Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-12 12:58:59.843 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:58402 10 6452 1 2025-09-12 13:00:00.262 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40128 10 6452 1 2025-09-12 13:01:00.667 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46222 10 6452 1 2025-09-12 12:56:28.515 00:06:00.013 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 13:02:04.528 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 13:02:04.642 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 13:02:04.430 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 13:02:04.680 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 13:02:04.763 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 13:02:01.107 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49086 10 6452 1 2025-09-12 13:03:01.509 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50420 10 6452 1 2025-09-12 12:58:28.517 00:06:00.011 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 757 1 2025-09-12 13:04:01.920 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:52442 10 6452 1 2025-09-12 13:05:02.342 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53444 10 6452 1 2025-09-12 13:06:02.744 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42916 10 6452 1 2025-09-12 13:07:04.785 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 13:07:04.747 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 13:07:04.631 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 13:07:04.351 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 13:07:04.701 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 13:07:03.150 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:39830 10 6452 1 2025-09-12 13:08:03.529 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51802 10 6452 1 2025-09-12 13:03:28.525 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 13:09:03.965 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40316 10 6452 1 2025-09-12 13:10:04.372 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54018 10 6452 1 2025-09-12 13:05:28.525 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-12 13:11:04.733 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37766 10 6452 1 2025-09-12 13:12:04.911 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 13:12:04.874 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 13:12:04.786 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 13:12:04.753 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 13:12:04.827 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 13:12:05.147 00:00:10.724 TCP 1.101.0.1:3000 -> 23.104.0.1:56354 10 6452 1 2025-09-12 13:13:05.908 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57972 12 6556 1 2025-09-12 13:14:06.312 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38270 10 6452 1 2025-09-12 13:15:06.712 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45762 10 6452 1 2025-09-12 13:10:28.526 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 13:16:07.120 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:46600 10 6452 1 2025-09-12 13:17:04.986 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 13:17:04.925 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 13:17:04.902 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 13:17:05.157 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 13:17:05.231 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 13:17:07.484 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60326 10 6452 1 2025-09-12 13:12:28.526 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-12 13:18:07.883 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:41342 10 6452 1 2025-09-12 13:19:08.260 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58546 10 6452 1 2025-09-12 13:20:08.663 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58000 10 6452 1 2025-09-12 13:21:09.090 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39572 10 6452 1 2025-09-12 13:22:04.889 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 13:22:04.807 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 13:22:04.806 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 13:22:05.179 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 13:22:05.155 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 13:22:09.503 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:38164 10 6452 1 2025-09-12 13:17:28.526 00:06:00.004 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 13:23:09.860 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:49662 10 6452 1 2025-09-12 13:24:10.279 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44826 10 6452 1 2025-09-12 13:19:28.529 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-12 13:25:10.684 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:49398 10 6452 1 2025-09-12 13:26:11.113 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60908 10 6452 1 2025-09-12 13:27:04.846 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 13:27:04.761 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 13:27:05.084 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 13:27:05.085 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 13:27:05.122 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 13:27:11.521 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58392 10 6452 1 2025-09-12 13:28:11.929 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:47198 10 6452 1 2025-09-12 13:29:12.316 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47704 10 6452 1 2025-09-12 13:24:28.529 00:06:00.004 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 13:30:12.721 00:00:11.051 TCP 1.101.0.1:3000 -> 23.104.0.1:48390 10 6452 1 2025-09-12 13:31:13.810 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42966 10 6452 1 2025-09-12 13:26:28.532 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-12 13:32:05.052 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 13:32:05.261 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 13:32:05.086 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 13:32:05.137 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 13:32:05.222 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 13:32:14.210 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:52560 10 6452 1 2025-09-12 13:33:14.573 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59594 10 6452 1 2025-09-12 13:34:14.976 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:58316 10 6452 1 2025-09-12 13:35:15.394 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49466 10 6452 1 2025-09-12 13:31:28.530 00:06:00.004 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 13:36:15.801 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36128 10 6452 1 2025-09-12 13:37:05.301 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 13:37:05.340 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 13:37:05.222 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 13:37:05.075 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 13:37:05.218 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 13:37:16.215 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33796 10 6452 1 2025-09-12 13:33:28.531 00:06:00.005 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-12 13:38:16.618 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39296 10 6452 1 2025-09-12 13:39:17.026 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:37574 10 6452 1 2025-09-12 13:40:17.394 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37548 10 6452 1 2025-09-12 13:41:17.798 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:38040 10 6452 1 2025-09-12 13:42:05.233 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 13:42:05.525 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 13:42:05.302 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 13:42:05.235 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 13:42:05.317 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 13:42:18.163 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:54792 11 6504 1 2025-09-12 13:43:18.616 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52648 10 6452 1 2025-09-12 13:38:28.533 00:06:00.004 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 13:44:19.023 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49556 10 6452 1 2025-09-12 13:45:19.423 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60330 10 6452 1 2025-09-12 13:40:28.534 00:06:00.007 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-12 13:46:19.837 00:00:10.555 TCP 1.101.0.1:3000 -> 23.104.0.1:49272 10 6452 1 2025-09-12 13:47:05.699 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 13:47:05.574 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 13:47:05.433 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 13:47:05.149 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 13:47:05.617 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 13:47:20.435 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58234 10 6452 1 2025-09-12 13:48:20.837 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:43638 10 6452 1 2025-09-12 13:49:21.282 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:53390 10 6452 1 2025-09-12 13:45:28.536 00:06:00.007 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 13:50:21.652 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36386 10 6452 1 2025-09-12 13:51:22.067 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:34388 10 6452 1 2025-09-12 13:52:05.816 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 13:52:05.785 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 13:52:05.459 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 13:52:05.669 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 13:52:05.734 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 13:47:28.539 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 757 1 2025-09-12 13:52:22.428 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60962 10 6452 1 2025-09-12 13:53:22.846 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:52464 10 6452 1 2025-09-12 13:54:23.271 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:45672 10 6452 1 2025-09-12 13:55:23.630 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50464 10 6452 1 2025-09-12 13:56:24.037 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58674 10 6452 1 2025-09-12 13:57:05.720 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 13:57:05.710 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 13:57:05.589 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 13:57:05.717 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 13:57:05.800 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 13:52:28.538 00:06:00.010 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 13:57:24.444 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:46570 10 6452 1 2025-09-12 13:58:24.808 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:41162 12 10367 1 Summary: total flows: 137, total bytes: 420740, total packets: 1019, avg bps: 903, avg pps: 0, avg bpp: 412 Time window: 2025-09-12 12:56:28 - 2025-09-12 13:58:35 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0019s User: 0.0028s Wall: 0.0026s flows/second: 53512.7 Runtime: 0.0026s