Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-15 10:59:07.539 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:46752 10 6452 1 2025-10-15 10:55:44.538 00:05:00.464 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 11:00:07.966 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43686 10 6452 1 2025-10-15 11:01:08.370 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45552 10 6452 1 2025-10-15 11:02:08.771 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:48908 10 6452 1 2025-10-15 11:02:55.206 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 11:02:55.252 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 11:02:55.036 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 11:02:55.124 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 11:02:55.210 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 11:03:09.142 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36088 10 6452 1 2025-10-15 11:04:09.545 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57212 10 6452 1 2025-10-15 11:00:44.544 00:05:00.477 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 11:05:09.955 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35694 10 6452 1 2025-10-15 11:01:44.542 00:05:00.475 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 11:06:10.359 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54550 10 6452 1 2025-10-15 11:07:10.774 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52770 10 6452 1 2025-10-15 11:07:55.567 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 11:07:55.524 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 11:07:55.411 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 11:07:55.484 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 11:07:55.482 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 11:08:11.178 00:00:10.722 TCP 1.101.0.1:3000 -> 23.104.0.1:55738 10 6452 1 2025-10-15 11:09:11.939 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:42742 10 6452 1 2025-10-15 11:10:12.354 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49214 10 6452 1 2025-10-15 11:06:44.547 00:05:00.483 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 11:11:12.772 00:00:10.412 TCP 1.101.0.1:3000 -> 23.104.0.1:54650 12 10375 1 2025-10-15 11:07:44.545 00:05:00.488 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 11:12:13.224 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46232 10 6452 1 2025-10-15 11:12:55.320 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 11:12:55.225 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 11:12:55.352 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 11:12:55.238 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 11:12:55.122 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 11:13:13.630 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55462 10 6452 1 2025-10-15 11:14:14.037 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:44718 10 6452 1 2025-10-15 11:15:14.433 00:00:10.571 TCP 1.101.0.1:3000 -> 23.104.0.1:60384 10 6452 1 2025-10-15 11:16:15.039 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60022 10 6452 1 2025-10-15 11:12:44.548 00:05:00.489 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 11:17:15.438 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39188 10 6452 1 2025-10-15 11:13:44.548 00:05:00.493 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 11:17:55.516 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 11:17:55.511 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 11:17:55.274 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 11:17:55.433 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 11:17:55.507 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 11:18:15.839 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:47216 10 6452 1 2025-10-15 11:19:16.267 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57286 10 6452 1 2025-10-15 11:20:16.667 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45612 10 6452 1 2025-10-15 11:21:17.101 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52616 10 6452 1 2025-10-15 11:22:17.505 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51786 10 6452 1 2025-10-15 11:18:44.552 00:05:00.488 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 11:22:55.608 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 11:22:55.574 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 11:22:55.568 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 11:22:55.623 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 11:22:55.693 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 11:23:17.907 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:36046 10 6452 1 2025-10-15 11:19:44.550 00:05:00.493 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 11:24:18.274 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58758 10 6452 1 2025-10-15 11:25:18.678 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44700 10 6452 1 2025-10-15 11:26:19.109 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46810 10 6452 1 2025-10-15 11:27:19.514 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37424 10 6452 1 2025-10-15 11:27:55.706 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 11:27:55.679 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 11:27:55.322 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 11:27:55.624 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 11:27:55.616 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 11:28:19.918 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59722 10 6452 1 2025-10-15 11:24:44.554 00:05:00.489 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 11:29:20.331 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42908 10 6452 1 2025-10-15 11:25:44.552 00:05:00.494 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 11:30:20.745 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47838 10 6452 1 2025-10-15 11:31:21.150 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50584 10 6452 1 2025-10-15 11:32:21.560 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45096 10 6452 1 2025-10-15 11:32:56.723 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 11:32:56.644 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 11:32:56.554 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 11:32:56.641 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 11:32:56.419 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 11:33:21.921 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:46798 10 6452 1 2025-10-15 11:34:22.291 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:47234 10 6452 1 2025-10-15 11:30:44.556 00:05:00.488 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 11:35:22.654 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34976 10 6452 1 2025-10-15 11:31:44.555 00:05:00.493 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 11:36:23.065 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33636 10 6452 1 2025-10-15 11:37:23.469 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52232 10 6452 1 2025-10-15 11:37:55.901 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 11:37:55.817 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 11:37:55.766 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 11:37:55.819 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 11:37:55.816 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 11:38:23.871 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59168 10 6452 1 2025-10-15 11:39:24.275 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43394 10 6452 1 2025-10-15 11:40:24.641 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36212 10 6452 1 2025-10-15 11:36:44.557 00:05:00.490 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 11:41:25.057 00:00:10.629 TCP 1.101.0.1:3000 -> 23.104.0.1:49198 12 10375 1 2025-10-15 11:37:44.556 00:05:00.493 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 11:42:25.723 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47156 10 6452 1 2025-10-15 11:42:55.925 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 11:42:55.809 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 11:42:55.892 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 11:42:56.062 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 11:42:56.063 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 11:43:26.132 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39734 10 6452 1 2025-10-15 11:44:26.545 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:53536 10 6452 1 2025-10-15 11:45:26.907 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54030 10 6452 1 2025-10-15 11:46:27.309 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:60420 10 6452 1 2025-10-15 11:42:44.558 00:05:00.490 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 11:47:27.674 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34448 10 6452 1 2025-10-15 11:43:44.556 00:05:00.495 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 11:47:56.185 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 11:47:55.920 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 11:47:56.097 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 11:47:56.103 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 11:47:56.102 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 11:48:28.109 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53954 10 6452 1 2025-10-15 11:49:28.515 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33488 10 6452 1 2025-10-15 11:50:28.915 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46940 10 6452 1 2025-10-15 11:51:29.321 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44160 10 6452 1 2025-10-15 11:52:29.725 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:34666 10 6452 1 2025-10-15 11:48:44.561 00:05:00.489 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 11:52:56.060 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 11:52:56.195 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 11:52:56.011 00:00:00.039 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 11:52:55.977 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 11:52:56.101 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 11:53:30.110 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38904 10 6452 1 2025-10-15 11:49:44.559 00:05:00.494 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 11:54:30.518 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39724 10 6452 1 2025-10-15 11:55:30.920 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:45242 10 6452 1 2025-10-15 11:56:31.347 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36848 10 6452 1 2025-10-15 11:57:31.760 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:40548 10 6452 1 2025-10-15 11:57:56.526 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 11:57:56.259 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 11:57:56.189 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 11:57:56.444 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 11:57:56.257 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 11:58:32.179 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55590 10 6452 1 2025-10-15 11:54:44.563 00:05:00.488 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 Summary: total flows: 140, total bytes: 424846, total packets: 1024, avg bps: 884, avg pps: 0, avg bpp: 414 Time window: 2025-10-15 10:55:44 - 2025-10-15 11:59:45 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0018s User: 0.0027s Wall: 0.0016s flows/second: 87720.7 Runtime: 0.0016s