Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-12 14:58:50.855 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:46804 10 6452 1 2025-09-12 14:59:51.233 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37826 10 6452 1 2025-09-12 14:55:28.558 00:06:00.026 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 15:00:51.638 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57554 10 6452 1 2025-09-12 15:01:52.000 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44710 10 6452 1 2025-09-12 15:02:07.463 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 15:02:07.334 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 15:02:07.537 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 15:02:07.428 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 15:02:07.546 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 14:57:28.580 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-12 15:02:52.405 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51992 10 6452 1 2025-09-12 15:03:52.805 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37464 10 6452 1 2025-09-12 15:04:53.211 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38832 10 6452 1 2025-09-12 15:05:53.613 00:00:11.074 TCP 1.101.0.1:3000 -> 23.104.0.1:54638 10 6452 1 2025-09-12 15:07:07.010 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 15:07:07.136 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 15:07:07.210 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 15:07:07.091 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 15:07:06.928 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 15:06:54.729 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:57636 10 6452 1 2025-09-12 15:02:28.568 00:06:00.016 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 15:07:55.144 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56308 10 6452 1 2025-09-12 15:08:55.548 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49830 10 6452 1 2025-09-12 15:04:28.583 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-12 15:09:55.945 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:42486 10 6452 1 2025-09-12 15:10:56.321 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36614 10 6452 1 2025-09-12 15:12:07.208 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 15:12:07.122 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 15:11:56.721 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:56010 10 6452 1 2025-09-12 15:12:06.979 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 15:12:06.783 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 15:12:07.125 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 15:12:57.138 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40988 10 6452 1 2025-09-12 15:13:57.545 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:35844 10 6452 1 2025-09-12 15:09:28.570 00:06:00.018 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 15:14:57.951 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:32860 10 6452 1 2025-09-12 15:15:58.365 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41348 10 6452 1 2025-09-12 15:11:28.585 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-12 15:17:07.073 00:00:00.048 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 15:17:07.136 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 15:17:07.288 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 15:17:07.226 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 15:16:58.772 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:38492 10 6452 1 2025-09-12 15:17:06.990 00:00:00.048 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 15:17:59.148 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43638 10 6452 1 2025-09-12 15:18:59.558 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60884 10 6452 1 2025-09-12 15:19:59.961 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:43178 10 6452 1 2025-09-12 15:21:00.383 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46940 10 6452 1 2025-09-12 15:16:28.572 00:06:00.018 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 15:22:07.642 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 15:22:07.397 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 15:22:07.512 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 15:22:07.149 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 15:22:07.557 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 15:22:00.784 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36546 10 6452 1 2025-09-12 15:23:01.190 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56222 10 6452 1 2025-09-12 15:18:28.587 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-12 15:24:01.602 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51170 10 6452 1 2025-09-12 15:25:01.964 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:49880 10 6452 1 2025-09-12 15:26:02.326 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:34556 10 6452 1 2025-09-12 15:27:07.628 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 15:27:07.800 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 15:27:07.542 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 15:27:07.551 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 15:27:07.545 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 15:27:02.682 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47568 10 6452 1 2025-09-12 15:28:03.102 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55624 10 6452 1 2025-09-12 15:23:28.575 00:06:00.017 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 15:29:03.505 00:00:10.559 TCP 1.101.0.1:3000 -> 23.104.0.1:39160 10 6452 1 2025-09-12 15:30:04.113 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34650 10 6452 1 2025-09-12 15:25:28.588 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-12 15:31:04.513 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48644 10 6452 1 2025-09-12 15:32:07.694 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 15:32:07.698 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 15:32:07.706 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 15:32:07.462 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 15:32:07.610 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 15:32:04.872 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36432 10 6452 1 2025-09-12 15:33:05.275 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36592 10 6452 1 2025-09-12 15:34:05.637 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:45604 12 10367 1 2025-09-12 15:35:06.105 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56176 10 6452 1 2025-09-12 15:30:28.577 00:06:00.016 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 15:36:06.513 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44950 10 6452 1 2025-09-12 15:37:07.748 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 15:37:07.703 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 15:37:07.390 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 15:37:07.740 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 15:37:07.822 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 15:37:06.917 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49256 10 6452 1 2025-09-12 15:32:28.590 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-12 15:38:07.317 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42104 10 6452 1 2025-09-12 15:39:07.724 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:34014 10 6452 1 2025-09-12 15:40:08.148 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:40648 10 6452 1 2025-09-12 15:41:08.561 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59916 10 6452 1 2025-09-12 15:42:08.557 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 15:42:08.256 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 15:42:08.342 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 15:42:07.844 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 15:42:08.476 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 15:42:08.964 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58276 10 6452 1 2025-09-12 15:37:28.578 00:06:00.015 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 15:43:09.362 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44712 10 6452 1 2025-09-12 15:44:09.770 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:40424 10 6452 1 2025-09-12 15:39:28.591 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-12 15:45:10.209 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54494 10 6452 1 2025-09-12 15:46:10.613 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:54074 10 6452 1 2025-09-12 15:47:08.025 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 15:47:07.898 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 15:47:07.988 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 15:47:07.754 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 15:47:07.944 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 15:47:10.980 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:60170 10 6452 1 2025-09-12 15:48:11.358 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42652 10 6452 1 2025-09-12 15:49:11.764 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:37390 10 6452 1 2025-09-12 15:44:28.580 00:06:00.015 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 15:50:12.181 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32868 10 6452 1 2025-09-12 15:51:12.589 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55260 10 6452 1 2025-09-12 15:46:28.592 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-12 15:52:08.316 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 15:52:08.104 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 15:52:08.162 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 15:52:08.124 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 15:52:08.235 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 15:52:12.996 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56874 10 6452 1 2025-09-12 15:53:13.401 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:53580 10 6452 1 2025-09-12 15:54:13.765 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:41602 10 6452 1 2025-09-12 15:55:14.140 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56914 10 6452 1 2025-09-12 15:56:14.549 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35248 10 6452 1 2025-09-12 15:51:28.583 00:06:00.018 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 15:57:08.097 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 15:57:08.099 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 15:57:07.830 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 15:57:08.163 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 15:57:08.244 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 15:57:14.951 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:47070 10 6452 1 2025-09-12 15:53:28.593 00:06:00.006 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-12 15:58:15.325 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43374 10 6452 1 Summary: total flows: 138, total bytes: 418377, total packets: 971, avg bps: 871, avg pps: 0, avg bpp: 430 Time window: 2025-09-12 14:55:28 - 2025-09-12 15:59:28 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0019s User: 0.0029s Wall: 0.0022s flows/second: 61991.4 Runtime: 0.0022s