Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-13 22:58:55.423 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47314 10 6452 1 2025-10-13 22:59:55.827 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51678 10 6452 1 2025-10-13 23:00:56.243 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:49306 10 6452 1 2025-10-13 23:01:56.670 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:52522 11 6504 1 2025-10-13 23:02:11.906 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 23:02:11.890 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 23:02:11.949 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 23:02:11.895 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 23:02:12.032 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 22:58:43.787 00:05:00.474 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 22:58:43.785 00:05:00.478 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 23:02:57.107 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36148 10 6452 1 2025-10-13 23:03:57.518 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57762 10 6452 1 2025-10-13 23:04:57.882 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:55116 10 6452 1 2025-10-13 23:05:58.247 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:50186 12 10375 1 2025-10-13 23:06:58.727 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:50456 10 6452 1 2025-10-13 23:07:11.605 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 23:07:11.900 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 23:07:11.939 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 23:07:11.981 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 23:07:12.022 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 23:07:59.139 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46342 10 6452 1 2025-10-13 23:04:43.790 00:05:00.472 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 23:04:43.787 00:05:00.477 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 23:08:59.548 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:53404 10 6452 1 2025-10-13 23:09:59.966 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48446 10 6452 1 2025-10-13 23:11:00.367 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:49704 10 6452 1 2025-10-13 23:12:12.301 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 23:12:12.272 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 23:12:12.275 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 23:12:00.766 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35558 10 6452 1 2025-10-13 23:12:12.218 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 23:12:12.311 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 23:13:01.176 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:51842 10 6452 1 2025-10-13 23:14:01.541 00:00:10.687 TCP 1.101.0.1:3000 -> 23.104.0.1:50836 10 6452 1 2025-10-13 23:10:43.790 00:05:00.474 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 23:10:43.788 00:05:00.478 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 23:15:02.269 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42460 10 6452 1 2025-10-13 23:16:02.674 00:00:10.643 TCP 1.101.0.1:3000 -> 23.104.0.1:51180 10 6452 1 2025-10-13 23:17:12.379 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 23:17:12.096 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 23:17:12.441 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 23:17:12.439 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 23:17:03.354 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:42188 10 6452 1 2025-10-13 23:17:12.523 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 23:18:03.714 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58304 10 6452 1 2025-10-13 23:19:04.116 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54684 10 6452 1 2025-10-13 23:20:04.517 00:00:10.541 TCP 1.101.0.1:3000 -> 23.104.0.1:47716 10 6452 1 2025-10-13 23:16:43.790 00:05:00.476 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 23:16:43.794 00:05:00.471 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 23:21:05.109 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40552 10 6452 1 2025-10-13 23:22:12.339 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 23:22:12.131 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 23:22:12.194 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 23:22:12.270 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 23:22:05.514 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:37506 10 6452 1 2025-10-13 23:22:12.279 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 23:23:05.931 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:35498 10 6452 1 2025-10-13 23:24:06.371 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:52782 10 6452 1 2025-10-13 23:25:06.747 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51684 10 6452 1 2025-10-13 23:26:07.111 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48200 10 6452 1 2025-10-13 23:22:43.792 00:05:00.477 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 23:22:43.795 00:05:00.473 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 23:27:12.353 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 23:27:12.028 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 23:27:12.431 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 23:27:12.436 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 23:27:12.513 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 23:27:07.515 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:60968 10 6452 1 2025-10-13 23:28:07.894 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44250 10 6452 1 2025-10-13 23:29:08.260 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56990 10 6452 1 2025-10-13 23:30:08.664 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40184 10 6452 1 2025-10-13 23:31:09.095 00:00:10.402 TCP 1.101.0.1:3000 -> 23.104.0.1:37960 12 10375 1 2025-10-13 23:32:12.393 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 23:32:12.461 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 23:32:12.168 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 23:32:12.310 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 23:32:12.504 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 23:32:09.539 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58216 10 6452 1 2025-10-13 23:28:43.798 00:05:00.475 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 23:28:43.802 00:05:00.469 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 23:33:09.942 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38102 10 6452 1 2025-10-13 23:34:10.363 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:59784 10 6452 1 2025-10-13 23:35:10.727 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:43962 10 6452 1 2025-10-13 23:36:11.138 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33468 10 6452 1 2025-10-13 23:37:12.502 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 23:37:12.422 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 23:37:12.057 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 23:37:12.418 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 23:37:12.531 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 23:37:11.537 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49210 10 6452 1 2025-10-13 23:38:11.944 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:50936 10 6452 1 2025-10-13 23:34:43.797 00:05:00.476 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 23:34:43.801 00:05:00.471 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 23:39:12.359 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46128 10 6452 1 2025-10-13 23:40:12.772 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55312 10 6452 1 2025-10-13 23:41:13.188 00:00:10.433 TCP 1.101.0.1:3000 -> 23.104.0.1:36724 12 10584 1 2025-10-13 23:42:12.709 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 23:42:12.578 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 23:42:12.622 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 23:42:12.614 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 23:42:12.705 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 23:42:13.668 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42748 10 6661 1 2025-10-13 23:43:14.099 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37608 10 6661 1 2025-10-13 23:44:14.501 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39186 10 6661 1 2025-10-13 23:40:43.797 00:05:00.476 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 23:40:43.800 00:05:00.471 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 23:45:14.908 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34184 10 6661 1 2025-10-13 23:46:15.320 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60124 12 6765 1 2025-10-13 23:47:12.838 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 23:47:12.626 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 23:47:12.838 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 23:47:12.771 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 23:47:12.921 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 23:47:15.735 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:58666 10 6661 1 2025-10-13 23:48:16.149 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41710 10 6661 1 2025-10-13 23:49:16.549 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59576 10 6661 1 2025-10-13 23:50:16.910 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:43438 10 6661 1 2025-10-13 23:46:43.798 00:05:00.477 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 23:46:43.801 00:05:00.472 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 23:51:17.278 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:47126 10 6661 1 2025-10-13 23:52:12.772 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 23:52:12.910 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 23:52:12.713 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 23:52:12.690 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 23:52:12.973 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 23:52:17.642 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52446 10 6661 1 2025-10-13 23:53:18.069 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55340 10 6661 1 2025-10-13 23:54:18.473 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57646 10 6661 1 2025-10-13 23:55:18.871 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50590 10 6661 1 2025-10-13 23:56:19.278 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44848 10 6661 1 2025-10-13 23:52:43.799 00:05:00.479 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-13 23:52:43.802 00:05:00.474 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-13 23:57:13.186 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-13 23:57:13.328 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-13 23:57:13.203 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 23:57:13.103 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-13 23:57:13.109 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-13 23:57:19.696 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59812 10 6661 1 2025-10-13 23:58:20.128 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:37182 10 6661 1 Summary: total flows: 140, total bytes: 432687, total packets: 1029, avg bps: 965, avg pps: 0, avg bpp: 420 Time window: 2025-10-13 22:58:43 - 2025-10-13 23:58:30 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0037s User: 0.0019s Wall: 0.0019s flows/second: 74310.6 Runtime: 0.0019s