Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-13 19:58:40.955 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58822 10 6452 1 2025-10-13 19:59:41.361 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33678 10 6452 1 2025-10-13 20:00:41.768 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:47442 10 6452 1 2025-10-13 20:01:42.135 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53852 10 6452 1 2025-10-13 20:02:08.623 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 20:02:08.497 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 20:02:08.384 00:00:00.032 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 20:02:08.542 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 20:02:08.503 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 19:58:43.727 00:05:00.471 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 19:58:43.725 00:05:00.476 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 20:02:42.536 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41770 10 6452 1 2025-10-13 20:03:42.897 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50126 10 6452 1 2025-10-13 20:04:43.312 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39518 10 6452 1 2025-10-13 20:05:43.717 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41368 10 6452 1 2025-10-13 20:06:44.123 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:47982 10 6452 1 2025-10-13 20:07:08.399 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 20:07:08.311 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 20:07:08.107 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 20:07:08.317 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 20:07:08.261 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 20:07:44.520 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40462 10 6452 1 2025-10-13 20:04:43.728 00:05:00.473 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 20:04:43.731 00:05:00.469 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 20:08:44.939 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:43164 10 6452 1 2025-10-13 20:09:45.355 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56678 10 6452 1 2025-10-13 20:10:45.755 00:00:10.831 TCP 1.101.0.1:3000 -> 23.104.0.1:54306 10 6452 1 2025-10-13 20:11:46.630 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:48116 12 10369 1 2025-10-13 20:12:08.259 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 20:12:08.505 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 20:12:08.392 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 20:12:08.518 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 20:12:08.474 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 20:12:47.100 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:53774 10 6452 1 2025-10-13 20:13:47.513 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38794 10 6452 1 2025-10-13 20:10:43.733 00:05:00.475 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 20:10:43.729 00:05:00.481 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 20:14:47.919 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:50196 10 6452 1 2025-10-13 20:15:48.285 00:00:10.538 TCP 1.101.0.1:3000 -> 23.104.0.1:35984 10 6452 1 2025-10-13 20:16:48.862 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:40262 10 6452 1 2025-10-13 20:17:08.620 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 20:17:08.558 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 20:17:08.682 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 20:17:08.684 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 20:17:08.764 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 20:17:49.288 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39976 10 6452 1 2025-10-13 20:18:49.696 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59164 10 6452 1 2025-10-13 20:19:50.111 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51154 10 6452 1 2025-10-13 20:16:43.733 00:05:00.480 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 20:16:43.731 00:05:00.486 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 20:20:50.510 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34442 10 6452 1 2025-10-13 20:21:50.916 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46832 10 6452 1 2025-10-13 20:22:08.754 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 20:22:08.542 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 20:22:08.536 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 20:22:08.522 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 20:22:08.617 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 20:22:51.325 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:57916 10 6452 1 2025-10-13 20:23:51.701 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:51302 10 6452 1 2025-10-13 20:24:52.064 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50950 10 6452 1 2025-10-13 20:25:52.469 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:45640 10 6452 1 2025-10-13 20:22:43.733 00:05:00.486 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 20:22:43.735 00:05:00.482 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 20:26:52.830 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35882 10 6452 1 2025-10-13 20:27:08.649 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 20:27:08.668 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 20:27:08.616 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 20:27:08.567 00:00:00.031 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 20:27:08.566 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 20:27:53.189 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37442 10 6452 1 2025-10-13 20:28:53.591 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34220 10 6452 1 2025-10-13 20:29:53.957 00:00:10.836 TCP 1.101.0.1:3000 -> 23.104.0.1:48154 10 6452 1 2025-10-13 20:30:54.831 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56316 10 6452 1 2025-10-13 20:31:55.235 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36102 10 6452 1 2025-10-13 20:32:08.820 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 20:32:08.580 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 20:32:08.835 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 20:32:08.757 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 20:32:08.917 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 20:28:43.735 00:05:00.485 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 20:28:43.739 00:05:00.480 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 20:32:55.639 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55712 10 6452 1 2025-10-13 20:33:56.049 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43566 10 6452 1 2025-10-13 20:34:56.446 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58136 10 6452 1 2025-10-13 20:35:56.852 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:40624 10 6452 1 2025-10-13 20:37:09.172 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 20:36:57.229 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:33718 10 6452 1 2025-10-13 20:37:08.856 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 20:37:08.984 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 20:37:09.089 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 20:37:08.735 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 20:37:57.588 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:34106 10 6452 1 2025-10-13 20:34:43.741 00:05:00.478 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 20:34:43.739 00:05:00.483 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 20:38:58.012 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56362 10 6452 1 2025-10-13 20:39:58.411 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39854 10 6452 1 2025-10-13 20:40:58.814 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:48258 10 6452 1 2025-10-13 20:42:08.982 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 20:42:08.904 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 20:42:08.707 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 20:42:08.900 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 20:42:08.971 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 20:41:59.216 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:35674 10 6452 1 2025-10-13 20:42:59.613 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49230 10 6452 1 2025-10-13 20:44:00.021 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:49844 10 6452 1 2025-10-13 20:40:43.741 00:05:00.483 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 20:40:43.744 00:05:00.477 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 20:45:00.388 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50004 10 6452 1 2025-10-13 20:46:00.798 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34310 10 6452 1 2025-10-13 20:47:09.188 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 20:47:09.158 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 20:47:09.074 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 20:47:09.105 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 20:47:09.000 00:00:00.040 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 20:47:01.196 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50362 10 6452 1 2025-10-13 20:48:01.599 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59226 10 6452 1 2025-10-13 20:49:02.004 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:48480 10 6452 1 2025-10-13 20:50:02.369 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51272 10 6452 1 2025-10-13 20:46:43.746 00:05:00.477 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 20:46:43.744 00:05:00.482 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 20:51:02.732 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:58670 10 6452 1 2025-10-13 20:52:09.356 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 20:52:09.274 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 20:52:09.299 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 20:52:09.274 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 20:52:09.194 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 20:52:03.143 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38310 10 6452 1 2025-10-13 20:53:03.558 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:40366 10 6452 1 2025-10-13 20:54:03.929 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:45682 10 6452 1 2025-10-13 20:55:04.356 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44508 10 6452 1 2025-10-13 20:56:04.758 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60904 10 6452 1 2025-10-13 20:52:43.748 00:05:00.480 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 20:52:43.752 00:05:00.475 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 20:57:09.400 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 20:57:09.319 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 20:57:09.303 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 20:57:09.318 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 20:57:09.241 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 20:57:05.158 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40834 10 6452 1 2025-10-13 20:58:05.558 00:00:10.431 TCP 1.101.0.1:3000 -> 23.104.0.1:46968 11 6504 1 Summary: total flows: 140, total bytes: 420969, total packets: 1023, avg bps: 942, avg pps: 0, avg bpp: 411 Time window: 2025-10-13 19:58:40 - 2025-10-13 20:58:15 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0029s User: 0.0029s Wall: 0.0031s flows/second: 44999.8 Runtime: 0.0031s