Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-27 05:58:43.812 00:00:11.706 TCP 1.101.0.1:3000 -> 23.104.0.1:42054 10 6452 1 2025-09-27 05:59:09.397 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 05:59:09.322 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 05:59:09.063 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 05:59:09.062 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 05:59:09.315 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 05:59:45.568 00:00:10.993 TCP 1.101.0.1:3000 -> 23.104.0.1:41366 10 6452 1 2025-09-27 06:00:46.597 00:00:10.663 TCP 1.101.0.1:3000 -> 23.104.0.1:42140 10 6452 1 2025-09-27 06:01:47.297 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54346 10 6452 1 2025-09-27 06:02:47.694 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38536 10 6452 1 2025-09-27 05:58:35.559 00:06:00.204 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-27 06:03:48.109 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47006 10 6452 1 2025-09-27 06:04:09.488 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 06:04:09.105 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 06:04:09.506 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 06:04:09.393 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 06:04:09.476 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 05:59:35.556 00:06:00.209 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-27 06:04:48.514 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54870 10 6452 1 2025-09-27 06:05:48.879 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37412 10 6452 1 2025-09-27 06:06:49.283 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58572 10 6452 1 2025-09-27 06:07:49.684 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33556 10 6452 1 2025-09-27 06:08:50.108 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:45714 10 6452 1 2025-09-27 06:09:09.611 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 06:09:09.486 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 06:09:09.575 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 06:09:09.386 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 06:09:09.527 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 06:09:50.539 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53392 10 6452 1 2025-09-27 06:05:35.560 00:06:00.204 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-27 06:10:50.940 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:51148 10 6452 1 2025-09-27 06:06:35.559 00:06:00.208 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-27 06:11:51.312 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49584 10 6452 1 2025-09-27 06:12:51.718 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42388 10 6452 1 2025-09-27 06:14:09.592 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 06:13:52.132 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42488 10 6452 1 2025-09-27 06:14:09.508 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 06:14:09.622 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 06:14:09.216 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 06:14:09.508 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 06:14:52.527 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47650 10 6452 1 2025-09-27 06:15:52.893 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:38186 12 6556 1 2025-09-27 06:16:53.311 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59172 10 6452 1 2025-09-27 06:12:35.565 00:06:00.204 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-27 06:17:53.716 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38174 10 6452 1 2025-09-27 06:13:35.561 00:06:00.209 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-27 06:18:54.114 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:47550 10 6452 1 2025-09-27 06:19:09.661 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 06:19:09.575 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 06:19:09.347 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 06:19:09.663 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 06:19:09.746 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 06:19:54.478 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49158 10 6452 1 2025-09-27 06:20:54.841 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:45438 10 6452 1 2025-09-27 06:21:55.222 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55994 10 6452 1 2025-09-27 06:22:55.626 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57616 10 6452 1 2025-09-27 06:24:09.787 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 06:24:09.890 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 06:24:09.653 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 06:23:56.028 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60952 10 6452 1 2025-09-27 06:24:09.777 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 06:24:09.860 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 06:19:35.565 00:06:00.206 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-27 06:24:56.430 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59042 10 6452 1 2025-09-27 06:20:35.563 00:06:00.211 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-27 06:25:56.833 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:57310 10 6452 1 2025-09-27 06:26:57.208 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34878 10 6452 1 2025-09-27 06:27:57.613 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39782 10 6452 1 2025-09-27 06:29:09.777 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 06:28:58.019 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37760 10 6452 1 2025-09-27 06:29:09.859 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 06:29:10.116 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 06:29:10.127 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 06:29:10.126 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 06:29:58.414 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38008 10 6452 1 2025-09-27 06:30:58.815 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52730 10 6452 1 2025-09-27 06:26:35.567 00:06:00.207 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-27 06:31:59.220 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42208 10 6452 1 2025-09-27 06:27:35.564 00:06:00.212 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-27 06:32:59.621 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54504 10 6452 1 2025-09-27 06:34:09.870 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 06:34:09.806 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 06:34:10.190 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 06:34:09.995 00:00:00.044 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 06:34:00.026 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33162 10 6452 1 2025-09-27 06:34:10.103 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 06:35:00.430 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56258 10 6452 1 2025-09-27 06:36:00.837 00:00:11.242 TCP 1.101.0.1:3000 -> 23.104.0.1:58132 10 6452 1 2025-09-27 06:37:02.113 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58484 10 6452 1 2025-09-27 06:38:02.516 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39310 10 6452 1 2025-09-27 06:33:35.568 00:06:00.207 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-27 06:39:10.130 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 06:39:02.918 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45366 10 6452 1 2025-09-27 06:39:10.078 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 06:39:10.004 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 06:39:09.995 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 06:39:10.077 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 06:34:35.565 00:06:00.211 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-27 06:40:03.325 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60060 10 6452 1 2025-09-27 06:41:03.690 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35048 10 6452 1 2025-09-27 06:42:04.108 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58330 10 6452 1 2025-09-27 06:43:04.512 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50796 10 6452 1 2025-09-27 06:44:10.375 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 06:44:10.413 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 06:44:10.289 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 06:44:10.359 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 06:44:10.293 00:00:00.031 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 06:44:04.914 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:51926 10 6452 1 2025-09-27 06:45:05.283 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46972 10 6452 1 2025-09-27 06:40:35.572 00:06:00.210 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-27 06:46:05.691 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44966 10 6452 1 2025-09-27 06:41:35.569 00:06:00.215 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-27 06:47:06.123 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:37700 10 6452 1 2025-09-27 06:48:06.563 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60924 10 6452 1 2025-09-27 06:49:10.984 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 06:49:10.477 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 06:49:10.077 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 06:49:10.463 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 06:49:10.546 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 06:49:06.965 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52660 10 6452 1 2025-09-27 06:50:07.328 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55072 10 6452 1 2025-09-27 06:51:07.731 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:50206 10 6452 1 2025-09-27 06:52:08.121 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:39728 12 10367 1 2025-09-27 06:47:35.572 00:06:00.214 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-27 06:53:08.594 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38600 10 6452 1 2025-09-27 06:48:35.570 00:06:00.219 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-27 06:54:10.631 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 06:54:10.511 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 06:54:10.433 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 06:54:10.370 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 06:54:10.547 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 06:54:09.007 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:53046 10 6452 1 2025-09-27 06:55:09.373 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42406 10 6452 1 2025-09-27 06:56:09.768 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:33466 10 6452 1 2025-09-27 06:57:10.180 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33754 10 6452 1 2025-09-27 06:58:10.580 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37708 10 6452 1 Summary: total flows: 136, total bytes: 420035, total packets: 1008, avg bps: 937, avg pps: 0, avg bpp: 416 Time window: 2025-09-27 05:58:35 - 2025-09-27 06:58:20 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0025s User: 0.0017s Wall: 0.0018s flows/second: 77366.8 Runtime: 0.0018s