Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-29 19:58:55.935 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39836 10 6452 1 2025-09-29 19:59:56.352 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:38652 10 6452 1 2025-09-29 20:00:23.921 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 20:00:23.955 00:00:00.041 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 20:00:23.733 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 20:00:23.867 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 20:00:23.962 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 20:00:56.751 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41716 10 6452 1 2025-09-29 20:01:57.155 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:45962 10 6452 1 2025-09-29 19:57:36.734 00:06:00.186 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 20:02:57.512 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39248 10 6452 1 2025-09-29 19:58:36.731 00:06:00.192 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 20:03:57.919 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40942 10 6452 1 2025-09-29 20:04:58.322 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49334 10 6452 1 2025-09-29 20:05:23.778 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 20:05:23.870 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 20:05:23.703 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 20:05:23.935 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 20:05:24.020 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 20:05:58.718 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:41916 10 6452 1 2025-09-29 20:06:59.132 00:00:10.603 TCP 1.101.0.1:3000 -> 23.104.0.1:60788 10 6452 1 2025-09-29 20:07:59.773 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47882 10 6452 1 2025-09-29 20:09:00.184 00:00:10.699 TCP 1.101.0.1:3000 -> 23.104.0.1:43478 10 6452 1 2025-09-29 20:04:36.736 00:06:00.189 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 20:10:00.921 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41182 10 6452 1 2025-09-29 20:10:24.100 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 20:10:23.949 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 20:10:23.950 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 20:10:24.055 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 20:10:24.034 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 20:05:36.733 00:06:00.194 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 20:11:01.336 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37932 10 6452 1 2025-09-29 20:12:01.740 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43056 10 6452 1 2025-09-29 20:13:02.146 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42398 10 6452 1 2025-09-29 20:14:02.559 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42040 10 6452 1 2025-09-29 20:15:02.961 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60662 10 6452 1 2025-09-29 20:15:24.787 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 20:15:24.590 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 20:15:24.716 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 20:15:24.695 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 20:15:24.776 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 20:16:03.371 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42832 10 6452 1 2025-09-29 20:11:36.737 00:06:00.192 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 20:17:03.777 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45148 10 6452 1 2025-09-29 20:12:36.733 00:06:00.196 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 20:18:04.183 00:00:10.407 TCP 1.101.0.1:3000 -> 23.104.0.1:42376 12 10375 1 2025-09-29 20:19:04.627 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:38562 10 6452 1 2025-09-29 20:20:24.297 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 20:20:05.027 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:43756 11 6504 1 2025-09-29 20:20:24.278 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 20:20:24.384 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 20:20:24.246 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 20:20:24.214 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 20:21:05.487 00:00:10.851 TCP 1.101.0.1:3000 -> 23.104.0.1:57230 10 6452 1 2025-09-29 20:22:06.379 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60274 10 6452 1 2025-09-29 20:23:06.784 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47374 10 6452 1 2025-09-29 20:18:36.739 00:06:00.189 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 20:24:07.196 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:41794 10 6452 1 2025-09-29 20:19:36.737 00:06:00.194 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 20:25:07.609 00:00:10.660 TCP 1.101.0.1:3000 -> 23.104.0.1:36914 10 6452 1 2025-09-29 20:25:24.225 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 20:25:24.400 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 20:25:24.333 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 20:25:24.446 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 20:25:24.530 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 20:26:08.323 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42352 10 6452 1 2025-09-29 20:27:08.726 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:59460 10 6452 1 2025-09-29 20:28:09.164 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42314 10 6452 1 2025-09-29 20:29:09.573 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48066 10 6452 1 2025-09-29 20:30:24.362 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 20:30:24.403 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 20:30:24.565 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 20:30:09.975 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:50134 10 6452 1 2025-09-29 20:30:24.375 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 20:30:24.649 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 20:25:36.748 00:06:00.182 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 20:31:10.392 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41824 10 6452 1 2025-09-29 20:26:36.748 00:06:00.185 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 20:32:10.800 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:56582 12 10367 1 2025-09-29 20:33:11.276 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59848 10 6452 1 2025-09-29 20:34:11.677 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:54682 10 6452 1 2025-09-29 20:35:24.627 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 20:35:24.631 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 20:35:24.578 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 20:35:12.059 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59258 10 6452 1 2025-09-29 20:35:24.731 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 20:35:24.813 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 20:36:12.467 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43014 10 6452 1 2025-09-29 20:37:12.872 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45302 10 6452 1 2025-09-29 20:32:36.753 00:06:00.178 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 20:38:13.277 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:56902 10 6452 1 2025-09-29 20:33:36.751 00:06:00.183 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 20:39:13.680 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55490 10 6452 1 2025-09-29 20:40:24.924 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 20:40:24.557 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 20:40:14.113 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46406 10 6452 1 2025-09-29 20:40:24.801 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 20:40:24.759 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 20:40:24.841 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 20:41:14.519 00:00:11.072 TCP 1.101.0.1:3000 -> 23.104.0.1:39062 10 6452 1 2025-09-29 20:42:15.629 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:34468 10 6452 1 2025-09-29 20:43:15.999 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59322 10 6452 1 2025-09-29 20:44:16.408 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34302 10 6452 1 2025-09-29 20:39:36.755 00:06:00.178 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 20:45:24.897 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 20:45:24.763 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 20:45:24.690 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 20:45:24.553 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 20:45:24.814 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 20:45:16.811 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56650 10 6452 1 2025-09-29 20:40:36.751 00:06:00.183 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 20:46:17.216 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51540 10 6452 1 2025-09-29 20:47:17.621 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:58190 10 6452 1 2025-09-29 20:48:18.068 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59154 10 6452 1 2025-09-29 20:49:18.471 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60984 10 6452 1 2025-09-29 20:50:24.686 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 20:50:24.850 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 20:50:24.715 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 20:50:24.859 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 20:50:24.942 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 20:50:18.878 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:49050 10 6452 1 2025-09-29 20:51:19.246 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58816 10 6452 1 2025-09-29 20:46:36.755 00:06:00.177 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 20:52:19.656 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:36862 12 10369 1 2025-09-29 20:47:36.755 00:06:00.182 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 20:53:20.140 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40158 10 6452 1 2025-09-29 20:54:20.553 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45974 10 6452 1 2025-09-29 20:55:25.281 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 20:55:25.060 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 20:55:25.060 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 20:55:25.054 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 20:55:25.196 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 20:55:20.957 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:50052 10 6452 1 2025-09-29 20:56:21.371 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:34560 10 6452 1 2025-09-29 20:57:21.763 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41778 10 6452 1 2025-09-29 20:58:22.181 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41444 10 6452 1 2025-09-29 20:53:36.758 00:06:00.176 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 Summary: total flows: 137, total bytes: 428684, total packets: 1025, avg bps: 921, avg pps: 0, avg bpp: 418 Time window: 2025-09-29 19:57:36 - 2025-09-29 20:59:36 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0024s User: 0.0024s Wall: 0.0025s flows/second: 55061.3 Runtime: 0.0025s