00:05:00.475 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 02:11:18.543 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 02:11:18.806 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 02:11:18.405 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:11:18.460 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:11:18.625 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 02:11:16.249 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36754 10 6452 1 2025-10-12 02:12:16.614 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58858 10 6452 1 2025-10-12 02:13:17.020 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41958 10 6452 1 2025-10-12 02:14:17.410 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37188 10 6452 1 2025-10-12 02:10:42.830 00:05:00.471 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 02:15:17.818 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59030 10 6452 1 2025-10-12 02:16:17.785 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 02:16:17.680 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:16:18.057 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:16:17.872 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 02:16:18.140 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 02:16:18.226 00:00:10.456 TCP 1.101.0.1:3000 -> 23.104.0.1:50884 12 10369 1 2025-10-12 02:12:42.826 00:05:00.475 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 02:17:18.721 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:52846 10 6452 1 2025-10-12 02:18:19.116 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47238 10 6452 1 2025-10-12 02:19:19.518 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34130 10 6452 1 2025-10-12 02:20:19.915 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51542 10 6452 1 2025-10-12 02:16:42.830 00:05:00.470 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 02:21:18.484 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 02:21:18.402 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:21:17.921 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 02:21:17.919 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 02:21:17.769 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:21:20.318 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39086 10 6452 1 2025-10-12 02:22:20.727 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:52088 10 6452 1 2025-10-12 02:18:42.828 00:05:00.475 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 02:23:21.115 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:37672 10 6452 1 2025-10-12 02:24:21.496 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51598 10 6452 1 2025-10-12 02:25:21.864 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53866 10 6452 1 2025-10-12 02:26:18.082 00:00:00.040 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 02:26:17.988 00:00:00.046 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 02:26:17.962 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:26:18.000 00:00:00.039 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:26:17.902 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 02:26:22.278 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53810 10 6452 1 2025-10-12 02:22:42.831 00:05:00.471 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 02:27:22.688 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:39178 10 6452 1 2025-10-12 02:28:23.091 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34664 10 6452 1 2025-10-12 02:24:42.830 00:05:00.477 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 02:29:23.491 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49168 10 6452 1 2025-10-12 02:30:23.897 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:51142 10 6452 1 2025-10-12 02:31:18.537 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 02:31:18.448 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 02:31:18.419 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:31:18.453 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:31:18.330 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 02:31:24.318 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38210 10 6452 1 2025-10-12 02:32:24.722 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:41720 10 6452 1 2025-10-12 02:28:42.833 00:05:00.473 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 02:33:25.134 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56328 10 6452 1 2025-10-12 02:34:25.544 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60950 10 6452 1 2025-10-12 02:30:42.829 00:05:00.480 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 02:35:25.949 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:41870 12 10375 1 2025-10-12 02:36:17.989 00:00:00.056 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 02:36:17.873 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:36:18.308 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:36:18.251 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 02:36:18.392 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 02:36:26.440 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:40480 10 6452 1 2025-10-12 02:37:26.858 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:54862 10 6452 1 2025-10-12 02:38:27.281 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:34186 10 6452 1 2025-10-12 02:34:42.834 00:05:00.473 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 02:39:27.646 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39986 10 6452 1 2025-10-12 02:40:28.056 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53606 10 6452 1 2025-10-12 02:36:42.833 00:05:00.508 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 02:41:18.481 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 02:41:18.331 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 02:41:18.346 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:41:18.398 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:41:18.221 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 02:41:28.474 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45620 10 6452 1 2025-10-12 02:42:28.879 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55554 10 6452 1 2025-10-12 02:43:29.241 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:34886 10 6452 1 2025-10-12 02:44:29.716 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58242 10 6452 1 2025-10-12 02:40:42.835 00:05:00.473 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 02:45:30.118 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58570 10 6452 1 2025-10-12 02:46:18.730 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 02:46:18.456 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 02:46:18.356 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:46:18.648 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:46:18.572 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 02:46:30.515 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44710 10 6452 1 2025-10-12 02:42:42.833 00:05:00.478 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 02:47:30.921 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56878 10 6452 1 2025-10-12 02:48:31.325 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:58368 10 6452 1 2025-10-12 02:49:31.723 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44370 10 6452 1 2025-10-12 02:50:32.136 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46746 10 6452 1 2025-10-12 02:46:42.837 00:05:00.474 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 02:51:18.636 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 02:51:18.712 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 02:51:18.469 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:51:18.554 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:51:18.645 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 02:51:32.539 00:00:11.007 TCP 1.101.0.1:3000 -> 23.104.0.1:47582 10 6452 1 2025-10-12 02:52:33.583 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50892 10 6452 1 2025-10-12 02:48:42.835 00:05:00.479 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 02:53:33.983 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52720 10 6452 1 2025-10-12 02:54:34.391 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44138 10 6452 1 2025-10-12 02:55:34.803 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:34914 12 10375 1 2025-10-12 02:56:18.716 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 02:56:18.848 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:56:18.814 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 02:56:18.616 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 02:56:18.896 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 02:56:35.278 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41070 10 6452 1 2025-10-12 02:52:42.837 00:05:00.475 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-12 02:57:35.646 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42702 10 6452 1 2025-10-12 02:54:42.835 00:05:00.481 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-12 02:58:36.067 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53512 10 6452 1 Summary: total flows: 140, total bytes: 428763, total packets: 1026, avg bps: 937, avg pps: 0, avg bpp: 417 Time window: 2025-10-12 01:58:42 - 2025-10-12 02:59:43 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0047s User: 0.0000s Wall: 0.0020s flows/second: 68366.8 Runtime: 0.0021s