Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-12 23:59:06.153 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36686 10 6452 1 2025-10-13 00:00:06.558 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35522 10 6452 1 2025-10-13 00:01:06.990 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:46398 12 10369 1 2025-10-13 00:01:44.167 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 00:01:44.082 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 00:01:44.012 00:00:00.042 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:01:44.084 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:01:44.063 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-12 23:56:43.368 00:06:00.439 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 00:02:07.467 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56050 10 6452 1 2025-10-12 23:57:43.367 00:06:00.445 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 00:03:07.846 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:44750 10 6452 1 2025-10-13 00:04:08.265 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50170 10 6452 1 2025-10-13 00:05:08.666 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57380 12 6556 1 2025-10-13 00:06:09.101 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40520 10 6452 1 2025-10-13 00:06:44.282 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 00:06:44.175 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:06:44.230 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:06:44.283 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 00:06:44.314 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 00:07:09.506 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57726 10 6452 1 2025-10-13 00:08:09.915 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:41902 10 6452 1 2025-10-13 00:03:43.375 00:06:00.436 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 00:09:10.278 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55020 10 6452 1 2025-10-13 00:04:43.374 00:06:00.440 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 00:10:10.679 00:00:10.864 TCP 1.101.0.1:3000 -> 23.104.0.1:60492 10 6452 1 2025-10-13 00:11:11.581 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44446 10 6452 1 2025-10-13 00:11:44.302 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:11:44.415 00:00:00.032 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 00:11:44.458 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 00:11:44.222 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:11:44.385 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 00:12:11.988 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53712 10 6452 1 2025-10-13 00:13:12.402 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41570 10 6452 1 2025-10-13 00:14:12.805 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58438 10 6452 1 2025-10-13 00:15:13.212 00:00:11.015 TCP 1.101.0.1:3000 -> 23.104.0.1:41586 10 6452 1 2025-10-13 00:10:43.376 00:06:00.439 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 00:16:14.269 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:51064 10 6452 1 2025-10-13 00:11:43.373 00:06:00.444 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 00:16:44.628 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 00:16:44.628 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 00:16:44.298 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:16:44.546 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:16:44.501 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 00:17:14.629 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38826 10 6452 1 2025-10-13 00:18:15.032 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41538 10 6452 1 2025-10-13 00:19:15.431 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39372 10 6452 1 2025-10-13 00:20:15.854 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37708 10 6452 1 2025-10-13 00:21:16.278 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50504 10 6452 1 2025-10-13 00:21:44.346 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 00:21:44.206 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:21:44.538 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:21:44.594 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 00:21:44.621 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 00:22:16.682 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49110 10 6452 1 2025-10-13 00:17:43.382 00:06:00.434 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 00:23:17.107 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39380 10 6452 1 2025-10-13 00:18:43.379 00:06:00.439 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 00:24:17.514 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41418 10 6452 1 2025-10-13 00:25:17.926 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:56644 10 6452 1 2025-10-13 00:26:18.352 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55970 10 6452 1 2025-10-13 00:26:44.693 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 00:26:44.735 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 00:26:44.476 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:26:44.610 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:26:44.449 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 00:27:18.757 00:00:10.574 TCP 1.101.0.1:3000 -> 23.104.0.1:42948 10 6452 1 2025-10-13 00:28:19.371 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56192 10 6452 1 2025-10-13 00:29:19.770 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:33300 10 6452 1 2025-10-13 00:24:43.385 00:06:00.435 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 00:30:20.182 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58500 10 6452 1 2025-10-13 00:25:43.384 00:06:00.440 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 00:31:20.539 00:00:19.690 TCP 1.101.0.1:3000 -> 23.104.0.1:49614 10 6452 1 2025-10-13 00:31:44.859 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 00:31:44.693 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:31:44.727 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:31:44.574 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 00:31:44.809 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 00:32:30.277 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58230 10 6452 1 2025-10-13 00:33:30.678 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:33316 10 6452 1 2025-10-13 00:34:31.061 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49852 10 6452 1 2025-10-13 00:35:31.466 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58736 10 6452 1 2025-10-13 00:36:44.877 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 00:36:44.794 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 00:36:31.869 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:56588 10 6452 1 2025-10-13 00:36:44.970 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:36:44.795 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:36:44.797 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 00:31:43.388 00:06:00.438 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 00:32:43.385 00:06:00.443 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 00:37:32.231 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:40242 10 6452 1 2025-10-13 00:38:32.593 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40932 10 6452 1 2025-10-13 00:39:33.003 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44086 10 6452 1 2025-10-13 00:40:33.406 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35174 10 6452 1 2025-10-13 00:41:44.903 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 00:41:44.744 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:41:33.812 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:39646 10 6452 1 2025-10-13 00:41:45.133 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:41:44.984 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 00:41:45.216 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 00:42:34.222 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42610 10 6452 1 2025-10-13 00:38:43.390 00:06:00.437 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 00:43:34.625 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53382 10 6452 1 2025-10-13 00:39:43.389 00:06:00.441 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 00:44:35.028 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:45440 10 6452 1 2025-10-13 00:45:35.390 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55112 10 6452 1 2025-10-13 00:46:44.832 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 00:46:44.927 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 00:46:45.102 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:46:44.749 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:46:44.857 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 00:46:35.793 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:33884 12 10369 1 2025-10-13 00:47:36.273 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40928 12 6556 1 2025-10-13 00:48:36.680 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37886 10 6452 1 2025-10-13 00:49:37.095 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:59232 10 6452 1 2025-10-13 00:45:43.394 00:06:00.437 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 00:50:37.463 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58428 10 6452 1 2025-10-13 00:51:45.207 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 00:51:44.938 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:51:45.119 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:51:45.052 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 00:46:43.390 00:06:00.443 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 00:51:45.202 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 00:51:37.865 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52792 10 6452 1 2025-10-13 00:52:38.279 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53722 10 6452 1 2025-10-13 00:53:38.677 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:40436 10 6452 1 2025-10-13 00:54:39.103 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43522 10 6452 1 2025-10-13 00:55:39.507 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44368 10 6452 1 2025-10-13 00:56:45.360 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 00:56:45.259 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:56:45.344 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 00:56:45.437 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 00:56:45.427 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 00:56:39.870 00:00:10.518 TCP 1.101.0.1:3000 -> 23.104.0.1:33050 10 6452 1 2025-10-13 00:52:43.396 00:06:00.437 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 00:57:40.432 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54380 10 6452 1 2025-10-13 00:53:43.392 00:06:00.442 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 Summary: total flows: 137, total bytes: 419328, total packets: 1030, avg bps: 887, avg pps: 0, avg bpp: 407 Time window: 2025-10-12 23:56:43 - 2025-10-13 00:59:43 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0029s User: 0.0019s Wall: 0.0018s flows/second: 75231.7 Runtime: 0.0018s