Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-27 22:59:02.525 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57942 10 6452 1 2025-09-27 22:59:29.821 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 22:59:29.746 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 22:59:29.599 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 22:59:29.665 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 22:59:29.747 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 23:00:02.942 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:50468 10 6452 1 2025-09-27 23:01:03.377 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:50166 11 6504 1 2025-09-27 23:02:03.829 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59042 10 6452 1 2025-09-27 22:58:35.927 00:05:00.187 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-27 22:58:35.930 00:05:00.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-27 23:03:04.238 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35156 10 6452 1 2025-09-27 23:04:04.641 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42576 10 6452 1 2025-09-27 23:04:29.738 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 23:04:29.656 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 23:04:29.840 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 23:04:29.828 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 23:04:29.643 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 23:05:05.050 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:32822 10 6452 1 2025-09-27 23:06:05.462 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44114 10 6452 1 2025-09-27 23:07:05.862 00:00:10.453 TCP 1.101.0.1:3000 -> 23.104.0.1:36036 12 10367 1 2025-09-27 23:08:06.358 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:37338 10 6452 1 2025-09-27 23:04:35.930 00:05:00.187 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-27 23:04:35.934 00:05:00.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-27 23:09:06.716 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:35716 10 6452 1 2025-09-27 23:09:29.929 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 23:09:29.707 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 23:09:29.606 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 23:09:29.601 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 23:09:29.846 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 23:10:07.135 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38936 10 6452 1 2025-09-27 23:11:07.537 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36770 10 6452 1 2025-09-27 23:12:07.901 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:37412 12 6556 1 2025-09-27 23:13:08.319 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:35936 10 6452 1 2025-09-27 23:14:08.680 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56450 10 6452 1 2025-09-27 23:14:29.967 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 23:14:29.752 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 23:14:29.975 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 23:14:30.058 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 23:14:30.092 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 23:10:35.932 00:05:00.186 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-27 23:10:35.935 00:05:00.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-27 23:15:09.113 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:34650 10 6452 1 2025-09-27 23:16:09.486 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52638 10 6452 1 2025-09-27 23:17:09.892 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:49620 10 6452 1 2025-09-27 23:18:10.323 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39164 10 6452 1 2025-09-27 23:19:10.723 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:49558 10 6452 1 2025-09-27 23:19:29.914 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 23:19:29.944 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 23:19:30.189 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 23:19:30.062 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 23:19:30.145 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 23:20:11.132 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:56242 10 6452 1 2025-09-27 23:16:35.936 00:05:00.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-27 23:16:35.935 00:05:00.186 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-27 23:21:11.497 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46242 10 6452 1 2025-09-27 23:22:11.900 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49356 12 6556 1 2025-09-27 23:23:12.312 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60716 10 6452 1 2025-09-27 23:24:12.720 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41978 10 6452 1 2025-09-27 23:24:29.911 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 23:24:30.307 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 23:24:29.979 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 23:24:29.978 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 23:24:30.225 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 23:25:13.132 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:56164 10 6452 1 2025-09-27 23:26:13.491 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:56242 10 6452 1 2025-09-27 23:22:35.937 00:05:00.182 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-27 23:22:35.935 00:05:00.188 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-27 23:27:13.849 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:56428 10 6452 1 2025-09-27 23:28:14.283 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36726 10 6452 1 2025-09-27 23:29:14.692 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:52074 10 6452 1 2025-09-27 23:29:30.255 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 23:29:30.089 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 23:29:30.252 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 23:29:30.272 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 23:29:30.172 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 23:30:15.065 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44826 10 6452 1 2025-09-27 23:31:15.480 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:46944 10 6452 1 2025-09-27 23:32:15.838 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:34730 10 6452 1 2025-09-27 23:28:35.939 00:05:00.180 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-27 23:28:35.937 00:05:00.185 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-27 23:33:16.223 00:00:14.750 TCP 1.101.0.1:3000 -> 23.104.0.1:48564 10 6452 1 2025-09-27 23:34:30.328 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 23:34:30.323 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 23:34:30.540 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 23:34:21.031 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56850 10 6452 1 2025-09-27 23:34:30.227 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 23:34:30.310 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 23:35:21.440 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37256 10 6452 1 2025-09-27 23:36:21.801 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:48926 10 6452 1 2025-09-27 23:37:22.187 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58766 10 6452 1 2025-09-27 23:38:22.548 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39218 10 6452 1 2025-09-27 23:34:35.942 00:05:00.179 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-27 23:34:35.939 00:05:00.184 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-27 23:39:30.846 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 23:39:30.826 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 23:39:22.967 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36474 10 6452 1 2025-09-27 23:39:30.767 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 23:39:30.525 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 23:39:30.764 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 23:40:23.373 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:40162 10 6452 1 2025-09-27 23:41:23.732 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47256 10 6452 1 2025-09-27 23:42:24.141 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39010 10 6452 1 2025-09-27 23:43:24.543 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41356 10 6452 1 2025-09-27 23:44:30.668 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 23:44:30.660 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 23:44:30.696 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 23:44:30.447 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 23:44:30.583 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 23:40:35.942 00:05:00.184 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-27 23:40:35.944 00:05:00.179 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-27 23:44:24.944 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:35194 10 6452 1 2025-09-27 23:45:25.364 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57834 10 6452 1 2025-09-27 23:46:25.762 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:41330 10 6452 1 2025-09-27 23:47:26.186 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44684 10 6452 1 2025-09-27 23:48:26.587 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44850 10 6452 1 2025-09-27 23:49:30.575 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 23:49:30.587 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 23:49:30.675 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 23:49:30.710 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 23:49:30.492 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 23:49:26.991 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36314 10 6452 1 2025-09-27 23:46:35.943 00:05:00.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-27 23:50:27.354 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:49366 10 6452 1 2025-09-27 23:46:35.942 00:05:00.186 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-27 23:51:27.721 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33956 10 6452 1 2025-09-27 23:52:28.128 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52100 10 6452 1 2025-09-27 23:53:28.536 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55924 12 6556 1 2025-09-27 23:54:30.831 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-27 23:54:30.742 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-27 23:54:30.814 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-27 23:54:30.825 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 23:54:30.748 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-27 23:54:28.949 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39222 10 6452 1 2025-09-27 23:55:29.362 00:00:10.467 TCP 1.101.0.1:3000 -> 23.104.0.1:44754 10 6452 1 2025-09-27 23:52:35.942 00:05:00.187 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-27 23:52:35.945 00:05:00.182 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-27 23:56:29.864 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60858 10 6452 1 2025-09-27 23:57:30.282 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33354 10 6452 1 2025-09-27 23:58:30.696 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41260 10 6452 1 Summary: total flows: 140, total bytes: 421279, total packets: 1029, avg bps: 934, avg pps: 0, avg bpp: 409 Time window: 2025-09-27 22:58:35 - 2025-09-27 23:58:41 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0028s User: 0.0019s Wall: 0.0024s flows/second: 57518.1 Runtime: 0.0025s