Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-29 10:59:01.010 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48820 10 6452 1 2025-09-29 11:00:13.054 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 11:00:13.155 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:00:13.060 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:00:13.197 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 11:00:01.411 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54108 10 6452 1 2025-09-29 11:00:13.144 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 11:01:01.808 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37450 10 6452 1 2025-09-29 10:56:36.575 00:06:00.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 11:02:02.219 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53460 10 6452 1 2025-09-29 11:03:02.581 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53580 10 6452 1 2025-09-29 10:58:36.573 00:06:00.170 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 11:04:02.984 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56298 10 6452 1 2025-09-29 11:05:13.346 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 11:05:13.291 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:05:03.388 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:45470 10 6452 1 2025-09-29 11:05:13.403 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:05:13.262 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 11:05:13.485 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 11:06:03.757 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54408 10 6452 1 2025-09-29 11:07:04.153 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37542 10 6452 1 2025-09-29 11:08:04.517 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:32872 10 6452 1 2025-09-29 11:03:36.576 00:06:00.165 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 11:09:04.934 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:47552 10 6452 1 2025-09-29 11:10:13.214 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 11:10:13.125 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 11:10:13.128 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:10:13.131 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:10:13.253 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 11:10:05.355 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50514 10 6452 1 2025-09-29 11:05:36.574 00:06:00.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 11:11:05.761 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:57398 10 6452 1 2025-09-29 11:12:06.142 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42436 10 6452 1 2025-09-29 11:13:06.546 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48712 10 6452 1 2025-09-29 11:14:06.952 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49190 10 6452 1 2025-09-29 11:15:13.402 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 11:15:13.238 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:15:13.287 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:15:13.285 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 11:15:13.370 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 11:15:07.362 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60112 10 6452 1 2025-09-29 11:10:36.578 00:06:00.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 11:16:07.764 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:35494 10 6452 1 2025-09-29 11:17:08.185 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51468 10 6452 1 2025-09-29 11:12:36.575 00:06:00.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 11:18:08.589 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41310 10 6452 1 2025-09-29 11:19:09.005 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39972 10 6452 1 2025-09-29 11:20:13.472 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 11:20:13.386 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 11:20:13.278 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:20:13.389 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:20:13.389 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 11:20:09.405 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42050 10 6452 1 2025-09-29 11:21:09.810 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60746 10 6452 1 2025-09-29 11:22:10.215 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37046 10 6452 1 2025-09-29 11:17:36.578 00:06:00.170 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 11:23:10.631 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38722 10 6452 1 2025-09-29 11:24:11.038 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55346 10 6452 1 2025-09-29 11:19:36.579 00:06:00.171 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 11:25:13.688 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 11:25:13.674 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 11:25:13.540 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:25:13.606 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:25:13.607 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 11:25:11.439 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33518 10 6452 1 2025-09-29 11:26:11.805 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36742 10 6452 1 2025-09-29 11:27:12.208 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:59326 10 6452 1 2025-09-29 11:28:12.615 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:56950 10 6452 1 2025-09-29 11:29:13.015 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:35644 10 6452 1 2025-09-29 11:24:36.580 00:06:00.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 11:30:13.725 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 11:30:13.550 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:30:13.477 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:30:13.596 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 11:30:13.559 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 11:30:13.390 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56948 10 6452 1 2025-09-29 11:31:13.785 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53042 10 6452 1 2025-09-29 11:26:36.578 00:06:00.177 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 11:32:14.190 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38370 10 6452 1 2025-09-29 11:33:14.590 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47106 10 6452 1 2025-09-29 11:34:14.950 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35458 10 6452 1 2025-09-29 11:35:13.658 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 11:35:13.753 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 11:35:13.574 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:35:13.574 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:35:13.861 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 11:35:15.358 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59258 10 6452 1 2025-09-29 11:36:15.761 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36298 10 6452 1 2025-09-29 11:31:36.582 00:06:00.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 11:37:16.168 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39140 10 6452 1 2025-09-29 11:38:16.575 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57798 10 6452 1 2025-09-29 11:33:36.580 00:06:00.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 11:39:16.979 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:34502 10 6452 1 2025-09-29 11:40:13.749 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 11:40:13.600 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:40:13.832 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:40:13.832 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 11:40:13.915 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 11:40:17.348 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44552 10 6452 1 2025-09-29 11:41:17.747 00:00:11.053 TCP 1.101.0.1:3000 -> 23.104.0.1:38078 10 6452 1 2025-09-29 11:42:18.838 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34350 10 6452 1 2025-09-29 11:43:19.242 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45048 10 6452 1 2025-09-29 11:38:36.585 00:06:00.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 11:44:19.647 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49104 10 6452 1 2025-09-29 11:45:14.332 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 11:45:13.767 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:45:14.135 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:45:14.224 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 11:45:14.218 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 11:45:20.065 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:55038 10 6452 1 2025-09-29 11:40:36.583 00:06:00.179 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 11:46:20.428 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:48340 10 6452 1 2025-09-29 11:47:20.796 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:55688 12 10369 1 2025-09-29 11:48:21.284 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53164 10 6452 1 2025-09-29 11:49:21.681 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50844 10 6452 1 2025-09-29 11:50:14.268 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 11:50:14.286 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 11:50:14.044 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:50:14.187 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:50:14.252 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 11:50:22.107 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48138 10 6452 1 2025-09-29 11:45:36.588 00:06:00.174 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 11:51:22.509 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34354 10 6452 1 2025-09-29 11:52:22.918 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:44670 10 6452 1 2025-09-29 11:47:36.586 00:06:00.178 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-29 11:53:23.298 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57558 10 6452 1 2025-09-29 11:54:23.705 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57614 10 6452 1 2025-09-29 11:55:14.325 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-29 11:55:13.994 00:00:00.048 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-29 11:55:14.006 00:00:00.036 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:55:14.243 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-29 11:55:14.112 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-29 11:55:24.113 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43852 10 6452 1 2025-09-29 11:56:24.516 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51790 10 6452 1 2025-09-29 11:57:24.919 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:33926 10 6452 1 2025-09-29 11:52:36.589 00:06:00.180 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-29 11:58:25.342 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48786 10 6452 1 Summary: total flows: 137, total bytes: 420794, total packets: 1020, avg bps: 904, avg pps: 0, avg bpp: 412 Time window: 2025-09-29 10:56:36 - 2025-09-29 11:58:36 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0042s User: 0.0008s Wall: 0.0018s flows/second: 76118.6 Runtime: 0.0018s