Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-15 16:59:30.487 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46120 10 6452 1 2025-09-15 17:00:30.894 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:46722 12 6556 1 2025-09-15 16:56:30.063 00:06:00.039 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 17:01:31.315 00:00:10.919 TCP 1.101.0.1:3000 -> 23.104.0.1:38418 10 6452 1 2025-09-15 17:02:32.273 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39670 10 6452 1 2025-09-15 17:03:36.157 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 17:03:35.861 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 17:03:36.078 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 17:03:36.066 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 17:03:36.073 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 17:03:32.674 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:53212 10 6452 1 2025-09-15 16:59:30.097 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 17:04:33.112 00:00:10.407 TCP 1.101.0.1:3000 -> 23.104.0.1:40064 10 6452 1 2025-09-15 17:05:33.524 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37930 10 6452 1 2025-09-15 17:06:33.929 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:58962 10 6452 1 2025-09-15 17:07:34.353 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:55378 11 6504 1 2025-09-15 17:03:30.063 00:06:00.041 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 17:08:36.641 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 17:08:36.455 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 17:08:36.498 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 17:08:36.453 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 17:08:36.536 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 17:08:34.818 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54858 10 6452 1 2025-09-15 17:09:35.226 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41990 10 6452 1 2025-09-15 17:10:35.635 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:54476 10 6452 1 2025-09-15 17:06:30.101 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 17:11:36.012 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:38980 10 6452 1 2025-09-15 17:12:36.385 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:52422 10 6452 1 2025-09-15 17:13:36.364 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 17:13:36.275 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 17:13:36.202 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 17:13:36.050 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 17:13:36.281 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 17:13:36.779 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41080 10 6452 1 2025-09-15 17:14:37.195 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35884 10 6452 1 2025-09-15 17:10:30.068 00:06:00.038 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 17:15:37.598 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:49748 10 6452 1 2025-09-15 17:16:37.994 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57634 10 6452 1 2025-09-15 17:17:38.401 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53594 10 6452 1 2025-09-15 17:13:30.102 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 17:18:36.196 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 17:18:36.185 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 17:18:36.119 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 17:18:36.189 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 17:18:36.273 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 17:18:38.807 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38432 10 6452 1 2025-09-15 17:19:39.224 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51784 10 6452 1 2025-09-15 17:20:39.634 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:33982 10 6452 1 2025-09-15 17:21:40.007 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50776 10 6452 1 2025-09-15 17:17:30.069 00:06:00.038 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 17:22:40.407 00:00:10.550 TCP 1.101.0.1:3000 -> 23.104.0.1:43432 10 6452 1 2025-09-15 17:23:36.620 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 17:23:36.532 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 17:23:36.381 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 17:23:36.464 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 17:23:36.546 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 17:23:40.991 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59502 10 6452 1 2025-09-15 17:24:41.401 00:00:10.461 TCP 1.101.0.1:3000 -> 23.104.0.1:39590 12 10367 1 2025-09-15 17:20:30.104 00:06:00.000 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 17:25:41.906 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36982 10 6452 1 2025-09-15 17:26:42.270 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60054 10 6452 1 2025-09-15 17:27:42.680 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:59984 10 6452 1 2025-09-15 17:28:36.591 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 17:28:36.754 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 17:28:36.636 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 17:28:36.843 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 17:28:36.924 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 17:28:43.120 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41718 10 6452 1 2025-09-15 17:24:30.073 00:06:00.038 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 17:29:43.484 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55830 10 6452 1 2025-09-15 17:30:43.881 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59310 10 6452 1 2025-09-15 17:31:44.244 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33814 10 6452 1 2025-09-15 17:27:30.106 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 17:32:44.649 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36494 10 6452 1 2025-09-15 17:33:36.620 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 17:33:36.744 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 17:33:36.610 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 17:33:36.401 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 17:33:36.537 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 17:33:45.066 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56850 10 6452 1 2025-09-15 17:34:45.467 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43272 10 6452 1 2025-09-15 17:35:45.870 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45440 10 6452 1 2025-09-15 17:31:30.075 00:06:00.038 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 17:36:46.237 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60838 10 6452 1 2025-09-15 17:37:46.660 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47932 10 6452 1 2025-09-15 17:38:36.710 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 17:38:36.785 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 17:38:36.792 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 17:38:36.729 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 17:38:36.794 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 17:38:47.116 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:47328 10 6452 1 2025-09-15 17:34:30.109 00:06:00.004 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 17:39:47.537 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55032 10 6452 1 2025-09-15 17:40:47.903 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38030 10 6452 1 2025-09-15 17:41:48.314 00:00:20.837 TCP 1.101.0.1:3000 -> 23.104.0.1:57686 10 6452 1 2025-09-15 17:42:59.264 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33236 10 6452 1 2025-09-15 17:38:30.076 00:06:00.043 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 17:43:36.880 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 17:43:36.733 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 17:43:36.794 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 17:43:36.806 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 17:43:36.799 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 17:43:59.666 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55210 10 6452 1 2025-09-15 17:45:00.108 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44382 10 6452 1 2025-09-15 17:46:00.514 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:46836 10 6452 1 2025-09-15 17:41:30.112 00:06:00.004 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 17:47:00.882 00:00:15.657 TCP 1.101.0.1:3000 -> 23.104.0.1:57304 10 6452 1 2025-09-15 17:48:06.581 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53124 10 6452 1 2025-09-15 17:48:36.995 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 17:48:36.986 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 17:48:36.916 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 17:48:37.088 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 17:48:36.912 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 17:49:06.979 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:56466 10 6452 1 2025-09-15 17:50:07.392 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55064 10 6452 1 2025-09-15 17:45:30.079 00:06:00.041 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 17:51:07.766 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:35418 10 6452 1 2025-09-15 17:52:08.182 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43944 10 6452 1 2025-09-15 17:53:08.583 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:44982 10 6452 1 2025-09-15 17:53:37.236 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 17:48:30.117 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 17:53:37.096 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 17:53:36.896 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 17:53:37.062 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 17:53:37.154 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 17:54:08.942 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34932 10 6452 1 2025-09-15 17:55:09.354 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:45432 12 10365 1 2025-09-15 17:56:09.828 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:57424 10 6452 1 2025-09-15 17:57:10.252 00:00:10.586 TCP 1.101.0.1:3000 -> 23.104.0.1:35770 10 6452 1 2025-09-15 17:52:30.080 00:06:00.041 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 17:58:10.877 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45040 10 6452 1 2025-09-15 17:58:37.442 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 17:58:37.466 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 17:58:37.370 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 17:58:37.353 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 17:58:37.358 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 Summary: total flows: 136, total bytes: 415497, total packets: 959, avg bps: 891, avg pps: 0, avg bpp: 433 Time window: 2025-09-15 16:56:30 - 2025-09-15 17:58:37 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0039s User: 0.0010s Wall: 0.0018s flows/second: 74888.5 Runtime: 0.0018s