Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-13 13:59:06.499 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:38852 10 6452 1 2025-10-13 14:00:06.855 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:45668 10 6452 1 2025-10-13 14:01:07.274 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39314 10 6452 1 2025-10-13 14:02:00.962 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 14:02:00.882 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:02:00.819 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:02:00.879 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:02:00.888 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:02:07.667 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48108 10 6452 1 2025-10-13 13:58:43.617 00:05:00.490 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 13:58:43.619 00:05:00.485 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 14:03:08.103 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48900 10 6452 1 2025-10-13 14:04:08.513 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50378 10 6452 1 2025-10-13 14:05:08.915 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:44704 10 6452 1 2025-10-13 14:06:09.286 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50050 10 6452 1 2025-10-13 14:07:00.640 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:07:01.134 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:07:01.084 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:07:01.085 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:07:01.167 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 14:07:09.689 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47050 10 6452 1 2025-10-13 14:08:10.110 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38174 10 6452 1 2025-10-13 14:04:43.624 00:05:00.483 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 14:04:43.622 00:05:00.487 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 14:09:10.512 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34838 10 6452 1 2025-10-13 14:10:10.915 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39850 10 6452 1 2025-10-13 14:11:11.318 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:35536 10 6452 1 2025-10-13 14:12:01.070 00:00:00.056 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 14:12:01.112 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:12:00.979 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:12:00.988 00:00:00.056 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:12:01.112 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:12:11.679 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:57410 10 6452 1 2025-10-13 14:13:12.107 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45678 10 6452 1 2025-10-13 14:14:12.510 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43346 10 6452 1 2025-10-13 14:10:43.625 00:05:00.485 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 14:10:43.628 00:05:00.480 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 14:15:12.914 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:54798 10 6452 1 2025-10-13 14:16:13.287 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53892 10 6452 1 2025-10-13 14:17:01.143 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 14:17:01.062 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:17:01.546 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:17:01.060 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:17:01.640 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:17:13.681 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43028 10 6452 1 2025-10-13 14:18:14.109 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44362 10 6452 1 2025-10-13 14:19:14.512 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43898 10 6452 1 2025-10-13 14:20:14.919 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45732 10 6452 1 2025-10-13 14:16:43.625 00:05:00.486 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 14:16:43.629 00:05:00.480 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 14:21:15.317 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45768 10 6452 1 2025-10-13 14:22:01.484 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 14:22:01.503 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:22:01.347 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:22:01.402 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:22:01.406 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:22:15.680 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57570 10 6452 1 2025-10-13 14:23:16.111 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41214 10 6452 1 2025-10-13 14:24:16.509 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35180 10 6452 1 2025-10-13 14:25:16.915 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58956 10 6452 1 2025-10-13 14:26:17.327 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47312 10 6452 1 2025-10-13 14:22:43.629 00:05:00.484 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 14:22:43.627 00:05:00.488 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 14:27:01.441 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:27:01.476 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:27:01.445 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:27:01.563 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:27:01.525 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 14:27:17.740 00:00:10.411 TCP 1.101.0.1:3000 -> 23.104.0.1:39978 10 6452 1 2025-10-13 14:28:18.190 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48904 10 6452 1 2025-10-13 14:29:18.586 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:41462 11 6504 1 2025-10-13 14:30:19.047 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:47842 10 6452 1 2025-10-13 14:31:19.408 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54554 10 6452 1 2025-10-13 14:32:01.694 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 14:32:01.452 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:32:01.546 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:32:01.612 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:32:01.613 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:32:19.770 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:40710 10 6452 1 2025-10-13 14:28:43.631 00:05:00.487 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 14:28:43.634 00:05:00.481 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 14:33:20.181 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57862 10 6452 1 2025-10-13 14:34:20.586 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51338 10 6452 1 2025-10-13 14:35:20.986 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53602 10 6452 1 2025-10-13 14:36:21.392 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:38176 12 10375 1 2025-10-13 14:37:01.695 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:37:01.560 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:37:01.744 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:37:01.614 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:37:01.827 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 14:37:21.827 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:60510 10 6452 1 2025-10-13 14:38:22.210 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35448 10 6452 1 2025-10-13 14:34:43.635 00:05:00.481 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 14:34:43.633 00:05:00.486 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 14:39:22.571 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60612 10 6452 1 2025-10-13 14:40:22.971 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56366 10 6452 1 2025-10-13 14:41:23.383 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:33578 12 10375 1 2025-10-13 14:42:02.023 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 14:42:01.895 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:42:01.888 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:42:01.940 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:42:01.845 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:42:23.873 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55860 10 6452 1 2025-10-13 14:43:24.280 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:48874 10 6452 1 2025-10-13 14:44:24.680 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:46346 12 6556 1 2025-10-13 14:40:43.633 00:05:00.486 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 14:40:43.636 00:05:00.481 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 14:45:25.113 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60526 10 6452 1 2025-10-13 14:46:25.521 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54180 10 6452 1 2025-10-13 14:47:01.953 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 14:47:01.874 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:47:01.837 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:47:01.870 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:47:01.794 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:47:25.928 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:44696 10 6452 1 2025-10-13 14:48:26.358 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50532 10 6452 1 2025-10-13 14:49:26.773 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:50890 10 6452 1 2025-10-13 14:50:27.185 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:60874 10 6452 1 2025-10-13 14:46:43.638 00:05:00.480 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 14:46:43.635 00:05:00.485 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 14:51:27.543 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53012 10 6452 1 2025-10-13 14:52:01.953 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:52:02.158 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:52:01.960 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:52:01.846 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:52:02.043 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 14:52:27.947 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:52996 10 6452 1 2025-10-13 14:53:28.360 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55862 10 6452 1 2025-10-13 14:54:28.768 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:49648 10 6452 1 2025-10-13 14:55:29.137 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48248 10 6452 1 2025-10-13 14:56:29.544 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47862 10 6452 1 2025-10-13 14:52:43.636 00:05:00.488 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 14:52:43.640 00:05:00.483 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 14:57:02.195 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 14:57:02.117 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 14:57:02.001 00:00:00.037 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:57:02.113 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 14:57:02.116 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 14:57:29.908 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46038 10 6452 1 2025-10-13 14:58:30.317 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43584 10 6452 1 Summary: total flows: 140, total bytes: 425002, total packets: 1027, avg bps: 945, avg pps: 0, avg bpp: 413 Time window: 2025-10-13 13:58:43 - 2025-10-13 14:58:40 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0027s User: 0.0018s Wall: 0.0020s flows/second: 71688.8 Runtime: 0.0020s