Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-07 08:58:59.208 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34862 10 6452 1 2025-09-07 08:59:28.044 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-07 08:54:25.875 00:06:00.110 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-07 08:59:28.047 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-07 08:59:27.770 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 08:59:27.929 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 08:59:28.015 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-07 08:59:59.568 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55080 10 6452 1 2025-09-07 09:00:59.969 00:00:10.636 TCP 1.101.0.1:3000 -> 23.104.0.1:45902 10 6452 1 2025-09-07 09:02:00.646 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50510 10 6452 1 2025-09-07 09:03:01.056 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40572 10 6452 1 2025-09-07 08:58:25.878 00:06:00.105 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-07 09:04:01.418 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45992 10 6452 1 2025-09-07 09:04:28.486 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-07 09:04:28.092 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-07 09:04:28.184 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-07 09:04:28.287 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 09:04:28.403 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 09:05:01.780 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:58790 12 6556 1 2025-09-07 09:06:02.187 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57978 10 6452 1 2025-09-07 09:01:25.877 00:06:00.112 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-07 09:07:02.591 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:32864 10 6452 1 2025-09-07 09:08:02.993 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36708 10 6452 1 2025-09-07 09:09:03.365 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:42026 10 6452 1 2025-09-07 09:09:28.071 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-07 09:09:28.168 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-07 09:09:27.983 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 09:09:28.333 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 09:09:28.416 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-07 09:10:03.764 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:39192 10 6452 1 2025-09-07 09:05:25.880 00:06:00.108 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-07 09:11:04.132 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55650 10 6452 1 2025-09-07 09:12:04.496 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57422 10 6452 1 2025-09-07 09:13:04.910 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35646 10 6452 1 2025-09-07 09:08:25.877 00:06:00.113 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-07 09:14:05.331 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59196 10 6452 1 2025-09-07 09:14:28.402 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-07 09:14:28.252 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-07 09:14:28.417 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-07 09:14:28.182 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 09:14:28.319 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 09:15:05.731 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:36668 10 6452 1 2025-09-07 09:16:06.109 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49418 10 6452 1 2025-09-07 09:17:06.518 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:45016 10 6452 1 2025-09-07 09:12:25.881 00:06:00.108 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-07 09:18:06.940 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:51664 10 6452 1 2025-09-07 09:19:07.360 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41504 10 6452 1 2025-09-07 09:19:28.396 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-07 09:19:28.468 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-07 09:19:28.438 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 09:19:28.462 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 09:19:28.546 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-07 09:20:07.763 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:59932 10 6452 1 2025-09-07 09:15:25.879 00:06:00.114 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-07 09:21:08.143 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36478 10 6452 1 2025-09-07 09:22:08.537 00:00:10.893 TCP 1.101.0.1:3000 -> 23.104.0.1:55842 10 6452 1 2025-09-07 09:23:09.470 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56420 10 6452 1 2025-09-07 09:24:09.874 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43816 10 6452 1 2025-09-07 09:24:28.667 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-07 09:24:28.632 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-07 09:24:28.582 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 09:24:28.504 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 09:19:25.882 00:06:00.109 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-07 09:24:28.586 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-07 09:25:10.277 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42648 10 6452 1 2025-09-07 09:26:10.680 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44452 10 6452 1 2025-09-07 09:27:11.111 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51648 10 6452 1 2025-09-07 09:22:25.881 00:06:00.115 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-07 09:28:11.510 00:00:10.993 TCP 1.101.0.1:3000 -> 23.104.0.1:43082 10 6452 1 2025-09-07 09:29:12.538 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54094 10 6452 1 2025-09-07 09:29:28.716 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-07 09:29:28.733 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-07 09:29:28.637 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-07 09:29:28.303 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 09:29:28.635 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 09:30:12.941 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:41430 10 6452 1 2025-09-07 09:31:13.321 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42738 10 6452 1 2025-09-07 09:26:25.886 00:06:00.109 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-07 09:32:13.721 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49240 10 6452 1 2025-09-07 09:33:14.135 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54524 10 6452 1 2025-09-07 09:34:14.540 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55170 10 6452 1 2025-09-07 09:34:28.727 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-07 09:34:28.729 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-07 09:29:25.883 00:06:00.118 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-07 09:34:28.820 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-07 09:34:28.767 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 09:34:28.646 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 09:35:14.948 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54412 10 6452 1 2025-09-07 09:36:15.356 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46998 10 6452 1 2025-09-07 09:37:15.758 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:60944 10 6452 1 2025-09-07 09:38:16.135 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57130 10 6452 1 2025-09-07 09:33:25.885 00:06:00.112 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-07 09:39:28.829 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-07 09:39:28.933 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-07 09:39:28.874 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-07 09:39:28.856 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 09:39:28.747 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 09:39:16.535 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40532 10 6452 1 2025-09-07 09:40:16.944 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:59106 10 6452 1 2025-09-07 09:36:25.884 00:05:00.118 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-07 09:41:17.359 00:00:22.379 TCP 1.101.0.1:3000 -> 23.104.0.1:42306 10 6452 1 2025-09-07 09:42:29.793 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:56402 10 6452 1 2025-09-07 09:43:30.169 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44820 10 6452 1 2025-09-07 09:44:29.010 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-07 09:40:25.888 00:05:00.112 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-07 09:44:28.976 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-07 09:44:28.913 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-07 09:44:28.627 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 09:44:28.926 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 09:44:30.577 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57560 10 6452 1 2025-09-07 09:45:30.993 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36616 10 6452 1 2025-09-07 09:42:25.888 00:05:00.117 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-07 09:46:31.401 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:38004 10 6452 1 2025-09-07 09:47:31.804 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:49700 10 6452 1 2025-09-07 09:48:32.172 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42758 10 6452 1 2025-09-07 09:49:28.915 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-07 09:49:28.922 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 09:49:29.077 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 09:49:29.062 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-07 09:49:29.160 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-07 09:49:32.575 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40574 10 6452 1 2025-09-07 09:46:25.890 00:05:00.145 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-07 09:50:32.982 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46936 10 6452 1 2025-09-07 09:51:33.384 00:00:10.934 TCP 1.101.0.1:3000 -> 23.104.0.1:52444 10 6452 1 2025-09-07 09:48:25.888 00:05:00.150 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-07 09:52:34.358 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47850 10 6452 1 2025-09-07 09:53:34.722 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:48688 12 10367 1 2025-09-07 09:54:29.271 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-07 09:54:28.980 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-07 09:54:28.900 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 09:54:29.274 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 09:54:29.358 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-07 09:54:35.201 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45810 10 6452 1 2025-09-07 09:55:35.606 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48274 10 6452 1 2025-09-07 09:52:25.892 00:05:00.145 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-07 09:56:36.010 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43682 10 6452 1 2025-09-07 09:57:36.419 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45926 10 6452 1 2025-09-07 09:54:25.891 00:05:00.150 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-07 09:58:36.838 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:47968 10 6452 1 Summary: total flows: 139, total bytes: 421757, total packets: 1036, avg bps: 865, avg pps: 0, avg bpp: 407 Time window: 2025-09-07 08:54:25 - 2025-09-07 09:59:26 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0019s User: 0.0019s Wall: 0.0018s flows/second: 75538.8 Runtime: 0.0019s