Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-10 16:59:27.779 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:35696 10 6452 1 2025-09-10 17:00:28.191 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34506 10 6452 1 2025-09-10 17:01:11.683 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-10 17:01:11.681 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-10 17:01:11.467 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 17:01:11.962 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 17:01:12.046 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-10 17:01:28.561 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34240 10 6452 1 2025-09-10 16:57:27.522 00:06:00.075 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-10 17:02:28.965 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55628 10 6452 1 2025-09-10 16:58:27.519 00:06:00.081 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-10 17:03:29.366 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37446 10 6452 1 2025-09-10 17:04:29.774 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44520 10 6452 1 2025-09-10 17:05:30.180 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43492 10 6452 1 2025-09-10 17:06:11.554 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-10 17:06:11.814 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-10 17:06:11.610 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 17:06:11.811 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 17:06:11.894 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-10 17:06:30.543 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45168 10 6452 1 2025-09-10 17:07:30.908 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:59998 10 6452 1 2025-09-10 17:08:31.275 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50730 10 6452 1 2025-09-10 17:04:27.526 00:06:00.074 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-10 17:09:31.676 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:50392 10 6452 1 2025-09-10 17:05:27.523 00:06:00.079 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-10 17:10:32.119 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:39054 10 6452 1 2025-09-10 17:11:11.810 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-10 17:11:11.820 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-10 17:11:11.895 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-10 17:11:11.834 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 17:11:11.728 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 17:11:32.523 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52872 10 6452 1 2025-09-10 17:12:32.929 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:42998 10 6452 1 2025-09-10 17:13:33.380 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40538 10 6452 1 2025-09-10 17:14:33.791 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:42776 10 6452 1 2025-09-10 17:15:34.219 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40282 10 6452 1 2025-09-10 17:16:11.874 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-10 17:16:11.860 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-10 17:16:11.860 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-10 17:16:11.832 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 17:16:11.793 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 17:11:27.530 00:06:00.070 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-10 17:16:34.621 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:46488 10 6452 1 2025-09-10 17:12:27.525 00:06:00.078 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-10 17:17:35.096 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49934 10 6452 1 2025-09-10 17:18:35.504 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40632 10 6452 1 2025-09-10 17:19:35.903 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:50630 10 6452 1 2025-09-10 17:20:36.278 00:00:11.191 TCP 1.101.0.1:3000 -> 23.104.0.1:46420 10 6452 1 2025-09-10 17:21:12.340 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-10 17:21:12.528 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-10 17:21:12.256 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-10 17:21:12.084 00:00:00.029 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 17:21:12.258 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 17:21:37.508 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58420 10 6452 1 2025-09-10 17:22:37.913 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35776 12 6556 1 2025-09-10 17:18:27.529 00:06:00.076 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-10 17:23:38.315 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39976 10 6452 1 2025-09-10 17:19:27.527 00:06:00.081 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-10 17:24:38.725 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:48194 10 6452 1 2025-09-10 17:25:39.144 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43514 10 6452 1 2025-09-10 17:26:12.196 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-10 17:26:12.242 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-10 17:26:11.986 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 17:26:12.088 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 17:26:12.172 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-10 17:26:39.550 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34970 10 6452 1 2025-09-10 17:27:39.959 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33730 10 6452 1 2025-09-10 17:28:40.324 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39304 10 6452 1 2025-09-10 17:29:40.726 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:37068 10 6452 1 2025-09-10 17:25:27.531 00:06:00.076 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-10 17:30:41.149 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60214 10 6452 1 2025-09-10 17:31:12.338 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-10 17:31:12.261 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-10 17:31:11.978 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 17:31:12.061 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 17:31:12.150 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-10 17:26:27.529 00:06:00.081 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-10 17:31:41.555 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37700 10 6452 1 2025-09-10 17:32:41.957 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56828 10 6452 1 2025-09-10 17:33:42.356 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41790 10 6452 1 2025-09-10 17:34:42.757 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:34516 10 6452 1 2025-09-10 17:35:43.135 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46600 10 6452 1 2025-09-10 17:36:12.643 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-10 17:36:12.582 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-10 17:36:12.448 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-10 17:36:12.364 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 17:36:12.561 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 17:36:43.547 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54186 10 6452 1 2025-09-10 17:32:27.533 00:06:00.076 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-10 17:37:43.948 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57300 10 6452 1 2025-09-10 17:33:27.531 00:06:00.080 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-10 17:38:44.361 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45360 10 6452 1 2025-09-10 17:39:44.765 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:47676 10 6452 1 2025-09-10 17:40:45.188 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33566 10 6452 1 2025-09-10 17:41:12.555 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-10 17:41:12.528 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-10 17:41:12.285 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-10 17:41:12.324 00:00:00.034 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 17:41:12.472 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 17:41:45.595 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38034 10 6452 1 2025-09-10 17:42:46.010 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59868 10 6452 1 2025-09-10 17:43:46.411 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47522 10 6452 1 2025-09-10 17:39:27.536 00:06:00.078 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-10 17:44:46.818 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:44756 10 6452 1 2025-09-10 17:40:27.533 00:06:00.084 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-10 17:45:47.185 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56382 10 6452 1 2025-09-10 17:46:12.633 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-10 17:46:12.600 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-10 17:46:12.592 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-10 17:46:12.501 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 17:46:12.551 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 17:46:47.585 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:51930 10 6452 1 2025-09-10 17:47:47.950 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:36962 10 6452 1 2025-09-10 17:48:48.324 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33856 10 6452 1 2025-09-10 17:49:48.726 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:48712 10 6452 1 2025-09-10 17:50:49.139 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37974 10 6452 1 2025-09-10 17:51:12.545 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-10 17:51:12.543 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-10 17:51:12.568 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 17:51:12.450 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 17:51:12.532 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-10 17:46:27.538 00:06:00.080 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-10 17:51:49.546 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43200 10 6452 1 2025-09-10 17:47:27.535 00:06:00.086 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-10 17:52:49.950 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41684 10 6452 1 2025-09-10 17:53:50.366 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36004 10 6452 1 2025-09-10 17:54:50.766 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:55298 10 6452 1 2025-09-10 17:55:51.178 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41860 10 6452 1 2025-09-10 17:56:12.910 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-10 17:56:12.804 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-10 17:56:12.764 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 17:56:12.804 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-10 17:56:12.888 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-10 17:56:51.578 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38218 10 6452 1 2025-09-10 17:57:51.977 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:51066 10 6452 1 2025-09-10 17:53:27.539 00:06:00.081 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 Summary: total flows: 136, total bytes: 410529, total packets: 1010, avg bps: 882, avg pps: 0, avg bpp: 406 Time window: 2025-09-10 16:57:27 - 2025-09-10 17:59:27 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0033s User: 0.0011s Wall: 0.0024s flows/second: 56171.9 Runtime: 0.0024s