Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-07 17:54:26.084 00:06:00.093 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-07 17:59:18.655 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59854 10 6452 1 2025-09-07 17:59:38.883 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-07 17:59:38.798 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-07 17:59:38.879 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 17:59:38.800 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 17:59:38.799 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-07 18:00:19.060 00:00:10.476 TCP 1.101.0.1:3000 -> 23.104.0.1:52450 10 6452 1 2025-09-07 18:01:19.578 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39148 10 6452 1 2025-09-07 18:02:19.987 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:50090 10 6452 1 2025-09-07 18:03:20.353 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50382 10 6452 1 2025-09-07 18:04:38.979 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-07 18:04:20.773 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:38046 10 6452 1 2025-09-07 18:04:38.897 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-07 18:04:38.463 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 18:04:38.897 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 18:04:38.828 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-07 18:00:26.082 00:06:00.099 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-07 18:05:21.190 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32860 10 6452 1 2025-09-07 18:01:26.086 00:06:00.092 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-07 18:06:21.598 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:38118 10 6452 1 2025-09-07 18:07:21.964 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:52100 10 6452 1 2025-09-07 18:08:22.390 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38276 10 6452 1 2025-09-07 18:09:22.804 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:36878 10 6452 1 2025-09-07 18:09:38.982 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-07 18:09:38.937 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 18:09:38.926 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 18:09:38.977 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-07 18:09:39.009 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-07 18:10:23.230 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59724 10 6452 1 2025-09-07 18:11:23.635 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51606 10 6452 1 2025-09-07 18:07:26.083 00:06:00.097 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-07 18:12:24.048 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43776 10 6452 1 2025-09-07 18:08:26.086 00:06:00.092 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-07 18:13:24.451 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60798 10 6452 1 2025-09-07 18:14:39.306 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-07 18:14:24.844 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:40130 10 6452 1 2025-09-07 18:14:39.226 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-07 18:14:39.265 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 18:14:39.224 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 18:14:39.430 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-07 18:15:25.278 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60746 10 6452 1 2025-09-07 18:16:25.693 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34910 10 6452 1 2025-09-07 18:17:26.112 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33276 10 6452 1 2025-09-07 18:18:26.517 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:37004 10 6452 1 2025-09-07 18:14:26.083 00:06:00.099 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-07 18:19:39.203 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-07 18:19:38.999 00:00:00.039 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 18:19:39.266 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 18:19:39.270 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-07 18:19:26.922 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57292 10 6452 1 2025-09-07 18:19:39.348 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-07 18:15:26.088 00:06:00.093 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-07 18:20:27.331 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53126 10 6452 1 2025-09-07 18:21:27.732 00:00:10.731 TCP 1.101.0.1:3000 -> 23.104.0.1:46446 10 6452 1 2025-09-07 18:22:28.499 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57712 10 6452 1 2025-09-07 18:23:28.866 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44256 10 6452 1 2025-09-07 18:24:39.541 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 18:24:39.455 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-07 18:24:29.273 00:00:11.143 TCP 1.101.0.1:3000 -> 23.104.0.1:46088 10 6452 1 2025-09-07 18:24:39.539 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-07 18:24:39.199 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 18:24:39.624 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-07 18:25:30.457 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:49138 10 6452 1 2025-09-07 18:21:26.086 00:06:00.098 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-07 18:26:30.815 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57146 10 6452 1 2025-09-07 18:22:26.089 00:06:00.094 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-07 18:27:31.215 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49026 10 6452 1 2025-09-07 18:28:31.621 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48434 10 6452 1 2025-09-07 18:29:39.325 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 18:29:39.375 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 18:29:39.287 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-07 18:29:39.369 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-07 18:29:39.455 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-07 18:29:32.022 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:49376 10 6452 1 2025-09-07 18:30:32.387 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43638 10 6452 1 2025-09-07 18:31:32.789 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:40946 10 6452 1 2025-09-07 18:32:33.147 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:43740 10 6452 1 2025-09-07 18:28:26.088 00:06:00.098 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-07 18:33:33.545 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60522 10 6452 1 2025-09-07 18:29:26.089 00:06:00.094 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-07 18:34:39.582 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-07 18:34:39.517 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 18:34:39.584 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 18:34:39.480 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-07 18:34:39.668 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-07 18:34:33.955 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57120 10 6452 1 2025-09-07 18:35:34.358 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56180 10 6452 1 2025-09-07 18:36:34.764 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:44594 10 6452 1 2025-09-07 18:37:35.133 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42600 10 6452 1 2025-09-07 18:38:35.535 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33706 10 6452 1 2025-09-07 18:39:39.954 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-07 18:39:39.598 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-07 18:39:39.468 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 18:39:39.872 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 18:39:39.822 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-07 18:39:35.944 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37500 10 6452 1 2025-09-07 18:35:26.087 00:06:00.098 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-07 18:40:36.354 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35868 10 6452 1 2025-09-07 18:36:26.090 00:06:00.095 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-07 18:41:36.766 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:35642 10 6452 1 2025-09-07 18:42:37.171 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55706 10 6452 1 2025-09-07 18:43:37.543 00:00:10.452 TCP 1.101.0.1:3000 -> 23.104.0.1:45190 12 10365 1 2025-09-07 18:44:39.954 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-07 18:44:39.878 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-07 18:44:39.805 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 18:44:39.871 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 18:44:39.957 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-07 18:44:38.037 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49144 10 6452 1 2025-09-07 18:45:38.436 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59156 10 6452 1 2025-09-07 18:46:38.839 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:35366 10 6452 1 2025-09-07 18:42:26.089 00:06:00.099 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-07 18:47:39.272 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59432 10 6452 1 2025-09-07 18:43:26.094 00:06:00.095 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-07 18:48:39.683 00:00:10.457 TCP 1.101.0.1:3000 -> 23.104.0.1:48584 12 10574 1 2025-09-07 18:49:39.918 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-07 18:49:39.819 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 18:49:39.575 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 18:49:39.790 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-07 18:49:39.657 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-07 18:49:40.177 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54016 10 6661 1 2025-09-07 18:50:40.538 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:45356 10 6661 1 2025-09-07 18:51:40.905 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:57402 10 6661 1 2025-09-07 18:52:41.269 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54304 10 6661 1 2025-09-07 18:53:41.674 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34476 10 6661 1 2025-09-07 18:49:26.091 00:06:00.099 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-07 18:54:39.854 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-07 18:54:39.928 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 18:54:39.914 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-07 18:54:39.845 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-07 18:54:39.996 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-07 18:54:42.098 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:48458 10 6661 1 2025-09-07 18:50:26.093 00:06:00.095 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-07 18:55:42.459 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40076 10 6661 1 2025-09-07 18:56:42.864 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:34422 10 6661 1 2025-09-07 18:57:43.294 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60482 10 6661 1 Summary: total flows: 136, total bytes: 420341, total packets: 1012, avg bps: 883, avg pps: 0, avg bpp: 415 Time window: 2025-09-07 17:54:26 - 2025-09-07 18:57:53 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0038s User: 0.0008s Wall: 0.0016s flows/second: 85100.0 Runtime: 0.0016s