Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-20 08:59:21.821 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55602 10 6452 1 2025-09-20 09:00:22.232 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34556 10 6452 1 2025-09-20 09:00:50.858 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 09:00:50.779 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 09:00:50.783 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:00:50.775 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:00:50.697 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 09:01:22.635 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49522 10 6452 1 2025-09-20 09:02:23.042 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:43574 10 6452 1 2025-09-20 09:03:23.409 00:00:11.038 TCP 1.101.0.1:3000 -> 23.104.0.1:51130 10 6452 1 2025-09-20 09:04:24.486 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58800 10 6452 1 2025-09-20 09:05:24.890 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:42358 10 6452 1 2025-09-20 09:00:32.340 00:06:00.005 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 09:00:32.339 00:06:00.005 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 09:05:50.921 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 09:05:50.775 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 09:05:50.474 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:05:50.840 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:05:50.779 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 09:06:25.307 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37702 10 6452 1 2025-09-20 09:07:25.671 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:33476 12 6556 1 2025-09-20 09:08:26.138 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50710 10 6452 1 2025-09-20 09:09:26.553 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40614 10 6452 1 2025-09-20 09:10:26.958 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48698 10 6452 1 2025-09-20 09:10:50.938 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 09:10:50.784 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:10:50.938 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:10:51.021 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 09:10:51.072 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 09:11:27.367 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55840 10 6452 1 2025-09-20 09:07:32.342 00:06:00.044 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-09-20 09:07:32.342 00:06:00.007 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 09:12:27.785 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48496 10 6452 1 2025-09-20 09:13:28.145 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43164 10 6452 1 2025-09-20 09:14:28.550 00:00:10.485 TCP 1.101.0.1:3000 -> 23.104.0.1:51802 10 6452 1 2025-09-20 09:15:29.099 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36432 10 6452 1 2025-09-20 09:15:50.810 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 09:15:50.727 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:15:50.988 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 09:15:51.164 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:15:51.128 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 09:16:29.460 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38366 10 6452 1 2025-09-20 09:17:29.858 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:45998 10 6452 1 2025-09-20 09:18:30.228 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39528 10 6452 1 2025-09-20 09:14:32.346 00:06:00.004 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 09:14:32.344 00:06:00.005 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 09:19:30.589 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41718 10 6452 1 2025-09-20 09:20:30.993 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36750 10 6452 1 2025-09-20 09:20:51.622 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 09:20:51.312 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 09:20:51.316 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:20:51.538 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:20:51.324 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 09:21:31.400 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54964 10 6452 1 2025-09-20 09:22:31.805 00:00:10.527 TCP 1.101.0.1:3000 -> 23.104.0.1:37338 10 6452 1 2025-09-20 09:23:32.372 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53376 10 6452 1 2025-09-20 09:24:32.772 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:36438 10 6452 1 2025-09-20 09:25:33.190 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34828 10 6452 1 2025-09-20 09:25:51.314 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 09:25:51.125 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 09:25:51.329 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:25:51.232 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:25:51.369 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 09:21:32.346 00:06:00.004 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 09:21:32.347 00:06:00.004 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 09:26:33.553 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58276 10 6452 1 2025-09-20 09:27:33.960 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34418 10 6452 1 2025-09-20 09:28:34.358 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37368 10 6452 1 2025-09-20 09:29:34.762 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:36486 10 6452 1 2025-09-20 09:30:35.180 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48532 10 6452 1 2025-09-20 09:30:51.439 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 09:30:51.278 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 09:30:51.354 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:30:51.356 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:30:51.358 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 09:31:35.576 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:42258 10 6452 1 2025-09-20 09:32:35.983 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45946 10 6452 1 2025-09-20 09:28:32.348 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 09:28:32.348 00:06:00.004 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 09:33:36.388 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60334 12 6556 1 2025-09-20 09:34:36.791 00:00:10.863 TCP 1.101.0.1:3000 -> 23.104.0.1:41486 10 6452 1 2025-09-20 09:35:37.691 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56144 10 6452 1 2025-09-20 09:35:51.874 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 09:35:51.815 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:35:51.610 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:35:51.875 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 09:35:51.700 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 09:36:38.110 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55868 10 6452 1 2025-09-20 09:37:38.512 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53492 10 6452 1 2025-09-20 09:38:38.917 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43428 10 6452 1 2025-09-20 09:39:39.279 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33112 10 6452 1 2025-09-20 09:35:32.348 00:06:00.005 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 09:35:32.349 00:06:00.004 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 09:40:39.689 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55410 10 6452 1 2025-09-20 09:40:51.387 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 09:40:51.608 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:40:51.480 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:40:51.383 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 09:40:51.563 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 09:41:40.112 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44510 10 6452 1 2025-09-20 09:42:40.514 00:00:10.545 TCP 1.101.0.1:3000 -> 23.104.0.1:41938 10 6452 1 2025-09-20 09:43:41.111 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45542 10 6452 1 2025-09-20 09:44:41.515 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48236 10 6452 1 2025-09-20 09:45:51.677 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 09:45:51.668 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 09:45:51.558 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:45:41.910 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55892 10 6452 1 2025-09-20 09:45:51.594 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:45:51.672 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 09:46:42.323 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:59296 10 6452 1 2025-09-20 09:42:32.353 00:06:00.005 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 09:42:32.352 00:06:00.004 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 09:47:42.697 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55808 10 6452 1 2025-09-20 09:48:43.109 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52032 10 6452 1 2025-09-20 09:49:43.472 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40224 10 6452 1 2025-09-20 09:50:51.833 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 09:50:51.674 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 09:50:51.640 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:50:51.751 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:50:51.749 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 09:50:43.878 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45448 10 6452 1 2025-09-20 09:51:44.237 00:00:10.449 TCP 1.101.0.1:3000 -> 23.104.0.1:57744 12 10367 1 2025-09-20 09:52:44.732 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40862 10 6452 1 2025-09-20 09:53:45.141 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60882 10 6452 1 2025-09-20 09:49:32.356 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 09:49:32.354 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 09:54:45.547 00:00:11.796 TCP 1.101.0.1:3000 -> 23.104.0.1:49952 10 6452 1 2025-09-20 09:55:52.712 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 09:55:52.982 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 09:55:52.773 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:55:52.629 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:55:52.738 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 09:55:47.400 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49238 10 6452 1 2025-09-20 09:56:47.802 00:00:10.718 TCP 1.101.0.1:3000 -> 23.104.0.1:38512 10 6452 1 2025-09-20 09:57:48.570 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50512 10 6452 1 Summary: total flows: 135, total bytes: 413635, total packets: 999, avg bps: 940, avg pps: 0, avg bpp: 414 Time window: 2025-09-20 08:59:21 - 2025-09-20 09:57:58 Total flows processed: 135, passed: 135, Blocks skipped: 0, Bytes read: 14104 Sys: 0.0028s User: 0.0019s Wall: 0.0028s flows/second: 48371.0 Runtime: 0.0028s