Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-18 13:58:46.450 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35914 10 6452 1 2025-09-18 13:59:59.059 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-18 13:59:58.973 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-18 13:59:58.938 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 13:59:46.865 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:60764 10 6452 1 2025-09-18 13:59:58.903 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 13:59:58.986 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-18 14:00:47.247 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52318 10 6452 1 2025-09-18 14:01:47.648 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43576 10 6452 1 2025-09-18 13:57:31.421 00:06:00.068 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-18 14:02:48.063 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:39726 10 6452 1 2025-09-18 14:03:48.425 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47526 10 6452 1 2025-09-18 13:59:31.421 00:06:00.073 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-18 14:04:48.840 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:56320 10 6452 1 2025-09-18 14:04:59.165 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-18 14:04:58.879 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 14:04:58.975 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 14:04:59.122 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-18 14:04:59.058 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-18 14:05:49.269 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55116 10 6452 1 2025-09-18 14:06:49.676 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:45900 10 6452 1 2025-09-18 14:07:50.040 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46792 10 6452 1 2025-09-18 14:08:50.442 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48508 10 6452 1 2025-09-18 14:04:31.422 00:06:00.069 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-18 14:09:59.280 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-18 14:09:59.198 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 14:09:59.187 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-18 14:09:59.126 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-18 14:09:58.961 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 14:09:50.843 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53938 10 6452 1 2025-09-18 14:10:51.249 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57010 10 6452 1 2025-09-18 14:06:31.420 00:06:00.074 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-18 14:11:51.652 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60294 10 6452 1 2025-09-18 14:12:52.064 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46650 10 6452 1 2025-09-18 14:13:52.467 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38184 10 6452 1 2025-09-18 14:14:59.334 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-18 14:14:59.138 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-18 14:14:59.384 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-18 14:14:59.194 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 14:14:59.250 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 14:14:52.869 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58572 10 6452 1 2025-09-18 14:15:53.282 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:45096 10 6452 1 2025-09-18 14:11:31.423 00:06:00.068 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-18 14:16:53.646 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33966 10 6452 1 2025-09-18 14:17:54.063 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57686 10 6452 1 2025-09-18 14:13:31.421 00:06:00.074 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-18 14:18:54.468 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36716 10 6452 1 2025-09-18 14:19:59.666 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-18 14:19:59.412 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-18 14:19:59.043 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 14:19:59.584 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 14:19:59.333 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-18 14:19:54.870 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45486 10 6452 1 2025-09-18 14:20:55.276 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37658 10 6452 1 2025-09-18 14:21:55.643 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43882 10 6452 1 2025-09-18 14:22:56.062 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39640 10 6452 1 2025-09-18 14:18:31.426 00:06:00.067 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-18 14:23:56.472 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:34292 11 6504 1 2025-09-18 14:24:59.415 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-18 14:24:59.546 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-18 14:24:59.500 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-18 14:24:59.144 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 14:24:59.334 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 14:24:56.933 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:54336 10 6452 1 2025-09-18 14:20:31.424 00:06:00.071 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-18 14:25:57.351 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:50860 10 6452 1 2025-09-18 14:26:57.714 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:45818 10 6452 1 2025-09-18 14:27:58.140 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57680 10 6452 1 2025-09-18 14:28:58.553 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39792 10 6452 1 2025-09-18 14:29:59.708 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-18 14:29:59.705 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-18 14:29:59.425 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 14:29:59.686 00:00:00.029 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 14:29:59.767 00:00:00.030 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-18 14:29:58.958 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:48354 10 6452 1 2025-09-18 14:25:31.428 00:06:00.070 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-18 14:30:59.378 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54846 10 6452 1 2025-09-18 14:31:59.743 00:00:15.022 TCP 1.101.0.1:3000 -> 23.104.0.1:55544 10 6452 1 2025-09-18 14:27:31.426 00:06:00.075 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-18 14:33:04.815 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:52514 10 6452 1 2025-09-18 14:34:05.182 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39722 10 6452 1 2025-09-18 14:34:59.767 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-18 14:34:59.678 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-18 14:34:59.799 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-18 14:34:59.628 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 14:34:59.684 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 14:35:05.585 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56712 10 6452 1 2025-09-18 14:36:05.990 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47220 10 6452 1 2025-09-18 14:37:06.394 00:00:10.413 TCP 1.101.0.1:3000 -> 23.104.0.1:33966 11 6504 1 2025-09-18 14:32:31.431 00:06:00.072 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-18 14:38:06.848 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:42396 10 6452 1 2025-09-18 14:39:07.270 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57010 10 6452 1 2025-09-18 14:34:31.429 00:06:00.076 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-18 14:39:59.815 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-18 14:39:59.648 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 14:39:59.682 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 14:39:59.491 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-18 14:39:59.764 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-18 14:40:07.633 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34422 10 6452 1 2025-09-18 14:41:08.055 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49870 10 6452 1 2025-09-18 14:42:08.459 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42868 10 6452 1 2025-09-18 14:43:08.857 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:39150 10 6452 1 2025-09-18 14:44:09.273 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51554 10 6452 1 2025-09-18 14:39:31.433 00:06:00.076 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-18 14:45:00.357 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-18 14:45:00.102 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 14:45:00.274 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 14:45:00.092 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-18 14:45:00.275 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-18 14:45:09.687 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53006 10 6452 1 2025-09-18 14:46:10.109 00:00:10.993 TCP 1.101.0.1:3000 -> 23.104.0.1:58104 10 6452 1 2025-09-18 14:41:31.430 00:06:00.081 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-18 14:47:11.140 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51278 10 6452 1 2025-09-18 14:48:11.543 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52104 10 6452 1 2025-09-18 14:49:11.943 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:48228 10 6452 1 2025-09-18 14:49:59.808 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-18 14:49:59.571 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 14:49:59.725 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 14:50:00.101 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-18 14:50:00.011 00:00:00.034 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-18 14:50:12.314 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37600 10 6452 1 2025-09-18 14:51:12.715 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41374 10 6452 1 2025-09-18 14:46:31.433 00:06:00.076 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-18 14:52:13.116 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:52832 10 6452 1 2025-09-18 14:53:13.530 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45222 10 6452 1 2025-09-18 14:48:31.433 00:06:00.080 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-18 14:54:13.933 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:36292 10 6452 1 2025-09-18 14:54:59.875 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 14:55:00.159 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-18 14:55:00.243 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-18 14:55:00.063 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-18 14:55:00.076 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-18 14:55:14.359 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45176 10 6452 1 2025-09-18 14:56:14.720 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:56040 10 6452 1 2025-09-18 14:57:15.102 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39910 10 6452 1 2025-09-18 14:58:15.503 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50192 10 6452 1 2025-09-18 14:53:31.437 00:06:00.074 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 Summary: total flows: 137, total bytes: 416981, total packets: 1020, avg bps: 896, avg pps: 0, avg bpp: 408 Time window: 2025-09-18 13:57:31 - 2025-09-18 14:59:31 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0039s User: 0.0010s Wall: 0.0019s flows/second: 72949.0 Runtime: 0.0019s