Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-12 03:58:47.837 00:00:10.353 TCP 1.101.0.1:3000 -> 23.104.0.1:48680 10 6452 1 2025-09-12 03:59:48.235 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41020 10 6452 1 2025-09-12 04:00:48.637 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:43644 10 6452 1 2025-09-12 04:01:53.571 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 04:01:53.571 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 04:01:53.639 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 04:01:53.570 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 04:01:53.652 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 04:01:49.009 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37446 10 6452 1 2025-09-12 03:57:28.308 00:06:00.038 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 04:02:49.408 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43264 10 6452 1 2025-09-12 04:03:49.822 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53496 10 6452 1 2025-09-12 03:59:28.342 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-12 04:04:50.187 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33998 10 6452 1 2025-09-12 04:05:50.589 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40600 10 6452 1 2025-09-12 04:06:53.908 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 04:06:53.891 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 04:06:53.821 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 04:06:53.708 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 04:06:53.826 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 04:06:50.999 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51144 10 6452 1 2025-09-12 04:07:51.395 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:44486 11 6504 1 2025-09-12 04:08:51.858 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:53002 10 6452 1 2025-09-12 04:04:28.309 00:06:00.039 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 04:09:52.234 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37916 10 6452 1 2025-09-12 04:10:52.637 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38910 10 6452 1 2025-09-12 04:06:28.343 00:06:00.004 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-12 04:11:54.009 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 04:11:53.924 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 04:11:53.919 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 04:11:53.945 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 04:11:53.926 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 04:11:53.039 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:47128 10 6452 1 2025-09-12 04:12:53.400 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:55190 10 6452 1 2025-09-12 04:13:53.759 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:50994 10 6452 1 2025-09-12 04:14:54.182 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52710 10 6452 1 2025-09-12 04:15:54.589 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33850 10 6452 1 2025-09-12 04:11:28.316 00:06:00.033 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 04:16:53.894 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 04:16:53.998 00:00:00.042 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 04:16:53.999 00:00:00.045 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 04:16:53.631 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 04:16:53.976 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 04:16:54.998 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53960 10 6452 1 2025-09-12 04:17:55.398 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57204 10 6452 1 2025-09-12 04:13:28.347 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-12 04:18:55.802 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:60172 10 6452 1 2025-09-12 04:19:56.211 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:55980 10 6452 1 2025-09-12 04:20:56.582 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40878 10 6452 1 2025-09-12 04:21:54.140 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 04:21:54.411 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 04:21:53.834 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 04:21:54.457 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 04:21:54.541 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 04:21:56.941 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:58740 10 6452 1 2025-09-12 04:22:57.356 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:52270 10 6452 1 2025-09-12 04:18:28.318 00:06:00.035 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 04:23:57.714 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45938 10 6452 1 2025-09-12 04:24:58.129 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59758 10 6452 1 2025-09-12 04:20:28.348 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-12 04:25:58.537 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:49980 10 6452 1 2025-09-12 04:26:54.362 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 04:26:54.109 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 04:26:54.277 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 04:26:54.332 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 04:26:54.281 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 04:26:58.921 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:52956 10 6452 1 2025-09-12 04:27:59.301 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58040 10 6452 1 2025-09-12 04:28:59.704 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55216 10 6452 1 2025-09-12 04:30:00.113 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48328 10 6452 1 2025-09-12 04:25:28.320 00:06:00.037 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 04:31:00.519 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60654 10 6452 1 2025-09-12 04:31:54.337 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 04:31:54.319 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 04:31:54.173 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 04:31:54.256 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 04:31:54.250 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 04:32:00.929 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:39974 10 6452 1 2025-09-12 04:27:28.351 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-12 04:33:01.357 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51636 10 6452 1 2025-09-12 04:34:01.758 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:48858 10 6452 1 2025-09-12 04:35:02.176 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51318 10 6452 1 2025-09-12 04:36:02.543 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39146 10 6452 1 2025-09-12 04:36:54.440 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 04:36:54.397 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 04:36:54.352 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 04:36:54.438 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 04:36:54.521 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 04:37:02.938 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:35206 10 6452 1 2025-09-12 04:32:28.322 00:06:00.037 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 04:38:03.366 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49848 10 6452 1 2025-09-12 04:39:03.766 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:58562 10 6452 1 2025-09-12 04:34:28.355 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-12 04:40:04.140 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:44616 10 6452 1 2025-09-12 04:41:04.503 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37436 10 6452 1 2025-09-12 04:41:54.617 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 04:41:54.581 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 04:41:54.481 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 04:41:54.423 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 04:41:54.536 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 04:42:04.906 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46412 12 6556 1 2025-09-12 04:43:05.312 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33550 10 6452 1 2025-09-12 04:44:05.718 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:36842 10 6452 1 2025-09-12 04:39:28.324 00:06:00.038 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 04:45:06.112 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45530 10 6452 1 2025-09-12 04:46:06.513 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36294 10 6452 1 2025-09-12 04:41:28.359 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-12 04:46:54.636 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 04:46:54.872 00:00:00.013 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 04:46:54.832 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 04:46:54.737 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 04:46:54.820 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 04:47:06.914 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34992 10 6452 1 2025-09-12 04:48:07.336 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45504 10 6452 1 2025-09-12 04:49:07.743 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37724 10 6452 1 2025-09-12 04:50:08.153 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49534 10 6452 1 2025-09-12 04:51:08.567 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36384 10 6452 1 2025-09-12 04:46:28.326 00:06:00.038 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 04:51:54.756 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 04:51:54.580 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 04:51:54.839 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 04:51:54.601 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 04:51:54.674 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 04:52:08.969 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:47054 10 6452 1 2025-09-12 04:53:09.389 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52326 10 6452 1 2025-09-12 04:48:28.360 00:06:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-12 04:54:09.805 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59806 10 6452 1 2025-09-12 04:55:10.212 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:52418 10 6452 1 2025-09-12 04:56:10.625 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37570 10 6452 1 2025-09-12 04:56:54.827 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 04:56:54.782 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 04:56:54.615 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 04:56:54.827 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 04:56:54.908 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 04:57:11.032 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:46726 10 6452 1 2025-09-12 04:58:11.420 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38014 10 6452 1 2025-09-12 04:53:28.327 00:06:00.039 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 Summary: total flows: 137, total bytes: 414121, total packets: 965, avg bps: 890, avg pps: 0, avg bpp: 429 Time window: 2025-09-12 03:57:28 - 2025-09-12 04:59:28 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0030s User: 0.0020s Wall: 0.0022s flows/second: 61084.3 Runtime: 0.0023s