Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-05 13:58:40.923 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49976 10 6452 1 2025-09-05 13:59:41.325 00:00:10.971 TCP 1.101.0.1:3000 -> 23.104.0.1:58668 10 6452 1 2025-09-05 13:55:25.066 00:06:00.135 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 14:00:42.332 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:50996 10 6452 1 2025-09-05 14:01:42.695 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47014 10 6452 1 2025-09-05 14:02:43.059 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52242 10 6452 1 2025-09-05 13:58:25.064 00:06:00.141 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-05 14:03:36.369 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 14:03:36.369 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 14:03:36.267 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 14:03:36.293 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 14:03:36.376 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 14:03:43.461 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52880 10 6452 1 2025-09-05 14:04:43.864 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:52760 10 6452 1 2025-09-05 14:05:44.273 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40662 10 6452 1 2025-09-05 14:06:44.642 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:42628 10 6452 1 2025-09-05 14:02:25.067 00:06:00.139 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 14:07:45.019 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56012 10 6452 1 2025-09-05 14:08:36.500 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 14:08:36.433 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 14:08:36.469 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 14:08:36.329 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 14:08:36.412 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 14:08:45.419 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37458 10 6452 1 2025-09-05 14:09:45.827 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37946 12 6556 1 2025-09-05 14:05:25.068 00:06:00.142 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-05 14:10:46.233 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53814 10 6452 1 2025-09-05 14:11:46.638 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:45404 10 6452 1 2025-09-05 14:12:47.001 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36904 10 6452 1 2025-09-05 14:13:36.384 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 14:13:36.297 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 14:13:36.293 00:00:00.030 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 14:13:36.453 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 14:13:36.299 00:00:00.029 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 14:13:47.370 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34432 10 6452 1 2025-09-05 14:09:25.072 00:06:00.136 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 14:14:47.772 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:48050 10 6452 1 2025-09-05 14:15:48.184 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51786 10 6452 1 2025-09-05 14:16:48.586 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35632 10 6452 1 2025-09-05 14:12:25.069 00:06:00.141 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-05 14:17:48.985 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49324 10 6452 1 2025-09-05 14:18:36.514 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 14:18:36.555 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 14:18:36.621 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 14:18:36.672 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 14:18:36.431 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 14:18:49.397 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:59070 10 6452 1 2025-09-05 14:19:49.819 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39150 10 6452 1 2025-09-05 14:20:50.215 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43334 10 6452 1 2025-09-05 14:16:25.073 00:06:00.136 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 14:21:50.629 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53540 10 6452 1 2025-09-05 14:22:51.059 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34662 10 6452 1 2025-09-05 14:23:36.807 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 14:23:36.806 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 14:23:36.716 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 14:23:36.813 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 14:23:36.896 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 14:23:51.467 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33332 10 6452 1 2025-09-05 14:19:25.070 00:06:00.142 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-05 14:24:51.869 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:57398 10 6452 1 2025-09-05 14:25:52.284 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53644 10 6452 1 2025-09-05 14:26:52.689 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34996 10 6452 1 2025-09-05 14:27:53.110 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44378 10 6452 1 2025-09-05 14:23:25.081 00:06:00.130 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 14:28:36.635 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 14:28:36.644 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 14:28:36.559 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 14:28:36.926 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 14:28:37.010 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 14:28:53.516 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38980 10 6452 1 2025-09-05 14:29:53.933 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:49084 10 6452 1 2025-09-05 14:30:54.318 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37152 10 6452 1 2025-09-05 14:26:25.080 00:06:00.134 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-05 14:31:54.720 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:45676 10 6452 1 2025-09-05 14:32:55.138 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35638 10 6452 1 2025-09-05 14:33:36.771 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 14:33:36.946 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 14:33:36.773 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 14:33:36.880 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 14:33:36.853 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 14:33:55.543 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45532 10 6452 1 2025-09-05 14:34:55.943 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:49748 10 6452 1 2025-09-05 14:30:25.084 00:06:00.130 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 14:35:56.367 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39554 10 6452 1 2025-09-05 14:36:56.776 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58702 12 6556 1 2025-09-05 14:37:57.176 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60670 10 6452 1 2025-09-05 14:33:25.081 00:06:00.136 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-05 14:38:36.980 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 14:38:36.877 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 14:38:36.881 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 14:38:36.592 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 14:38:36.898 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 14:38:57.584 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36986 10 6452 1 2025-09-05 14:39:57.989 00:00:10.687 TCP 1.101.0.1:3000 -> 23.104.0.1:41024 10 6452 1 2025-09-05 14:40:58.707 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49414 10 6452 1 2025-09-05 14:41:59.111 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55658 10 6452 1 2025-09-05 14:37:25.084 00:06:00.130 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 14:42:59.512 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47514 10 6452 1 2025-09-05 14:43:37.166 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 14:43:36.900 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 14:43:36.913 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 14:43:37.118 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 14:43:37.202 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 14:43:59.914 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:48672 10 6452 1 2025-09-05 14:45:00.277 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59842 10 6452 1 2025-09-05 14:40:25.083 00:06:00.137 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-05 14:46:00.683 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39480 10 6452 1 2025-09-05 14:47:01.110 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38030 10 6452 1 2025-09-05 14:48:01.517 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52260 10 6452 1 2025-09-05 14:48:37.183 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 14:48:37.250 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 14:48:37.182 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 14:48:37.209 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 14:48:37.102 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 14:49:01.925 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:55718 10 6452 1 2025-09-05 14:44:25.085 00:06:00.132 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 14:50:02.340 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:51578 10 6452 1 2025-09-05 14:51:02.704 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38924 10 6452 1 2025-09-05 14:52:03.111 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:32828 10 6452 1 2025-09-05 14:47:25.083 00:06:00.139 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-05 14:53:03.511 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:33358 12 10367 1 2025-09-05 14:53:37.340 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 14:53:37.348 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 14:53:37.063 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 14:53:37.295 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 14:53:37.422 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 14:54:03.990 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40830 11 6492 1 2025-09-05 14:55:04.398 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36938 10 6452 1 2025-09-05 14:56:04.799 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55884 10 6452 1 2025-09-05 14:51:25.085 00:06:00.134 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 14:57:05.205 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37930 10 6452 1 2025-09-05 14:58:05.605 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49014 10 6452 1 2025-09-05 14:58:37.380 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 14:58:37.386 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 14:58:37.415 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 14:58:37.454 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 14:58:37.537 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 137, total bytes: 421040, total packets: 1025, avg bps: 888, avg pps: 0, avg bpp: 410 Time window: 2025-09-05 13:55:25 - 2025-09-05 14:58:37 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0030s User: 0.0015s Wall: 0.0023s flows/second: 60037.6 Runtime: 0.0023s