Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-05 16:58:54.706 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47502 10 6452 1 2025-09-05 16:59:55.113 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35774 10 6452 1 2025-09-05 17:00:55.512 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41410 10 6452 1 2025-09-05 17:01:55.874 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:43824 10 6452 1 2025-09-05 16:57:25.114 00:06:00.149 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 17:02:56.313 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54738 10 6452 1 2025-09-05 17:03:39.958 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 17:03:39.870 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 17:03:39.832 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 17:03:40.120 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 17:03:40.037 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 17:03:56.725 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:39672 10 6452 1 2025-09-05 17:04:57.149 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58990 10 6452 1 2025-09-05 17:00:25.113 00:06:00.154 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-05 17:05:57.552 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52372 10 6452 1 2025-09-05 17:06:57.957 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49262 10 6452 1 2025-09-05 17:07:58.359 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35934 10 6452 1 2025-09-05 17:08:39.868 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 17:08:39.943 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 17:08:40.260 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 17:08:40.241 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 17:08:40.026 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 17:08:58.760 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:46334 10 6452 1 2025-09-05 17:04:25.116 00:06:00.148 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 17:09:59.179 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41704 10 6452 1 2025-09-05 17:10:59.543 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44698 10 6452 1 2025-09-05 17:11:59.899 00:00:10.405 TCP 1.101.0.1:3000 -> 23.104.0.1:51288 10 6452 1 2025-09-05 17:07:25.114 00:06:00.154 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-05 17:13:00.346 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55520 10 6452 1 2025-09-05 17:13:40.139 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 17:13:39.792 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 17:13:40.020 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 17:13:40.076 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 17:13:40.057 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 17:14:00.753 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59712 10 6452 1 2025-09-05 17:15:01.154 00:00:10.731 TCP 1.101.0.1:3000 -> 23.104.0.1:51578 10 6452 1 2025-09-05 17:16:01.937 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:46616 10 6452 1 2025-09-05 17:11:25.118 00:06:00.152 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 17:17:02.353 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41892 10 6452 1 2025-09-05 17:18:02.754 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:51652 10 6452 1 2025-09-05 17:18:40.204 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 17:18:40.032 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 17:18:40.218 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 17:18:40.135 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 17:18:40.218 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 17:19:03.174 00:00:10.986 TCP 1.101.0.1:3000 -> 23.104.0.1:38134 10 6452 1 2025-09-05 17:14:25.117 00:06:00.157 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-05 17:20:04.197 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:47652 10 6452 1 2025-09-05 17:21:04.595 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38712 10 6452 1 2025-09-05 17:22:04.957 00:00:10.693 TCP 1.101.0.1:3000 -> 23.104.0.1:48466 10 6452 1 2025-09-05 17:23:05.690 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:33822 10 6452 1 2025-09-05 17:18:25.120 00:06:00.152 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 17:23:40.139 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 17:23:40.135 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 17:23:40.037 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 17:23:40.238 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 17:23:40.321 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 17:24:06.110 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:54236 10 6452 1 2025-09-05 17:25:06.523 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48414 10 6452 1 2025-09-05 17:26:06.928 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:56164 10 6452 1 2025-09-05 17:21:25.118 00:06:00.159 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-05 17:27:07.364 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60516 10 6452 1 2025-09-05 17:28:07.765 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:52012 10 6452 1 2025-09-05 17:28:40.445 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 17:28:40.453 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 17:28:40.501 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 17:28:40.558 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 17:28:40.363 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 17:29:08.186 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35134 10 6452 1 2025-09-05 17:30:08.594 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55220 10 6452 1 2025-09-05 17:25:25.122 00:06:00.153 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 17:31:08.999 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39490 10 6452 1 2025-09-05 17:32:09.362 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39598 10 6452 1 2025-09-05 17:33:09.725 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60924 10 6452 1 2025-09-05 17:28:25.122 00:06:00.158 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-05 17:33:40.482 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 17:33:40.838 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 17:33:40.521 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 17:33:40.747 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 17:33:40.829 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 17:34:10.112 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34372 10 6452 1 2025-09-05 17:35:10.519 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35788 10 6452 1 2025-09-05 17:36:10.883 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:36046 12 6556 1 2025-09-05 17:37:11.321 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:34296 10 6452 1 2025-09-05 17:32:25.123 00:06:00.156 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 17:38:11.740 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36448 10 6452 1 2025-09-05 17:38:40.652 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 17:38:40.822 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 17:38:40.583 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 17:38:40.562 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 17:38:40.646 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 17:39:12.148 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:36210 10 6452 1 2025-09-05 17:40:12.518 00:00:10.848 TCP 1.101.0.1:3000 -> 23.104.0.1:35290 10 6452 1 2025-09-05 17:35:25.124 00:06:00.160 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-05 17:41:13.405 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:45634 10 6452 1 2025-09-05 17:42:13.772 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60238 10 6452 1 2025-09-05 17:43:14.181 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35756 10 6452 1 2025-09-05 17:43:40.849 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 17:43:40.817 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 17:43:40.775 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 17:43:40.581 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 17:43:40.767 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 17:44:14.584 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33850 10 6452 1 2025-09-05 17:39:25.128 00:06:00.155 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 17:45:14.990 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36900 12 6556 1 2025-09-05 17:46:15.405 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51026 10 6452 1 2025-09-05 17:47:15.807 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34948 10 6452 1 2025-09-05 17:42:25.124 00:06:00.160 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-05 17:48:16.206 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54118 10 6452 1 2025-09-05 17:48:40.963 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 17:48:40.877 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 17:48:40.728 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 17:48:40.840 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 17:48:40.880 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 17:49:16.568 00:00:10.616 TCP 1.101.0.1:3000 -> 23.104.0.1:60376 10 6452 1 2025-09-05 17:50:17.229 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:59048 10 6452 1 2025-09-05 17:46:25.132 00:06:00.151 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 17:51:17.583 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:48590 10 6452 1 2025-09-05 17:52:17.970 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53052 10 6452 1 2025-09-05 17:53:18.332 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55178 10 6452 1 2025-09-05 17:53:41.389 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 17:53:41.096 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 17:53:41.304 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 17:53:40.964 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 17:53:41.306 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 17:54:18.692 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36228 10 6452 1 2025-09-05 17:49:25.129 00:06:00.157 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-05 17:55:19.112 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:48268 10 6452 1 2025-09-05 17:56:19.472 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38606 10 6452 1 2025-09-05 17:57:19.836 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:39264 10 6452 1 2025-09-05 17:53:25.132 00:06:00.153 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 17:58:20.259 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34220 10 6452 1 2025-09-05 17:58:41.066 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 17:58:40.981 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 17:58:40.969 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 17:58:40.838 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 17:58:40.983 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 Summary: total flows: 137, total bytes: 417085, total packets: 1022, avg bps: 896, avg pps: 0, avg bpp: 408 Time window: 2025-09-05 16:57:25 - 2025-09-05 17:59:25 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0020s User: 0.0029s Wall: 0.0017s flows/second: 78736.6 Runtime: 0.0018s