Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-11 02:58:45.883 00:00:10.463 TCP 1.101.0.1:3000 -> 23.104.0.1:40176 12 6556 1 2025-09-11 02:59:46.383 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38298 10 6452 1 2025-09-11 03:00:46.787 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:32890 10 6452 1 2025-09-11 03:01:23.909 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-11 03:01:23.748 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-11 03:01:23.708 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-11 03:01:23.590 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-11 03:01:23.674 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-11 03:01:47.199 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40556 10 6452 1 2025-09-11 03:02:47.603 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44566 10 6452 1 2025-09-11 03:03:48.007 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:39044 10 6452 1 2025-09-11 02:59:27.742 00:06:00.052 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-11 03:04:48.401 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44040 10 6452 1 2025-09-11 03:00:27.739 00:06:00.058 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-11 03:05:48.801 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46092 10 6452 1 2025-09-11 03:06:23.875 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-11 03:06:23.492 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-11 03:06:23.727 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-11 03:06:23.941 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-11 03:06:24.025 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-11 03:06:49.204 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42698 10 6452 1 2025-09-11 03:07:49.611 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60660 10 6452 1 2025-09-11 03:08:50.012 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37498 10 6452 1 2025-09-11 03:09:50.413 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44016 10 6452 1 2025-09-11 03:10:50.814 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46316 10 6452 1 2025-09-11 03:11:24.021 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-11 03:11:23.689 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-11 03:11:23.695 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-11 03:11:23.801 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-11 03:11:23.939 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-11 03:06:27.743 00:06:00.053 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-11 03:11:51.217 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35552 10 6452 1 2025-09-11 03:07:27.741 00:06:00.058 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-11 03:12:51.630 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:52056 11 6504 1 2025-09-11 03:13:52.103 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37396 10 6452 1 2025-09-11 03:14:52.503 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42330 10 6452 1 2025-09-11 03:15:52.911 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:56290 10 6452 1 2025-09-11 03:16:24.075 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-11 03:16:23.921 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-11 03:16:23.941 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-11 03:16:23.922 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-11 03:16:24.006 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-11 03:16:53.275 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48690 10 6452 1 2025-09-11 03:17:53.683 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:43478 10 6452 1 2025-09-11 03:13:27.747 00:06:00.050 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-11 03:18:54.115 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:51058 10 6452 1 2025-09-11 03:14:27.744 00:06:00.055 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-11 03:19:54.602 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56210 10 6452 1 2025-09-11 03:20:55.010 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37934 10 6452 1 2025-09-11 03:21:24.466 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-11 03:21:24.350 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-11 03:21:24.285 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-11 03:21:24.315 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-11 03:21:24.384 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-11 03:21:55.414 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38892 10 6452 1 2025-09-11 03:22:55.821 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41880 10 6452 1 2025-09-11 03:23:56.249 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:53964 10 6452 1 2025-09-11 03:24:56.606 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44788 10 6452 1 2025-09-11 03:20:27.747 00:06:00.051 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-11 03:25:57.015 00:00:10.897 TCP 1.101.0.1:3000 -> 23.104.0.1:48102 10 6452 1 2025-09-11 03:26:24.068 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-11 03:26:23.987 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-11 03:26:24.203 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-11 03:26:24.153 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-11 03:26:23.985 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-11 03:21:27.744 00:06:00.056 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-11 03:26:57.952 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:39436 10 6452 1 2025-09-11 03:27:58.319 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35498 10 6452 1 2025-09-11 03:28:58.724 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:52414 10 6452 1 2025-09-11 03:29:59.141 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55194 10 6452 1 2025-09-11 03:30:59.549 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56358 10 6452 1 2025-09-11 03:31:24.371 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-11 03:31:24.367 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-11 03:31:24.066 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-11 03:31:24.325 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-11 03:31:24.408 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-11 03:31:59.954 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:44598 10 6452 1 2025-09-11 03:27:27.754 00:06:00.062 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-11 03:33:00.359 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:50812 10 6452 1 2025-09-11 03:28:27.751 00:06:00.068 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-11 03:34:00.731 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46278 10 6452 1 2025-09-11 03:35:01.139 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34924 10 6452 1 2025-09-11 03:36:01.539 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51126 10 6452 1 2025-09-11 03:36:24.419 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-11 03:36:24.328 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-11 03:36:23.981 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-11 03:36:24.454 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-11 03:36:24.537 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-11 03:37:01.942 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:34298 10 6452 1 2025-09-11 03:38:02.366 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52270 10 6452 1 2025-09-11 03:39:02.766 00:00:10.688 TCP 1.101.0.1:3000 -> 23.104.0.1:56388 10 6452 1 2025-09-11 03:34:27.756 00:06:00.063 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-11 03:40:03.492 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40284 10 6452 1 2025-09-11 03:35:27.753 00:06:00.069 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-11 03:41:03.858 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:33948 10 6452 1 2025-09-11 03:41:24.508 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-11 03:41:24.427 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-11 03:41:24.410 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-11 03:41:24.464 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-11 03:41:24.425 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-11 03:42:04.281 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46832 10 6452 1 2025-09-11 03:43:04.681 00:00:10.948 TCP 1.101.0.1:3000 -> 23.104.0.1:39936 10 6452 1 2025-09-11 03:44:05.668 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35120 10 6452 1 2025-09-11 03:45:06.103 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48176 10 6452 1 2025-09-11 03:46:06.516 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34496 10 6452 1 2025-09-11 03:46:24.572 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-11 03:46:24.490 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-11 03:46:24.507 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-11 03:46:24.582 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-11 03:46:24.489 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-11 03:41:27.758 00:06:00.062 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-11 03:47:06.920 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:40700 10 6452 1 2025-09-11 03:42:27.756 00:06:00.068 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-11 03:48:07.339 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:32810 10 6452 1 2025-09-11 03:49:07.740 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49504 10 6452 1 2025-09-11 03:50:08.149 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40188 10 6452 1 2025-09-11 03:51:08.546 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35750 10 6452 1 2025-09-11 03:51:24.938 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-11 03:51:24.933 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-11 03:51:25.093 00:00:00.043 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-11 03:51:25.005 00:00:00.048 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-11 03:51:25.013 00:00:00.041 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-11 03:52:08.950 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:40486 10 6452 1 2025-09-11 03:53:09.363 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59154 10 6452 1 2025-09-11 03:48:27.799 00:06:00.022 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-11 03:54:09.765 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40110 10 6452 1 2025-09-11 03:49:27.755 00:06:00.069 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-11 03:55:10.168 00:00:10.936 TCP 1.101.0.1:3000 -> 23.104.0.1:33380 10 6452 1 2025-09-11 03:56:24.847 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-11 03:56:11.141 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40662 10 6452 1 2025-09-11 03:56:24.604 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-11 03:56:24.730 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-11 03:56:24.847 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-11 03:56:24.930 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-11 03:57:11.544 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:44134 10 6452 1 2025-09-11 03:58:11.939 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:57570 10 6452 1 Summary: total flows: 136, total bytes: 416172, total packets: 1007, avg bps: 930, avg pps: 0, avg bpp: 413 Time window: 2025-09-11 02:58:45 - 2025-09-11 03:58:22 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0023s User: 0.0023s Wall: 0.0014s flows/second: 95709.0 Runtime: 0.0014s