Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-22 17:59:19.524 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45088 10 6452 1 2025-10-22 18:00:19.926 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:45038 10 6452 1 2025-10-22 18:01:26.765 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 18:01:20.346 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46782 10 6452 1 2025-10-22 18:01:26.455 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 18:01:26.297 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 18:01:26.681 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 18:01:26.155 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 18:02:20.752 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33770 10 6452 1 2025-10-22 17:57:48.327 00:06:00.313 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 18:03:21.156 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59678 10 6452 1 2025-10-22 17:58:48.331 00:06:00.308 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 18:04:21.561 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59582 10 6452 1 2025-10-22 18:05:21.960 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46768 10 6452 1 2025-10-22 18:06:25.770 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 18:06:25.869 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 18:06:25.797 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 18:06:25.682 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 18:06:25.882 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 18:06:22.364 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47628 10 6452 1 2025-10-22 18:07:22.763 00:00:10.662 TCP 1.101.0.1:3000 -> 23.104.0.1:40184 10 6452 1 2025-10-22 18:08:23.470 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43664 10 6452 1 2025-10-22 18:09:23.868 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58696 10 6452 1 2025-10-22 18:04:48.330 00:06:00.313 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 18:10:24.277 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38470 10 6452 1 2025-10-22 18:05:48.331 00:06:00.308 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 18:11:25.906 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 18:11:25.834 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 18:11:25.921 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 18:11:25.905 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 18:11:26.004 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 18:11:24.690 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50148 10 6452 1 2025-10-22 18:12:25.106 00:00:10.768 TCP 1.101.0.1:3000 -> 23.104.0.1:60108 10 6452 1 2025-10-22 18:13:25.915 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55944 10 6452 1 2025-10-22 18:14:26.319 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33758 10 6452 1 2025-10-22 18:15:26.724 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36970 10 6452 1 2025-10-22 18:16:25.837 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 18:16:25.994 00:00:00.044 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 18:16:26.170 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 18:16:25.993 00:00:00.029 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 18:16:26.253 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 18:16:27.136 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51940 10 6452 1 2025-10-22 18:11:48.332 00:06:00.311 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 18:17:27.540 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60300 10 6452 1 2025-10-22 18:12:48.335 00:06:00.307 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 18:18:27.943 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56308 10 6452 1 2025-10-22 18:19:28.351 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36882 10 6452 1 2025-10-22 18:20:28.760 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:58204 10 6452 1 2025-10-22 18:21:26.285 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 18:21:26.212 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 18:21:25.994 00:00:00.050 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 18:21:26.204 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 18:21:26.099 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 18:21:29.186 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33468 10 6452 1 2025-10-22 18:22:29.598 00:00:10.423 TCP 1.101.0.1:3000 -> 23.104.0.1:55850 10 6452 1 2025-10-22 18:23:30.097 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:54960 10 6452 1 2025-10-22 18:18:48.335 00:06:00.310 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 18:24:30.463 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35674 10 6452 1 2025-10-22 18:19:48.337 00:06:00.305 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 18:25:30.870 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49180 10 6452 1 2025-10-22 18:26:26.470 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 18:26:26.384 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 18:26:26.375 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 18:26:26.585 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 18:26:26.459 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 18:26:31.280 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33806 10 6452 1 2025-10-22 18:27:31.682 00:00:10.524 TCP 1.101.0.1:3000 -> 23.104.0.1:35804 10 6452 1 2025-10-22 18:28:32.246 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54188 10 6452 1 2025-10-22 18:29:32.654 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:53174 10 6452 1 2025-10-22 18:30:33.109 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33418 10 6452 1 2025-10-22 18:25:48.340 00:06:00.306 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 18:31:26.510 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 18:31:26.379 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 18:31:26.347 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 18:31:26.376 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 18:31:26.459 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 18:31:33.512 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53048 10 6452 1 2025-10-22 18:26:48.344 00:06:00.301 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 18:32:33.915 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44286 10 6452 1 2025-10-22 18:33:34.323 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38576 10 6452 1 2025-10-22 18:34:34.729 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56992 10 6452 1 2025-10-22 18:35:35.112 00:00:22.254 TCP 1.101.0.1:3000 -> 23.104.0.1:47002 10 6452 1 2025-10-22 18:36:26.545 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 18:36:26.377 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 18:36:26.134 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 18:36:26.463 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 18:36:26.375 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 18:36:47.420 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56578 10 6452 1 2025-10-22 18:32:48.341 00:06:00.307 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 18:37:47.835 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:42726 10 6452 1 2025-10-22 18:33:48.344 00:06:00.303 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 18:38:48.217 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44458 10 6452 1 2025-10-22 18:39:48.620 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52924 10 6452 1 2025-10-22 18:40:49.027 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55726 10 6452 1 2025-10-22 18:41:26.871 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 18:41:27.083 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 18:41:27.414 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 18:41:26.871 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 18:41:27.498 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 18:41:49.431 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:47582 10 6452 1 2025-10-22 18:42:49.793 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48054 10 6452 1 2025-10-22 18:43:50.205 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41910 10 6452 1 2025-10-22 18:39:48.345 00:06:00.307 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 18:44:50.571 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:39572 10 6452 1 2025-10-22 18:40:48.348 00:06:00.302 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 18:45:50.994 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46488 10 6452 1 2025-10-22 18:46:26.708 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 18:46:26.717 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 18:46:26.751 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 18:46:26.630 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 18:46:26.835 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 18:46:51.397 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51938 10 6452 1 2025-10-22 18:47:51.794 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:42628 10 6452 1 2025-10-22 18:48:52.153 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39484 10 6452 1 2025-10-22 18:49:52.560 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42014 10 6452 1 2025-10-22 18:50:52.963 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54196 10 6452 1 2025-10-22 18:51:26.879 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 18:51:26.865 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 18:51:26.641 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 18:51:26.798 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 18:51:26.949 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 18:46:48.346 00:06:00.308 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-22 18:51:53.369 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:41886 10 6452 1 2025-10-22 18:47:48.348 00:06:00.304 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-22 18:52:53.736 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43550 10 6452 1 2025-10-22 18:53:54.147 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57346 10 6452 1 2025-10-22 18:54:54.547 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39518 10 6452 1 2025-10-22 18:55:54.949 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53984 10 6452 1 2025-10-22 18:56:26.944 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-22 18:56:26.928 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 18:56:26.812 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 18:56:26.860 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-22 18:56:26.705 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 18:56:55.357 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57420 10 6452 1 2025-10-22 18:57:55.718 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:42718 10 6452 1 2025-10-22 18:53:48.348 00:06:00.308 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 Summary: total flows: 136, total bytes: 410425, total packets: 1008, avg bps: 882, avg pps: 0, avg bpp: 407 Time window: 2025-10-22 17:57:48 - 2025-10-22 18:59:48 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0048s User: 0.0010s Wall: 0.0016s flows/second: 83481.0 Runtime: 0.0017s