Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-15 11:59:32.580 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:42700 10 6452 1 2025-10-15 11:55:44.560 00:05:00.494 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 12:00:32.938 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:50270 10 6452 1 2025-10-15 12:01:33.379 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45234 10 6452 1 2025-10-15 12:02:33.787 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:48430 10 6452 1 2025-10-15 12:02:56.471 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 12:02:56.386 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 12:02:56.154 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 12:02:56.389 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 12:02:56.462 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 12:03:34.221 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37838 10 6452 1 2025-10-15 12:04:34.624 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43388 10 6452 1 2025-10-15 12:00:44.565 00:05:00.489 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 12:01:44.562 00:05:00.494 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 12:05:34.986 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39216 10 6452 1 2025-10-15 12:06:35.390 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47052 10 6452 1 2025-10-15 12:07:35.755 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36008 10 6452 1 2025-10-15 12:07:56.549 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 12:07:56.419 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 12:07:56.481 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 12:07:56.329 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 12:07:56.564 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 12:08:36.155 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46238 10 6452 1 2025-10-15 12:09:36.563 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:42260 10 6452 1 2025-10-15 12:06:44.569 00:05:00.486 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 12:10:36.932 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:59802 10 6452 1 2025-10-15 12:07:44.567 00:05:00.489 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 12:11:37.355 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:38242 10 6452 1 2025-10-15 12:12:37.719 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48030 10 6452 1 2025-10-15 12:12:56.857 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 12:12:56.725 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 12:12:56.669 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 12:12:56.775 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 12:12:56.562 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 12:13:38.127 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41000 10 6452 1 2025-10-15 12:14:38.534 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42276 10 6452 1 2025-10-15 12:15:38.940 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55796 10 6452 1 2025-10-15 12:12:44.576 00:05:00.480 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 12:16:39.359 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:35618 12 10375 1 2025-10-15 12:13:44.572 00:05:00.486 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 12:17:39.840 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:40458 10 6452 1 2025-10-15 12:17:56.816 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 12:17:56.630 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 12:17:56.632 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 12:17:56.734 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 12:17:56.716 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 12:18:40.259 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41478 10 6452 1 2025-10-15 12:19:40.663 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60814 10 6452 1 2025-10-15 12:20:41.086 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33240 10 6452 1 2025-10-15 12:21:41.489 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40758 10 6452 1 2025-10-15 12:18:44.579 00:05:00.480 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 12:22:41.892 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43010 10 6452 1 2025-10-15 12:22:56.804 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 12:22:56.799 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 12:22:56.759 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 12:22:56.721 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 12:22:56.876 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 12:19:44.576 00:05:00.485 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 12:23:42.299 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41818 10 6452 1 2025-10-15 12:24:42.705 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60592 10 6452 1 2025-10-15 12:25:43.097 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35786 10 6452 1 2025-10-15 12:26:43.502 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:54860 10 6452 1 2025-10-15 12:27:43.881 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:46828 10 6452 1 2025-10-15 12:27:57.011 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 12:27:56.745 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 12:27:56.798 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 12:27:56.928 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 12:27:56.833 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 12:24:44.579 00:05:00.480 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 12:28:44.298 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:34538 10 6452 1 2025-10-15 12:25:44.577 00:05:00.485 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 12:29:44.699 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:52612 10 6452 1 2025-10-15 12:30:45.074 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41448 10 6452 1 2025-10-15 12:31:45.478 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35614 10 6452 1 2025-10-15 12:32:57.254 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 12:32:45.875 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54644 10 6452 1 2025-10-15 12:32:57.166 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 12:32:56.947 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 12:32:57.172 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 12:32:56.966 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 12:33:46.282 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49694 10 6452 1 2025-10-15 12:30:44.581 00:05:00.480 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 12:34:46.691 00:00:10.624 TCP 1.101.0.1:3000 -> 23.104.0.1:54340 10 6452 1 2025-10-15 12:31:44.579 00:05:00.485 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 12:35:47.362 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37922 10 6452 1 2025-10-15 12:36:47.724 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46908 10 6452 1 2025-10-15 12:37:57.139 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 12:37:56.815 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 12:37:57.029 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 12:37:57.237 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 12:37:48.135 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57196 10 6452 1 2025-10-15 12:37:57.112 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 12:38:48.543 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53860 10 6452 1 2025-10-15 12:39:48.944 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39266 10 6452 1 2025-10-15 12:36:44.581 00:05:00.480 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 12:40:49.357 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50678 10 6452 1 2025-10-15 12:37:44.579 00:05:00.486 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 12:41:49.759 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:41818 10 6452 1 2025-10-15 12:42:57.326 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 12:42:57.157 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 12:42:57.068 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 12:42:57.243 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 12:42:50.176 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:46118 10 6452 1 2025-10-15 12:42:57.159 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 12:43:50.544 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35864 10 6452 1 2025-10-15 12:44:50.944 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:51072 10 6452 1 2025-10-15 12:45:51.314 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47036 10 6452 1 2025-10-15 12:42:44.585 00:05:00.479 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 12:46:51.714 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:44538 10 6452 1 2025-10-15 12:43:44.581 00:05:00.485 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 12:47:57.263 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 12:47:57.173 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 12:47:56.994 00:00:00.046 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 12:47:57.181 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 12:47:57.181 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 12:47:52.131 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51036 10 6452 1 2025-10-15 12:48:52.535 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33504 10 6452 1 2025-10-15 12:49:52.934 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:54344 10 6452 1 2025-10-15 12:50:53.311 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:50716 10 6452 1 2025-10-15 12:51:53.729 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:33866 10 6452 1 2025-10-15 12:48:44.586 00:05:00.480 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-15 12:52:57.497 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 12:52:57.459 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 12:52:57.519 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 12:52:57.497 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 12:52:57.603 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 12:52:54.110 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37434 10 6452 1 2025-10-15 12:49:44.584 00:05:00.484 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-15 12:53:54.519 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34034 10 6452 1 2025-10-15 12:54:54.879 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39790 10 6452 1 2025-10-15 12:55:55.284 00:00:10.446 TCP 1.101.0.1:3000 -> 23.104.0.1:47718 12 10375 1 2025-10-15 12:56:55.767 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:59046 10 6452 1 2025-10-15 12:57:57.545 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 12:57:57.466 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 12:57:57.510 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 12:57:57.462 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 12:57:57.542 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 12:57:56.144 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39710 10 6452 1 2025-10-15 12:54:44.588 00:05:00.478 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 Summary: total flows: 139, total bytes: 418394, total packets: 1014, avg bps: 871, avg pps: 0, avg bpp: 412 Time window: 2025-10-15 11:55:44 - 2025-10-15 12:59:45 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0036s User: 0.0012s Wall: 0.0027s flows/second: 51047.0 Runtime: 0.0027s