Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-03 11:58:55.439 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55644 10 6452 1 2025-09-03 11:59:55.805 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51550 10 6452 1 2025-09-03 11:56:23.978 00:05:00.275 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-03 12:00:56.218 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:32868 10 6452 1 2025-09-03 12:01:56.604 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45988 10 6452 1 2025-09-03 12:02:36.283 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 12:02:36.082 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 12:02:35.872 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 12:02:36.152 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 12:02:36.236 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 12:02:57.010 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58016 10 6452 1 2025-09-03 11:59:23.978 00:05:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-03 12:03:57.413 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43446 12 6556 1 2025-09-03 12:04:57.821 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:46612 10 6452 1 2025-09-03 12:05:58.220 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56624 10 6452 1 2025-09-03 12:02:23.979 00:05:00.276 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-03 12:06:58.625 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39878 10 6452 1 2025-09-03 12:07:36.378 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 12:07:36.144 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 12:07:36.167 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 12:07:36.322 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 12:07:36.297 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 12:07:59.034 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53356 10 6452 1 2025-09-03 12:08:59.438 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:47074 10 6452 1 2025-09-03 12:05:23.978 00:05:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-03 12:09:59.862 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:43608 10 6452 1 2025-09-03 12:11:00.273 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60462 10 6452 1 2025-09-03 12:12:00.683 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47526 10 6452 1 2025-09-03 12:08:23.982 00:05:00.275 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-03 12:12:36.402 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 12:12:36.424 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 12:12:36.232 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 12:12:36.242 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 12:12:36.322 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 12:13:01.069 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:54930 10 6452 1 2025-09-03 12:14:01.477 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33218 10 6452 1 2025-09-03 12:15:01.877 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:55232 10 6452 1 2025-09-03 12:11:23.979 00:05:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-03 12:16:02.247 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33018 10 6452 1 2025-09-03 12:17:02.655 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43452 10 6452 1 2025-09-03 12:17:36.645 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 12:17:36.613 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 12:17:36.500 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 12:17:36.451 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 12:17:36.564 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 12:18:03.019 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:34454 10 6452 1 2025-09-03 12:14:23.983 00:05:00.274 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-03 12:19:03.384 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34284 10 6452 1 2025-09-03 12:20:03.791 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42024 10 6452 1 2025-09-03 12:21:04.204 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51240 10 6452 1 2025-09-03 12:17:23.980 00:05:00.282 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-03 12:22:04.609 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57144 10 6452 1 2025-09-03 12:22:36.757 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 12:22:36.420 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 12:22:36.271 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 12:22:36.435 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 12:22:36.518 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 12:23:04.977 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:37416 10 6452 1 2025-09-03 12:24:05.348 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49678 10 6452 1 2025-09-03 12:20:23.984 00:05:00.277 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-03 12:25:05.755 00:00:10.590 TCP 1.101.0.1:3000 -> 23.104.0.1:56252 10 6452 1 2025-09-03 12:26:06.385 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34992 10 6452 1 2025-09-03 12:27:06.792 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45284 10 6452 1 2025-09-03 12:23:23.985 00:05:00.278 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-03 12:27:36.909 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 12:27:36.868 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 12:27:36.816 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 12:27:36.717 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 12:27:36.827 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 12:28:07.200 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54012 10 6452 1 2025-09-03 12:29:07.603 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38472 10 6452 1 2025-09-03 12:26:23.990 00:05:00.272 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-03 12:30:08.017 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:43246 10 6452 1 2025-09-03 12:29:23.989 00:01:00.276 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-09-03 12:31:08.372 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:32924 10 6452 1 2025-09-03 12:32:08.780 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39216 10 6452 1 2025-09-03 12:32:36.918 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 12:32:36.836 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 12:32:36.834 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 12:32:36.833 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 12:32:36.855 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 12:33:09.181 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:49776 12 10367 1 2025-09-03 12:34:09.627 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:33462 10 6452 1 2025-09-03 12:35:10.106 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:56548 10 6452 1 2025-09-03 12:31:23.989 00:05:00.276 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-03 12:36:10.474 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51714 10 6452 1 2025-09-03 12:32:23.991 00:05:00.272 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-03 12:37:10.883 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:56126 12 6556 1 2025-09-03 12:37:36.963 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 12:37:36.756 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 12:37:36.701 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 12:37:36.897 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 12:37:36.980 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 12:38:11.319 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36800 10 6452 1 2025-09-03 12:39:11.718 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60578 10 6452 1 2025-09-03 12:40:12.131 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44140 10 6452 1 2025-09-03 12:37:23.990 00:05:00.277 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-03 12:41:12.536 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49472 10 6452 1 2025-09-03 12:42:12.941 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:40634 10 6452 1 2025-09-03 12:38:23.993 00:05:00.272 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-03 12:42:37.143 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 12:42:36.756 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 12:42:36.737 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 12:42:36.715 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 12:42:37.060 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 12:43:13.355 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49378 10 6452 1 2025-09-03 12:44:13.759 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:53738 10 6452 1 2025-09-03 12:45:14.148 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40588 10 6452 1 2025-09-03 12:46:14.554 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51496 10 6452 1 2025-09-03 12:43:23.991 00:05:00.277 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-03 12:47:14.960 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:48296 10 6452 1 2025-09-03 12:47:37.405 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 12:47:37.316 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 12:47:37.248 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 12:47:37.193 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 12:47:37.321 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 12:44:23.994 00:05:00.273 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-03 12:48:15.370 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52802 10 6452 1 2025-09-03 12:49:15.769 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42682 10 6452 1 2025-09-03 12:50:16.176 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42278 10 6452 1 2025-09-03 12:51:16.585 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49032 10 6452 1 2025-09-03 12:52:16.993 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50658 10 6452 1 2025-09-03 12:52:37.231 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 12:52:37.366 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 12:52:37.184 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 12:52:36.952 00:00:00.029 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 12:52:37.148 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 12:49:23.995 00:05:00.276 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-03 12:53:17.393 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60202 10 6452 1 2025-09-03 12:50:23.997 00:05:00.272 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-03 12:54:17.793 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49280 10 6452 1 2025-09-03 12:55:18.198 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:52968 10 6452 1 2025-09-03 12:56:18.594 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54094 10 6452 1 2025-09-03 12:57:19.006 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:39850 10 6452 1 2025-09-03 12:57:37.466 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 12:57:37.347 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 12:57:37.419 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 12:57:37.145 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 12:57:37.382 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 12:56:23.999 00:02:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-09-03 12:58:19.421 00:00:10.457 TCP 1.101.0.1:3000 -> 23.104.0.1:46570 10 6452 1 Summary: total flows: 141, total bytes: 421000, total packets: 1024, avg bps: 903, avg pps: 0, avg bpp: 411 Time window: 2025-09-03 11:56:23 - 2025-09-03 12:58:29 Total flows processed: 141, passed: 141, Blocks skipped: 0, Bytes read: 14728 Sys: 0.0041s User: 0.0008s Wall: 0.0029s flows/second: 48383.9 Runtime: 0.0029s