Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-15 10:58:49.609 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57162 10 6452 1 2025-09-15 10:59:50.008 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37824 10 6452 1 2025-09-15 10:55:29.906 00:06:00.032 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 10:55:29.932 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 11:00:50.420 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:36880 10 6452 1 2025-09-15 11:01:50.845 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:57516 10 6452 1 2025-09-15 11:02:51.269 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44076 10 6452 1 2025-09-15 11:03:28.669 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 11:03:28.736 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 11:03:28.799 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 11:03:28.895 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 11:03:28.818 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 11:03:51.632 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34496 10 6452 1 2025-09-15 11:04:52.039 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53638 10 6452 1 2025-09-15 11:05:52.452 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:55764 10 6452 1 2025-09-15 11:06:52.853 00:00:10.602 TCP 1.101.0.1:3000 -> 23.104.0.1:42646 10 6452 1 2025-09-15 11:02:29.937 00:06:00.008 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 11:02:29.913 00:06:00.034 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 11:07:53.496 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55082 10 6452 1 2025-09-15 11:08:29.162 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 11:08:29.131 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 11:08:29.157 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 11:08:28.872 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 11:08:29.241 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 11:08:53.895 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:37158 11 6504 1 2025-09-15 11:09:54.375 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40622 10 6452 1 2025-09-15 11:10:54.775 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:43000 10 6452 1 2025-09-15 11:11:55.187 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37302 10 6452 1 2025-09-15 11:12:55.591 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60970 10 6452 1 2025-09-15 11:13:29.045 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 11:13:29.057 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 11:13:29.138 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 11:13:29.097 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 11:13:29.222 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 11:13:55.990 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57292 10 6452 1 2025-09-15 11:09:29.915 00:06:00.033 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 11:09:29.945 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 11:14:56.397 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:41628 10 6452 1 2025-09-15 11:15:56.757 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:34772 10 6452 1 2025-09-15 11:16:57.180 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60958 10 6452 1 2025-09-15 11:17:57.541 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39096 10 6452 1 2025-09-15 11:18:29.390 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 11:18:29.420 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 11:18:29.465 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 11:18:29.509 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 11:18:29.550 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 11:18:57.959 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35862 10 6452 1 2025-09-15 11:19:58.362 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57442 10 6452 1 2025-09-15 11:20:58.774 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:48514 10 6452 1 2025-09-15 11:16:29.947 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 11:16:29.916 00:06:00.034 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 11:21:59.192 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:32898 10 6452 1 2025-09-15 11:22:59.604 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46866 10 6452 1 2025-09-15 11:23:29.340 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 11:23:29.393 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 11:23:29.341 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 11:23:29.215 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 11:23:29.421 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 11:24:00.012 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:37412 10 6452 1 2025-09-15 11:25:00.372 00:00:10.454 TCP 1.101.0.1:3000 -> 23.104.0.1:50378 12 10367 1 2025-09-15 11:26:00.876 00:00:10.554 TCP 1.101.0.1:3000 -> 23.104.0.1:47944 10 6452 1 2025-09-15 11:27:01.469 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38812 10 6452 1 2025-09-15 11:28:01.831 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59970 10 6452 1 2025-09-15 11:28:29.122 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 11:28:29.261 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 11:28:29.293 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 11:28:29.237 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 11:23:29.949 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 11:23:29.919 00:06:00.035 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 11:28:29.376 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 11:29:02.232 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44584 10 6452 1 2025-09-15 11:30:02.632 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48772 10 6452 1 2025-09-15 11:31:03.032 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54538 10 6452 1 2025-09-15 11:32:03.440 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57864 10 6452 1 2025-09-15 11:33:03.841 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:46106 10 6452 1 2025-09-15 11:33:29.527 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 11:33:29.376 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 11:33:29.280 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 11:33:29.444 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 11:33:29.489 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 11:34:04.272 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:50286 10 6452 1 2025-09-15 11:35:04.647 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47354 10 6452 1 2025-09-15 11:30:29.919 00:06:00.036 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 11:30:29.952 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 11:36:05.065 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56214 10 6452 1 2025-09-15 11:37:05.468 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59042 10 6452 1 2025-09-15 11:38:05.870 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45470 10 6452 1 2025-09-15 11:38:29.766 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 11:38:29.561 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 11:38:29.395 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 11:38:29.682 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 11:38:29.517 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 11:39:06.282 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49136 10 6452 1 2025-09-15 11:40:06.647 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56044 10 6452 1 2025-09-15 11:41:07.062 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41986 10 6452 1 2025-09-15 11:42:07.458 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35706 10 6452 1 2025-09-15 11:37:29.953 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 11:37:29.923 00:06:00.035 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 11:43:07.860 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34328 10 6452 1 2025-09-15 11:43:29.762 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 11:43:29.551 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 11:43:29.763 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 11:43:29.761 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 11:43:29.844 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 11:44:08.269 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53300 10 6452 1 2025-09-15 11:45:08.679 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38486 10 6452 1 2025-09-15 11:46:09.039 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39440 10 6452 1 2025-09-15 11:47:09.445 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:46772 10 6452 1 2025-09-15 11:48:09.843 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:51260 10 6452 1 2025-09-15 11:48:29.654 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 11:48:29.654 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 11:48:29.653 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 11:48:29.824 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 11:48:29.743 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 11:49:10.264 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50954 10 6452 1 2025-09-15 11:44:29.925 00:06:00.034 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 11:44:29.955 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 11:50:10.694 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58444 10 6452 1 2025-09-15 11:51:11.116 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44616 10 6452 1 2025-09-15 11:52:11.521 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46136 10 6452 1 2025-09-15 11:53:11.931 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:49738 12 6556 1 2025-09-15 11:53:29.842 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 11:53:29.813 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 11:53:29.673 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 11:53:29.770 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-15 11:53:29.760 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 11:54:12.352 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55802 10 6452 1 2025-09-15 11:55:12.755 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:32890 10 6452 1 2025-09-15 11:56:13.205 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37912 10 6452 1 2025-09-15 11:51:29.927 00:06:00.035 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-15 11:51:29.957 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-15 11:57:13.612 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58740 10 6452 1 2025-09-15 11:58:29.923 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-15 11:58:14.024 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35458 10 6452 1 2025-09-15 11:58:29.753 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-15 11:58:29.888 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 11:58:29.843 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-15 11:58:29.927 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 Summary: total flows: 138, total bytes: 418533, total packets: 974, avg bps: 885, avg pps: 0, avg bpp: 429 Time window: 2025-09-15 10:55:29 - 2025-09-15 11:58:29 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0030s User: 0.0020s Wall: 0.0020s flows/second: 70125.3 Runtime: 0.0020s