Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-08 13:58:48.230 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:59068 10 6452 1 2025-09-08 13:59:48.592 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41506 10 6452 1 2025-09-08 14:00:10.211 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 14:00:10.287 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 14:00:10.369 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 14:00:10.074 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 14:00:10.129 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 14:00:48.997 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46148 10 6452 1 2025-09-08 14:01:49.401 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51380 10 6452 1 2025-09-08 14:02:49.801 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35788 10 6452 1 2025-09-08 13:58:26.459 00:06:00.104 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-08 14:03:50.205 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:52170 10 6452 1 2025-09-08 13:59:26.458 00:06:00.109 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-08 14:04:50.603 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37118 10 6452 1 2025-09-08 14:05:10.320 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 14:05:10.488 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 14:05:10.440 00:00:00.032 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 14:05:10.321 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 14:05:10.404 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 14:05:51.005 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40976 10 6452 1 2025-09-08 14:06:51.409 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36890 10 6452 1 2025-09-08 14:07:51.811 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43706 10 6452 1 2025-09-08 14:08:52.225 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42750 10 6452 1 2025-09-08 14:09:52.629 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:43682 10 6452 1 2025-09-08 14:10:10.683 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 14:10:10.398 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 14:10:10.554 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 14:10:10.234 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 14:10:10.600 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 14:05:26.462 00:06:00.104 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-08 14:10:52.993 00:00:10.930 TCP 1.101.0.1:3000 -> 23.104.0.1:37592 10 6452 1 2025-09-08 14:06:26.458 00:06:00.112 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-08 14:11:53.960 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:52902 10 6452 1 2025-09-08 14:12:54.330 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39030 10 6452 1 2025-09-08 14:13:54.737 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57774 10 6452 1 2025-09-08 14:15:10.519 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 14:14:55.155 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46400 10 6452 1 2025-09-08 14:15:10.343 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 14:15:10.435 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 14:15:10.166 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 14:15:10.437 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 14:15:55.569 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38622 10 6452 1 2025-09-08 14:16:55.972 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:47586 10 6452 1 2025-09-08 14:12:26.461 00:06:00.109 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-08 14:17:56.353 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44398 10 6452 1 2025-09-08 14:13:26.460 00:06:00.114 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-08 14:18:56.755 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36080 10 6452 1 2025-09-08 14:19:57.157 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49420 10 6452 1 2025-09-08 14:20:10.683 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 14:20:10.601 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 14:20:10.559 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 14:20:10.596 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 14:20:10.679 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 14:20:57.569 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:41450 10 6452 1 2025-09-08 14:21:57.992 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60880 10 6452 1 2025-09-08 14:22:58.397 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43808 12 6556 1 2025-09-08 14:23:58.804 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34270 10 6452 1 2025-09-08 14:19:26.462 00:06:00.111 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-08 14:24:59.207 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42390 10 6452 1 2025-09-08 14:25:10.783 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 14:25:10.866 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 14:25:10.865 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 14:25:10.757 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 14:25:10.701 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 14:20:26.460 00:06:00.115 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-08 14:25:59.609 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:46848 10 6452 1 2025-09-08 14:26:59.983 00:00:10.542 TCP 1.101.0.1:3000 -> 23.104.0.1:49342 10 6452 1 2025-09-08 14:28:00.581 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37196 10 6452 1 2025-09-08 14:29:00.985 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60984 10 6452 1 2025-09-08 14:30:10.892 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 14:30:01.391 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50412 10 6452 1 2025-09-08 14:30:10.750 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 14:30:10.854 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 14:30:10.888 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 14:30:10.970 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 14:31:01.797 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35452 10 6452 1 2025-09-08 14:26:26.467 00:06:00.108 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-08 14:32:02.204 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:51242 10 6452 1 2025-09-08 14:27:26.465 00:06:00.113 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-08 14:33:02.565 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44322 10 6452 1 2025-09-08 14:34:02.968 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33818 10 6452 1 2025-09-08 14:35:10.906 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 14:35:10.894 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 14:35:10.937 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 14:35:03.374 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41618 10 6452 1 2025-09-08 14:35:10.863 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 14:35:10.824 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 14:36:03.781 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38554 10 6452 1 2025-09-08 14:37:04.192 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54354 10 6452 1 2025-09-08 14:38:04.591 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42872 10 6452 1 2025-09-08 14:33:26.467 00:06:00.115 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-08 14:39:05.001 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38524 10 6452 1 2025-09-08 14:34:26.465 00:06:00.122 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-08 14:40:11.020 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 14:40:10.876 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 14:40:10.946 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 14:40:10.893 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 14:40:10.937 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 14:40:05.409 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40896 10 6452 1 2025-09-08 14:41:05.808 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:40384 10 6452 1 2025-09-08 14:42:06.219 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:38856 10 6452 1 2025-09-08 14:43:06.578 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44958 10 6452 1 2025-09-08 14:44:06.978 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53964 10 6452 1 2025-09-08 14:45:11.204 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 14:45:11.121 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 14:45:11.120 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 14:45:10.922 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 14:45:11.122 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 14:45:07.384 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:46360 10 6452 1 2025-09-08 14:40:26.473 00:06:00.112 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-08 14:46:07.742 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35810 10 6452 1 2025-09-08 14:41:26.472 00:06:00.117 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-08 14:47:08.161 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54104 10 6452 1 2025-09-08 14:48:08.531 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39614 10 6452 1 2025-09-08 14:49:08.945 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:47432 10 6452 1 2025-09-08 14:50:11.661 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 14:50:11.480 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 14:50:11.620 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 14:50:11.213 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 14:50:11.580 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 14:50:09.331 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46890 10 6452 1 2025-09-08 14:51:09.733 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49348 10 6452 1 2025-09-08 14:52:10.140 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:57534 10 6452 1 2025-09-08 14:47:26.476 00:06:00.112 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-08 14:53:10.503 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35988 10 6452 1 2025-09-08 14:48:26.474 00:06:00.116 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-08 14:54:10.903 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60020 10 6452 1 2025-09-08 14:55:11.247 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-08 14:55:11.164 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-08 14:55:11.312 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-08 14:55:11.275 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 14:55:11.164 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-08 14:55:11.309 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36250 10 6452 1 2025-09-08 14:56:11.713 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46328 10 6452 1 2025-09-08 14:57:12.120 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37476 10 6452 1 2025-09-08 14:58:12.521 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44856 10 6452 1 Summary: total flows: 136, total bytes: 416120, total packets: 1006, avg bps: 925, avg pps: 0, avg bpp: 413 Time window: 2025-09-08 13:58:26 - 2025-09-08 14:58:22 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0042s User: 0.0008s Wall: 0.0018s flows/second: 74390.4 Runtime: 0.0018s