Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-13 09:59:27.165 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43840 10 6452 1 2025-10-13 10:00:27.531 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51110 10 6452 1 2025-10-13 10:01:27.932 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:38510 12 10369 1 2025-10-13 10:01:56.283 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 10:01:56.201 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 10:01:56.303 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 10:01:56.200 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 10:01:56.121 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 10:02:28.383 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34704 10 6452 1 2025-10-13 09:58:43.548 00:05:00.452 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 09:58:43.546 00:05:00.457 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 10:03:28.785 00:00:10.735 TCP 1.101.0.1:3000 -> 23.104.0.1:60958 10 6452 1 2025-10-13 10:04:29.560 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:48630 10 6452 1 2025-10-13 10:05:29.934 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59978 10 6452 1 2025-10-13 10:06:30.353 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36748 10 6452 1 2025-10-13 10:06:56.278 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 10:06:56.313 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 10:06:56.122 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 10:06:56.196 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 10:06:56.260 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 10:07:30.762 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:54902 10 6452 1 2025-10-13 10:08:31.183 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:37746 10 6452 1 2025-10-13 10:04:43.550 00:05:00.451 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 10:04:43.548 00:05:00.455 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 10:09:31.584 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33916 10 6452 1 2025-10-13 10:10:31.992 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39038 10 6452 1 2025-10-13 10:11:32.403 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45316 10 6452 1 2025-10-13 10:11:56.275 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 10:11:56.279 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 10:11:56.125 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 10:11:56.194 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 10:11:56.189 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 10:12:32.807 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34312 10 6452 1 2025-10-13 10:13:33.212 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36116 10 6452 1 2025-10-13 10:14:33.611 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57230 10 6452 1 2025-10-13 10:10:43.552 00:05:00.450 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 10:10:43.551 00:05:00.455 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 10:15:34.021 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:47996 10 6452 1 2025-10-13 10:16:34.411 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:39154 10 6452 1 2025-10-13 10:16:56.571 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 10:16:56.489 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 10:16:56.308 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 10:16:56.476 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 10:16:56.338 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 10:17:34.795 00:00:10.468 TCP 1.101.0.1:3000 -> 23.104.0.1:52098 10 6452 1 2025-10-13 10:18:35.302 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45094 10 6452 1 2025-10-13 10:19:35.702 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33474 10 6452 1 2025-10-13 10:16:43.551 00:05:00.486 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 10:16:43.553 00:05:00.480 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 10:20:36.117 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46454 10 6452 1 2025-10-13 10:21:36.522 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34292 10 6452 1 2025-10-13 10:21:56.727 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 10:21:56.459 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 10:21:56.630 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 10:21:56.635 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 10:21:56.712 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 10:22:36.925 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:45508 10 6452 1 2025-10-13 10:23:37.342 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49614 10 6452 1 2025-10-13 10:24:37.748 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:44128 10 6452 1 2025-10-13 10:25:38.198 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:48528 10 6452 1 2025-10-13 10:22:43.553 00:05:00.485 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 10:22:43.555 00:05:00.480 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 10:26:38.563 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57322 10 6452 1 2025-10-13 10:26:56.965 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 10:26:57.084 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 10:26:56.483 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 10:26:56.883 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 10:26:56.950 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 10:27:38.974 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39224 10 6452 1 2025-10-13 10:28:39.384 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50222 12 6556 1 2025-10-13 10:29:39.796 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54380 10 6452 1 2025-10-13 10:30:40.206 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56344 10 6452 1 2025-10-13 10:31:40.612 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36214 10 6452 1 2025-10-13 10:31:56.763 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 10:31:57.003 00:00:00.043 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 10:31:56.428 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 10:31:56.681 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 10:31:56.682 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 10:28:43.555 00:05:00.484 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 10:28:43.557 00:05:00.479 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 10:32:41.015 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:47662 10 6452 1 2025-10-13 10:33:41.382 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:46998 10 6452 1 2025-10-13 10:34:41.784 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57854 10 6452 1 2025-10-13 10:35:42.197 00:00:10.642 TCP 1.101.0.1:3000 -> 23.104.0.1:52918 10 6452 1 2025-10-13 10:36:56.887 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 10:36:42.875 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34164 10 6452 1 2025-10-13 10:36:56.888 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 10:36:56.716 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 10:36:56.806 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 10:36:56.798 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 10:37:43.282 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46978 10 6452 1 2025-10-13 10:34:43.555 00:05:00.485 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 10:34:43.557 00:05:00.480 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 10:38:43.681 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53226 10 6452 1 2025-10-13 10:39:44.049 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:52170 10 6452 1 2025-10-13 10:40:44.467 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55534 10 6452 1 2025-10-13 10:41:44.868 00:00:10.448 TCP 1.101.0.1:3000 -> 23.104.0.1:49196 12 10375 1 2025-10-13 10:41:56.876 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 10:41:56.998 00:00:00.039 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 10:41:57.076 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 10:41:56.960 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 10:41:57.159 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 10:42:45.364 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52330 10 6452 1 2025-10-13 10:43:45.764 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:35724 10 6452 1 2025-10-13 10:40:43.560 00:05:00.481 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 10:40:43.556 00:05:00.486 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 10:44:46.177 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54696 10 6452 1 2025-10-13 10:45:46.581 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44972 10 6452 1 2025-10-13 10:46:57.228 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 10:46:56.789 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 10:46:46.982 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56070 10 6452 1 2025-10-13 10:46:56.901 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 10:46:57.164 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 10:46:56.984 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 10:47:47.385 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43892 10 6452 1 2025-10-13 10:48:47.794 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:37448 10 6452 1 2025-10-13 10:49:48.194 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:55644 10 6452 1 2025-10-13 10:46:43.562 00:05:00.482 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 10:46:43.564 00:05:00.477 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 10:50:48.591 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34276 10 6452 1 2025-10-13 10:51:57.073 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 10:51:57.118 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 10:51:48.992 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:49746 10 6452 1 2025-10-13 10:51:56.934 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 10:51:57.075 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 10:51:57.017 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 10:52:49.350 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:52254 10 6452 1 2025-10-13 10:53:49.714 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50324 10 6452 1 2025-10-13 10:54:50.118 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:39484 10 6452 1 2025-10-13 10:55:50.488 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59068 10 6452 1 2025-10-13 10:52:43.561 00:05:00.484 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 10:52:43.564 00:05:00.479 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 10:56:57.431 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 10:56:57.238 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 10:56:57.238 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 10:56:57.349 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 10:56:57.166 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 10:56:50.890 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:40572 12 6556 1 2025-10-13 10:57:51.307 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:35928 10 6452 1 Summary: total flows: 139, total bytes: 418596, total packets: 1018, avg bps: 941, avg pps: 0, avg bpp: 411 Time window: 2025-10-13 09:58:43 - 2025-10-13 10:58:01 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0026s User: 0.0026s Wall: 0.0025s flows/second: 54593.9 Runtime: 0.0026s