Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-12 15:59:15.734 00:00:10.446 TCP 1.101.0.1:3000 -> 23.104.0.1:50850 12 10367 1 2025-09-12 16:00:16.220 00:00:11.961 TCP 1.101.0.1:3000 -> 23.104.0.1:51184 10 6452 1 2025-09-12 16:01:18.234 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34718 10 6452 1 2025-09-12 16:02:08.246 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 16:02:07.973 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 16:02:08.104 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 16:02:08.183 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 16:02:08.163 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 16:02:18.635 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56604 10 6452 1 2025-09-12 15:58:28.589 00:06:00.016 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 16:03:19.040 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:33086 10 6452 1 2025-09-12 16:04:19.416 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54168 10 6452 1 2025-09-12 16:00:28.600 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-12 16:05:19.819 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:60728 10 6452 1 2025-09-12 16:06:20.189 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39940 10 6452 1 2025-09-12 16:07:08.256 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 16:07:08.196 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 16:07:08.225 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 16:07:08.181 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 16:07:08.265 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 16:07:20.602 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53134 10 6452 1 2025-09-12 16:08:21.010 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44810 10 6452 1 2025-09-12 16:09:21.416 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43692 10 6452 1 2025-09-12 16:05:28.593 00:06:00.013 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 16:10:21.817 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:34658 10 6452 1 2025-09-12 16:11:22.247 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52688 10 6452 1 2025-09-12 16:12:08.333 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 16:12:08.446 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 16:12:08.365 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 16:12:08.404 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 16:12:08.490 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 16:07:28.603 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-12 16:12:22.649 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37240 10 6452 1 2025-09-12 16:13:23.067 00:00:10.404 TCP 1.101.0.1:3000 -> 23.104.0.1:52762 10 6452 1 2025-09-12 16:14:23.507 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:35946 10 6452 1 2025-09-12 16:15:23.872 00:00:10.573 TCP 1.101.0.1:3000 -> 23.104.0.1:36848 10 6452 1 2025-09-12 16:16:24.484 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38816 10 6452 1 2025-09-12 16:17:08.709 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 16:17:08.397 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 16:17:08.396 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 16:17:08.244 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 16:17:08.627 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 16:12:28.598 00:06:00.013 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 16:17:24.886 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:36822 12 6556 1 2025-09-12 16:18:25.306 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40136 10 6452 1 2025-09-12 16:14:28.606 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-12 16:19:25.709 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45940 10 6452 1 2025-09-12 16:20:26.115 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51744 10 6452 1 2025-09-12 16:21:26.517 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44564 10 6452 1 2025-09-12 16:22:08.513 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 16:22:08.573 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 16:22:08.424 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 16:22:08.451 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 16:22:08.430 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 16:22:26.918 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47746 10 6452 1 2025-09-12 16:23:27.321 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50640 10 6452 1 2025-09-12 16:19:28.600 00:06:00.013 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 16:24:27.725 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:33350 10 6452 1 2025-09-12 16:25:28.110 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34240 10 6452 1 2025-09-12 16:21:28.608 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-12 16:26:28.510 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50806 10 6452 1 2025-09-12 16:27:08.758 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 16:27:08.737 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 16:27:08.774 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 16:27:08.562 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 16:27:08.674 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 16:27:28.917 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45556 10 6452 1 2025-09-12 16:28:29.278 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33880 10 6452 1 2025-09-12 16:29:29.682 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:39128 10 6452 1 2025-09-12 16:30:30.111 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47662 10 6452 1 2025-09-12 16:26:28.601 00:06:00.015 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 16:31:30.519 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55140 10 6452 1 2025-09-12 16:32:08.967 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 16:32:08.808 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 16:32:08.811 00:00:00.029 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 16:32:08.580 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 16:32:08.885 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 16:32:30.926 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:33834 10 6452 1 2025-09-12 16:28:28.611 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-12 16:33:31.348 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:56634 12 10367 1 2025-09-12 16:34:31.840 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:60634 10 6452 1 2025-09-12 16:35:32.256 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:37354 11 6504 1 2025-09-12 16:36:32.712 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53062 10 6452 1 2025-09-12 16:37:09.334 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 16:37:09.405 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 16:37:09.451 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 16:37:09.145 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 16:37:09.253 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 16:37:33.112 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41662 10 6452 1 2025-09-12 16:33:28.604 00:06:00.014 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 16:38:33.514 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60498 10 6452 1 2025-09-12 16:39:33.918 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51188 10 6452 1 2025-09-12 16:35:28.613 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-12 16:40:34.326 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57162 10 6452 1 2025-09-12 16:41:34.696 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:40362 10 6452 1 2025-09-12 16:42:09.193 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 16:42:09.112 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 16:42:08.973 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 16:42:08.623 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 16:42:09.107 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 16:42:35.068 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39608 10 6452 1 2025-09-12 16:43:35.466 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47644 10 6452 1 2025-09-12 16:44:35.871 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:36716 10 6452 1 2025-09-12 16:40:28.608 00:06:00.011 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 16:45:36.283 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44690 10 6452 1 2025-09-12 16:46:36.649 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56544 12 6556 1 2025-09-12 16:47:09.075 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 16:47:08.960 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 16:47:08.608 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 16:47:09.058 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 16:47:09.141 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 16:42:28.615 00:06:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-12 16:47:37.070 00:00:10.452 TCP 1.101.0.1:3000 -> 23.104.0.1:50780 10 6452 1 2025-09-12 16:48:37.560 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:56966 10 6452 1 2025-09-12 16:49:37.923 00:00:10.501 TCP 1.101.0.1:3000 -> 23.104.0.1:57796 10 6452 1 2025-09-12 16:50:38.464 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40672 10 6452 1 2025-09-12 16:51:38.875 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59866 10 6452 1 2025-09-12 16:52:09.359 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 16:52:09.139 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 16:52:09.220 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 16:52:09.250 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 16:52:09.275 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 16:47:28.609 00:06:00.011 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-12 16:52:39.282 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43840 10 6452 1 2025-09-12 16:53:39.645 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58030 10 6452 1 2025-09-12 16:49:28.618 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 11 705 1 2025-09-12 16:54:40.054 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33564 10 6452 1 2025-09-12 16:55:40.462 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40256 10 6452 1 2025-09-12 16:56:40.867 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59472 10 6452 1 2025-09-12 16:57:09.284 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 16:57:09.112 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 16:57:09.338 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 16:57:08.999 00:00:00.047 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 16:57:09.367 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 16:57:41.279 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37616 10 6452 1 Summary: total flows: 135, total bytes: 414950, total packets: 951, avg bps: 931, avg pps: 0, avg bpp: 436 Time window: 2025-09-12 15:58:28 - 2025-09-12 16:57:51 Total flows processed: 135, passed: 135, Blocks skipped: 0, Bytes read: 14104 Sys: 0.0022s User: 0.0022s Wall: 0.0024s flows/second: 56296.6 Runtime: 0.0024s