Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-05 11:58:49.919 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:55406 10 6452 1 2025-09-05 11:59:50.340 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58708 10 6452 1 2025-09-05 11:56:24.984 00:05:00.184 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-05 12:00:50.743 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48848 10 6452 1 2025-09-05 12:01:51.146 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45396 10 6452 1 2025-09-05 11:58:24.988 00:05:00.177 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-05 12:02:51.549 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47440 10 6452 1 2025-09-05 12:03:34.076 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 12:03:33.862 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 12:03:33.990 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 12:03:34.116 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 12:03:34.199 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 12:03:51.954 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:41220 10 6452 1 2025-09-05 12:04:52.320 00:00:10.877 TCP 1.101.0.1:3000 -> 23.104.0.1:39870 10 6452 1 2025-09-05 12:05:53.239 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57444 10 6452 1 2025-09-05 12:02:24.992 00:05:00.177 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-05 12:06:53.640 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:36192 10 6452 1 2025-09-05 12:07:54.069 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:37858 10 6452 1 2025-09-05 12:04:24.995 00:05:00.173 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-05 12:08:33.685 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 12:08:33.917 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 12:08:33.999 00:00:00.039 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 12:08:33.971 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 12:08:34.054 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 12:08:54.422 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55394 10 6452 1 2025-09-05 12:09:54.834 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:47972 10 6452 1 2025-09-05 12:10:55.267 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:50762 10 6452 1 2025-09-05 12:11:55.632 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53176 10 6452 1 2025-09-05 12:08:24.992 00:05:00.179 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-05 12:12:56.039 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52294 10 6452 1 2025-09-05 12:13:34.375 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 12:13:34.372 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 12:13:34.232 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 12:13:34.063 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 12:13:34.146 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 12:13:56.437 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40902 10 6452 1 2025-09-05 12:14:56.840 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:58564 10 6452 1 2025-09-05 12:10:25.000 00:06:00.170 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 12:15:57.269 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38458 10 6452 1 2025-09-05 12:16:57.680 00:00:10.580 TCP 1.101.0.1:3000 -> 23.104.0.1:50230 10 6452 1 2025-09-05 12:17:58.302 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:42304 12 10365 1 2025-09-05 12:14:24.996 00:05:00.176 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-05 12:18:34.410 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 12:18:34.209 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 12:18:34.378 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 12:18:34.117 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 12:18:34.328 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 12:18:58.777 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:52782 10 6452 1 2025-09-05 12:19:59.154 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38000 10 6452 1 2025-09-05 12:20:59.554 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49452 10 6452 1 2025-09-05 12:21:59.965 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50142 10 6452 1 2025-09-05 12:17:25.003 00:06:00.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 12:23:00.364 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:56366 12 10365 1 2025-09-05 12:23:34.433 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 12:23:34.436 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 12:23:34.307 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 12:23:34.482 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 12:23:34.568 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 12:24:00.803 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50038 10 6452 1 2025-09-05 12:25:01.218 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41230 10 6452 1 2025-09-05 12:20:25.001 00:06:00.177 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-05 12:26:01.619 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45834 10 6452 1 2025-09-05 12:27:02.022 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33724 10 6452 1 2025-09-05 12:28:02.430 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:34936 10 6452 1 2025-09-05 12:28:34.320 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 12:28:34.241 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 12:28:34.321 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 12:28:34.279 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 12:28:34.237 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 12:29:02.844 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:56468 10 6452 1 2025-09-05 12:24:25.004 00:06:00.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 12:30:03.274 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42280 10 6452 1 2025-09-05 12:31:03.676 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43670 10 6452 1 2025-09-05 12:32:04.106 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54460 10 6452 1 2025-09-05 12:27:25.002 00:06:00.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-05 12:33:04.515 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:41056 12 10365 1 2025-09-05 12:33:34.793 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 12:33:34.543 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 12:33:34.602 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 12:33:34.309 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 12:33:34.711 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 12:34:04.994 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48232 10 6452 1 2025-09-05 12:35:05.402 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57362 10 6452 1 2025-09-05 12:36:05.805 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40244 10 6452 1 2025-09-05 12:31:25.036 00:06:00.145 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 12:37:06.212 00:00:10.477 TCP 1.101.0.1:3000 -> 23.104.0.1:54898 10 6452 1 2025-09-05 12:38:06.729 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:53810 10 6452 1 2025-09-05 12:38:34.572 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 12:38:34.786 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 12:38:34.712 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 12:38:34.841 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 12:38:34.924 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 12:39:07.138 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50932 10 6452 1 2025-09-05 12:34:25.036 00:06:00.148 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-05 12:40:07.541 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59094 10 6452 1 2025-09-05 12:41:07.954 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:40680 10 6452 1 2025-09-05 12:42:08.375 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:38856 10 6452 1 2025-09-05 12:43:08.749 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36884 10 6452 1 2025-09-05 12:38:25.040 00:06:00.142 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 12:43:34.630 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 12:43:34.785 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 12:43:34.822 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 12:43:34.541 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 12:43:34.547 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 12:44:09.157 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58348 10 6452 1 2025-09-05 12:45:09.563 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42192 10 6452 1 2025-09-05 12:46:09.972 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:41180 10 6452 1 2025-09-05 12:41:25.038 00:06:00.146 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-05 12:47:10.339 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56362 10 6452 1 2025-09-05 12:48:10.744 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:33846 10 6452 1 2025-09-05 12:48:34.906 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 12:48:34.821 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 12:48:34.821 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 12:48:34.694 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 12:48:34.823 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 12:49:11.109 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41240 10 6452 1 2025-09-05 12:50:11.516 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50028 10 6452 1 2025-09-05 12:45:25.044 00:06:00.139 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 12:51:11.919 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57646 10 6452 1 2025-09-05 12:52:12.318 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55272 10 6452 1 2025-09-05 12:53:12.689 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:39848 10 6452 1 2025-09-05 12:48:25.042 00:06:00.146 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-05 12:53:34.961 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 12:53:34.806 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 12:53:34.831 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 12:53:34.899 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 12:53:34.982 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 12:54:13.112 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57564 10 6452 1 2025-09-05 12:55:13.478 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:52866 10 6452 1 2025-09-05 12:56:13.875 00:00:10.495 TCP 1.101.0.1:3000 -> 23.104.0.1:33462 10 6452 1 2025-09-05 12:57:14.409 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55052 10 6452 1 2025-09-05 12:52:25.046 00:06:00.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 12:58:14.811 00:00:10.883 TCP 1.101.0.1:3000 -> 23.104.0.1:48132 10 6452 1 2025-09-05 12:58:34.693 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 12:58:35.156 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 12:58:35.150 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 12:58:35.010 00:00:00.039 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 12:58:35.093 00:00:00.041 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 138, total bytes: 428739, total packets: 1026, avg bps: 919, avg pps: 0, avg bpp: 417 Time window: 2025-09-05 11:56:24 - 2025-09-05 12:58:35 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0050s User: 0.0000s Wall: 0.0029s flows/second: 46810.7 Runtime: 0.0030s