Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-03 02:59:10.001 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47712 10 6452 1 2025-09-03 03:00:10.407 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44036 10 6452 1 2025-09-03 02:56:23.800 00:05:00.282 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-03 02:57:23.802 00:05:00.277 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-03 03:01:10.811 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:56834 10 6452 1 2025-09-03 03:02:25.313 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 03:02:25.331 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 03:02:25.327 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 03:02:25.264 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 03:02:11.180 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46872 10 6452 1 2025-09-03 03:02:25.395 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 03:03:11.538 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59836 10 6452 1 2025-09-03 03:04:11.950 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53158 10 6452 1 2025-09-03 03:05:12.317 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46782 10 6452 1 2025-09-03 03:06:12.677 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58000 10 6452 1 2025-09-03 03:02:23.801 00:05:00.282 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-03 03:03:23.804 00:05:00.277 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-03 03:07:25.610 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 03:07:25.480 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 03:07:25.380 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 03:07:25.528 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 03:07:25.423 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 03:07:13.052 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41088 10 6452 1 2025-09-03 03:08:13.462 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37728 10 6452 1 2025-09-03 03:09:13.875 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58354 10 6452 1 2025-09-03 03:10:14.283 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:42160 10 6452 1 2025-09-03 03:11:14.646 00:00:10.507 TCP 1.101.0.1:3000 -> 23.104.0.1:53378 10 6452 1 2025-09-03 03:12:25.749 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 03:12:25.284 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 03:12:25.638 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 03:12:25.684 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 03:12:15.193 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:57296 10 6452 1 2025-09-03 03:08:23.803 00:05:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-03 03:12:25.722 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 03:13:15.596 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45686 10 6452 1 2025-09-03 03:09:23.805 00:05:00.277 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-03 03:14:16.014 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50154 10 6452 1 2025-09-03 03:15:16.418 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56574 10 6452 1 2025-09-03 03:16:16.824 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:59110 10 6452 1 2025-09-03 03:17:25.814 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 03:17:25.505 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 03:17:25.685 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 03:17:25.731 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 03:17:25.843 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 03:17:17.223 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:43196 10 6452 1 2025-09-03 03:14:23.806 00:05:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-03 03:18:17.581 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47048 10 6452 1 2025-09-03 03:15:23.809 00:05:00.276 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-03 03:19:17.980 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50552 10 6452 1 2025-09-03 03:20:18.382 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60216 10 6452 1 2025-09-03 03:21:18.783 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40084 10 6452 1 2025-09-03 03:22:25.611 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 03:22:25.517 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 03:22:25.857 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 03:22:25.690 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 03:22:25.940 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 03:22:19.189 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:40542 10 6452 1 2025-09-03 03:23:19.602 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57800 10 6452 1 2025-09-03 03:20:23.809 00:05:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-03 03:24:20.009 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43900 10 6452 1 2025-09-03 03:21:23.813 00:05:00.274 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-03 03:25:20.407 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42482 10 6452 1 2025-09-03 03:26:20.817 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46882 10 6452 1 2025-09-03 03:27:25.814 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 03:27:25.665 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 03:27:25.731 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 03:27:25.752 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 03:27:25.604 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 03:27:21.220 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38714 10 6452 1 2025-09-03 03:28:21.584 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57610 10 6452 1 2025-09-03 03:29:21.987 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38534 10 6452 1 2025-09-03 03:26:23.816 00:05:00.275 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-03 03:30:22.395 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:47418 10 6452 1 2025-09-03 03:27:23.817 00:05:00.271 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-03 03:31:22.758 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:60826 10 6452 1 2025-09-03 03:32:25.969 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 03:32:25.734 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 03:32:25.886 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 03:32:25.941 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 03:32:25.993 00:00:00.042 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 03:32:23.207 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:46318 10 6452 1 2025-09-03 03:33:23.572 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41306 10 6452 1 2025-09-03 03:34:23.970 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58016 10 6452 1 2025-09-03 03:35:24.383 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:43468 10 6452 1 2025-09-03 03:32:23.817 00:05:00.275 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-03 03:36:24.748 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48482 10 6452 1 2025-09-03 03:37:25.731 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 03:37:25.797 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 03:33:23.820 00:05:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-03 03:37:25.881 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 03:37:25.978 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 03:37:26.065 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 03:37:25.113 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50578 10 6452 1 2025-09-03 03:38:25.519 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42116 10 6452 1 2025-09-03 03:39:25.921 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40176 10 6452 1 2025-09-03 03:40:26.331 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:39508 10 6452 1 2025-09-03 03:41:26.712 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35686 10 6452 1 2025-09-03 03:38:23.827 00:05:00.269 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-03 03:42:26.211 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 03:42:26.000 00:00:00.043 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 03:42:26.201 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 03:42:26.437 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 03:42:26.284 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 03:42:27.126 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52800 10 6452 1 2025-09-03 03:39:23.827 00:05:00.269 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-03 03:43:27.534 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45942 10 6452 1 2025-09-03 03:44:27.899 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:51698 10 6452 1 2025-09-03 03:45:28.317 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37394 10 6452 1 2025-09-03 03:46:28.719 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:53314 10 6452 1 2025-09-03 03:47:26.267 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 03:47:26.113 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 03:47:26.160 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 03:47:26.281 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 03:47:26.243 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 03:47:29.132 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42872 10 6452 1 2025-09-03 03:44:23.825 00:05:00.274 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-03 03:48:29.539 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:50582 10 6452 1 2025-09-03 03:45:23.828 00:05:00.269 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-03 03:49:29.909 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:48274 10 6452 1 2025-09-03 03:50:30.282 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34464 10 6452 1 2025-09-03 03:51:30.686 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41928 10 6452 1 2025-09-03 03:52:26.280 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 03:52:26.204 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 03:52:26.085 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 03:52:26.197 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 03:52:26.205 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 03:52:31.112 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38544 10 6452 1 2025-09-03 03:53:31.517 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46414 10 6452 1 2025-09-03 03:50:23.827 00:05:00.272 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-03 03:54:31.932 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:41012 10 6452 1 2025-09-03 03:51:23.831 00:05:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-03 03:55:32.360 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38422 10 6452 1 2025-09-03 03:56:32.720 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:42686 10 6452 1 2025-09-03 03:57:26.376 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 03:57:26.599 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 03:57:26.225 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 03:57:26.293 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 03:57:26.404 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 03:57:33.119 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:39716 11 6504 1 2025-09-03 03:58:33.580 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57198 10 6452 1 Summary: total flows: 140, total bytes: 417052, total packets: 1021, avg bps: 892, avg pps: 0, avg bpp: 408 Time window: 2025-09-03 02:56:23 - 2025-09-03 03:58:43 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0038s User: 0.0009s Wall: 0.0020s flows/second: 71064.1 Runtime: 0.0020s