Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-13 07:59:19.652 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45322 10 6452 1 2025-09-13 08:00:20.068 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54718 10 6452 1 2025-09-13 08:01:20.477 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50302 10 6452 1 2025-09-13 08:02:27.615 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 08:02:27.255 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 07:57:28.907 00:06:00.039 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-13 08:02:27.359 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 08:02:27.398 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 08:02:27.531 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 08:02:20.875 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35610 10 6452 1 2025-09-13 08:03:21.283 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43202 10 6452 1 2025-09-13 07:59:28.941 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-13 08:04:21.688 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:49460 10 6452 1 2025-09-13 08:05:22.061 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47322 10 6452 1 2025-09-13 08:06:22.468 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40304 10 6452 1 2025-09-13 08:07:27.635 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 08:07:27.387 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 08:07:27.480 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 08:07:27.382 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 08:07:27.552 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 08:07:22.870 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:35194 10 6452 1 2025-09-13 08:08:23.239 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:54768 10 6452 1 2025-09-13 08:04:28.910 00:06:00.037 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-13 08:09:23.619 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:42014 10 6452 1 2025-09-13 08:10:23.982 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47904 10 6452 1 2025-09-13 08:06:28.943 00:06:00.010 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-13 08:11:24.395 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34374 10 6452 1 2025-09-13 08:12:27.792 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 08:12:27.711 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 08:12:27.746 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 08:12:27.430 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 08:12:27.710 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 08:12:24.802 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54424 10 6452 1 2025-09-13 08:13:25.217 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:53738 10 6452 1 2025-09-13 08:14:25.628 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59536 10 6452 1 2025-09-13 08:15:26.030 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39930 12 6556 1 2025-09-13 08:11:28.916 00:06:00.033 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-13 08:16:26.431 00:00:11.013 TCP 1.101.0.1:3000 -> 23.104.0.1:51580 10 6452 1 2025-09-13 08:17:27.884 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 08:17:27.683 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 08:17:27.746 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 08:17:27.587 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 08:17:27.800 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 08:17:27.483 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48724 10 6452 1 2025-09-13 08:13:28.946 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-13 08:18:27.889 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:41130 12 6556 1 2025-09-13 08:19:28.315 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33802 10 6452 1 2025-09-13 08:20:28.720 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41918 10 6452 1 2025-09-13 08:21:29.133 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51776 10 6452 1 2025-09-13 08:22:27.869 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 08:22:27.647 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 08:22:27.787 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 08:22:27.703 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 08:22:27.980 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 08:22:29.545 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37074 10 6452 1 2025-09-13 08:18:28.915 00:06:00.034 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-13 08:23:29.941 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:42342 10 6452 1 2025-09-13 08:24:30.358 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51960 10 6452 1 2025-09-13 08:20:28.946 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-13 08:25:30.763 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:41260 10 6452 1 2025-09-13 08:26:31.190 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56762 10 6452 1 2025-09-13 08:27:27.785 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 08:27:27.785 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 08:27:27.738 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 08:27:27.853 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 08:27:27.937 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 08:27:31.590 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36430 10 6452 1 2025-09-13 08:28:31.990 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38132 10 6452 1 2025-09-13 08:29:32.398 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37252 10 6452 1 2025-09-13 08:25:28.919 00:06:00.034 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-13 08:30:32.803 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43554 10 6452 1 2025-09-13 08:31:33.208 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36016 10 6452 1 2025-09-13 08:32:28.190 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 08:27:28.950 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-13 08:32:28.387 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 08:32:28.303 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 08:32:28.145 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 08:32:28.108 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 08:32:33.611 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33770 10 6452 1 2025-09-13 08:33:34.018 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47076 10 6452 1 2025-09-13 08:34:34.423 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39744 10 6452 1 2025-09-13 08:35:34.835 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:34984 10 6452 1 2025-09-13 08:36:35.209 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:58616 10 6452 1 2025-09-13 08:37:28.182 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 08:32:28.920 00:06:00.036 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-13 08:37:28.224 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 08:37:27.974 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 08:37:28.257 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 08:37:28.340 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 08:37:35.576 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35862 10 6452 1 2025-09-13 08:38:35.983 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38918 10 6452 1 2025-09-13 08:34:28.952 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-13 08:39:36.400 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:57104 10 6452 1 2025-09-13 08:40:36.769 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:35768 10 6452 1 2025-09-13 08:41:37.188 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34486 10 6452 1 2025-09-13 08:42:28.351 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 08:42:28.267 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 08:42:28.274 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 08:42:27.918 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 08:42:28.268 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 08:42:37.590 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36480 10 6452 1 2025-09-13 08:43:37.998 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52686 10 6452 1 2025-09-13 08:39:28.924 00:06:00.035 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-13 08:44:38.409 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55144 10 6452 1 2025-09-13 08:45:38.823 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57490 10 6452 1 2025-09-13 08:41:28.954 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-13 08:46:39.226 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49608 10 6452 1 2025-09-13 08:47:28.243 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 08:47:28.359 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 08:47:27.929 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 08:47:28.254 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 08:47:28.337 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 08:47:39.636 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39864 10 6452 1 2025-09-13 08:48:40.055 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38438 10 6452 1 2025-09-13 08:49:40.460 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:56202 10 6452 1 2025-09-13 08:50:40.843 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:34278 10 6452 1 2025-09-13 08:46:28.924 00:06:00.036 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-13 08:51:41.225 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53204 10 6452 1 2025-09-13 08:52:28.562 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 08:52:28.528 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 08:52:28.403 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 08:52:28.340 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 08:52:28.480 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 08:52:41.629 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33964 10 6452 1 2025-09-13 08:48:28.956 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-13 08:53:42.028 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59346 10 6452 1 2025-09-13 08:54:42.430 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42404 10 6452 1 2025-09-13 08:55:42.836 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:44086 10 6452 1 2025-09-13 08:56:43.224 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:41312 10 6452 1 2025-09-13 08:57:28.726 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 08:57:28.653 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 08:57:28.743 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 08:57:28.443 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 08:57:28.644 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 08:57:43.584 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:52736 10 6452 1 2025-09-13 08:53:28.926 00:06:00.035 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 Summary: total flows: 136, total bytes: 407721, total packets: 956, avg bps: 876, avg pps: 0, avg bpp: 426 Time window: 2025-09-13 07:57:28 - 2025-09-13 08:59:28 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0018s User: 0.0028s Wall: 0.0019s flows/second: 69922.2 Runtime: 0.0020s