Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-30 01:55:36.880 00:05:00.201 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 01:59:27.968 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54812 10 6452 1 2025-09-30 02:00:31.170 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 02:00:31.174 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 02:00:30.991 00:00:00.049 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 02:00:30.822 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 02:00:31.087 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 01:56:36.882 00:05:00.196 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 02:00:28.375 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59136 10 6452 1 2025-09-30 02:01:28.780 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48332 10 6452 1 2025-09-30 02:02:29.190 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54402 10 6452 1 2025-09-30 02:03:29.590 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50148 10 6452 1 2025-09-30 02:04:29.995 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:35168 10 6452 1 2025-09-30 02:05:31.306 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 02:05:31.270 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 02:05:31.056 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 02:05:31.090 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 02:05:31.222 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 02:01:36.881 00:05:00.201 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 02:05:30.362 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40902 10 6452 1 2025-09-30 02:02:36.889 00:05:00.191 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 02:06:30.769 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:55222 10 6452 1 2025-09-30 02:07:31.144 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53534 10 6452 1 2025-09-30 02:08:31.547 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:58024 10 6452 1 2025-09-30 02:09:31.955 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:39296 10 6452 1 2025-09-30 02:10:31.714 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 02:10:31.482 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 02:10:31.723 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 02:10:31.579 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 02:10:31.632 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 02:10:32.362 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49360 10 6452 1 2025-09-30 02:07:36.883 00:05:00.201 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 02:11:32.767 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:41544 10 6452 1 2025-09-30 02:08:36.886 00:05:00.196 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 02:12:33.181 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58534 10 6452 1 2025-09-30 02:13:33.585 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46192 10 6452 1 2025-09-30 02:14:33.985 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45618 10 6452 1 2025-09-30 02:15:31.514 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 02:15:31.189 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 02:15:31.292 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 02:15:31.382 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 02:15:31.428 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 02:15:34.399 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36408 10 6452 1 2025-09-30 02:16:34.806 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41762 10 6452 1 2025-09-30 02:13:36.886 00:05:00.205 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 02:17:35.210 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46074 10 6452 1 2025-09-30 02:14:36.890 00:05:00.198 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 02:18:35.615 00:00:10.434 TCP 1.101.0.1:3000 -> 23.104.0.1:43902 10 6452 1 2025-09-30 02:19:36.103 00:00:10.453 TCP 1.101.0.1:3000 -> 23.104.0.1:51440 10 6452 1 2025-09-30 02:20:31.763 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 02:20:31.658 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 02:20:31.775 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 02:20:31.316 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 02:20:31.399 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 02:20:36.593 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:58506 10 6452 1 2025-09-30 02:21:36.997 00:00:10.556 TCP 1.101.0.1:3000 -> 23.104.0.1:36144 10 6452 1 2025-09-30 02:22:37.588 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37402 10 6452 1 2025-09-30 02:19:36.888 00:05:00.203 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 02:23:37.991 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42128 10 6452 1 2025-09-30 02:20:36.891 00:05:00.200 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 02:24:38.409 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58474 10 6452 1 2025-09-30 02:25:31.727 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 02:25:31.502 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 02:25:31.630 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 02:25:31.619 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 02:25:31.644 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 02:25:38.818 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37940 10 6452 1 2025-09-30 02:26:39.229 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58466 10 6452 1 2025-09-30 02:27:39.590 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:47446 10 6452 1 2025-09-30 02:28:39.954 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55128 10 6452 1 2025-09-30 02:25:36.888 00:05:00.207 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 02:29:40.361 00:00:10.614 TCP 1.101.0.1:3000 -> 23.104.0.1:46440 10 6452 1 2025-09-30 02:30:31.701 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 02:30:31.688 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 02:30:31.615 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 02:30:31.680 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 02:30:31.764 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 02:26:36.891 00:05:00.202 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 02:30:41.014 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42684 10 6452 1 2025-09-30 02:31:41.416 00:00:10.576 TCP 1.101.0.1:3000 -> 23.104.0.1:58644 10 6452 1 2025-09-30 02:32:42.033 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58860 10 6452 1 2025-09-30 02:33:42.439 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38470 10 6452 1 2025-09-30 02:34:42.805 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36232 10 6452 1 2025-09-30 02:35:31.971 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 02:35:31.601 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 02:35:31.882 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 02:35:31.570 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 02:35:31.889 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 02:31:36.890 00:05:00.208 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 02:35:43.209 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:52520 10 6452 1 2025-09-30 02:32:36.894 00:05:00.204 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 02:36:43.622 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35446 10 6452 1 2025-09-30 02:37:44.029 00:00:10.492 TCP 1.101.0.1:3000 -> 23.104.0.1:36712 10 6452 1 2025-09-30 02:38:44.559 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57582 10 6452 1 2025-09-30 02:39:44.920 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:47534 10 6452 1 2025-09-30 02:40:32.081 00:00:00.037 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 02:40:31.906 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 02:40:32.144 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 02:40:32.100 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 02:40:32.001 00:00:00.036 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 02:40:45.333 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45416 10 6452 1 2025-09-30 02:37:36.894 00:05:00.205 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 02:41:45.737 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48426 10 6452 1 2025-09-30 02:38:36.897 00:05:00.201 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 02:42:46.140 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48778 10 6452 1 2025-09-30 02:43:46.542 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:41174 10 6452 1 2025-09-30 02:44:46.918 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49460 10 6452 1 2025-09-30 02:45:31.952 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 02:45:32.137 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 02:45:31.862 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 02:45:31.784 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 02:45:31.868 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 02:45:47.322 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40082 10 6452 1 2025-09-30 02:46:47.734 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45126 10 6452 1 2025-09-30 02:43:36.895 00:05:00.204 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 02:47:48.146 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52098 10 6452 1 2025-09-30 02:44:36.897 00:05:00.200 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 02:48:48.551 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41138 10 6452 1 2025-09-30 02:49:48.954 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:56834 10 6452 1 2025-09-30 02:50:32.157 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 02:50:32.103 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 02:50:31.955 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 02:50:32.105 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 02:50:32.188 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 02:50:49.368 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35576 10 6452 1 2025-09-30 02:51:49.732 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40336 10 6452 1 2025-09-30 02:52:50.110 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:48238 10 6452 1 2025-09-30 02:49:36.897 00:05:00.204 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 02:53:50.485 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:38992 10 6452 1 2025-09-30 02:50:36.900 00:05:00.198 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 02:54:50.850 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:34284 10 6452 1 2025-09-30 02:55:31.975 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 02:55:32.105 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 02:55:32.062 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 02:55:32.226 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 02:55:32.308 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 02:55:51.272 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37654 10 6452 1 2025-09-30 02:56:51.645 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:51330 10 6452 1 2025-09-30 02:57:52.075 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57976 10 6452 1 Summary: total flows: 139, total bytes: 410548, total packets: 1010, avg bps: 876, avg pps: 0, avg bpp: 406 Time window: 2025-09-30 01:55:36 - 2025-09-30 02:58:02 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0019s User: 0.0028s Wall: 0.0018s flows/second: 75382.5 Runtime: 0.0019s