Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-29 04:59:19.183 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:46924 10 6452 1 2025-09-29 04:54:36.469 00:06:00.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 05:00:05.965 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 05:00:05.572 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 05:00:05.754 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 05:00:05.765 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 05:00:05.837 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 05:00:19.533 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55400 10 6452 1 2025-09-29 05:01:19.942 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60900 10 6452 1 2025-09-29 05:02:20.357 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55704 10 6452 1 2025-09-29 05:03:20.765 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:44954 10 6452 1 2025-09-29 05:04:21.186 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60288 10 6452 1 2025-09-29 04:59:36.476 00:06:00.162 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 05:05:05.922 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 05:05:05.872 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 05:05:06.212 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 05:05:06.129 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 05:05:06.220 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 05:05:21.587 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:51738 10 6452 1 2025-09-29 05:06:21.952 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37272 11 6504 1 2025-09-29 05:01:36.473 00:06:00.166 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 05:07:22.369 00:00:10.450 TCP 1.101.0.1:3000 -> 23.104.0.1:53088 12 10375 1 2025-09-29 05:08:22.854 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:34854 10 6452 1 2025-09-29 05:09:23.226 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39326 10 6452 1 2025-09-29 05:10:06.339 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 05:10:05.742 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 05:10:05.782 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 05:10:06.256 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 05:10:06.110 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 05:10:23.630 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:44314 10 6452 1 2025-09-29 05:11:24.069 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59762 10 6452 1 2025-09-29 05:06:36.475 00:06:00.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 05:12:24.470 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:43246 10 6452 1 2025-09-29 05:08:36.476 00:06:00.166 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 05:13:24.888 00:00:13.836 TCP 1.101.0.1:3000 -> 23.104.0.1:36438 10 6452 1 2025-09-29 05:14:28.769 00:00:10.423 TCP 1.101.0.1:3000 -> 23.104.0.1:36748 10 6452 1 2025-09-29 05:15:05.934 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 05:15:06.018 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 05:15:06.195 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 05:15:05.984 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 05:15:06.133 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 05:15:29.227 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44758 10 6452 1 2025-09-29 05:16:29.635 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60966 10 6452 1 2025-09-29 05:17:30.038 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39750 10 6452 1 2025-09-29 05:18:30.441 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46632 10 6452 1 2025-09-29 05:13:36.478 00:06:00.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 05:19:30.803 00:00:10.512 TCP 1.101.0.1:3000 -> 23.104.0.1:42532 10 6452 1 2025-09-29 05:20:06.183 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 05:20:06.089 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 05:20:06.294 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 05:20:06.052 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 05:20:06.377 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 05:15:36.477 00:06:00.166 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 05:20:31.353 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43072 10 6452 1 2025-09-29 05:21:31.756 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52834 10 6452 1 2025-09-29 05:22:32.151 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58632 10 6452 1 2025-09-29 05:23:32.556 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:58422 10 6452 1 2025-09-29 05:24:32.926 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:44198 10 6452 1 2025-09-29 05:25:06.432 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 05:25:06.495 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 05:25:06.228 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 05:25:06.349 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 05:25:06.284 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 05:20:36.481 00:06:00.160 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 05:25:33.350 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41582 10 6452 1 2025-09-29 05:26:33.753 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59810 10 6452 1 2025-09-29 05:22:36.478 00:06:00.166 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 05:27:34.156 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37232 10 6452 1 2025-09-29 05:28:34.564 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58066 10 6452 1 2025-09-29 05:29:34.926 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:46860 10 6452 1 2025-09-29 05:30:06.473 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 05:30:06.298 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 05:30:06.429 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 05:30:06.355 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 05:30:06.512 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 05:30:35.357 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52144 10 6452 1 2025-09-29 05:31:35.758 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34806 10 6452 1 2025-09-29 05:27:36.481 00:06:00.161 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 05:32:36.169 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44498 10 6452 1 2025-09-29 05:33:36.575 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53472 10 6452 1 2025-09-29 05:29:36.480 00:06:00.165 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 05:34:36.943 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:42530 10 6452 1 2025-09-29 05:35:06.314 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 05:35:06.517 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 05:35:06.495 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 05:35:06.231 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 05:35:06.600 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 05:35:37.368 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54796 10 6452 1 2025-09-29 05:36:37.793 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:56828 10 6452 1 2025-09-29 05:37:38.156 00:00:10.415 TCP 1.101.0.1:3000 -> 23.104.0.1:60152 11 6504 1 2025-09-29 05:38:38.610 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48348 10 6452 1 2025-09-29 05:34:36.484 00:06:00.160 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 05:39:39.015 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60896 10 6452 1 2025-09-29 05:40:06.957 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 05:40:06.883 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 05:40:07.001 00:00:00.043 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 05:40:07.006 00:00:00.034 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 05:40:07.083 00:00:00.043 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 05:40:39.377 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39970 10 6452 1 2025-09-29 05:36:36.484 00:06:00.163 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 05:41:39.774 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:51922 10 6452 1 2025-09-29 05:42:40.189 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37738 10 6452 1 2025-09-29 05:43:40.590 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41040 10 6452 1 2025-09-29 05:44:41.012 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43518 10 6452 1 2025-09-29 05:45:06.743 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 05:45:06.813 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 05:45:06.747 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 05:45:06.795 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 05:45:06.831 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 05:45:41.416 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:60352 10 6452 1 2025-09-29 05:41:36.489 00:06:00.158 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 05:46:41.842 00:00:10.353 TCP 1.101.0.1:3000 -> 23.104.0.1:42254 10 6452 1 2025-09-29 05:47:42.234 00:00:10.513 TCP 1.101.0.1:3000 -> 23.104.0.1:50742 10 6452 1 2025-09-29 05:43:36.487 00:06:00.163 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 05:48:42.786 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57814 12 6556 1 2025-09-29 05:49:43.191 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:32838 10 6452 1 2025-09-29 05:50:06.903 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 05:50:06.930 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 05:50:06.844 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 05:50:06.819 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 05:50:06.718 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 05:50:43.596 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44636 10 6452 1 2025-09-29 05:51:43.997 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36028 10 6452 1 2025-09-29 05:52:44.405 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47990 10 6452 1 2025-09-29 05:48:36.491 00:06:00.158 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 05:53:44.771 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53406 10 6452 1 2025-09-29 05:54:45.193 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:43656 10 6452 1 2025-09-29 05:55:07.170 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 05:55:06.599 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 05:55:07.108 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 05:55:06.964 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 05:55:07.191 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 05:50:36.487 00:06:00.164 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 05:55:45.588 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49212 10 6452 1 2025-09-29 05:56:45.990 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38176 10 6452 1 2025-09-29 05:57:46.352 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41320 10 6452 1 Summary: total flows: 136, total bytes: 414556, total packets: 1014, avg bps: 872, avg pps: 0, avg bpp: 408 Time window: 2025-09-29 04:54:36 - 2025-09-29 05:57:56 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0024s User: 0.0024s Wall: 0.0012s flows/second: 115167.6 Runtime: 0.0012s