Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-15 03:59:36.739 00:00:10.423 TCP 1.101.0.1:3000 -> 23.104.0.1:59996 11 6504 1 2025-09-15 03:55:29.799 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 03:55:29.775 00:06:00.029 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 04:00:37.206 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:37524 10 6452 1 2025-09-15 04:01:37.570 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:52470 10 6452 1 2025-09-15 04:02:37.969 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:47834 10 6452 1 2025-09-15 04:03:20.653 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 04:03:20.768 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 04:03:20.602 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 04:03:20.568 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 04:03:20.480 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 04:03:38.405 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41996 10 6452 1 2025-09-15 04:04:38.806 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:50106 10 6452 1 2025-09-15 04:05:39.223 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:34768 10 6452 1 2025-09-15 04:06:39.592 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55004 10 6452 1 2025-09-15 04:02:29.776 00:06:00.031 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 04:02:29.803 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 04:07:39.962 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45102 10 6452 1 2025-09-15 04:08:20.682 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 04:08:20.606 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 04:08:20.396 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 04:08:20.599 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 04:08:20.466 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 04:08:40.365 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55704 10 6452 1 2025-09-15 04:09:40.764 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:39336 10 6452 1 2025-09-15 04:10:41.192 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41580 10 6452 1 2025-09-15 04:11:41.604 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54830 10 6452 1 2025-09-15 04:12:42.011 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:46634 10 6452 1 2025-09-15 04:13:20.578 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 04:13:20.269 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 04:13:20.506 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 04:13:20.421 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 04:13:20.589 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 04:13:42.457 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41618 10 6452 1 2025-09-15 04:09:29.778 00:06:00.031 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 04:09:29.804 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 04:14:42.862 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:37202 10 6452 1 2025-09-15 04:15:43.276 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48932 10 6452 1 2025-09-15 04:16:43.676 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:36942 10 6452 1 2025-09-15 04:17:44.108 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36864 10 6452 1 2025-09-15 04:18:20.751 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 04:18:20.648 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 04:18:20.727 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 04:18:20.669 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 04:18:20.577 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 04:18:44.515 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50936 10 6452 1 2025-09-15 04:19:44.880 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:53882 12 10367 1 2025-09-15 04:20:45.358 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51790 10 6452 1 2025-09-15 04:16:29.806 00:06:00.004 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 04:16:29.782 00:06:00.031 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 04:21:45.760 00:00:10.598 TCP 1.101.0.1:3000 -> 23.104.0.1:54056 10 6452 1 2025-09-15 04:22:46.398 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36050 10 6452 1 2025-09-15 04:23:20.953 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 04:23:20.792 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 04:23:20.811 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 04:23:20.869 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 04:23:20.610 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 04:23:46.797 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:55200 10 6452 1 2025-09-15 04:24:47.171 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44406 10 6452 1 2025-09-15 04:25:47.576 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43116 10 6452 1 2025-09-15 04:26:47.977 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:59718 10 6452 1 2025-09-15 04:27:48.341 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:46110 10 6452 1 2025-09-15 04:28:20.710 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 04:28:20.860 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 04:28:20.858 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 04:28:20.943 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 04:28:21.003 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 04:23:29.809 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 04:23:29.783 00:06:00.029 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 04:28:48.704 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48178 10 6452 1 2025-09-15 04:29:49.117 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:59846 12 10367 1 2025-09-15 04:30:49.561 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:54334 10 6452 1 2025-09-15 04:31:49.958 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:55986 10 6452 1 2025-09-15 04:32:50.336 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:37254 10 6452 1 2025-09-15 04:33:20.932 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 04:33:21.165 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 04:33:20.994 00:00:00.048 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 04:33:21.249 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 04:33:21.076 00:00:00.047 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 04:33:50.717 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:39448 10 6452 1 2025-09-15 04:34:51.142 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46198 10 6452 1 2025-09-15 04:30:29.810 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 04:30:29.785 00:06:00.030 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 04:35:51.505 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45760 10 6452 1 2025-09-15 04:36:51.907 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:42240 10 6452 1 2025-09-15 04:37:52.330 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51174 10 6452 1 2025-09-15 04:38:20.963 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 04:38:20.909 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 04:38:20.966 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 04:38:20.957 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 04:38:21.048 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 04:38:52.733 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:58830 10 6452 1 2025-09-15 04:39:53.147 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40982 10 6452 1 2025-09-15 04:40:53.550 00:00:10.694 TCP 1.101.0.1:3000 -> 23.104.0.1:54914 10 6452 1 2025-09-15 04:41:54.283 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51472 10 6452 1 2025-09-15 04:37:29.785 00:06:00.031 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 04:37:29.812 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 04:42:54.686 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:59086 10 6452 1 2025-09-15 04:43:21.144 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 04:43:21.090 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 04:43:21.154 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 04:43:21.263 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 04:43:21.237 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 04:43:55.065 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47544 10 6452 1 2025-09-15 04:44:55.474 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:43232 12 10367 1 2025-09-15 04:45:55.914 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57354 10 6452 1 2025-09-15 04:46:56.275 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38396 10 6452 1 2025-09-15 04:47:56.679 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60130 10 6452 1 2025-09-15 04:48:21.425 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 04:48:21.259 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 04:48:21.076 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 04:48:21.343 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 04:48:21.343 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 04:48:57.042 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57062 10 6452 1 2025-09-15 04:44:29.789 00:06:00.031 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 04:44:29.814 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 04:49:57.445 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:36536 10 6452 1 2025-09-15 04:50:57.867 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:50234 10 6452 1 2025-09-15 04:51:58.235 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60520 10 6452 1 2025-09-15 04:52:58.642 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55722 10 6452 1 2025-09-15 04:53:21.570 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 04:53:21.328 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 04:53:21.193 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 04:53:21.486 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 04:53:21.129 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 04:53:59.051 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:59376 10 6452 1 2025-09-15 04:54:59.409 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:35514 10 6452 1 2025-09-15 04:55:59.769 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56720 10 6452 1 2025-09-15 04:51:29.790 00:06:00.031 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 04:51:29.816 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 04:57:00.176 00:00:10.636 TCP 1.101.0.1:3000 -> 23.104.0.1:35612 10 6452 1 2025-09-15 04:58:00.864 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60616 10 6452 1 2025-09-15 04:58:21.789 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 04:58:21.707 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 04:58:21.705 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 04:58:21.364 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 04:58:21.283 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 Summary: total flows: 137, total bytes: 419807, total packets: 966, avg bps: 890, avg pps: 0, avg bpp: 434 Time window: 2025-09-15 03:55:29 - 2025-09-15 04:58:21 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0040s User: 0.0010s Wall: 0.0022s flows/second: 61654.5 Runtime: 0.0022s