Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-02 18:58:47.767 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:52146 10 6452 1 2025-09-02 18:59:48.137 00:00:10.495 TCP 1.101.0.1:3000 -> 23.104.0.1:56154 10 6452 1 2025-09-02 19:00:48.671 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41934 10 6452 1 2025-09-02 19:01:49.104 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38900 10 6452 1 2025-09-02 19:02:15.802 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 19:02:15.634 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 19:02:15.484 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 19:02:15.719 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 19:02:15.795 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 19:02:49.507 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37426 10 6452 1 2025-09-02 18:58:23.659 00:06:00.203 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 19:03:49.907 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48128 10 6452 1 2025-09-02 18:59:23.657 00:06:00.209 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 19:04:50.305 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46806 10 6452 1 2025-09-02 19:05:50.716 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57218 10 6452 1 2025-09-02 19:06:51.132 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33590 10 6452 1 2025-09-02 19:07:15.970 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 19:07:15.698 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 19:07:15.889 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 19:07:16.062 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 19:07:15.979 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 19:07:51.536 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:54930 12 10367 1 2025-09-02 19:08:52.016 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44052 10 6452 1 2025-09-02 19:09:52.415 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58524 10 6452 1 2025-09-02 19:05:23.660 00:06:00.203 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 19:10:52.820 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:44138 10 6452 1 2025-09-02 19:06:23.658 00:06:00.207 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 19:11:53.195 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46762 10 6452 1 2025-09-02 19:12:15.861 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 19:12:15.942 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 19:12:15.988 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 19:12:16.084 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 19:12:16.073 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 19:12:53.597 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41252 10 6452 1 2025-09-02 19:13:54.002 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49058 10 6452 1 2025-09-02 19:14:54.372 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45974 10 6452 1 2025-09-02 19:15:54.780 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46710 10 6452 1 2025-09-02 19:16:55.184 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:32970 10 6452 1 2025-09-02 19:17:15.935 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 19:17:15.906 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 19:17:15.989 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 19:17:16.108 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 19:17:16.108 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 19:12:23.663 00:06:00.209 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 19:17:55.582 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:35206 12 10365 1 2025-09-02 19:13:23.661 00:06:00.215 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 19:18:56.063 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46378 10 6452 1 2025-09-02 19:19:56.461 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:52800 10 6452 1 2025-09-02 19:20:56.859 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:49780 10 6452 1 2025-09-02 19:21:57.277 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36084 10 6452 1 2025-09-02 19:22:15.915 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 19:22:16.436 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 19:22:16.314 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 19:22:16.246 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 19:22:16.396 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 19:22:57.685 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53954 10 6452 1 2025-09-02 19:23:58.106 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43468 10 6452 1 2025-09-02 19:19:23.665 00:06:00.209 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 19:24:58.508 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39598 10 6452 1 2025-09-02 19:20:23.663 00:06:00.214 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 19:25:58.920 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:40686 10 6452 1 2025-09-02 19:26:59.320 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47772 10 6452 1 2025-09-02 19:27:16.262 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 19:27:16.347 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 19:27:16.186 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 19:27:16.307 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 19:27:16.345 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 19:27:59.729 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55486 10 6452 1 2025-09-02 19:29:00.128 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41418 10 6452 1 2025-09-02 19:30:00.526 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57756 10 6452 1 2025-09-02 19:31:00.933 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:45462 10 6452 1 2025-09-02 19:26:23.667 00:06:00.209 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 19:32:01.361 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56982 10 6452 1 2025-09-02 19:32:16.428 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 19:32:16.384 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 19:32:16.397 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 19:32:16.346 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 19:32:16.386 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 19:27:23.665 00:06:00.214 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 19:33:01.722 00:00:10.449 TCP 1.101.0.1:3000 -> 23.104.0.1:44766 12 10365 1 2025-09-02 19:34:02.215 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51886 10 6452 1 2025-09-02 19:35:02.576 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51606 10 6452 1 2025-09-02 19:36:02.975 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57738 10 6452 1 2025-09-02 19:37:03.384 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53586 10 6452 1 2025-09-02 19:37:16.659 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 19:37:16.365 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 19:37:16.465 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 19:37:16.485 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 19:37:16.742 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 19:38:03.781 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51160 10 6452 1 2025-09-02 19:33:23.668 00:06:00.209 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 19:39:04.186 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59760 10 6452 1 2025-09-02 19:34:23.667 00:06:00.213 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 19:40:04.588 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:52778 10 6452 1 2025-09-02 19:41:05.016 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:34412 10 6452 1 2025-09-02 19:42:05.446 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34942 10 6452 1 2025-09-02 19:42:16.487 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 19:42:16.411 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 19:42:16.495 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 19:42:16.535 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 19:42:16.577 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 19:43:05.848 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:51310 10 6452 1 2025-09-02 19:44:06.225 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56800 10 6452 1 2025-09-02 19:45:06.591 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35948 10 6452 1 2025-09-02 19:40:23.675 00:06:00.203 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 19:46:06.989 00:00:10.594 TCP 1.101.0.1:3000 -> 23.104.0.1:32864 10 6452 1 2025-09-02 19:41:23.673 00:06:00.208 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 19:47:16.961 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 19:47:16.379 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 19:47:07.620 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:55888 10 6452 1 2025-09-02 19:47:16.958 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 19:47:17.090 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 19:47:17.042 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 19:48:07.981 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50550 10 6452 1 2025-09-02 19:49:08.384 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34514 10 6452 1 2025-09-02 19:50:08.781 00:00:10.618 TCP 1.101.0.1:3000 -> 23.104.0.1:56158 10 6452 1 2025-09-02 19:51:09.442 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43518 10 6452 1 2025-09-02 19:52:16.618 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 19:52:16.536 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 19:52:16.650 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 19:52:16.535 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 19:52:16.628 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 19:52:09.844 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:38238 10 6452 1 2025-09-02 19:47:23.676 00:06:00.204 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 19:53:10.266 00:00:10.415 TCP 1.101.0.1:3000 -> 23.104.0.1:39284 11 6504 1 2025-09-02 19:48:23.674 00:06:00.209 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 19:54:10.723 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:60036 10 6452 1 2025-09-02 19:55:11.160 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59338 10 6452 1 2025-09-02 19:56:11.565 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48728 10 6452 1 2025-09-02 19:57:16.953 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 19:57:16.962 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 19:57:16.831 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 19:57:16.871 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 19:57:16.822 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 19:57:11.970 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54410 10 6452 1 2025-09-02 19:58:12.376 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36548 10 6452 1 Summary: total flows: 136, total bytes: 427809, total packets: 1011, avg bps: 950, avg pps: 0, avg bpp: 423 Time window: 2025-09-02 18:58:23 - 2025-09-02 19:58:22 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0041s User: 0.0008s Wall: 0.0019s flows/second: 72693.4 Runtime: 0.0019s