Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-08 01:58:44.143 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44526 10 6452 1 2025-09-08 01:59:48.612 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 01:59:48.316 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 01:59:48.497 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 01:59:48.530 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 01:59:48.567 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 01:59:44.545 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40996 10 6452 1 2025-09-08 02:00:44.905 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49556 10 6452 1 2025-09-08 02:01:45.310 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60976 10 6452 1 2025-09-08 01:57:26.216 00:06:00.114 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-08 02:02:45.709 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39254 10 6452 1 2025-09-08 01:58:26.215 00:06:00.120 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-08 02:03:46.119 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47080 10 6452 1 2025-09-08 02:04:48.741 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 02:04:48.660 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 02:04:48.715 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 02:04:48.713 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 02:04:48.391 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 02:04:46.525 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36044 10 6452 1 2025-09-08 02:05:46.928 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:44622 10 6452 1 2025-09-08 02:06:47.304 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45268 10 6452 1 2025-09-08 02:07:47.711 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:42000 10 6452 1 2025-09-08 02:08:48.132 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54610 10 6452 1 2025-09-08 02:04:26.217 00:06:00.116 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-08 02:09:48.447 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 02:09:48.478 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 02:09:48.580 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 02:09:48.552 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 02:09:48.635 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 02:09:48.533 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33618 10 6452 1 2025-09-08 02:05:26.215 00:06:00.120 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-08 02:10:48.933 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:60038 10 6452 1 2025-09-08 02:11:49.354 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60788 10 6452 1 2025-09-08 02:12:49.755 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:51708 10 6452 1 2025-09-08 02:13:50.124 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58160 10 6452 1 2025-09-08 02:14:48.826 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 02:14:48.808 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 02:14:48.929 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 02:14:48.871 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 02:14:48.745 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 02:14:50.546 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41810 10 6452 1 2025-09-08 02:15:50.959 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55458 10 6452 1 2025-09-08 02:11:26.231 00:06:00.106 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-08 02:16:51.366 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48952 12 6556 1 2025-09-08 02:12:26.216 00:06:00.123 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-08 02:17:51.769 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:42454 10 6452 1 2025-09-08 02:18:52.186 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45074 10 6452 1 2025-09-08 02:19:48.815 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 02:19:48.753 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 02:19:48.925 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 02:19:48.697 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 02:19:48.731 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 02:19:52.559 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51256 10 6452 1 2025-09-08 02:20:52.958 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48378 10 6452 1 2025-09-08 02:21:53.368 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39198 10 6452 1 2025-09-08 02:22:53.770 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:33078 10 6452 1 2025-09-08 02:18:26.224 00:06:00.117 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-08 02:23:54.142 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35868 10 6452 1 2025-09-08 02:19:26.219 00:06:00.122 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-08 02:24:49.086 00:00:00.046 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 02:24:48.939 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 02:24:49.120 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 02:24:48.843 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 02:24:49.004 00:00:00.045 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 02:24:54.543 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:42734 10 6452 1 2025-09-08 02:25:54.943 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:50214 10 6452 1 2025-09-08 02:26:55.358 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:60978 10 6452 1 2025-09-08 02:27:55.717 00:00:10.721 TCP 1.101.0.1:3000 -> 23.104.0.1:35272 10 6452 1 2025-09-08 02:28:56.483 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60464 10 6452 1 2025-09-08 02:29:49.014 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 02:29:49.108 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 02:29:49.107 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 02:29:49.066 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 02:29:48.932 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 02:29:56.883 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:54872 10 6452 1 2025-09-08 02:25:26.225 00:06:00.115 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-08 02:30:57.313 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58060 10 6452 1 2025-09-08 02:26:26.223 00:06:00.120 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-08 02:31:57.725 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55738 10 6452 1 2025-09-08 02:32:58.130 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:55726 10 6452 1 2025-09-08 02:33:58.493 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52038 10 6452 1 2025-09-08 02:34:49.766 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 02:34:49.772 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 02:34:49.487 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 02:34:49.704 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 02:34:49.786 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 02:34:58.895 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:42984 10 6452 1 2025-09-08 02:35:59.316 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38900 10 6452 1 2025-09-08 02:36:59.717 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:41252 10 6452 1 2025-09-08 02:32:26.225 00:06:00.116 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-08 02:38:00.143 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51830 10 6452 1 2025-09-08 02:33:26.224 00:06:00.120 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-08 02:39:00.547 00:00:10.413 TCP 1.101.0.1:3000 -> 23.104.0.1:43430 11 6504 1 2025-09-08 02:39:49.456 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 02:39:49.328 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 02:39:49.237 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 02:39:49.399 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 02:39:49.481 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 02:40:01.001 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44736 10 6452 1 2025-09-08 02:41:01.402 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34458 10 6452 1 2025-09-08 02:42:01.804 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54050 10 6452 1 2025-09-08 02:43:02.207 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39738 10 6452 1 2025-09-08 02:44:02.616 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37006 10 6452 1 2025-09-08 02:39:26.228 00:06:00.115 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-08 02:44:49.261 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 02:44:49.398 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 02:44:49.347 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 02:44:49.071 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 02:44:49.178 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 02:45:03.020 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55702 10 6452 1 2025-09-08 02:40:26.225 00:06:00.120 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-08 02:46:03.423 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33312 11 6492 1 2025-09-08 02:47:03.835 00:00:10.353 TCP 1.101.0.1:3000 -> 23.104.0.1:53312 10 6452 1 2025-09-08 02:48:04.224 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33596 10 6452 1 2025-09-08 02:49:04.635 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43722 10 6452 1 2025-09-08 02:49:49.586 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 02:49:49.510 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 02:49:49.385 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 02:49:49.326 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 02:49:49.504 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 02:50:05.042 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51454 10 6452 1 2025-09-08 02:51:05.444 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41616 10 6452 1 2025-09-08 02:46:26.231 00:06:00.115 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-08 02:52:05.855 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:38786 10 6452 1 2025-09-08 02:47:26.227 00:06:00.120 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-08 02:53:06.280 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36668 10 6452 1 2025-09-08 02:54:06.689 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:45122 12 10367 1 2025-09-08 02:54:49.509 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 02:54:49.501 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 02:54:49.639 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 02:54:49.523 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 02:54:49.426 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 02:55:07.169 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43992 10 6452 1 2025-09-08 02:56:07.574 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42550 10 6452 1 2025-09-08 02:57:07.972 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42574 10 6452 1 2025-09-08 02:58:08.336 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51386 10 6452 1 2025-09-08 02:53:26.231 00:06:00.116 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 Summary: total flows: 137, total bytes: 420988, total packets: 1024, avg bps: 905, avg pps: 0, avg bpp: 411 Time window: 2025-09-08 01:57:26 - 2025-09-08 02:59:26 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0034s User: 0.0009s Wall: 0.0019s flows/second: 71505.7 Runtime: 0.0019s