Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-18 08:59:33.277 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48536 10 6452 1 2025-09-18 08:59:53.073 00:00:00.037 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-18 08:59:53.001 00:00:00.046 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-18 08:59:53.175 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-18 08:59:52.969 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 08:59:52.989 00:00:00.038 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 09:00:33.681 00:00:10.568 TCP 1.101.0.1:3000 -> 23.104.0.1:44748 10 6452 1 2025-09-18 08:56:31.330 00:06:00.073 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-18 09:01:34.290 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56668 10 6452 1 2025-09-18 09:02:34.693 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39656 10 6452 1 2025-09-18 08:58:31.327 00:06:00.078 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-18 09:03:35.108 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50960 10 6452 1 2025-09-18 09:04:35.508 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40162 10 6452 1 2025-09-18 09:04:52.988 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-18 09:04:53.158 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 09:04:53.003 00:00:00.050 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 09:04:53.121 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-18 09:04:53.094 00:00:00.041 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-18 09:05:35.917 00:00:10.435 TCP 1.101.0.1:3000 -> 23.104.0.1:57182 14 10469 1 2025-09-18 09:06:36.398 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56744 10 6452 1 2025-09-18 09:07:36.803 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47608 10 6452 1 2025-09-18 09:03:31.330 00:06:00.073 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-18 09:08:37.205 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:38568 10 6452 1 2025-09-18 09:09:37.573 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57764 10 6452 1 2025-09-18 09:09:53.138 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-18 09:09:53.228 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-18 09:09:53.152 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 09:09:53.004 00:00:00.046 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 09:09:53.085 00:00:00.047 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-18 09:05:31.328 00:06:00.078 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-18 09:10:37.978 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:60364 10 6452 1 2025-09-18 09:11:38.347 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57766 10 6452 1 2025-09-18 09:12:38.714 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:40116 11 6492 1 2025-09-18 09:13:39.125 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48396 10 6452 1 2025-09-18 09:14:39.531 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:54242 10 6452 1 2025-09-18 09:14:53.489 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-18 09:14:53.581 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-18 09:14:53.597 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 09:14:53.699 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 09:14:53.782 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-18 09:10:31.331 00:06:00.075 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-18 09:15:39.892 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:57984 12 10367 1 2025-09-18 09:16:40.378 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43466 10 6452 1 2025-09-18 09:12:31.331 00:06:00.079 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-18 09:17:40.787 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37502 10 6452 1 2025-09-18 09:18:41.186 00:00:11.025 TCP 1.101.0.1:3000 -> 23.104.0.1:60150 10 6452 1 2025-09-18 09:19:53.397 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-18 09:19:53.127 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 09:19:42.247 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58834 10 6452 1 2025-09-18 09:19:53.480 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 09:19:53.329 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-18 09:19:53.563 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-18 09:20:42.652 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36198 10 6452 1 2025-09-18 09:21:43.065 00:00:10.617 TCP 1.101.0.1:3000 -> 23.104.0.1:37816 10 6452 1 2025-09-18 09:17:31.335 00:06:00.073 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-18 09:22:43.722 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:58358 10 6452 1 2025-09-18 09:23:44.136 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40452 10 6452 1 2025-09-18 09:19:31.333 00:06:00.076 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-18 09:24:53.250 00:00:00.033 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 09:24:44.535 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57092 10 6452 1 2025-09-18 09:24:53.445 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-18 09:24:53.656 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-18 09:24:53.271 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 09:24:53.338 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-18 09:25:44.936 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:41052 10 6452 1 2025-09-18 09:26:45.359 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35916 10 6452 1 2025-09-18 09:27:45.760 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:32776 10 6452 1 2025-09-18 09:28:46.189 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59992 10 6452 1 2025-09-18 09:24:31.340 00:06:00.070 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-18 09:29:53.588 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-18 09:29:53.452 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 09:29:53.401 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 09:29:53.597 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-18 09:29:53.484 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-18 09:29:46.591 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42738 10 6452 1 2025-09-18 09:30:46.995 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:42914 10 6452 1 2025-09-18 09:26:31.337 00:06:00.075 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-18 09:31:47.403 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34474 10 6452 1 2025-09-18 09:32:47.825 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41360 10 6452 1 2025-09-18 09:33:48.204 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:46162 10 6452 1 2025-09-18 09:34:53.902 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-18 09:34:53.897 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-18 09:34:53.685 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 09:34:53.897 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 09:34:53.980 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-18 09:34:48.601 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42320 10 6452 1 2025-09-18 09:35:49.001 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:40354 10 6452 1 2025-09-18 09:31:31.339 00:06:00.072 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-18 09:36:49.399 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33874 10 6452 1 2025-09-18 09:37:49.808 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60566 10 6452 1 2025-09-18 09:33:31.338 00:06:00.076 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-18 09:38:50.222 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:43176 10 6452 1 2025-09-18 09:39:53.858 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-18 09:39:53.791 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-18 09:39:53.653 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 09:39:53.790 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 09:39:53.871 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-18 09:39:50.587 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53750 10 6452 1 2025-09-18 09:40:50.986 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43162 10 6452 1 2025-09-18 09:41:51.395 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:47940 10 6452 1 2025-09-18 09:42:51.762 00:00:10.451 TCP 1.101.0.1:3000 -> 23.104.0.1:33060 13 13095 1 2025-09-18 09:38:31.340 00:06:00.073 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-18 09:43:52.250 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60822 10 6452 1 2025-09-18 09:44:53.891 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-18 09:44:53.859 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-18 09:44:53.854 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-18 09:44:53.842 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 09:44:53.810 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 09:44:52.662 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42632 10 6452 1 2025-09-18 09:40:31.339 00:06:00.078 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-18 09:45:53.069 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:39830 10 6452 1 2025-09-18 09:46:53.485 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:40196 10 6452 1 2025-09-18 09:47:53.883 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:35856 10 6452 1 2025-09-18 09:48:54.319 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44404 10 6452 1 2025-09-18 09:49:53.868 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-18 09:49:53.781 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-18 09:49:53.895 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 09:49:53.870 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 09:49:53.954 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-18 09:49:54.726 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56274 10 6452 1 2025-09-18 09:45:31.342 00:06:00.073 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-18 09:50:55.139 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34230 10 6452 1 2025-09-18 09:51:55.547 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50750 10 6452 1 2025-09-18 09:47:31.340 00:06:00.078 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-18 09:52:55.946 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41776 10 6452 1 2025-09-18 09:53:56.358 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47990 10 6452 1 2025-09-18 09:54:54.295 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-18 09:54:54.142 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-18 09:54:54.144 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-18 09:54:54.072 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 09:54:54.212 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 09:54:56.763 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:36064 10 6452 1 2025-09-18 09:55:57.135 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57592 10 6452 1 2025-09-18 09:56:57.532 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43542 10 6452 1 2025-09-18 09:52:31.343 00:06:00.074 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-18 09:57:57.936 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:45150 10 6452 1 Summary: total flows: 136, total bytes: 425040, total packets: 1018, avg bps: 914, avg pps: 0, avg bpp: 417 Time window: 2025-09-18 08:56:31 - 2025-09-18 09:58:31 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0038s User: 0.0009s Wall: 0.0026s flows/second: 52593.2 Runtime: 0.0026s