Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-25 15:58:51.134 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37610 10 6452 1 2025-10-25 15:59:51.535 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36858 10 6452 1 2025-10-25 16:00:51.933 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:56692 10 6452 1 2025-10-25 15:57:49.895 00:05:00.274 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 16:01:52.317 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57682 10 6452 1 2025-10-25 16:02:50.407 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 16:02:50.544 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 16:02:50.426 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 16:02:50.326 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 16:02:50.498 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 15:58:49.893 00:05:00.279 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 16:02:52.716 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43616 10 6452 1 2025-10-25 16:03:53.122 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38252 10 6452 1 2025-10-25 16:04:53.526 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:56446 10 6452 1 2025-10-25 16:05:53.888 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:37336 12 6556 1 2025-10-25 16:06:54.302 00:00:11.394 TCP 1.101.0.1:3000 -> 23.104.0.1:51108 10 6452 1 2025-10-25 16:07:50.821 00:00:00.003 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 16:07:50.691 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 16:07:50.530 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 16:07:50.710 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 16:07:50.758 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 16:03:49.899 00:05:00.277 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 16:07:55.736 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38770 10 6452 1 2025-10-25 16:04:49.894 00:05:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 16:08:56.141 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46542 10 6452 1 2025-10-25 16:09:56.543 00:00:11.349 TCP 1.101.0.1:3000 -> 23.104.0.1:33426 10 6452 1 2025-10-25 16:10:57.933 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36532 10 6452 1 2025-10-25 16:11:58.343 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53436 10 6452 1 2025-10-25 16:12:50.389 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 16:12:50.736 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 16:12:50.561 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 16:12:50.438 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 16:12:50.818 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 16:12:58.750 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56730 10 6452 1 2025-10-25 16:09:49.897 00:05:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 16:13:59.157 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:44426 10 6452 1 2025-10-25 16:10:49.895 00:05:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 16:14:59.522 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36700 10 6452 1 2025-10-25 16:15:59.924 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:60228 10 6452 1 2025-10-25 16:17:00.352 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57712 10 6452 1 2025-10-25 16:17:50.780 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 16:17:50.581 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 16:17:50.657 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 16:17:50.728 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 16:17:50.740 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 16:18:00.764 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53178 10 6452 1 2025-10-25 16:19:01.175 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:58462 10 6452 1 2025-10-25 16:15:49.898 00:05:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 16:20:01.540 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:58696 10 6452 1 2025-10-25 16:16:49.896 00:05:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 16:21:01.900 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:52868 10 6452 1 2025-10-25 16:22:02.269 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51148 10 6452 1 2025-10-25 16:22:50.681 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 16:22:50.929 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 16:22:50.599 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 16:22:51.479 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 16:22:51.106 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 16:23:02.672 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51878 10 6452 1 2025-10-25 16:24:03.111 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41930 10 6452 1 2025-10-25 16:25:03.478 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37878 10 6452 1 2025-10-25 16:21:49.900 00:05:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 16:26:03.888 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39930 12 6556 1 2025-10-25 16:22:49.896 00:05:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 16:27:04.300 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53256 10 6452 1 2025-10-25 16:27:50.940 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 16:27:50.743 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 16:27:50.938 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 16:27:51.022 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 16:27:50.981 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 16:28:04.701 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53708 10 6452 1 2025-10-25 16:29:05.110 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40460 10 6452 1 2025-10-25 16:30:05.510 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52738 10 6452 1 2025-10-25 16:31:05.919 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:50210 10 6452 1 2025-10-25 16:27:49.903 00:05:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 16:32:06.349 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53480 10 6452 1 2025-10-25 16:28:49.899 00:05:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 16:32:51.292 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 16:32:51.266 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 16:32:51.295 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 16:32:51.298 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 16:32:51.377 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 16:33:06.711 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:57752 10 6452 1 2025-10-25 16:34:07.139 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:53950 10 6452 1 2025-10-25 16:35:07.501 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56740 10 6452 1 2025-10-25 16:36:07.914 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37890 10 6452 1 2025-10-25 16:37:08.330 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41798 10 6452 1 2025-10-25 16:37:51.131 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 16:37:51.037 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 16:37:51.149 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 16:37:51.047 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 16:37:51.183 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 16:33:49.905 00:05:00.277 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 16:38:08.752 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50434 10 6452 1 2025-10-25 16:34:49.911 00:05:00.275 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 16:39:09.166 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:40850 10 6452 1 2025-10-25 16:40:09.529 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60690 10 6452 1 2025-10-25 16:41:09.931 00:00:10.406 TCP 1.101.0.1:3000 -> 23.104.0.1:58132 11 6504 1 2025-10-25 16:42:10.376 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43516 10 6452 1 2025-10-25 16:42:51.181 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 16:42:51.300 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 16:42:51.048 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 16:42:51.091 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 16:42:51.264 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 16:43:10.784 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54996 10 6452 1 2025-10-25 16:39:49.908 00:05:00.276 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 16:44:11.191 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:36382 10 6452 1 2025-10-25 16:40:49.905 00:05:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 16:45:11.560 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39914 10 6452 1 2025-10-25 16:46:11.964 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34236 10 6452 1 2025-10-25 16:47:12.371 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38796 10 6452 1 2025-10-25 16:47:51.474 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 16:47:51.467 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 16:47:51.356 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 16:47:51.392 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 16:47:51.516 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 16:48:12.782 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60490 10 6452 1 2025-10-25 16:49:13.194 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:40054 10 6452 1 2025-10-25 16:45:49.909 00:05:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 16:50:13.569 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36110 10 6452 1 2025-10-25 16:46:49.906 00:05:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 16:51:13.975 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54168 10 6452 1 2025-10-25 16:52:14.376 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42874 10 6452 1 2025-10-25 16:52:51.541 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 16:52:51.410 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 16:52:51.545 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 16:52:51.536 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 16:52:51.627 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 16:53:14.740 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47468 10 6452 1 2025-10-25 16:54:15.151 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:39234 10 6452 1 2025-10-25 16:55:15.556 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57152 10 6452 1 2025-10-25 16:51:49.913 00:05:00.277 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-25 16:56:15.958 00:00:17.787 TCP 1.101.0.1:3000 -> 23.104.0.1:36574 10 6452 1 2025-10-25 16:52:49.910 00:05:00.281 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-25 16:57:23.785 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44578 10 6452 1 2025-10-25 16:57:51.661 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-25 16:57:51.521 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-25 16:57:51.368 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 16:57:51.578 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-25 16:57:51.586 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-25 16:58:24.186 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50296 10 6452 1 Summary: total flows: 140, total bytes: 417260, total packets: 1025, avg bps: 915, avg pps: 0, avg bpp: 407 Time window: 2025-10-25 15:57:49 - 2025-10-25 16:58:34 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0047s User: 0.0019s Wall: 0.0028s flows/second: 50124.0 Runtime: 0.0028s