Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-12 22:59:26.729 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36808 10 6452 1 2025-09-12 23:00:27.144 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:53842 10 6452 1 2025-09-12 23:01:27.525 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56324 10 6452 1 2025-09-12 23:02:16.423 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 23:02:16.332 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 23:02:16.661 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 23:02:16.340 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 23:02:16.345 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 22:57:28.733 00:06:00.004 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-12 23:02:27.940 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:36876 10 6452 1 2025-09-12 23:03:28.367 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:58834 10 6452 1 2025-09-12 23:04:28.728 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:55764 10 6452 1 2025-09-12 23:00:28.727 00:06:00.014 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-12 23:05:29.148 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60746 10 6452 1 2025-09-12 23:06:29.553 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41940 10 6452 1 2025-09-12 23:07:16.825 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 23:07:16.839 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 23:07:16.779 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 23:07:16.743 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 23:07:16.878 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 23:07:29.970 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59230 10 6452 1 2025-09-12 23:08:30.370 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60646 10 6452 1 2025-09-12 23:04:28.738 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-12 23:09:30.768 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:53022 10 6452 1 2025-09-12 23:10:31.183 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50550 10 6452 1 2025-09-12 23:11:31.582 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:33142 10 6452 1 2025-09-12 23:12:16.843 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 23:12:16.933 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 23:12:16.776 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 23:12:16.761 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 23:12:16.755 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 23:07:28.730 00:06:00.013 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-12 23:12:31.948 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:43246 10 6452 1 2025-09-12 23:13:32.323 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:60126 12 10365 1 2025-09-12 23:14:32.807 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60804 10 6452 1 2025-09-12 23:15:33.242 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59476 10 6452 1 2025-09-12 23:11:28.740 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-12 23:16:33.655 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44786 10 6452 1 2025-09-12 23:17:16.760 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 23:17:16.807 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 23:17:16.823 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 23:17:16.679 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 23:17:16.878 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 23:17:34.070 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:54128 10 6452 1 2025-09-12 23:18:34.435 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59640 10 6452 1 2025-09-12 23:14:28.732 00:06:00.010 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-12 23:19:34.841 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:57772 10 6452 1 2025-09-12 23:20:35.263 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56940 10 6452 1 2025-09-12 23:21:35.666 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42628 10 6452 1 2025-09-12 23:22:17.753 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 23:22:17.179 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 23:22:16.528 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 23:22:17.207 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 23:22:17.835 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 23:22:36.026 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46350 12 6556 1 2025-09-12 23:18:28.740 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-12 23:23:36.424 00:00:10.781 TCP 1.101.0.1:3000 -> 23.104.0.1:37898 10 6452 1 2025-09-12 23:24:37.239 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58696 10 6452 1 2025-09-12 23:25:37.645 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33246 10 6452 1 2025-09-12 23:21:28.735 00:06:00.008 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-12 23:26:38.053 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57588 10 6452 1 2025-09-12 23:27:17.084 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 23:27:17.171 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 23:27:17.145 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 23:27:16.950 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 23:27:17.228 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 23:27:38.460 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49776 10 6452 1 2025-09-12 23:28:38.861 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:44884 10 6452 1 2025-09-12 23:29:39.282 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:56024 10 6452 1 2025-09-12 23:25:28.742 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-12 23:30:39.758 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:44144 10 6452 1 2025-09-12 23:31:40.184 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37290 10 6452 1 2025-09-12 23:32:17.903 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 23:32:17.743 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 23:32:17.705 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 23:32:17.778 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 23:32:17.787 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 23:32:40.548 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:45760 10 6452 1 2025-09-12 23:28:28.737 00:06:00.008 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-12 23:33:40.944 00:00:10.740 TCP 1.101.0.1:3000 -> 23.104.0.1:35762 10 6452 1 2025-09-12 23:34:41.723 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50458 10 6452 1 2025-09-12 23:35:42.131 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56180 10 6452 1 2025-09-12 23:36:42.535 00:00:11.005 TCP 1.101.0.1:3000 -> 23.104.0.1:38452 10 6452 1 2025-09-12 23:37:17.301 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 23:37:17.127 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 23:37:17.282 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 23:37:17.219 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 23:37:17.345 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 23:32:28.743 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 9 601 1 2025-09-12 23:37:43.585 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:46988 10 6452 1 2025-09-12 23:38:44.011 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46720 10 6452 1 2025-09-12 23:39:44.408 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57684 10 6452 1 2025-09-12 23:35:28.742 00:06:00.006 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-12 23:40:44.820 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52884 10 6452 1 2025-09-12 23:41:45.221 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56154 10 6452 1 2025-09-12 23:42:17.459 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 23:42:17.377 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 23:42:17.327 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 23:42:17.376 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 23:42:17.377 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 23:42:45.624 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46484 10 6452 1 2025-09-12 23:43:46.023 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48474 10 6452 1 2025-09-12 23:39:28.744 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-09-12 23:44:46.428 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44610 10 6452 1 2025-09-12 23:45:46.834 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:51128 10 6452 1 2025-09-12 23:46:47.263 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51956 10 6452 1 2025-09-12 23:47:17.663 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 23:47:17.472 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 23:47:17.396 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 23:47:17.581 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 23:47:17.242 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 23:42:28.743 00:06:00.006 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-12 23:47:47.668 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57892 10 6452 1 2025-09-12 23:48:48.093 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53830 10 6452 1 2025-09-12 23:49:48.500 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:54618 10 6452 1 2025-09-12 23:50:48.908 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:57152 10 6452 1 2025-09-12 23:46:28.747 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-12 23:51:49.330 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50666 10 6452 1 2025-09-12 23:52:17.562 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 23:52:17.558 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 23:52:17.570 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 23:52:17.729 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 23:52:17.652 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 23:52:49.739 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50906 10 6452 1 2025-09-12 23:53:50.147 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40462 10 6452 1 2025-09-12 23:49:28.743 00:06:00.007 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-12 23:54:50.548 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52892 10 6452 1 2025-09-12 23:55:50.950 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:37566 10 6452 1 2025-09-12 23:56:51.326 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:41846 10 6452 1 2025-09-12 23:57:17.718 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-12 23:57:17.727 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-12 23:57:17.672 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 23:57:17.638 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-12 23:57:17.896 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-12 23:57:51.683 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41364 10 6452 1 2025-09-12 23:53:28.747 00:06:00.005 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 Summary: total flows: 136, total bytes: 411582, total packets: 957, avg bps: 885, avg pps: 0, avg bpp: 430 Time window: 2025-09-12 22:57:28 - 2025-09-12 23:59:28 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0044s User: 0.0009s Wall: 0.0020s flows/second: 66896.4 Runtime: 0.0021s