Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-13 18:59:13.477 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35196 10 6452 1 2025-10-13 19:00:13.876 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46044 10 6452 1 2025-10-13 19:01:14.284 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33048 10 6452 1 2025-10-13 19:02:06.919 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 19:02:06.928 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 19:02:06.918 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 19:02:06.923 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 19:02:07.002 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 19:02:14.690 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49848 10 6452 1 2025-10-13 18:58:43.712 00:05:00.471 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 18:58:43.709 00:05:00.477 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 19:03:15.066 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56340 10 6452 1 2025-10-13 19:04:15.468 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:49304 10 6452 1 2025-10-13 19:05:15.832 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:33866 10 6452 1 2025-10-13 19:06:16.243 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:56036 10 6452 1 2025-10-13 19:07:07.232 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 19:07:07.211 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 19:07:07.207 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 19:07:07.150 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 19:07:07.267 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 19:07:16.649 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59860 10 6452 1 2025-10-13 19:08:17.056 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34520 10 6452 1 2025-10-13 19:04:43.709 00:05:00.477 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 19:04:43.713 00:05:00.472 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 19:09:17.459 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32936 10 6452 1 2025-10-13 19:10:17.868 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36432 10 6452 1 2025-10-13 19:11:18.283 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:54504 10 6452 1 2025-10-13 19:12:07.266 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 19:12:07.088 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 19:12:07.211 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 19:12:07.199 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 19:12:07.294 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 19:12:18.715 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:59788 10 6452 1 2025-10-13 19:13:19.126 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:48632 10 6452 1 2025-10-13 19:14:19.539 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43026 10 6452 1 2025-10-13 19:10:43.712 00:05:00.473 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 19:10:43.711 00:05:00.477 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 19:15:19.900 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:48004 10 6452 1 2025-10-13 19:16:20.315 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:32816 10 6452 1 2025-10-13 19:17:07.425 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 19:17:07.195 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 19:17:07.227 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 19:17:07.343 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 19:17:07.279 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 19:17:20.718 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53350 10 6452 1 2025-10-13 19:18:21.110 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35840 10 6452 1 2025-10-13 19:19:21.536 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42672 10 6452 1 2025-10-13 19:20:21.940 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:43614 10 6452 1 2025-10-13 19:16:43.715 00:05:00.472 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 19:16:43.712 00:05:00.477 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 19:21:22.354 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47028 10 6452 1 2025-10-13 19:22:07.402 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 19:22:07.284 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 19:22:07.398 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 19:22:07.241 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 19:22:07.481 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 19:22:22.759 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:37560 11 6504 1 2025-10-13 19:23:23.221 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42810 10 6452 1 2025-10-13 19:24:23.617 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45502 10 6452 1 2025-10-13 19:25:24.027 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:52402 10 6452 1 2025-10-13 19:26:24.384 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43938 10 6452 1 2025-10-13 19:22:43.715 00:05:00.475 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 19:22:43.717 00:05:00.470 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 19:27:07.476 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 19:27:07.639 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 19:27:07.546 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 19:27:07.392 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 19:27:07.641 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 19:27:24.789 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:54650 10 6452 1 2025-10-13 19:28:25.238 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53090 10 6452 1 2025-10-13 19:29:25.642 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39852 10 6452 1 2025-10-13 19:30:26.041 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46412 10 6452 1 2025-10-13 19:31:26.448 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:34570 10 6452 1 2025-10-13 19:32:07.613 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 19:32:07.732 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 19:32:07.318 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 19:32:07.530 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 19:32:07.593 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 19:28:43.715 00:05:00.477 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 19:32:26.807 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:42344 10 6452 1 2025-10-13 19:28:43.717 00:05:00.472 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 19:33:27.177 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58480 10 6452 1 2025-10-13 19:34:27.585 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:48640 10 6452 1 2025-10-13 19:35:28.039 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39378 10 6452 1 2025-10-13 19:36:28.397 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48842 10 6452 1 2025-10-13 19:37:07.813 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 19:37:07.665 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 19:37:07.589 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 19:37:07.731 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 19:37:07.420 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 19:37:28.799 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44696 10 6452 1 2025-10-13 19:38:29.210 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48092 10 6452 1 2025-10-13 19:34:43.719 00:05:00.472 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 19:34:43.717 00:05:00.477 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 19:39:29.613 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37316 10 6452 1 2025-10-13 19:40:30.023 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50998 10 6452 1 2025-10-13 19:41:30.422 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:43722 12 10369 1 2025-10-13 19:42:07.895 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 19:42:07.991 00:00:00.039 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 19:42:07.833 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 19:42:07.814 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 19:42:07.627 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 19:42:30.906 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34228 12 6556 1 2025-10-13 19:43:31.311 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39752 10 6452 1 2025-10-13 19:40:43.717 00:05:00.478 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 19:44:31.714 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:46568 10 6452 1 2025-10-13 19:40:43.720 00:05:00.473 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 19:45:32.109 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53304 10 6452 1 2025-10-13 19:46:32.513 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:54096 11 6504 1 2025-10-13 19:47:07.917 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 19:47:07.955 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 19:47:07.772 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 19:47:07.833 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 19:47:07.993 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 19:47:32.967 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36764 10 6452 1 2025-10-13 19:48:33.367 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:34520 10 6452 1 2025-10-13 19:49:33.768 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:35066 10 6452 1 2025-10-13 19:50:34.135 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40454 10 6452 1 2025-10-13 19:46:43.725 00:05:00.469 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 19:46:43.723 00:05:00.474 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 19:51:34.537 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33124 10 6452 1 2025-10-13 19:52:08.077 00:00:00.046 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 19:52:07.993 00:00:00.036 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 19:52:07.848 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 19:52:07.993 00:00:00.046 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 19:52:07.904 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 19:52:34.941 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:53572 10 6452 1 2025-10-13 19:53:35.357 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59298 10 6452 1 2025-10-13 19:54:35.757 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:51466 10 6452 1 2025-10-13 19:55:36.185 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43018 10 6452 1 2025-10-13 19:52:43.728 00:05:00.468 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 19:52:43.725 00:05:00.473 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 19:56:36.590 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55346 10 6452 1 2025-10-13 19:57:08.081 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 19:57:08.085 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 19:57:07.944 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 19:57:08.056 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 19:57:08.028 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 19:57:36.991 00:00:13.929 TCP 1.101.0.1:3000 -> 23.104.0.1:36530 11 6504 1 Summary: total flows: 139, total bytes: 414725, total packets: 1017, avg bps: 935, avg pps: 0, avg bpp: 407 Time window: 2025-10-13 18:58:43 - 2025-10-13 19:57:50 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0047s User: 0.0000s Wall: 0.0014s flows/second: 101764.4 Runtime: 0.0014s