Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-13 21:59:31.525 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49122 10 6452 1 2025-10-13 22:00:31.933 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:53876 10 6452 1 2025-10-13 22:01:32.357 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:42016 12 10375 1 2025-10-13 22:02:11.801 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 22:02:11.784 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 22:02:11.495 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:02:11.719 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:02:11.665 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 21:58:43.764 00:05:00.482 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 22:02:32.794 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33940 10 6452 1 2025-10-13 21:58:43.766 00:05:00.477 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 22:03:33.208 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:58996 10 6452 1 2025-10-13 22:04:33.577 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33020 10 6452 1 2025-10-13 22:05:33.939 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43418 10 6452 1 2025-10-13 22:06:34.346 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42914 10 6452 1 2025-10-13 22:07:10.765 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 22:07:10.592 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:07:10.769 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:07:10.666 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 22:07:10.851 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 22:07:34.750 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:54770 10 6452 1 2025-10-13 22:08:35.123 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51016 10 6452 1 2025-10-13 22:04:43.770 00:05:00.475 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 22:04:43.768 00:05:00.481 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 22:09:35.480 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35542 10 6452 1 2025-10-13 22:10:35.896 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:53034 10 6452 1 2025-10-13 22:11:36.314 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:55418 12 6556 1 2025-10-13 22:12:10.794 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:12:10.938 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:12:10.699 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 22:12:11.022 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 22:12:11.183 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 22:12:36.739 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42356 10 6452 1 2025-10-13 22:13:37.145 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40500 10 6452 1 2025-10-13 22:10:43.769 00:05:00.480 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 22:10:43.770 00:05:00.476 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 22:14:37.550 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:38870 10 6452 1 2025-10-13 22:15:37.913 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38708 10 6452 1 2025-10-13 22:16:38.319 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43168 10 6452 1 2025-10-13 22:17:10.867 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 22:17:10.705 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:17:10.856 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 22:17:11.165 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 22:17:11.083 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:17:38.717 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46266 10 6452 1 2025-10-13 22:18:39.104 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37766 10 6452 1 2025-10-13 22:19:39.508 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36724 10 6452 1 2025-10-13 22:16:43.773 00:05:00.474 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 22:16:43.771 00:05:00.479 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 22:20:39.915 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43484 10 6452 1 2025-10-13 22:21:40.338 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:58754 10 6452 1 2025-10-13 22:22:10.803 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:22:10.886 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:22:10.881 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 22:22:10.969 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 22:22:11.137 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 22:22:40.755 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33764 10 6452 1 2025-10-13 22:23:41.163 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51348 10 6452 1 2025-10-13 22:24:41.566 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54716 10 6452 1 2025-10-13 22:25:41.974 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:43890 10 6452 1 2025-10-13 22:22:43.773 00:05:00.479 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 22:22:43.776 00:05:00.473 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 22:26:42.397 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:39378 12 10375 1 2025-10-13 22:27:10.922 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:27:11.160 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:27:11.170 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 22:27:11.228 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 22:27:11.242 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 22:27:42.837 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:52164 10 6452 1 2025-10-13 22:28:43.282 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43974 10 6452 1 2025-10-13 22:29:43.690 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50476 10 6452 1 2025-10-13 22:30:44.111 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:43962 10 6452 1 2025-10-13 22:31:44.487 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:59828 12 10369 1 2025-10-13 22:32:10.937 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:32:11.222 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:32:11.228 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 22:32:11.318 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 22:32:11.304 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 22:28:43.778 00:05:00.471 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 22:28:43.775 00:05:00.476 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 22:32:44.925 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46480 10 6452 1 2025-10-13 22:33:45.346 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43470 10 6452 1 2025-10-13 22:34:45.747 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33160 10 6452 1 2025-10-13 22:35:46.148 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37998 10 6452 1 2025-10-13 22:36:46.514 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36458 10 6452 1 2025-10-13 22:37:11.264 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 22:37:11.290 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:37:11.257 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:37:11.265 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 22:37:11.340 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 22:37:46.920 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:32926 10 6452 1 2025-10-13 22:34:43.779 00:05:00.478 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 22:34:43.780 00:05:00.473 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 22:38:47.324 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49022 10 6452 1 2025-10-13 22:39:47.688 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:35742 10 6452 1 2025-10-13 22:40:48.117 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53892 10 6452 1 2025-10-13 22:41:48.524 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54728 10 6452 1 2025-10-13 22:42:11.523 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 22:42:11.368 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 22:42:11.223 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:42:11.440 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:42:11.446 00:00:00.030 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 22:42:48.926 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:55200 10 6452 1 2025-10-13 22:43:49.353 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54574 10 6452 1 2025-10-13 22:40:43.784 00:05:00.471 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 22:40:43.781 00:05:00.476 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 22:44:49.757 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:34734 10 6452 1 2025-10-13 22:45:50.142 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34424 10 6452 1 2025-10-13 22:46:50.550 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46944 10 6452 1 2025-10-13 22:47:11.851 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:47:11.759 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:47:11.899 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 22:47:11.566 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 22:47:11.843 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 22:47:50.953 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42196 10 6452 1 2025-10-13 22:48:51.358 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44046 10 6452 1 2025-10-13 22:49:51.767 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:58486 12 6556 1 2025-10-13 22:46:43.785 00:05:00.470 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 22:46:43.783 00:05:00.474 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 22:50:52.189 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49710 10 6452 1 2025-10-13 22:51:52.594 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59608 10 6452 1 2025-10-13 22:52:11.479 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 22:52:11.765 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 22:52:11.779 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:52:11.396 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:52:11.758 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 22:52:53.009 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41214 10 6452 1 2025-10-13 22:53:53.411 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36536 10 6452 1 2025-10-13 22:54:53.786 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:35914 10 6452 1 2025-10-13 22:55:54.194 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56512 10 6452 1 2025-10-13 22:52:43.787 00:05:00.469 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 22:52:43.785 00:05:00.474 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 22:56:54.597 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43774 10 6452 1 2025-10-13 22:57:11.675 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 22:57:11.573 00:00:00.033 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 22:57:11.467 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:57:11.593 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 22:57:11.620 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 22:57:55.009 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:53430 10 6452 1 Summary: total flows: 139, total bytes: 422519, total packets: 1020, avg bps: 949, avg pps: 0, avg bpp: 414 Time window: 2025-10-13 21:58:43 - 2025-10-13 22:58:05 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0040s User: 0.0013s Wall: 0.0021s flows/second: 66728.7 Runtime: 0.0021s