Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-28 05:59:04.184 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58598 10 6452 1 2025-09-28 05:59:38.187 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 05:54:36.088 00:06:00.150 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-28 05:59:38.103 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 05:59:38.218 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 05:59:38.061 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 05:59:38.105 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 06:00:04.588 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42918 10 6452 1 2025-09-28 05:55:36.091 00:06:00.145 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-28 06:01:04.990 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53704 10 6452 1 2025-09-28 06:02:05.400 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55826 10 6452 1 2025-09-28 06:03:05.800 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:33504 10 6452 1 2025-09-28 06:04:06.171 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54678 10 6452 1 2025-09-28 06:04:38.279 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 06:04:38.365 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 06:04:37.976 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 06:04:38.228 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 06:04:38.362 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 06:05:06.532 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:60958 10 6452 1 2025-09-28 06:06:06.955 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54018 10 6452 1 2025-09-28 06:01:36.089 00:06:00.151 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-28 06:07:07.367 00:00:10.963 TCP 1.101.0.1:3000 -> 23.104.0.1:53480 12 10367 1 2025-09-28 06:02:36.093 00:06:00.146 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-28 06:08:08.374 00:00:10.545 TCP 1.101.0.1:3000 -> 23.104.0.1:41968 10 6452 1 2025-09-28 06:09:08.954 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37256 10 6452 1 2025-09-28 06:09:38.151 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 06:09:38.325 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 06:09:38.292 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 06:09:38.386 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 06:09:38.469 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 06:10:09.359 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:35818 10 6452 1 2025-09-28 06:11:09.746 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60650 10 6452 1 2025-09-28 06:12:10.150 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49570 10 6452 1 2025-09-28 06:13:10.552 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:39286 10 6452 1 2025-09-28 06:08:36.090 00:06:00.151 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-28 06:14:10.918 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:34654 10 6452 1 2025-09-28 06:14:38.356 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 06:09:36.092 00:06:00.147 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-28 06:14:38.459 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 06:14:38.204 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 06:14:38.459 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 06:14:38.542 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 06:15:11.343 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:45728 10 6452 1 2025-09-28 06:16:11.706 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48118 10 6452 1 2025-09-28 06:17:12.116 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47476 10 6452 1 2025-09-28 06:18:12.516 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36620 10 6452 1 2025-09-28 06:19:12.920 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59366 12 6556 1 2025-09-28 06:19:38.602 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 06:19:38.818 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 06:19:38.642 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 06:19:38.692 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 06:19:38.775 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 06:20:13.328 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:57716 10 6452 1 2025-09-28 06:15:36.091 00:06:00.151 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-28 06:21:13.690 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:43262 10 6452 1 2025-09-28 06:16:36.094 00:06:00.147 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-28 06:22:14.056 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35802 10 6452 1 2025-09-28 06:23:14.457 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:38510 10 6452 1 2025-09-28 06:24:14.857 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:52896 10 6452 1 2025-09-28 06:24:38.617 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 06:24:38.618 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 06:24:38.492 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 06:24:38.618 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 06:24:38.701 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 06:25:15.276 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:37270 10 6452 1 2025-09-28 06:26:15.654 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52186 10 6452 1 2025-09-28 06:27:16.060 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33170 10 6452 1 2025-09-28 06:22:36.095 00:06:00.151 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-28 06:28:16.465 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48138 10 6452 1 2025-09-28 06:23:36.098 00:06:00.146 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-28 06:29:16.867 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:45662 10 6452 1 2025-09-28 06:29:38.745 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 06:29:38.663 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 06:29:38.850 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 06:29:38.805 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 06:29:38.614 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 06:30:17.240 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:51698 10 6452 1 2025-09-28 06:31:17.637 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41596 10 6452 1 2025-09-28 06:32:18.054 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45836 10 6452 1 2025-09-28 06:33:18.457 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41692 10 6452 1 2025-09-28 06:34:18.856 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:34818 10 6452 1 2025-09-28 06:34:38.807 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 06:34:38.926 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 06:34:38.754 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 06:34:38.705 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 06:34:38.787 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 06:29:36.096 00:06:00.152 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-28 06:35:19.277 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44094 10 6452 1 2025-09-28 06:30:36.098 00:06:00.148 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-28 06:36:19.694 00:00:10.764 TCP 1.101.0.1:3000 -> 23.104.0.1:39724 10 6452 1 2025-09-28 06:37:20.500 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45030 10 6452 1 2025-09-28 06:38:20.862 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:45712 10 6452 1 2025-09-28 06:39:21.276 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43944 10 6452 1 2025-09-28 06:39:38.902 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 06:39:38.849 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 06:39:38.831 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 06:39:38.908 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 06:39:38.991 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 06:40:21.679 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47982 10 6452 1 2025-09-28 06:41:22.039 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41748 10 6452 1 2025-09-28 06:36:36.097 00:06:00.154 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-28 06:42:22.444 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46942 10 6452 1 2025-09-28 06:37:36.101 00:06:00.148 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-28 06:43:22.846 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:48858 10 6452 1 2025-09-28 06:44:23.238 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59188 10 6452 1 2025-09-28 06:44:39.174 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 06:44:39.071 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 06:44:38.804 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 06:44:38.946 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 06:44:39.029 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 06:45:23.639 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35214 10 6452 1 2025-09-28 06:46:24.055 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:49968 10 6452 1 2025-09-28 06:47:24.420 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:33684 10 6452 1 2025-09-28 06:43:36.098 00:06:00.154 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-28 06:48:24.789 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47928 10 6452 1 2025-09-28 06:49:39.240 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 06:49:39.134 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 06:49:39.159 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 06:49:25.148 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38070 10 6452 1 2025-09-28 06:49:39.165 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 06:44:36.102 00:06:00.150 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-28 06:49:39.052 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 06:50:25.560 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47612 10 6452 1 2025-09-28 06:51:25.963 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33360 10 6452 1 2025-09-28 06:52:26.366 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43160 10 6452 1 2025-09-28 06:53:26.773 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48274 10 6452 1 2025-09-28 06:54:39.329 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-28 06:54:39.373 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-28 06:54:39.336 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-28 06:54:39.184 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 06:54:27.184 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35746 10 6452 1 2025-09-28 06:54:39.246 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-28 06:55:27.594 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:45494 10 6452 1 2025-09-28 06:50:36.101 00:06:00.154 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-28 06:51:36.108 00:06:00.143 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-28 06:56:28.020 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50682 10 6452 1 2025-09-28 06:57:28.425 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45468 10 6452 1 2025-09-28 06:58:28.824 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50230 10 6452 1 Summary: total flows: 138, total bytes: 421757, total packets: 1036, avg bps: 877, avg pps: 0, avg bpp: 407 Time window: 2025-09-28 05:54:36 - 2025-09-28 06:58:39 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0032s User: 0.0021s Wall: 0.0020s flows/second: 67350.9 Runtime: 0.0021s