Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-30 03:59:16.721 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44170 10 6452 1 2025-09-30 04:00:33.916 00:00:00.020 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 04:00:33.310 00:00:00.041 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 04:00:17.133 00:00:15.427 TCP 1.101.0.1:3000 -> 23.104.0.1:45314 10 6452 1 2025-09-30 04:00:33.979 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 04:00:33.979 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 04:00:34.061 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 04:01:22.646 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54660 10 6452 1 2025-09-30 04:02:23.068 00:00:11.133 TCP 1.101.0.1:3000 -> 23.104.0.1:59164 10 6452 1 2025-09-30 04:03:24.241 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37560 10 6452 1 2025-09-30 04:04:24.651 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50334 10 6452 1 2025-09-30 04:00:36.923 00:05:00.198 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 04:00:36.921 00:05:00.203 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 04:05:33.698 00:00:00.041 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 04:05:33.802 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 04:05:33.954 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 04:05:34.003 00:00:00.038 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 04:05:25.060 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57804 10 6452 1 2025-09-30 04:05:34.038 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 04:06:25.458 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:54142 10 6452 1 2025-09-30 04:07:25.827 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47920 10 6452 1 2025-09-30 04:08:26.221 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44534 10 6452 1 2025-09-30 04:09:26.628 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40892 10 6452 1 2025-09-30 04:10:33.802 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 04:10:33.642 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 04:10:33.733 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 04:10:33.719 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 04:10:33.641 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 04:10:27.031 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42090 10 6452 1 2025-09-30 04:06:36.926 00:05:00.196 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 04:06:36.922 00:05:00.202 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 04:11:27.433 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42506 10 6452 1 2025-09-30 04:12:27.839 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:35110 10 6452 1 2025-09-30 04:13:28.228 00:00:10.352 TCP 1.101.0.1:3000 -> 23.104.0.1:59082 10 6452 1 2025-09-30 04:14:28.624 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:55346 10 6452 1 2025-09-30 04:15:33.811 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 04:15:33.758 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 04:15:33.821 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 04:15:33.872 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 04:15:33.904 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 04:15:29.036 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34498 10 6452 1 2025-09-30 04:16:29.404 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57590 10 6452 1 2025-09-30 04:12:36.931 00:05:00.192 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 04:12:36.930 00:05:00.197 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 04:17:29.816 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:34026 12 10367 1 2025-09-30 04:18:30.251 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35210 10 6452 1 2025-09-30 04:19:30.654 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55790 10 6452 1 2025-09-30 04:20:33.916 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 04:20:33.831 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 04:20:33.762 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 04:20:33.834 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 04:20:33.823 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 04:20:31.093 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:43096 10 6452 1 2025-09-30 04:21:31.448 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60258 10 6452 1 2025-09-30 04:18:36.931 00:05:00.194 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 04:18:36.929 00:05:00.200 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 04:22:31.852 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:34478 10 6452 1 2025-09-30 04:23:32.267 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54520 10 6452 1 2025-09-30 04:24:32.670 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56994 10 6452 1 2025-09-30 04:25:34.229 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 04:25:33.880 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 04:25:34.148 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 04:25:33.974 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 04:25:33.975 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 04:25:33.107 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60368 10 6452 1 2025-09-30 04:26:33.510 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50776 10 6452 1 2025-09-30 04:27:33.873 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:58096 10 6452 1 2025-09-30 04:24:36.930 00:05:00.199 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 04:24:36.932 00:05:00.194 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 04:28:34.285 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52582 10 6452 1 2025-09-30 04:29:34.690 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35678 10 6452 1 2025-09-30 04:30:34.250 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 04:30:34.223 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 04:30:33.926 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 04:30:34.169 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 04:30:34.098 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 04:30:35.114 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33318 10 6452 1 2025-09-30 04:31:35.524 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40632 10 6452 1 2025-09-30 04:32:35.922 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:57990 10 6452 1 2025-09-30 04:33:36.296 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:34254 10 6452 1 2025-09-30 04:30:36.934 00:05:00.196 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 04:30:36.932 00:05:00.201 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 04:34:36.717 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:39120 10 6452 1 2025-09-30 04:35:34.338 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 04:35:34.197 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 04:35:34.062 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 04:35:34.256 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 04:35:34.139 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 04:35:37.190 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41776 10 6452 1 2025-09-30 04:36:37.594 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43120 10 6452 1 2025-09-30 04:37:38.005 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44456 10 6452 1 2025-09-30 04:38:38.414 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:38872 10 6452 1 2025-09-30 04:39:38.784 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35860 10 6452 1 2025-09-30 04:40:34.568 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 04:40:34.348 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 04:40:34.311 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 04:40:34.485 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 04:40:34.349 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 04:36:36.936 00:05:00.199 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 04:36:36.938 00:05:00.195 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 04:40:39.189 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59586 10 6452 1 2025-09-30 04:41:39.593 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:59794 10 6452 1 2025-09-30 04:42:39.961 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:52242 10 6452 1 2025-09-30 04:43:40.326 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:44770 10 6452 1 2025-09-30 04:44:40.681 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52908 10 6452 1 2025-09-30 04:45:34.547 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 04:45:34.328 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 04:45:34.193 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 04:45:34.465 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 04:45:34.469 00:00:00.030 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 04:45:41.119 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60228 10 6452 1 2025-09-30 04:42:36.937 00:05:00.199 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 04:42:36.940 00:05:00.194 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 04:46:41.522 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:56072 10 6452 1 2025-09-30 04:47:41.886 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:36718 12 6556 1 2025-09-30 04:48:42.300 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:47632 10 6452 1 2025-09-30 04:49:42.722 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:56032 10 6452 1 2025-09-30 04:50:34.575 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 04:50:34.399 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 04:50:34.484 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 04:50:34.461 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 04:50:34.657 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 04:50:43.126 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:36794 10 6452 1 2025-09-30 04:51:43.548 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60890 10 6452 1 2025-09-30 04:48:36.941 00:05:00.193 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-30 04:48:36.939 00:05:00.198 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 04:52:43.954 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:42616 10 6452 1 2025-09-30 04:53:44.371 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53288 10 6452 1 2025-09-30 04:54:44.772 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:47786 10 6452 1 2025-09-30 04:55:34.496 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 04:55:34.613 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 04:55:34.640 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 04:55:34.415 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 04:55:34.676 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 04:55:45.186 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:44094 10 6452 1 2025-09-30 04:56:45.608 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55888 10 6452 1 2025-09-30 04:57:46.011 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47928 10 6452 1 2025-09-30 04:54:36.946 00:05:00.194 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-30 04:54:36.948 00:05:00.188 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 Summary: total flows: 139, total bytes: 414567, total packets: 1014, avg bps: 916, avg pps: 0, avg bpp: 408 Time window: 2025-09-30 03:59:16 - 2025-09-30 04:59:37 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0039s User: 0.0019s Wall: 0.0022s flows/second: 64649.4 Runtime: 0.0022s