Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-13 07:59:38.284 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40482 10 6452 1 2025-10-13 08:00:38.694 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48528 10 6452 1 2025-10-13 08:01:39.113 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49708 10 6452 1 2025-10-13 08:01:53.770 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 08:01:53.591 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 08:01:53.610 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 08:01:53.688 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 08:01:53.705 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 08:02:39.516 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:56970 10 6452 1 2025-10-13 08:03:39.878 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:35464 10 6452 1 2025-10-13 07:59:43.515 00:06:00.456 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 08:04:40.276 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42332 10 6452 1 2025-10-13 08:00:43.513 00:06:00.460 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 08:05:40.683 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38998 10 6452 1 2025-10-13 08:06:53.908 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 08:06:53.862 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 08:06:41.111 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53958 10 6452 1 2025-10-13 08:06:53.914 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 08:06:53.843 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 08:06:53.997 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 08:07:41.513 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52954 10 6452 1 2025-10-13 08:08:41.920 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48526 10 6452 1 2025-10-13 08:09:42.331 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40538 10 6452 1 2025-10-13 08:10:42.738 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57242 10 6452 1 2025-10-13 08:06:43.516 00:06:00.456 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 08:11:54.057 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 08:11:53.886 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 08:11:54.064 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 08:11:54.064 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 08:11:43.148 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55226 10 6452 1 2025-10-13 08:11:54.148 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 08:07:43.514 00:06:00.461 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 08:12:43.557 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56272 10 6452 1 2025-10-13 08:13:43.963 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:59378 10 6452 1 2025-10-13 08:14:44.324 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45832 10 6452 1 2025-10-13 08:15:44.724 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33918 10 6452 1 2025-10-13 08:16:54.284 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 08:16:53.791 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 08:16:53.926 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 08:16:54.201 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 08:16:54.256 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 08:16:45.136 00:00:10.517 TCP 1.101.0.1:3000 -> 23.104.0.1:41992 10 6452 1 2025-10-13 08:17:45.694 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51550 10 6452 1 2025-10-13 08:13:43.518 00:06:00.456 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 08:18:46.109 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58656 10 6452 1 2025-10-13 08:14:43.515 00:06:00.462 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 08:19:46.511 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:54300 10 6452 1 2025-10-13 08:20:46.875 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50646 10 6452 1 2025-10-13 08:21:54.180 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 08:21:54.191 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 08:21:54.129 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 08:21:54.097 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 08:21:54.191 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 08:21:47.239 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38058 10 6452 1 2025-10-13 08:22:47.642 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49708 10 6452 1 2025-10-13 08:23:48.003 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35814 10 6452 1 2025-10-13 08:24:48.402 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44434 10 6452 1 2025-10-13 08:20:43.520 00:06:00.455 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 08:25:48.817 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38634 10 6452 1 2025-10-13 08:21:43.518 00:06:00.459 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 08:26:54.305 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 08:26:54.111 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 08:26:54.102 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 08:26:54.222 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 08:26:54.289 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 08:26:49.221 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50414 10 6452 1 2025-10-13 08:27:49.624 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:43192 11 6504 1 2025-10-13 08:28:50.110 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39444 10 6452 1 2025-10-13 08:29:50.513 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41906 10 6452 1 2025-10-13 08:30:50.876 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36052 10 6452 1 2025-10-13 08:31:54.287 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 08:31:54.338 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 08:31:54.292 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 08:31:54.288 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 08:31:54.375 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 08:31:51.277 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53072 10 6452 1 2025-10-13 08:27:43.520 00:06:00.456 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 08:32:51.682 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42418 10 6452 1 2025-10-13 08:28:43.519 00:06:00.461 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 08:33:52.108 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47786 10 6452 1 2025-10-13 08:34:52.518 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37076 10 6452 1 2025-10-13 08:35:52.882 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:42728 10 6452 1 2025-10-13 08:36:54.379 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 08:36:54.397 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 08:36:54.367 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 08:36:54.296 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 08:36:54.404 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 08:36:53.302 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33434 10 6452 1 2025-10-13 08:37:53.711 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51502 10 6452 1 2025-10-13 08:38:54.119 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45240 10 6452 1 2025-10-13 08:34:43.522 00:06:00.456 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 08:39:54.529 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57354 10 6452 1 2025-10-13 08:35:43.520 00:06:00.461 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 08:40:54.967 00:00:10.878 TCP 1.101.0.1:3000 -> 23.104.0.1:52380 10 6452 1 2025-10-13 08:41:54.742 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 08:41:54.656 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 08:41:54.559 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 08:41:54.659 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 08:41:54.609 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 08:41:55.885 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:53804 10 6452 1 2025-10-13 08:42:56.296 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36854 10 6452 1 2025-10-13 08:43:56.664 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34212 10 6452 1 2025-10-13 08:44:57.106 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44318 10 6452 1 2025-10-13 08:45:57.466 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:52272 10 6452 1 2025-10-13 08:41:43.526 00:06:00.454 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 08:46:54.603 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 08:46:54.674 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 08:46:54.605 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 08:46:54.520 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 08:46:54.663 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 08:46:57.869 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38440 10 6452 1 2025-10-13 08:42:43.523 00:06:00.459 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 08:47:58.278 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60484 10 6452 1 2025-10-13 08:48:58.684 00:00:10.429 TCP 1.101.0.1:3000 -> 23.104.0.1:49776 10 6452 1 2025-10-13 08:49:59.151 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42820 10 6452 1 2025-10-13 08:50:59.559 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33574 10 6452 1 2025-10-13 08:51:54.793 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 08:51:54.797 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 08:51:54.640 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 08:51:54.710 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 08:51:54.714 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 08:51:59.964 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37316 10 6452 1 2025-10-13 08:53:00.371 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48284 10 6452 1 2025-10-13 08:48:43.528 00:06:00.453 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-13 08:54:00.776 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:38820 10 6452 1 2025-10-13 08:49:43.525 00:06:00.458 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-13 08:55:01.161 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38344 10 6452 1 2025-10-13 08:56:01.567 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54930 10 6452 1 2025-10-13 08:56:54.838 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 08:56:54.708 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 08:56:54.831 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 08:56:54.774 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 08:56:54.913 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 08:57:01.971 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:41848 10 6452 1 2025-10-13 08:58:02.389 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43944 10 6452 1 Summary: total flows: 135, total bytes: 409616, total packets: 995, avg bps: 932, avg pps: 0, avg bpp: 411 Time window: 2025-10-13 07:59:38 - 2025-10-13 08:58:12 Total flows processed: 135, passed: 135, Blocks skipped: 0, Bytes read: 14104 Sys: 0.0046s User: 0.0011s Wall: 0.0021s flows/second: 65665.2 Runtime: 0.0021s