Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-13 14:59:30.722 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:45314 10 6452 1 2025-10-13 15:00:31.146 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:51066 10 6452 1 2025-10-13 15:01:31.552 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:57182 12 10369 1 2025-10-13 15:02:02.493 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 15:02:02.328 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 15:02:02.254 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:02:02.410 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:02:02.399 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 15:02:32.037 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:53414 10 6452 1 2025-10-13 14:58:43.641 00:05:00.488 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 14:58:43.638 00:05:00.494 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 15:03:32.421 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57754 10 6452 1 2025-10-13 15:04:32.824 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54150 10 6452 1 2025-10-13 15:05:33.190 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50706 10 6452 1 2025-10-13 15:06:33.589 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43160 10 6452 1 2025-10-13 15:07:02.294 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 15:07:02.220 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 15:07:02.314 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:07:02.213 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:07:02.111 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 15:07:34.006 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:55746 10 6452 1 2025-10-13 15:08:34.363 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37406 10 6452 1 2025-10-13 15:04:43.642 00:05:00.489 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 15:04:43.640 00:05:00.494 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 15:09:34.770 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45028 10 6452 1 2025-10-13 15:10:35.173 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36022 10 6452 1 2025-10-13 15:11:35.587 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:36508 10 6452 1 2025-10-13 15:12:02.329 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 15:12:02.357 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 15:12:02.193 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:12:02.245 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:12:02.359 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 15:12:35.952 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:52252 10 6452 1 2025-10-13 15:13:36.361 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38618 10 6452 1 2025-10-13 15:10:43.640 00:05:00.495 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 15:10:43.643 00:05:00.490 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 15:14:36.772 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:51002 10 6452 1 2025-10-13 15:15:37.200 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49452 10 6452 1 2025-10-13 15:16:37.600 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38854 10 6452 1 2025-10-13 15:17:02.434 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 15:17:02.393 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:17:02.601 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:17:02.350 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 15:17:02.683 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 15:17:38.004 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58082 10 6452 1 2025-10-13 15:18:38.402 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43016 10 6452 1 2025-10-13 15:19:38.804 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33046 10 6452 1 2025-10-13 15:16:43.640 00:05:00.496 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 15:16:43.643 00:05:00.490 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 15:20:39.207 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39664 10 6452 1 2025-10-13 15:21:39.617 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:52890 10 6452 1 2025-10-13 15:22:02.591 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 15:22:02.464 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:22:02.590 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:22:02.594 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 15:22:02.672 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 15:22:39.976 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55590 10 6452 1 2025-10-13 15:23:40.381 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38286 10 6452 1 2025-10-13 15:24:40.786 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59538 10 6452 1 2025-10-13 15:25:41.194 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55764 10 6452 1 2025-10-13 15:22:43.648 00:05:00.488 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 15:22:43.644 00:05:00.494 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 15:26:41.599 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54452 10 6452 1 2025-10-13 15:27:02.795 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 15:27:02.451 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 15:27:02.675 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:27:02.713 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:27:02.712 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 15:27:42.000 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:38780 10 6452 1 2025-10-13 15:28:42.359 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42078 10 6452 1 2025-10-13 15:29:42.762 00:00:10.718 TCP 1.101.0.1:3000 -> 23.104.0.1:50600 10 6452 1 2025-10-13 15:30:43.525 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35268 10 6452 1 2025-10-13 15:31:43.926 00:00:10.451 TCP 1.101.0.1:3000 -> 23.104.0.1:44632 12 10375 1 2025-10-13 15:32:02.973 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 15:32:02.890 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 15:32:02.875 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:32:02.890 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:32:03.097 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 15:28:43.648 00:05:00.492 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 15:28:43.650 00:05:00.487 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 15:32:44.415 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38646 10 6452 1 2025-10-13 15:33:44.823 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:57672 10 6452 1 2025-10-13 15:34:45.198 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36654 10 6452 1 2025-10-13 15:35:45.600 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53250 10 6452 1 2025-10-13 15:36:46.006 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33484 10 6452 1 2025-10-13 15:37:02.900 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 15:37:02.694 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:37:02.693 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:37:02.683 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 15:37:02.776 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 15:37:46.372 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:56016 10 6452 1 2025-10-13 15:34:43.649 00:05:00.491 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 15:34:43.651 00:05:00.487 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 15:38:46.770 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:34030 10 6452 1 2025-10-13 15:39:47.148 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35462 12 6556 1 2025-10-13 15:40:47.552 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35852 10 6452 1 2025-10-13 15:41:47.951 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45876 10 6452 1 2025-10-13 15:42:03.378 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 15:42:02.978 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 15:42:03.153 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:42:03.295 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:42:02.983 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 15:42:48.360 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41438 10 6452 1 2025-10-13 15:43:48.764 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:36402 10 6452 1 2025-10-13 15:40:43.653 00:05:00.487 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 15:40:43.650 00:05:00.491 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 15:44:49.135 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46104 12 6556 1 2025-10-13 15:45:49.552 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39154 10 6452 1 2025-10-13 15:47:03.201 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 15:46:49.962 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58824 10 6452 1 2025-10-13 15:47:03.211 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 15:47:02.750 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:47:03.118 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:47:03.110 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 15:47:50.369 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52298 10 6452 1 2025-10-13 15:48:50.770 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58008 10 6452 1 2025-10-13 15:49:51.180 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:34480 10 6452 1 2025-10-13 15:46:43.654 00:05:00.486 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 15:46:43.652 00:05:00.491 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 15:50:51.575 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35236 10 6452 1 2025-10-13 15:52:03.205 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 15:52:03.247 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:52:03.400 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:52:03.110 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 15:51:51.939 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:36176 10 6452 1 2025-10-13 15:52:03.483 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 15:52:52.352 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:48350 10 6452 1 2025-10-13 15:53:52.750 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:45544 10 6452 1 2025-10-13 15:54:53.164 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57914 10 6452 1 2025-10-13 15:55:53.568 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49130 10 6452 1 2025-10-13 15:52:43.652 00:05:00.493 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 15:52:43.656 00:05:00.487 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 15:57:03.231 00:00:00.048 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 15:57:03.247 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 15:56:53.978 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51394 10 6452 1 2025-10-13 15:57:03.253 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:57:03.149 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 15:57:03.334 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 15:57:54.391 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:33806 10 6452 1 Summary: total flows: 139, total bytes: 418596, total packets: 1018, avg bps: 940, avg pps: 0, avg bpp: 411 Time window: 2025-10-13 14:58:43 - 2025-10-13 15:58:04 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0031s User: 0.0016s Wall: 0.0027s flows/second: 52077.6 Runtime: 0.0027s