Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-12 16:58:57.244 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35030 10 6452 1 2025-10-12 16:59:57.647 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:51990 10 6452 1 2025-10-12 17:00:58.052 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59904 10 6452 1 2025-10-12 17:01:36.739 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 17:01:36.522 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 17:01:36.337 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 17:01:36.656 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 17:01:36.699 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 16:56:43.176 00:06:00.476 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 17:01:58.456 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39082 10 6452 1 2025-10-12 16:57:43.174 00:06:00.485 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 17:02:58.859 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44444 10 6452 1 2025-10-12 17:03:59.270 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:48998 10 6452 1 2025-10-12 17:04:59.631 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59836 10 6452 1 2025-10-12 17:06:00.063 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48166 10 6452 1 2025-10-12 17:06:35.881 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 17:06:35.813 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 17:06:35.707 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 17:06:35.799 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 17:06:35.899 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 17:07:00.465 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36850 10 6452 1 2025-10-12 17:08:00.877 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37794 10 6452 1 2025-10-12 17:03:43.177 00:06:00.478 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 17:09:01.242 00:00:10.851 TCP 1.101.0.1:3000 -> 23.104.0.1:57022 10 6452 1 2025-10-12 17:04:43.175 00:06:00.483 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 17:10:02.132 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46762 10 6452 1 2025-10-12 17:11:02.528 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:57210 12 10375 1 2025-10-12 17:11:35.976 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 17:11:36.068 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 17:11:36.117 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 17:11:35.986 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 17:11:35.982 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 17:12:03.011 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42628 10 6452 1 2025-10-12 17:13:03.440 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43946 10 6452 1 2025-10-12 17:14:03.848 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:58718 10 6452 1 2025-10-12 17:15:04.274 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48876 10 6452 1 2025-10-12 17:10:43.179 00:06:00.479 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 17:16:04.675 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:57250 10 6452 1 2025-10-12 17:16:36.004 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 17:16:35.915 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 17:16:35.921 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 17:16:36.070 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 17:16:36.117 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 17:11:43.177 00:06:00.484 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 17:17:05.104 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45176 10 6452 1 2025-10-12 17:18:05.511 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58190 10 6452 1 2025-10-12 17:19:05.918 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:47020 10 6452 1 2025-10-12 17:20:06.281 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43474 10 6452 1 2025-10-12 17:21:06.694 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:38076 10 6452 1 2025-10-12 17:21:36.070 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 17:21:36.137 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 17:21:36.191 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 17:21:36.223 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 17:21:36.274 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 17:22:07.068 00:00:10.423 TCP 1.101.0.1:3000 -> 23.104.0.1:46156 11 6504 1 2025-10-12 17:17:43.181 00:06:00.479 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 17:23:07.532 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:58242 10 6452 1 2025-10-12 17:18:43.177 00:06:00.484 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 17:24:07.889 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57836 10 6452 1 2025-10-12 17:25:08.300 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56674 10 6452 1 2025-10-12 17:26:08.700 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51330 10 6452 1 2025-10-12 17:26:36.401 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 17:26:36.378 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 17:26:36.396 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 17:26:36.451 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 17:26:36.480 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 17:27:09.120 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45194 10 6452 1 2025-10-12 17:28:09.484 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:39430 10 6452 1 2025-10-12 17:29:09.879 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53250 10 6452 1 2025-10-12 17:24:43.182 00:06:00.481 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 17:30:10.284 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:50700 10 6452 1 2025-10-12 17:25:43.180 00:06:00.486 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 17:31:10.714 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:50854 10 6452 1 2025-10-12 17:31:36.530 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 17:31:36.316 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 17:31:36.317 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 17:31:36.448 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 17:31:36.446 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 17:32:11.104 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56872 10 6452 1 2025-10-12 17:33:11.513 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:44864 10 6452 1 2025-10-12 17:34:11.881 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40894 10 6452 1 2025-10-12 17:35:12.284 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51510 10 6452 1 2025-10-12 17:36:12.689 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51604 10 6452 1 2025-10-12 17:36:36.378 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 17:36:36.269 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 17:36:36.440 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 17:36:36.481 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 17:36:36.522 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 17:31:43.185 00:06:00.480 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 17:37:13.117 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:41898 10 6452 1 2025-10-12 17:32:43.183 00:06:00.484 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 17:38:13.478 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48454 10 6452 1 2025-10-12 17:39:13.883 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:47178 10 6452 1 2025-10-12 17:40:14.279 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:35770 10 6452 1 2025-10-12 17:41:14.686 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:53072 10 6452 1 2025-10-12 17:41:36.588 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 17:41:36.583 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 17:41:36.536 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 17:41:36.506 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 17:41:36.644 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 17:42:15.110 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48550 10 6452 1 2025-10-12 17:43:15.514 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41560 10 6452 1 2025-10-12 17:38:43.222 00:06:00.444 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 17:44:15.914 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58362 10 6452 1 2025-10-12 17:39:43.220 00:06:00.449 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 17:45:16.322 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40192 10 6452 1 2025-10-12 17:46:16.725 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57758 10 6452 1 2025-10-12 17:46:36.696 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 17:46:36.697 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 17:46:36.463 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 17:46:36.612 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 17:46:36.616 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 17:47:17.134 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:44652 10 6452 1 2025-10-12 17:48:17.500 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:59478 10 6452 1 2025-10-12 17:49:17.856 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:52912 10 6452 1 2025-10-12 17:50:18.272 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49336 10 6452 1 2025-10-12 17:45:43.223 00:06:00.444 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 17:51:18.676 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36264 10 6452 1 2025-10-12 17:51:36.835 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 17:51:36.643 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 17:51:36.501 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 17:51:36.834 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 17:51:36.585 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 17:46:43.244 00:06:00.425 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-12 17:52:19.105 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55570 10 6452 1 2025-10-12 17:53:19.516 00:00:11.033 TCP 1.101.0.1:3000 -> 23.104.0.1:35576 10 6452 1 2025-10-12 17:54:20.583 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40980 10 6452 1 2025-10-12 17:55:20.989 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56436 10 6452 1 2025-10-12 17:56:36.834 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-12 17:56:21.397 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50908 10 6452 1 2025-10-12 17:56:36.891 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-12 17:56:36.774 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 17:56:36.751 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-12 17:56:36.753 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 17:57:21.800 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59616 10 6452 1 2025-10-12 17:52:43.247 00:06:00.420 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-12 17:58:22.204 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57552 10 6452 1 2025-10-12 17:53:43.246 00:06:00.425 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 Summary: total flows: 138, total bytes: 421713, total packets: 1035, avg bps: 892, avg pps: 0, avg bpp: 407 Time window: 2025-10-12 16:56:43 - 2025-10-12 17:59:43 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0040s User: 0.0016s Wall: 0.0024s flows/second: 58184.0 Runtime: 0.0024s