Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-27 10:58:50.575 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59804 10 6452 1 2025-09-27 10:59:15.345 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 10:59:15.261 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 10:59:15.265 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 10:59:15.136 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 10:59:15.262 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 10:59:50.983 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55128 10 6452 1 2025-09-27 11:00:51.386 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36488 10 6452 1 2025-09-27 11:01:51.754 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:53618 10 6452 1 2025-09-27 11:02:52.180 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36588 10 6452 1 2025-09-27 11:03:52.586 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:35602 10 6452 1 2025-09-27 11:04:15.617 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 11:04:15.402 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 11:04:15.509 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 11:04:15.486 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 11:04:15.570 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 10:59:35.674 00:06:00.206 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-27 11:04:52.956 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35702 10 6452 1 2025-09-27 11:00:35.671 00:06:00.211 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-27 11:05:53.321 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57748 10 6452 1 2025-09-27 11:06:53.728 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:48006 10 6452 1 2025-09-27 11:07:54.147 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49662 10 6452 1 2025-09-27 11:08:54.550 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37552 10 6452 1 2025-09-27 11:09:15.330 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 11:09:15.388 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 11:09:15.474 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 11:09:15.336 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 11:09:15.557 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 11:09:54.957 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:46478 10 6452 1 2025-09-27 11:10:55.319 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59436 10 6452 1 2025-09-27 11:06:35.675 00:06:00.205 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-27 11:11:55.724 00:00:10.853 TCP 1.101.0.1:3000 -> 23.104.0.1:40578 10 6452 1 2025-09-27 11:07:35.674 00:06:00.210 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-27 11:12:56.616 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34852 10 6452 1 2025-09-27 11:13:57.025 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57428 10 6452 1 2025-09-27 11:14:15.667 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 11:14:15.741 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 11:14:15.659 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 11:14:15.733 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 11:14:15.584 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 11:14:57.424 00:00:10.488 TCP 1.101.0.1:3000 -> 23.104.0.1:43220 10 6452 1 2025-09-27 11:15:57.967 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:37592 10 6452 1 2025-09-27 11:16:58.332 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47836 10 6452 1 2025-09-27 11:17:58.738 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48924 10 6452 1 2025-09-27 11:13:35.679 00:06:00.204 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-27 11:18:59.150 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:44648 10 6452 1 2025-09-27 11:19:15.587 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 11:19:15.560 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 11:19:15.590 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 11:19:15.658 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 11:19:15.674 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 11:14:35.676 00:06:00.209 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-27 11:19:59.551 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54468 10 6452 1 2025-09-27 11:20:59.957 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49676 10 6452 1 2025-09-27 11:22:00.325 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60788 10 6452 1 2025-09-27 11:23:00.735 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35194 10 6452 1 2025-09-27 11:24:16.413 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 11:24:01.142 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55316 10 6452 1 2025-09-27 11:24:16.438 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 11:24:16.343 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 11:24:16.329 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 11:24:16.330 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 11:25:01.551 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:55426 10 6452 1 2025-09-27 11:20:35.679 00:06:00.205 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-27 11:26:01.973 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48450 10 6452 1 2025-09-27 11:21:35.676 00:06:00.210 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-27 11:27:02.384 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60214 10 6452 1 2025-09-27 11:28:02.753 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40932 10 6452 1 2025-09-27 11:29:03.157 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38140 10 6452 1 2025-09-27 11:29:15.816 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 11:29:15.715 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 11:29:15.892 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 11:29:15.842 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 11:29:15.898 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 11:30:03.563 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:57844 10 6452 1 2025-09-27 11:31:03.931 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:52792 13 6608 1 2025-09-27 11:32:04.365 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:43058 12 10367 1 2025-09-27 11:27:35.685 00:06:00.201 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-27 11:33:04.843 00:00:18.694 TCP 1.101.0.1:3000 -> 23.104.0.1:44462 10 6452 1 2025-09-27 11:28:35.683 00:06:00.207 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-27 11:34:16.343 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 11:34:16.255 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 11:34:16.425 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 11:34:16.351 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 11:34:16.433 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 11:34:13.579 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47860 10 6452 1 2025-09-27 11:35:13.942 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:50248 10 6452 1 2025-09-27 11:36:14.370 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50972 10 6452 1 2025-09-27 11:37:14.770 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60162 10 6452 1 2025-09-27 11:38:15.182 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37120 10 6452 1 2025-09-27 11:39:15.950 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 11:39:15.864 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 11:39:15.695 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 11:39:15.960 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 11:39:16.043 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 11:39:15.590 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:37958 10 6452 1 2025-09-27 11:34:35.685 00:06:00.202 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-27 11:40:15.946 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:44806 10 6452 1 2025-09-27 11:35:35.682 00:06:00.207 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-27 11:41:16.317 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41904 10 6452 1 2025-09-27 11:42:16.723 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54498 10 6452 1 2025-09-27 11:43:17.139 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40552 10 6452 1 2025-09-27 11:44:16.264 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 11:44:16.181 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 11:44:16.185 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 11:44:16.116 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 11:44:16.131 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 11:44:17.541 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:48092 10 6452 1 2025-09-27 11:45:17.941 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:51534 10 6452 1 2025-09-27 11:46:18.318 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:58312 10 6452 1 2025-09-27 11:41:35.691 00:06:00.199 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-27 11:47:18.716 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57138 10 6452 1 2025-09-27 11:42:35.687 00:06:00.205 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-27 11:48:19.128 00:00:10.749 TCP 1.101.0.1:3000 -> 23.104.0.1:60538 10 6452 1 2025-09-27 11:49:16.471 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 11:49:16.292 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 11:49:16.546 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 11:49:16.152 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 11:49:16.390 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 11:49:19.918 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52052 10 6452 1 2025-09-27 11:50:20.317 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47582 10 6452 1 2025-09-27 11:51:20.723 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47674 10 6452 1 2025-09-27 11:52:21.132 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60834 10 6452 1 2025-09-27 11:53:21.531 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58574 10 6452 1 2025-09-27 11:48:35.691 00:06:00.201 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-27 11:54:16.140 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 11:54:16.345 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 11:54:16.521 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 11:54:16.443 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 11:54:16.427 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 11:54:21.900 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:41136 10 6452 1 2025-09-27 11:49:35.689 00:06:00.205 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-27 11:55:22.268 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47462 10 6452 1 2025-09-27 11:56:22.684 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:36024 10 6452 1 2025-09-27 11:57:23.053 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50236 10 6452 1 2025-09-27 11:58:23.460 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46124 10 6452 1 Summary: total flows: 136, total bytes: 420087, total packets: 1009, avg bps: 937, avg pps: 0, avg bpp: 416 Time window: 2025-09-27 10:58:50 - 2025-09-27 11:58:33 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0018s User: 0.0018s Wall: 0.0019s flows/second: 71950.7 Runtime: 0.0019s