Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-10 04:59:10.308 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50360 10 6452 1 2025-09-10 05:00:10.714 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48958 10 6452 1 2025-09-10 05:00:57.244 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-10 05:00:57.191 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-10 05:00:57.185 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-10 05:00:57.009 00:00:00.040 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 05:00:57.161 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 05:01:11.129 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59382 10 6452 1 2025-09-10 04:56:27.234 00:06:00.124 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-10 05:02:11.532 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:58096 10 6452 1 2025-09-10 04:57:27.232 00:06:00.129 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-10 05:03:11.894 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:56664 10 6452 1 2025-09-10 05:04:12.266 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57358 10 6452 1 2025-09-10 05:05:12.674 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45192 10 6452 1 2025-09-10 05:05:57.202 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-10 05:05:57.252 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-10 05:05:57.150 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 05:05:57.300 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 05:05:57.382 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-10 05:06:13.125 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52284 10 6452 1 2025-09-10 05:07:13.531 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53688 10 6452 1 2025-09-10 05:08:13.935 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:32954 10 6452 1 2025-09-10 05:03:27.237 00:06:00.123 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-10 05:09:14.355 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44430 10 6452 1 2025-09-10 05:04:27.235 00:06:00.129 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-10 05:10:14.757 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:35550 10 6452 1 2025-09-10 05:10:57.326 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-10 05:10:57.326 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-10 05:10:56.933 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 05:10:57.388 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 05:10:57.471 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-10 05:11:15.178 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38668 10 6452 1 2025-09-10 05:12:15.581 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55390 10 6452 1 2025-09-10 05:13:15.984 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:54574 10 6452 1 2025-09-10 05:14:16.346 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54592 10 6452 1 2025-09-10 05:10:27.239 00:06:00.123 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-10 05:15:16.757 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:46426 11 6492 1 2025-09-10 05:15:57.825 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 05:15:57.826 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-10 05:15:57.773 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-10 05:15:57.393 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 05:15:57.907 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-10 05:11:27.236 00:06:00.131 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-10 05:16:17.198 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56702 10 6452 1 2025-09-10 05:17:17.601 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50816 10 6452 1 2025-09-10 05:18:18.031 00:00:10.513 TCP 1.101.0.1:3000 -> 23.104.0.1:49824 14 14282 1 2025-09-10 05:19:18.580 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41254 10 6452 1 2025-09-10 05:20:18.987 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51604 10 6452 1 2025-09-10 05:20:57.539 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-10 05:20:57.431 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-10 05:20:57.435 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-10 05:20:57.529 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 05:20:57.456 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 05:21:19.353 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38130 10 6452 1 2025-09-10 05:17:27.247 00:06:00.119 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-10 05:22:19.713 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49232 10 6452 1 2025-09-10 05:18:27.244 00:06:00.125 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-10 05:23:20.104 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60382 10 6452 1 2025-09-10 05:24:20.510 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45660 10 6452 1 2025-09-10 05:25:20.914 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54012 10 6452 1 2025-09-10 05:25:57.560 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-10 05:25:57.397 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-10 05:25:57.437 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 05:25:57.630 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 05:25:57.712 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-10 05:26:21.310 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:44836 10 6452 1 2025-09-10 05:27:21.668 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43228 10 6452 1 2025-09-10 05:28:22.098 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59206 10 6452 1 2025-09-10 05:24:27.250 00:06:00.119 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-10 05:29:22.507 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35572 10 6452 1 2025-09-10 05:25:27.248 00:06:00.123 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-10 05:30:22.913 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45436 10 6452 1 2025-09-10 05:30:57.885 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-10 05:30:57.665 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-10 05:30:57.803 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-10 05:30:57.514 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 05:30:57.803 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 05:31:23.324 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35444 10 6452 1 2025-09-10 05:32:23.727 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60852 10 6452 1 2025-09-10 05:33:24.137 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34212 10 6452 1 2025-09-10 05:34:24.549 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56810 10 6452 1 2025-09-10 05:35:24.960 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48358 10 6452 1 2025-09-10 05:35:57.825 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-10 05:35:57.869 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-10 05:35:57.869 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-10 05:35:57.772 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 05:35:57.743 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 05:31:27.249 00:06:00.119 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-10 05:36:25.371 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:57752 10 6452 1 2025-09-10 05:32:27.250 00:06:00.123 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-10 05:37:25.780 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34266 10 6452 1 2025-09-10 05:38:26.187 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:56676 10 6452 1 2025-09-10 05:39:26.572 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40930 10 6452 1 2025-09-10 05:40:26.973 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37266 10 6452 1 2025-09-10 05:40:58.346 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-10 05:40:58.264 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 05:40:57.886 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-10 05:40:58.095 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-10 05:40:58.086 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 05:41:27.388 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:37188 10 6452 1 2025-09-10 05:42:27.754 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:60204 10 6452 1 2025-09-10 05:38:27.253 00:06:00.126 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-10 05:43:28.186 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53540 10 6452 1 2025-09-10 05:39:27.250 00:06:00.131 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-10 05:44:28.600 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47422 10 6452 1 2025-09-10 05:45:29.003 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56008 10 6452 1 2025-09-10 05:45:57.923 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-10 05:45:58.084 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-10 05:45:57.796 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 05:45:57.916 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 05:45:57.999 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-10 05:46:29.405 00:00:10.493 TCP 1.101.0.1:3000 -> 23.104.0.1:50790 10 6452 1 2025-09-10 05:47:29.938 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:50682 10 6452 1 2025-09-10 05:48:30.349 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47564 10 6452 1 2025-09-10 05:49:30.754 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:36020 10 6452 1 2025-09-10 05:45:27.256 00:06:00.124 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-10 05:50:31.168 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57740 10 6452 1 2025-09-10 05:50:58.201 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-10 05:50:58.153 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-10 05:50:58.167 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 05:50:58.252 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 05:50:58.335 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-10 05:46:27.253 00:06:00.131 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-10 05:51:31.567 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38696 10 6452 1 2025-09-10 05:52:31.972 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57934 10 6452 1 2025-09-10 05:53:32.340 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:56890 12 10367 1 2025-09-10 05:54:32.820 00:00:10.406 TCP 1.101.0.1:3000 -> 23.104.0.1:51378 10 6452 1 2025-09-10 05:55:33.272 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57482 10 6452 1 2025-09-10 05:55:58.526 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-10 05:55:58.445 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 05:55:58.115 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-10 05:55:58.351 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-10 05:55:58.218 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 05:56:33.673 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43788 10 6452 1 2025-09-10 05:52:27.256 00:06:00.125 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-10 05:57:34.110 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50706 10 6452 1 2025-09-10 05:53:27.255 00:06:00.131 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-10 05:58:34.518 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48280 10 6452 1 Summary: total flows: 138, total bytes: 429523, total packets: 1039, avg bps: 909, avg pps: 0, avg bpp: 413 Time window: 2025-09-10 04:56:27 - 2025-09-10 05:59:27 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0033s User: 0.0022s Wall: 0.0021s flows/second: 65064.5 Runtime: 0.0021s