Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-30 14:59:34.183 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52670 10 6452 1 2025-09-30 15:00:34.581 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59732 10 6452 1 2025-09-30 15:00:46.728 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 15:00:46.718 00:00:00.052 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 15:00:46.578 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 15:00:46.645 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 15:00:46.717 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 15:01:34.948 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50134 10 6452 1 2025-09-30 15:02:35.353 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58996 10 6452 1 2025-09-30 15:03:35.719 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:37418 10 6452 1 2025-09-30 14:59:37.150 00:06:00.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-30 15:04:36.132 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37096 10 6452 1 2025-09-30 15:00:37.153 00:06:00.170 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-30 15:05:46.861 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 15:05:46.819 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 15:05:46.776 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 15:05:46.857 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 15:05:36.499 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:34996 10 6452 1 2025-09-30 15:05:46.858 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 15:06:36.860 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:53354 10 6452 1 2025-09-30 15:07:37.278 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49832 10 6452 1 2025-09-30 15:08:37.695 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:55574 10 6452 1 2025-09-30 15:09:38.096 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43668 10 6452 1 2025-09-30 15:10:46.904 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 15:10:46.773 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 15:10:38.504 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38622 10 6452 1 2025-09-30 15:10:46.895 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 15:10:47.079 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 15:10:46.979 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 15:06:37.154 00:06:00.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-30 15:11:38.910 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49982 10 6452 1 2025-09-30 15:07:37.157 00:06:00.167 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-30 15:12:39.315 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:34320 10 6452 1 2025-09-30 15:13:39.713 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56490 10 6452 1 2025-09-30 15:14:40.124 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57718 10 6452 1 2025-09-30 15:15:47.032 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 15:15:40.521 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:41784 10 6452 1 2025-09-30 15:15:47.126 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 15:15:46.863 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 15:15:46.949 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 15:15:47.224 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 15:16:40.969 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52574 10 6452 1 2025-09-30 15:17:41.378 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42320 10 6452 1 2025-09-30 15:13:37.157 00:06:00.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-30 15:18:41.777 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:48178 10 6452 1 2025-09-30 15:14:37.158 00:06:00.167 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-30 15:19:42.144 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47464 10 6452 1 2025-09-30 15:20:47.181 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 15:20:47.005 00:00:00.036 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 15:20:47.115 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 15:20:47.096 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 15:20:47.001 00:00:00.050 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 15:20:42.551 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60288 10 6452 1 2025-09-30 15:21:42.963 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41612 10 6452 1 2025-09-30 15:22:43.370 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44216 10 6452 1 2025-09-30 15:23:43.772 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:59296 10 6452 1 2025-09-30 15:24:44.193 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:36202 10 6452 1 2025-09-30 15:20:37.156 00:06:00.177 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-30 15:25:47.366 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 15:25:47.293 00:00:00.029 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 15:25:47.234 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 15:25:47.284 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 15:25:47.286 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 15:25:44.622 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33746 10 6452 1 2025-09-30 15:21:37.160 00:06:00.172 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-30 15:26:45.028 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46066 10 6452 1 2025-09-30 15:27:45.426 00:00:11.329 TCP 1.101.0.1:3000 -> 23.104.0.1:36228 10 6452 1 2025-09-30 15:28:46.793 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50546 10 6452 1 2025-09-30 15:29:47.201 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:36782 10 6452 1 2025-09-30 15:30:47.310 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 15:30:47.284 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 15:30:47.073 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 15:30:47.228 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 15:30:47.370 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 15:30:47.574 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52624 10 6452 1 2025-09-30 15:31:47.982 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:60716 10 6452 1 2025-09-30 15:27:37.159 00:06:00.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-30 15:32:48.407 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36624 10 6452 1 2025-09-30 15:28:37.161 00:06:00.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-30 15:33:48.808 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:32946 10 6452 1 2025-09-30 15:34:49.177 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38370 10 6452 1 2025-09-30 15:35:47.543 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 15:35:47.665 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 15:35:47.541 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 15:35:47.534 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 15:35:47.624 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 15:35:49.582 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47058 10 6452 1 2025-09-30 15:36:49.985 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:41138 10 6452 1 2025-09-30 15:37:50.362 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60470 10 6452 1 2025-09-30 15:38:50.769 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:58554 10 6452 1 2025-09-30 15:34:37.164 00:06:00.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-30 15:39:51.182 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39942 10 6452 1 2025-09-30 15:35:37.166 00:06:00.167 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-30 15:40:47.681 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 15:40:47.727 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 15:40:47.752 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 15:40:47.820 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 15:40:47.834 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 15:40:51.546 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53106 10 6452 1 2025-09-30 15:41:51.951 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:59002 10 6452 1 2025-09-30 15:42:52.324 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42132 10 6452 1 2025-09-30 15:43:52.683 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36698 10 6452 1 2025-09-30 15:44:53.106 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55692 10 6452 1 2025-09-30 15:45:47.648 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 15:45:47.653 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 15:45:47.621 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 15:45:47.565 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 15:45:47.565 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 15:45:53.507 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:49184 10 6452 1 2025-09-30 15:41:37.165 00:06:00.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-30 15:46:53.880 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46280 10 6452 1 2025-09-30 15:42:37.168 00:06:00.167 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-30 15:47:54.290 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:47190 12 10367 1 2025-09-30 15:48:54.767 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44672 10 6452 1 2025-09-30 15:49:55.178 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:34952 10 6452 1 2025-09-30 15:50:47.739 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 15:50:47.742 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 15:50:47.744 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 15:50:47.657 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 15:50:47.741 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 15:50:55.548 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43642 10 6452 1 2025-09-30 15:51:55.955 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:58082 10 6452 1 2025-09-30 15:52:56.323 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46906 10 6452 1 2025-09-30 15:48:37.166 00:06:00.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-30 15:53:56.727 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:40068 10 6452 1 2025-09-30 15:49:37.170 00:06:00.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-30 15:54:57.141 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:60656 10 6452 1 2025-09-30 15:55:47.825 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 15:55:47.693 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 15:55:47.829 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 15:55:47.768 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 15:55:47.912 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 15:55:57.562 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52320 10 6452 1 2025-09-30 15:56:57.964 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51390 10 6452 1 2025-09-30 15:57:58.371 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36424 10 6452 1 Summary: total flows: 135, total bytes: 413479, total packets: 996, avg bps: 941, avg pps: 0, avg bpp: 415 Time window: 2025-09-30 14:59:34 - 2025-09-30 15:58:08 Total flows processed: 135, passed: 135, Blocks skipped: 0, Bytes read: 14104 Sys: 0.0027s User: 0.0027s Wall: 0.0022s flows/second: 61167.9 Runtime: 0.0022s