Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-25 12:59:11.111 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56110 10 6452 1 2025-10-25 13:00:11.480 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:47528 10 6452 1 2025-10-25 13:01:11.849 00:00:10.465 TCP 1.101.0.1:3000 -> 23.104.0.1:37620 12 10369 1 2025-10-25 12:57:49.831 00:05:00.278 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 13:02:12.352 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43304 10 6452 1 2025-10-25 12:58:49.830 00:05:00.281 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 13:02:46.912 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 13:02:46.802 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:02:46.830 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:02:46.864 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 13:02:46.908 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 13:03:12.755 00:00:17.879 TCP 1.101.0.1:3000 -> 23.104.0.1:46254 10 6452 1 2025-10-25 13:04:20.663 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39758 10 6452 1 2025-10-25 13:05:21.094 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50644 10 6452 1 2025-10-25 13:06:21.500 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54368 10 6452 1 2025-10-25 13:07:21.905 00:00:10.897 TCP 1.101.0.1:3000 -> 23.104.0.1:57420 12 6556 1 2025-10-25 13:07:46.681 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 13:07:46.799 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:07:46.963 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:07:46.921 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 13:03:49.841 00:05:00.268 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 13:07:47.046 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 13:08:22.845 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:47260 10 6452 1 2025-10-25 13:04:49.839 00:05:00.273 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 13:09:23.230 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:60260 10 6452 1 2025-10-25 13:10:23.625 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34484 10 6452 1 2025-10-25 13:11:23.989 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:56646 12 10375 1 2025-10-25 13:12:24.462 00:00:14.358 TCP 1.101.0.1:3000 -> 23.104.0.1:34246 10 6452 1 2025-10-25 13:12:47.066 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 13:12:46.868 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 13:12:46.894 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:12:46.983 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:12:46.745 00:00:00.029 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 13:13:28.875 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51874 10 6452 1 2025-10-25 13:09:49.843 00:05:00.268 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 13:14:29.241 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57046 10 6452 1 2025-10-25 13:10:49.840 00:05:00.273 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 13:15:29.651 00:00:10.407 TCP 1.101.0.1:3000 -> 23.104.0.1:49486 12 10369 1 2025-10-25 13:16:30.105 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43016 10 6452 1 2025-10-25 13:17:30.510 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44644 10 6452 1 2025-10-25 13:17:47.355 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 13:17:47.273 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 13:17:47.298 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:17:47.273 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:17:47.158 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 13:18:30.915 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:55606 11 6504 1 2025-10-25 13:19:31.373 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48110 10 6452 1 2025-10-25 13:15:49.843 00:05:00.268 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 13:20:31.773 00:00:10.405 TCP 1.101.0.1:3000 -> 23.104.0.1:34890 13 13943 1 2025-10-25 13:16:49.840 00:05:00.274 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 13:21:32.223 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43146 10 6452 1 2025-10-25 13:22:47.230 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 13:22:47.142 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 13:22:47.164 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:22:47.147 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:22:47.232 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 13:22:32.631 00:00:13.445 TCP 1.101.0.1:3000 -> 23.104.0.1:34178 10 6452 1 2025-10-25 13:23:36.116 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49660 10 6452 1 2025-10-25 13:24:36.522 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41514 10 6452 1 2025-10-25 13:21:49.844 00:05:00.268 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 13:25:36.928 00:00:20.561 TCP 1.101.0.1:3000 -> 23.104.0.1:60854 10 6452 1 2025-10-25 13:22:49.842 00:05:00.274 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 13:26:47.527 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59166 10 6452 1 2025-10-25 13:27:47.275 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 13:27:47.236 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:27:47.333 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:27:47.334 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 13:27:47.416 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 13:27:47.929 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42172 10 6452 1 2025-10-25 13:28:48.336 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58260 10 6452 1 2025-10-25 13:29:48.754 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55486 10 6452 1 2025-10-25 13:30:49.156 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43270 10 6452 1 2025-10-25 13:27:49.845 00:05:00.268 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 13:31:49.558 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52796 10 6452 1 2025-10-25 13:32:47.527 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 13:32:47.333 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:32:47.460 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:32:47.341 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 13:28:49.842 00:05:00.273 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 13:32:47.541 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 13:32:49.956 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:46534 10 6452 1 2025-10-25 13:33:50.324 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36862 10 6452 1 2025-10-25 13:34:50.720 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:54132 10 6452 1 2025-10-25 13:35:51.116 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40780 10 6452 1 2025-10-25 13:36:51.520 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41640 10 6452 1 2025-10-25 13:37:47.491 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 13:37:47.232 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:37:47.491 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:37:47.545 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 13:33:49.846 00:05:00.269 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 13:37:47.574 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 13:37:51.925 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:56362 10 6452 1 2025-10-25 13:34:49.844 00:05:00.274 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 13:38:52.355 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59120 10 6452 1 2025-10-25 13:39:52.769 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:52472 10 6452 1 2025-10-25 13:40:53.190 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:52642 12 10584 1 2025-10-25 13:41:53.626 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33262 10 6661 1 2025-10-25 13:42:47.649 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 13:42:47.863 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 13:42:47.681 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:42:47.566 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:42:47.900 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 13:42:54.033 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40238 10 6661 1 2025-10-25 13:39:49.846 00:05:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 13:43:54.434 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42628 10 6661 1 2025-10-25 13:40:49.845 00:05:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 13:44:54.840 00:00:10.404 TCP 1.101.0.1:3000 -> 23.104.0.1:56420 10 6661 1 2025-10-25 13:45:55.283 00:00:10.449 TCP 1.101.0.1:3000 -> 23.104.0.1:34006 12 10793 1 2025-10-25 13:46:55.794 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42892 10 6870 1 2025-10-25 13:47:47.849 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 13:47:47.690 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 13:47:47.574 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:47:47.767 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:47:47.627 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 13:47:56.204 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:38730 10 6870 1 2025-10-25 13:48:56.562 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:35544 10 6870 1 2025-10-25 13:45:49.849 00:05:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 13:49:56.979 00:00:10.711 TCP 1.101.0.1:3000 -> 23.104.0.1:50878 10 6870 1 2025-10-25 13:46:49.845 00:05:00.287 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 13:50:57.731 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:59436 10 6870 1 2025-10-25 13:51:58.151 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33014 10 6870 1 2025-10-25 13:52:47.629 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 13:52:47.648 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:52:47.826 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:52:47.920 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 13:52:47.910 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 13:52:58.555 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:56486 10 6870 1 2025-10-25 13:53:58.928 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:45966 10 6870 1 2025-10-25 13:54:59.344 00:00:10.585 TCP 1.101.0.1:3000 -> 23.104.0.1:53504 10 6870 1 2025-10-25 13:51:49.849 00:05:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 13:55:59.971 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45180 10 6870 1 2025-10-25 13:52:49.848 00:05:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 13:57:00.382 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57002 10 6870 1 2025-10-25 13:57:48.047 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 13:57:47.997 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 13:57:47.962 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:57:47.965 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 13:57:47.769 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 13:58:00.785 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56568 10 6870 1 Summary: total flows: 139, total bytes: 444277, total packets: 1026, avg bps: 981, avg pps: 0, avg bpp: 433 Time window: 2025-10-25 12:57:49 - 2025-10-25 13:58:11 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0028s User: 0.0028s Wall: 0.0017s flows/second: 80028.6 Runtime: 0.0018s