Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-22 13:59:37.179 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60176 10 6452 1 2025-09-22 14:00:37.582 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55202 10 6452 1 2025-09-22 13:56:33.392 00:06:00.103 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-22 14:01:37.987 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49720 10 6452 1 2025-09-22 14:01:54.537 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 14:01:54.606 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 14:01:54.631 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 14:01:54.615 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 14:01:54.699 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 14:02:38.349 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41530 10 6452 1 2025-09-22 14:03:38.756 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:34150 10 6452 1 2025-09-22 13:59:33.395 00:06:00.097 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-22 14:04:39.114 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:46606 10 6452 1 2025-09-22 14:05:39.514 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:51992 10 6452 1 2025-09-22 14:06:54.611 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 14:06:54.679 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 14:06:54.639 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 14:06:39.929 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:34022 10 6452 1 2025-09-22 14:06:54.680 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 14:06:54.763 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 14:07:40.360 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56332 10 6452 1 2025-09-22 14:03:33.392 00:06:00.104 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-22 14:08:40.765 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:33414 10 6452 1 2025-09-22 14:09:41.184 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47098 10 6452 1 2025-09-22 14:10:41.587 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:56136 10 6452 1 2025-09-22 14:06:33.395 00:06:00.099 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-22 14:11:54.837 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 14:11:54.639 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 14:11:42.011 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:55046 10 6452 1 2025-09-22 14:11:54.811 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 14:11:54.694 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 14:11:54.754 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 14:12:42.365 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:41622 10 6452 1 2025-09-22 14:13:42.735 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51078 10 6452 1 2025-09-22 14:14:43.147 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:46946 10 6452 1 2025-09-22 14:10:33.396 00:06:00.102 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-22 14:15:43.513 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53752 10 6452 1 2025-09-22 14:16:54.891 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 14:16:54.768 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 14:16:43.926 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:34944 10 6452 1 2025-09-22 14:16:55.011 00:00:00.043 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 14:16:55.075 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 14:16:55.159 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 14:17:44.350 00:00:10.448 TCP 1.101.0.1:3000 -> 23.104.0.1:39702 10 6452 1 2025-09-22 14:13:33.398 00:06:00.100 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-22 14:18:44.838 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:55354 10 6452 1 2025-09-22 14:19:45.267 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44400 10 6452 1 2025-09-22 14:20:45.669 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:39402 10 6452 1 2025-09-22 14:21:54.824 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 14:21:55.364 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 14:21:55.283 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 14:21:55.243 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 14:21:46.087 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53626 10 6452 1 2025-09-22 14:21:55.238 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 14:17:33.396 00:06:00.102 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-22 14:22:46.488 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60700 10 6452 1 2025-09-22 14:23:46.886 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:44674 12 6556 1 2025-09-22 14:24:47.314 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:34622 10 6452 1 2025-09-22 14:20:33.400 00:06:00.096 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-22 14:25:47.674 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56040 10 6452 1 2025-09-22 14:26:54.707 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 14:26:54.948 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 14:26:55.052 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 14:26:55.119 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 14:26:48.103 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49762 10 6452 1 2025-09-22 14:26:55.032 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 14:27:48.504 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:58000 10 6452 1 2025-09-22 14:28:48.921 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39630 10 6452 1 2025-09-22 14:24:33.401 00:06:00.100 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-22 14:29:49.327 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:60374 10 6452 1 2025-09-22 14:30:49.687 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57624 10 6452 1 2025-09-22 14:31:55.200 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 14:31:55.118 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 14:31:55.176 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 14:31:55.093 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 14:31:55.118 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 14:31:50.115 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46706 10 6452 1 2025-09-22 14:27:33.403 00:06:00.094 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-22 14:32:50.518 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53204 10 6452 1 2025-09-22 14:33:50.930 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:36270 10 6452 1 2025-09-22 14:34:51.353 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:59500 10 6452 1 2025-09-22 14:35:51.722 00:00:10.467 TCP 1.101.0.1:3000 -> 23.104.0.1:33818 10 6452 1 2025-09-22 14:31:33.400 00:06:00.100 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-22 14:36:55.443 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 14:36:55.096 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 14:36:55.332 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 14:36:55.271 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 14:36:55.361 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 14:36:52.224 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43006 10 6452 1 2025-09-22 14:37:52.625 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:47944 10 6452 1 2025-09-22 14:38:53.001 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59178 10 6452 1 2025-09-22 14:34:33.404 00:06:00.097 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-22 14:39:53.401 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58448 10 6452 1 2025-09-22 14:40:53.763 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:58996 10 6452 1 2025-09-22 14:41:55.305 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 14:41:55.298 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 14:41:55.298 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 14:41:55.265 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 14:41:55.221 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 14:41:54.181 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46668 10 6452 1 2025-09-22 14:42:54.589 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35060 10 6452 1 2025-09-22 14:38:33.404 00:06:00.102 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-22 14:43:54.998 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:57608 10 6452 1 2025-09-22 14:44:55.362 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44560 10 6452 1 2025-09-22 14:45:55.726 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:35140 10 6452 1 2025-09-22 14:41:33.406 00:06:00.096 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-22 14:46:55.176 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 14:46:55.490 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 14:46:55.419 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 14:46:55.583 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 14:46:55.667 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 14:46:56.136 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:54218 11 6504 1 2025-09-22 14:47:56.551 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39310 10 6452 1 2025-09-22 14:48:56.957 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44798 10 6452 1 2025-09-22 14:49:57.370 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51958 10 6452 1 2025-09-22 14:45:33.404 00:06:00.103 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-22 14:50:57.734 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34164 10 6452 1 2025-09-22 14:51:55.400 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 14:51:55.233 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 14:51:55.572 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 14:51:55.623 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 14:51:55.654 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 14:51:58.148 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40252 10 6452 1 2025-09-22 14:52:58.548 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42606 10 6452 1 2025-09-22 14:48:33.408 00:06:00.097 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-22 14:53:58.908 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54200 10 6452 1 2025-09-22 14:54:59.320 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:59188 10 6452 1 2025-09-22 14:55:59.717 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40728 10 6452 1 2025-09-22 14:56:55.838 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 14:56:55.754 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 14:56:55.748 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 14:56:55.372 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 14:56:55.756 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 14:57:00.119 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50710 10 6452 1 2025-09-22 14:52:33.406 00:06:00.104 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-22 14:58:00.524 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48002 10 6452 1 Summary: total flows: 136, total bytes: 410581, total packets: 1011, avg bps: 882, avg pps: 0, avg bpp: 406 Time window: 2025-09-22 13:56:33 - 2025-09-22 14:58:33 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0018s User: 0.0018s Wall: 0.0015s flows/second: 93789.1 Runtime: 0.0015s