Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-15 09:59:25.104 00:00:10.777 TCP 1.101.0.1:3000 -> 23.104.0.1:49688 10 6452 1 2025-09-15 10:00:25.920 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46486 10 6452 1 2025-09-15 10:01:26.323 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34910 10 6452 1 2025-09-15 10:02:26.727 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:57792 10 6452 1 2025-09-15 10:03:27.744 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 10:03:27.479 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 10:03:27.595 00:00:00.020 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 10:03:27.662 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 10:03:27.476 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 10:03:27.147 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44120 10 6452 1 2025-09-15 09:59:29.894 00:06:00.027 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 09:59:29.915 00:06:00.004 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 10:04:27.548 00:00:10.605 TCP 1.101.0.1:3000 -> 23.104.0.1:48338 10 6452 1 2025-09-15 10:05:28.189 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47892 10 6452 1 2025-09-15 10:06:28.591 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:49610 10 6452 1 2025-09-15 10:07:28.955 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48100 10 6452 1 2025-09-15 10:08:27.769 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 10:08:27.868 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 10:08:28.086 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 10:08:27.688 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 10:08:28.170 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 10:08:29.360 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45498 10 6452 1 2025-09-15 10:09:29.763 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:38938 10 6452 1 2025-09-15 10:10:30.183 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47538 10 6452 1 2025-09-15 10:06:29.897 00:06:00.025 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 10:06:29.918 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 10:11:30.589 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:57716 10 6452 1 2025-09-15 10:12:30.965 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39250 10 6452 1 2025-09-15 10:13:27.583 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 10:13:27.434 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 10:13:27.778 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 10:13:27.927 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 10:13:27.861 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 10:13:31.370 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43026 10 6452 1 2025-09-15 10:14:31.773 00:00:10.446 TCP 1.101.0.1:3000 -> 23.104.0.1:37906 12 10367 1 2025-09-15 10:15:32.258 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43958 10 6452 1 2025-09-15 10:16:32.663 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49086 10 6452 1 2025-09-15 10:17:33.065 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41136 10 6452 1 2025-09-15 10:13:29.899 00:06:00.026 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 10:18:28.344 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 10:18:27.916 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 10:18:27.941 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 10:18:28.263 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 10:18:27.889 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 10:13:29.921 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 10:18:33.480 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:60886 10 6452 1 2025-09-15 10:19:33.886 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50160 10 6452 1 2025-09-15 10:20:34.288 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:35022 10 6452 1 2025-09-15 10:21:34.670 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45726 10 6452 1 2025-09-15 10:22:35.110 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54962 10 6452 1 2025-09-15 10:23:27.805 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 10:23:27.884 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 10:23:27.814 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 10:23:27.971 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 10:23:27.895 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 10:23:35.540 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41890 10 6452 1 2025-09-15 10:24:35.946 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:46222 10 6452 1 2025-09-15 10:20:29.922 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 10:20:29.900 00:06:00.026 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 10:25:36.360 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57628 10 6452 1 2025-09-15 10:26:36.764 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39822 10 6452 1 2025-09-15 10:27:37.171 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:34392 10 6452 1 2025-09-15 10:28:28.088 00:00:00.040 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 10:28:28.007 00:00:00.040 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 10:28:28.122 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 10:28:28.060 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 10:28:27.958 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 10:28:37.568 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40780 10 6452 1 2025-09-15 10:29:37.967 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:40530 12 10367 1 2025-09-15 10:30:38.442 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37572 10 6452 1 2025-09-15 10:31:38.844 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:56356 10 6452 1 2025-09-15 10:27:29.924 00:06:00.004 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 10:27:29.904 00:06:00.027 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 10:32:39.275 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35372 10 6452 1 2025-09-15 10:33:28.174 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 10:33:28.222 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 10:33:28.256 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 10:33:28.253 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 10:33:28.340 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 10:33:39.674 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40354 10 6452 1 2025-09-15 10:34:40.039 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60968 10 6452 1 2025-09-15 10:35:40.441 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59166 10 6452 1 2025-09-15 10:36:40.800 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39356 10 6452 1 2025-09-15 10:37:41.208 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49746 10 6452 1 2025-09-15 10:38:28.711 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 10:38:28.354 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 10:38:28.471 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 10:38:28.628 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 10:38:28.698 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 10:38:41.615 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45698 10 6452 1 2025-09-15 10:34:29.904 00:06:00.027 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 10:34:29.927 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 10:39:42.021 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:43216 10 6452 1 2025-09-15 10:40:42.381 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59666 10 6452 1 2025-09-15 10:41:42.793 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33886 10 6452 1 2025-09-15 10:42:43.198 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:34816 10 6452 1 2025-09-15 10:43:28.270 00:00:00.033 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 10:43:28.293 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 10:43:28.502 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 10:43:28.544 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 10:43:28.584 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 10:43:43.566 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51650 10 6452 1 2025-09-15 10:44:44.011 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:42062 10 6452 1 2025-09-15 10:45:44.406 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50378 10 6452 1 2025-09-15 10:41:29.930 00:06:00.007 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 10:41:29.905 00:06:00.033 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 10:46:44.806 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:56508 10 6452 1 2025-09-15 10:47:45.228 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54474 10 6452 1 2025-09-15 10:48:28.570 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 10:48:28.500 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 10:48:28.272 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 10:48:28.486 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 10:48:28.408 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 10:48:45.637 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37700 10 6452 1 2025-09-15 10:49:46.044 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:56684 10 6452 1 2025-09-15 10:50:46.407 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44068 10 6452 1 2025-09-15 10:51:46.817 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48580 10 6452 1 2025-09-15 10:52:47.223 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50506 10 6452 1 2025-09-15 10:48:29.906 00:06:00.029 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 10:53:29.018 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 10:53:28.933 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 10:53:28.597 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 10:53:28.935 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 10:53:28.936 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 10:48:29.932 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 10:53:47.593 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49070 10 6452 1 2025-09-15 10:54:48.000 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54838 10 6452 1 2025-09-15 10:55:48.404 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57738 10 6452 1 2025-09-15 10:56:48.806 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59230 10 6452 1 2025-09-15 10:57:49.212 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:42702 10 6452 1 2025-09-15 10:58:28.773 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 10:58:28.596 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 10:58:28.670 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 10:58:28.682 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 10:58:28.753 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 135, total bytes: 414482, total packets: 942, avg bps: 935, avg pps: 0, avg bpp: 440 Time window: 2025-09-15 09:59:25 - 2025-09-15 10:58:28 Total flows processed: 135, passed: 135, Blocks skipped: 0, Bytes read: 14104 Sys: 0.0038s User: 0.0015s Wall: 0.0025s flows/second: 54482.0 Runtime: 0.0025s