Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-13 17:58:46.357 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47656 10 6452 1 2025-10-13 17:59:46.764 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:43496 10 6452 1 2025-10-13 18:00:47.179 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45914 10 6452 1 2025-10-13 18:02:05.834 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 18:01:47.578 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:40808 10 6452 1 2025-10-13 18:02:05.753 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 18:02:05.903 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 18:02:05.750 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 18:02:05.831 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 17:58:43.697 00:05:00.474 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 17:58:43.695 00:05:00.480 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 18:02:47.994 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:60180 10 6452 1 2025-10-13 18:03:48.399 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:46402 10 6452 1 2025-10-13 18:04:48.793 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:56892 10 6452 1 2025-10-13 18:05:49.178 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60226 10 6452 1 2025-10-13 18:06:49.577 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51762 10 6452 1 2025-10-13 18:07:05.638 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 18:07:05.825 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 18:07:05.632 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 18:07:05.632 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 18:07:05.715 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 18:07:49.942 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:44640 10 6452 1 2025-10-13 18:04:43.697 00:05:00.475 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 18:04:43.695 00:05:00.480 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 18:08:50.356 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45682 10 6452 1 2025-10-13 18:09:50.761 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47616 10 6452 1 2025-10-13 18:10:51.168 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35756 10 6452 1 2025-10-13 18:11:51.567 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50244 10 6452 1 2025-10-13 18:12:05.953 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 18:12:05.822 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 18:12:06.183 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 18:12:06.138 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 18:12:06.100 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 18:12:51.972 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50906 10 6452 1 2025-10-13 18:13:52.377 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37368 10 6452 1 2025-10-13 18:10:43.701 00:05:00.472 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 18:10:43.698 00:05:00.477 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 18:14:52.787 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:49580 10 6452 1 2025-10-13 18:15:53.153 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52528 10 6452 1 2025-10-13 18:16:53.563 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39126 10 6452 1 2025-10-13 18:17:06.285 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 18:17:06.225 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 18:17:06.287 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 18:17:06.438 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 18:17:06.370 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 18:17:53.973 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:37596 10 6452 1 2025-10-13 18:18:54.389 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60078 10 6452 1 2025-10-13 18:19:54.791 00:00:10.886 TCP 1.101.0.1:3000 -> 23.104.0.1:40168 10 6452 1 2025-10-13 18:16:43.703 00:05:00.471 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 18:16:43.701 00:05:00.477 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 18:20:55.712 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53274 10 6452 1 2025-10-13 18:22:06.152 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 18:21:56.104 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57022 10 6452 1 2025-10-13 18:22:06.177 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 18:22:06.332 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 18:22:06.228 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 18:22:06.414 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 18:22:56.505 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40344 10 6452 1 2025-10-13 18:23:56.912 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59268 12 6556 1 2025-10-13 18:24:57.319 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44876 10 6452 1 2025-10-13 18:25:57.719 00:00:11.137 TCP 1.101.0.1:3000 -> 23.104.0.1:60494 10 6452 1 2025-10-13 18:22:43.700 00:05:00.477 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 18:22:43.704 00:05:00.472 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 18:27:06.317 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 18:27:06.309 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 18:27:06.257 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 18:26:58.892 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42150 10 6452 1 2025-10-13 18:27:06.234 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 18:27:06.372 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 18:27:59.305 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59980 10 6452 1 2025-10-13 18:28:59.709 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42408 10 6452 1 2025-10-13 18:30:00.118 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:60498 10 6452 1 2025-10-13 18:31:00.473 00:00:11.249 TCP 1.101.0.1:3000 -> 23.104.0.1:57904 10 6452 1 2025-10-13 18:32:06.545 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 18:32:06.339 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 18:32:06.456 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 18:32:06.450 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 18:32:06.538 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 18:32:01.755 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:53842 10 6452 1 2025-10-13 18:28:43.702 00:05:00.478 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 18:28:43.705 00:05:00.472 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 18:33:02.175 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45492 10 6452 1 2025-10-13 18:34:02.575 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34948 10 6452 1 2025-10-13 18:35:02.984 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60376 10 6452 1 2025-10-13 18:36:03.391 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47686 10 6452 1 2025-10-13 18:37:06.638 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 18:37:06.557 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 18:37:06.354 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 18:37:06.556 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 18:37:06.561 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 18:37:03.802 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:57398 10 6452 1 2025-10-13 18:38:04.171 00:00:10.641 TCP 1.101.0.1:3000 -> 23.104.0.1:54354 10 6452 1 2025-10-13 18:34:43.702 00:05:00.478 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 18:34:43.705 00:05:00.473 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 18:39:04.858 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:47986 10 6452 1 2025-10-13 18:40:05.273 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:40546 10 6452 1 2025-10-13 18:41:05.685 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37314 10 6452 1 2025-10-13 18:42:06.814 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 18:42:06.558 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 18:42:06.816 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 18:42:06.813 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 18:42:06.898 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 18:42:06.110 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33310 10 6452 1 2025-10-13 18:43:06.514 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51808 10 6452 1 2025-10-13 18:44:06.917 00:00:10.946 TCP 1.101.0.1:3000 -> 23.104.0.1:60006 10 6452 1 2025-10-13 18:40:43.704 00:05:00.478 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 18:40:43.708 00:05:00.472 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 18:45:07.902 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57354 10 6452 1 2025-10-13 18:46:08.315 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51330 10 6452 1 2025-10-13 18:47:06.796 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 18:47:06.808 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 18:47:06.644 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 18:47:06.713 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 18:47:06.793 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 18:47:08.677 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:54264 10 6452 1 2025-10-13 18:48:09.045 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58070 10 6452 1 2025-10-13 18:49:09.450 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36848 10 6452 1 2025-10-13 18:50:09.853 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:35360 10 6452 1 2025-10-13 18:46:43.707 00:05:00.476 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 18:46:43.709 00:05:00.471 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 18:51:10.287 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:37198 12 10369 1 2025-10-13 18:52:06.814 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 18:52:06.933 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 18:52:06.737 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 18:52:06.732 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 18:52:06.635 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 18:52:10.727 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:43238 10 6452 1 2025-10-13 18:53:11.110 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:53528 10 6452 1 2025-10-13 18:54:11.467 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:35048 10 6452 1 2025-10-13 18:55:11.831 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59796 10 6452 1 2025-10-13 18:56:12.234 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42912 10 6452 1 2025-10-13 18:52:43.708 00:05:00.476 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 18:52:43.711 00:05:00.471 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 18:57:06.842 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 18:57:06.720 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 18:57:06.729 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 18:57:06.844 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 18:57:06.811 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 18:57:12.639 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55864 10 6452 1 2025-10-13 18:58:13.041 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45874 10 6452 1 Summary: total flows: 140, total bytes: 421021, total packets: 1024, avg bps: 940, avg pps: 0, avg bpp: 411 Time window: 2025-10-13 17:58:43 - 2025-10-13 18:58:23 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0031s User: 0.0015s Wall: 0.0030s flows/second: 47294.0 Runtime: 0.0030s