Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-02 02:59:00.918 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:51940 10 6452 1 2025-09-02 03:00:01.287 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39940 10 6452 1 2025-09-02 03:01:01.682 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:34946 10 6452 1 2025-09-02 03:01:56.412 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 03:01:56.483 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 03:01:56.523 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 03:01:56.403 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 03:01:56.494 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 03:02:02.058 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43866 10 6452 1 2025-09-02 03:03:02.423 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33724 10 6452 1 2025-09-02 02:58:23.283 00:06:00.138 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 02:58:23.280 00:06:00.143 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 03:04:02.840 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:37510 10 6452 1 2025-09-02 03:05:03.259 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:53690 10 6452 1 2025-09-02 03:06:03.679 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52942 10 6452 1 2025-09-02 03:06:56.593 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 03:06:56.652 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 03:06:56.744 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 03:06:56.704 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 03:06:56.511 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 03:07:04.114 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:32928 10 6452 1 2025-09-02 03:08:04.522 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33770 10 6452 1 2025-09-02 03:09:04.930 00:00:10.433 TCP 1.101.0.1:3000 -> 23.104.0.1:44930 11 6504 1 2025-09-02 03:10:05.402 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39762 10 6452 1 2025-09-02 03:05:23.281 00:06:00.143 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 03:05:23.285 00:06:00.138 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 03:11:05.807 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43736 10 6452 1 2025-09-02 03:11:56.690 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 03:11:56.849 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 03:11:56.699 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 03:11:56.652 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 03:11:56.606 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 03:12:06.215 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52892 10 6452 1 2025-09-02 03:13:06.619 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:35908 12 10365 1 2025-09-02 03:14:07.112 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47468 10 6452 1 2025-09-02 03:15:07.518 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43410 10 6452 1 2025-09-02 03:16:07.922 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38216 10 6452 1 2025-09-02 03:16:56.868 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 03:16:56.800 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 03:16:56.720 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 03:16:56.402 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 03:16:56.786 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 03:17:08.329 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52594 10 6452 1 2025-09-02 03:12:23.282 00:06:00.143 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 03:12:23.285 00:06:00.138 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 03:18:08.738 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:45894 10 6452 1 2025-09-02 03:19:09.150 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:59776 10 6452 1 2025-09-02 03:20:09.514 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44012 12 6556 1 2025-09-02 03:21:09.920 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58010 10 6452 1 2025-09-02 03:21:57.068 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 03:21:57.157 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 03:21:57.077 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 03:21:56.755 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 03:21:56.838 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 03:22:10.325 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45706 10 6452 1 2025-09-02 03:23:10.725 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:54908 10 6452 1 2025-09-02 03:19:23.295 00:06:00.141 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 03:24:11.136 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:52242 10 6452 1 2025-09-02 03:19:23.298 00:06:00.136 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 03:25:11.563 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39544 10 6452 1 2025-09-02 03:26:11.969 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48106 10 6452 1 2025-09-02 03:26:56.984 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 03:26:56.982 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 03:26:56.915 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 03:26:57.149 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 03:26:57.232 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 03:27:12.381 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57780 10 6452 1 2025-09-02 03:28:12.781 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54686 10 6452 1 2025-09-02 03:29:13.180 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40858 10 6452 1 2025-09-02 03:30:13.584 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47256 10 6452 1 2025-09-02 03:26:23.297 00:06:00.140 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 03:31:13.986 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42266 10 6452 1 2025-09-02 03:26:23.299 00:06:00.135 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 03:31:57.036 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 03:31:57.163 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 03:31:57.155 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 03:31:57.001 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 03:31:56.954 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 03:32:14.404 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56256 10 6452 1 2025-09-02 03:33:14.804 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49472 10 6452 1 2025-09-02 03:34:15.209 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47604 10 6452 1 2025-09-02 03:35:15.611 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56910 10 6452 1 2025-09-02 03:36:16.018 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33626 10 6452 1 2025-09-02 03:36:56.992 00:00:00.033 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 03:36:57.279 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 03:36:57.046 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 03:36:56.904 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 03:36:56.989 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 03:37:16.436 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53234 10 6452 1 2025-09-02 03:33:23.300 00:06:00.135 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 03:33:23.299 00:06:00.140 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 03:38:16.843 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:45208 10 6452 1 2025-09-02 03:39:17.228 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:35488 10 6452 1 2025-09-02 03:40:17.588 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56616 10 6452 1 2025-09-02 03:41:17.994 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56346 10 6452 1 2025-09-02 03:41:57.338 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 03:41:57.338 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 03:41:57.183 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 03:41:57.385 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 03:41:57.467 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 03:42:18.400 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50288 10 6452 1 2025-09-02 03:43:18.799 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48150 10 6452 1 2025-09-02 03:44:19.204 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43796 10 6452 1 2025-09-02 03:40:23.299 00:06:00.141 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 03:40:23.301 00:06:00.135 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 03:45:19.609 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39628 10 6452 1 2025-09-02 03:46:20.008 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43182 10 6452 1 2025-09-02 03:46:57.331 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 03:46:57.327 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 03:46:57.350 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 03:46:57.439 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 03:46:57.522 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 03:47:20.420 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57666 10 6452 1 2025-09-02 03:48:20.823 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49972 10 6452 1 2025-09-02 03:49:21.182 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34224 10 6452 1 2025-09-02 03:50:21.598 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:56980 10 6452 1 2025-09-02 03:51:22.011 00:00:10.834 TCP 1.101.0.1:3000 -> 23.104.0.1:38414 10 6452 1 2025-09-02 03:51:57.496 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 03:51:57.573 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 03:51:57.759 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 03:51:57.590 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 03:51:57.580 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 03:47:23.302 00:06:00.138 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 03:47:23.304 00:06:00.133 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 03:52:22.895 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:41462 10 6452 1 2025-09-02 03:53:23.312 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56904 10 6452 1 2025-09-02 03:54:23.718 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56482 10 6452 1 2025-09-02 03:55:24.129 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33132 10 6452 1 2025-09-02 03:56:24.530 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59308 10 6452 1 2025-09-02 03:56:57.658 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 03:56:57.705 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 03:56:57.452 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 03:56:57.569 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 03:56:57.653 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 03:57:24.896 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43670 10 6452 1 2025-09-02 03:58:25.310 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56036 10 6452 1 Summary: total flows: 136, total bytes: 420085, total packets: 1009, avg bps: 930, avg pps: 0, avg bpp: 416 Time window: 2025-09-02 02:58:23 - 2025-09-02 03:58:35 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0050s User: 0.0000s Wall: 0.0024s flows/second: 56127.7 Runtime: 0.0024s