Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-04 16:59:01.187 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:51068 10 6452 1 2025-09-04 16:54:24.591 00:06:00.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-04 17:00:01.552 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33788 10 6452 1 2025-09-04 17:01:01.959 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46018 10 6452 1 2025-09-04 16:56:24.595 00:06:00.215 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-04 17:02:02.363 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57062 10 6452 1 2025-09-04 17:03:10.758 00:00:00.032 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 17:03:10.896 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 17:03:10.758 00:00:00.034 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 17:03:10.765 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 17:03:10.841 00:00:00.043 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 17:03:02.772 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:43336 10 6452 1 2025-09-04 17:04:03.190 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45966 10 6452 1 2025-09-04 17:05:03.598 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53698 10 6452 1 2025-09-04 17:06:03.959 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60888 10 6452 1 2025-09-04 17:01:24.595 00:06:00.217 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-04 17:07:04.363 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58876 10 6452 1 2025-09-04 17:08:10.905 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 17:08:11.188 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 17:08:11.091 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 17:08:11.097 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 17:08:04.764 00:00:10.503 TCP 1.101.0.1:3000 -> 23.104.0.1:53510 10 6452 1 2025-09-04 17:08:11.175 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 17:03:24.598 00:06:00.213 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-04 17:09:05.303 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49880 10 6452 1 2025-09-04 17:10:05.687 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:59170 10 6452 1 2025-09-04 17:11:06.072 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59036 10 6452 1 2025-09-04 17:12:06.478 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35030 10 6452 1 2025-09-04 17:13:11.270 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 17:13:11.324 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 17:13:11.417 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 17:13:11.188 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 17:13:11.500 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 17:13:06.886 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:37440 11 6504 1 2025-09-04 17:08:24.597 00:06:00.219 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-04 17:14:07.312 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51506 10 6452 1 2025-09-04 17:15:07.717 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:51754 10 6452 1 2025-09-04 17:10:24.601 00:06:00.214 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-04 17:16:08.143 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39280 10 6452 1 2025-09-04 17:17:08.549 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58294 10 6452 1 2025-09-04 17:18:11.589 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 17:18:11.449 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 17:18:11.386 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 17:18:11.506 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 17:18:11.206 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 17:18:08.955 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:60566 10 6452 1 2025-09-04 17:19:09.368 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60086 10 6452 1 2025-09-04 17:20:09.778 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54984 10 6452 1 2025-09-04 17:15:24.599 00:06:00.218 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-04 17:21:10.183 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54022 10 6452 1 2025-09-04 17:22:10.589 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44170 10 6452 1 2025-09-04 17:17:24.602 00:06:00.214 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-04 17:23:11.615 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 17:23:11.610 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 17:23:11.685 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 17:23:11.534 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 17:23:11.614 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 17:23:10.985 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:36462 12 10365 1 2025-09-04 17:24:11.419 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44940 10 6452 1 2025-09-04 17:25:11.831 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60348 10 6452 1 2025-09-04 17:26:12.236 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48692 10 6452 1 2025-09-04 17:27:12.636 00:00:10.850 TCP 1.101.0.1:3000 -> 23.104.0.1:38464 10 6452 1 2025-09-04 17:22:24.601 00:06:00.217 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-04 17:28:11.531 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 17:28:11.585 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 17:28:11.372 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 17:28:11.448 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 17:28:11.415 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 17:28:13.519 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:42802 10 6452 1 2025-09-04 17:24:24.604 00:06:00.212 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-04 17:29:13.938 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:51016 10 6452 1 2025-09-04 17:30:14.374 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51672 10 6452 1 2025-09-04 17:31:14.777 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47640 10 6452 1 2025-09-04 17:32:15.184 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36268 10 6452 1 2025-09-04 17:33:11.701 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 17:33:11.473 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 17:33:11.649 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 17:33:11.598 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 17:33:11.731 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 17:33:15.595 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:50346 10 6452 1 2025-09-04 17:29:24.604 00:06:00.215 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-04 17:34:15.957 00:00:10.786 TCP 1.101.0.1:3000 -> 23.104.0.1:34586 10 6452 1 2025-09-04 17:35:16.782 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57796 10 6452 1 2025-09-04 17:31:24.608 00:06:00.210 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-04 17:36:17.190 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35840 10 6452 1 2025-09-04 17:37:17.594 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40796 10 6452 1 2025-09-04 17:38:11.826 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 17:38:11.670 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 17:38:11.415 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 17:38:11.742 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 17:38:11.796 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 17:38:17.998 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51792 10 6452 1 2025-09-04 17:39:18.397 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59444 10 6452 1 2025-09-04 17:40:18.793 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:33044 10 6452 1 2025-09-04 17:36:24.609 00:06:00.213 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-04 17:41:19.202 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46338 10 6452 1 2025-09-04 17:42:19.606 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43098 10 6452 1 2025-09-04 17:43:12.210 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 17:43:11.878 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 17:43:12.005 00:00:00.055 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 17:43:12.127 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 17:43:12.198 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 17:38:24.613 00:06:00.209 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-04 17:43:20.011 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60098 10 6452 1 2025-09-04 17:44:20.413 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58890 10 6452 1 2025-09-04 17:45:20.824 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50258 10 6452 1 2025-09-04 17:46:21.224 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44670 10 6452 1 2025-09-04 17:47:21.582 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35944 10 6452 1 2025-09-04 17:48:12.285 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 17:48:11.929 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 17:48:11.978 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 17:48:12.202 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 17:48:11.930 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 17:43:24.612 00:06:00.215 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-04 17:48:21.988 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40782 10 6452 1 2025-09-04 17:49:22.396 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35242 10 6452 1 2025-09-04 17:45:24.614 00:06:00.211 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-04 17:50:22.802 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56342 10 6452 1 2025-09-04 17:51:23.204 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56852 10 6452 1 2025-09-04 17:52:23.612 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34358 10 6452 1 2025-09-04 17:53:11.872 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 17:53:11.784 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 17:53:12.141 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 17:53:11.987 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 17:53:12.226 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 17:53:24.021 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39150 10 6452 1 2025-09-04 17:54:24.424 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:51076 10 6452 1 2025-09-04 17:50:24.613 00:06:00.215 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-04 17:55:24.789 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50198 10 6452 1 2025-09-04 17:56:25.194 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33026 10 6452 1 2025-09-04 17:52:24.617 00:06:00.210 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-04 17:57:25.602 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59936 10 6452 1 2025-09-04 17:58:12.182 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 17:58:12.166 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 17:58:12.061 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 17:58:12.100 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 17:58:12.184 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 17:58:26.011 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:60748 10 6452 1 Summary: total flows: 138, total bytes: 421703, total packets: 1035, avg bps: 875, avg pps: 0, avg bpp: 407 Time window: 2025-09-04 16:54:24 - 2025-09-04 17:58:36 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0029s User: 0.0014s Wall: 0.0024s flows/second: 58061.4 Runtime: 0.0024s