Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-02 17:59:24.144 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41820 10 6452 1 2025-09-02 17:55:23.626 00:06:00.217 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 18:00:24.549 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48354 10 6452 1 2025-09-02 17:56:23.623 00:06:00.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 18:01:24.948 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:34702 10 6452 1 2025-09-02 18:02:14.759 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 18:02:14.629 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 18:02:14.551 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:02:14.676 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:02:14.669 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 18:02:25.319 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50464 10 6452 1 2025-09-02 18:03:25.724 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:52856 10 6452 1 2025-09-02 18:04:26.140 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38242 10 6452 1 2025-09-02 18:05:26.544 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55584 10 6452 1 2025-09-02 18:06:26.948 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49360 10 6452 1 2025-09-02 18:07:14.674 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 18:07:14.573 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:07:14.478 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:07:14.635 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 18:07:14.560 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 18:02:23.628 00:06:00.217 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 18:07:27.354 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:39944 10 6452 1 2025-09-02 18:03:23.625 00:06:00.223 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 18:08:27.759 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52184 10 6452 1 2025-09-02 18:09:28.170 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52540 10 6452 1 2025-09-02 18:10:28.572 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35200 10 6452 1 2025-09-02 18:11:28.975 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:45344 10 6452 1 2025-09-02 18:12:14.891 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 18:12:14.590 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 18:12:14.509 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:12:14.809 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:12:14.578 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 18:12:29.401 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57548 10 6452 1 2025-09-02 18:13:29.799 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37562 10 6452 1 2025-09-02 18:09:23.630 00:06:00.217 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 18:14:30.210 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:45328 10 6452 1 2025-09-02 18:10:23.629 00:06:00.221 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 18:15:30.609 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42278 10 6452 1 2025-09-02 18:16:31.013 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:37884 10 6452 1 2025-09-02 18:17:14.951 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 18:17:14.643 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 18:17:14.674 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:17:14.868 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:17:14.735 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 18:17:31.419 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53402 10 6452 1 2025-09-02 18:18:31.783 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33632 10 6452 1 2025-09-02 18:19:32.190 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45396 10 6452 1 2025-09-02 18:20:32.553 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34992 10 6452 1 2025-09-02 18:16:23.632 00:06:00.216 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 18:21:32.912 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33288 10 6452 1 2025-09-02 18:22:14.854 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 18:22:14.901 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 18:22:14.746 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:22:14.772 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:22:14.901 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 18:17:23.630 00:06:00.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 18:22:33.320 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47514 10 6452 1 2025-09-02 18:23:33.717 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:53100 10 6452 1 2025-09-02 18:24:34.144 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56420 10 6452 1 2025-09-02 18:25:34.545 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56700 10 6452 1 2025-09-02 18:26:34.944 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57726 10 6452 1 2025-09-02 18:27:14.936 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 18:27:15.399 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 18:27:14.900 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:27:14.853 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:27:14.863 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 18:27:35.357 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35022 10 6452 1 2025-09-02 18:23:23.634 00:06:00.216 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 18:28:35.760 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:52970 10 6452 1 2025-09-02 18:24:23.637 00:06:00.217 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 18:29:36.138 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:59612 10 6452 1 2025-09-02 18:30:36.552 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36042 10 6452 1 2025-09-02 18:31:36.950 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40068 10 6452 1 2025-09-02 18:32:15.052 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 18:32:15.081 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 18:32:14.863 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:32:14.969 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:32:15.211 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 18:32:37.359 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60336 10 6452 1 2025-09-02 18:33:37.761 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38814 10 6452 1 2025-09-02 18:34:38.180 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43832 10 6452 1 2025-09-02 18:30:23.643 00:06:00.208 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 18:35:38.546 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:53284 10 6452 1 2025-09-02 18:31:23.640 00:06:00.213 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 18:36:38.922 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:39904 10 6452 1 2025-09-02 18:37:15.329 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 18:37:15.186 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 18:37:15.132 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:37:15.247 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:37:15.189 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 18:37:39.305 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45126 10 6452 1 2025-09-02 18:38:39.702 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43746 10 6452 1 2025-09-02 18:39:40.126 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54470 10 6452 1 2025-09-02 18:40:40.537 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:58994 10 6452 1 2025-09-02 18:41:40.900 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:56620 10 6452 1 2025-09-02 18:42:15.215 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 18:42:15.166 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:42:15.133 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:42:15.216 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 18:42:15.217 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 18:37:23.645 00:06:00.207 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 18:42:41.310 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56038 10 6452 1 2025-09-02 18:38:23.643 00:06:00.212 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 18:43:41.712 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56582 10 6452 1 2025-09-02 18:44:42.117 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:39012 10 6452 1 2025-09-02 18:45:42.479 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40618 10 6452 1 2025-09-02 18:46:42.888 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:43012 10 6452 1 2025-09-02 18:47:15.582 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 18:47:15.410 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:47:15.601 00:00:00.016 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:47:15.581 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 18:47:15.683 00:00:00.017 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 18:47:43.336 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51812 10 6452 1 2025-09-02 18:48:43.743 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38394 10 6452 1 2025-09-02 18:44:23.652 00:06:00.203 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 18:49:44.153 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44926 10 6452 1 2025-09-02 18:45:23.650 00:06:00.208 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 18:50:44.562 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46126 10 6452 1 2025-09-02 18:51:44.923 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41842 10 6452 1 2025-09-02 18:52:15.639 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 18:52:15.646 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 18:52:15.516 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:52:15.557 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:52:15.479 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 18:52:45.329 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43210 10 6452 1 2025-09-02 18:53:45.731 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:55264 10 6452 1 2025-09-02 18:54:46.145 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52430 10 6452 1 2025-09-02 18:55:46.548 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:57238 10 6452 1 2025-09-02 18:51:23.657 00:06:00.200 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 18:56:46.944 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:40090 10 6452 1 2025-09-02 18:57:15.567 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 18:57:15.558 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 18:57:15.295 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:57:15.484 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:57:15.646 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 18:52:23.655 00:06:00.205 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 18:57:47.365 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56324 10 6452 1 Summary: total flows: 137, total bytes: 411286, total packets: 1022, avg bps: 870, avg pps: 0, avg bpp: 402 Time window: 2025-09-02 17:55:23 - 2025-09-02 18:58:23 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0031s User: 0.0010s Wall: 0.0018s flows/second: 75907.5 Runtime: 0.0018s