Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-30 15:58:58.772 00:00:13.830 TCP 1.101.0.1:3000 -> 23.104.0.1:48938 10 6452 1 2025-09-30 16:00:02.663 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59474 10 6452 1 2025-09-30 15:55:37.167 00:06:00.189 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-30 16:00:48.315 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 16:00:48.229 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 16:00:48.009 00:00:00.040 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 16:00:48.232 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 16:00:48.232 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 16:01:03.101 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55580 10 6452 1 2025-09-30 15:56:37.170 00:06:00.187 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-30 16:02:03.502 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43522 10 6452 1 2025-09-30 16:03:03.911 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:44988 13 13949 1 2025-09-30 16:04:04.389 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36522 10 6452 1 2025-09-30 16:05:04.787 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41398 10 6452 1 2025-09-30 16:05:47.930 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 16:05:47.939 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 16:05:47.924 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 16:05:48.087 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 16:05:48.008 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 16:06:05.195 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33128 10 6452 1 2025-09-30 16:07:05.605 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:37644 10 6452 1 2025-09-30 16:02:37.172 00:06:00.189 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-30 16:08:05.971 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59878 10 6452 1 2025-09-30 16:03:37.175 00:06:00.185 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-30 16:09:06.379 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:47930 10 6452 1 2025-09-30 16:10:06.740 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46006 10 6452 1 2025-09-30 16:10:48.433 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 16:10:48.453 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 16:10:47.738 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 16:10:48.351 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 16:10:48.300 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 16:11:07.148 00:00:22.602 TCP 1.101.0.1:3000 -> 23.104.0.1:38614 10 6452 1 2025-09-30 16:12:19.801 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:46442 12 10375 1 2025-09-30 16:13:20.282 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37406 10 6452 1 2025-09-30 16:14:20.687 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40908 10 6452 1 2025-09-30 16:09:37.176 00:06:00.185 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-30 16:15:21.106 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36540 10 6452 1 2025-09-30 16:10:37.179 00:06:00.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-30 16:15:48.312 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 16:15:48.333 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 16:15:48.057 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 16:15:48.229 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 16:15:48.422 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 16:16:21.470 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36272 10 6452 1 2025-09-30 16:17:21.872 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:43624 12 10375 1 2025-09-30 16:18:22.311 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52414 10 6452 1 2025-09-30 16:19:22.715 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34604 10 6452 1 2025-09-30 16:20:23.124 00:00:10.953 TCP 1.101.0.1:3000 -> 23.104.0.1:37436 10 6452 1 2025-09-30 16:20:48.383 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 16:20:48.312 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 16:20:48.084 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 16:20:48.518 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 16:20:48.167 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 16:21:24.124 00:00:11.056 TCP 1.101.0.1:3000 -> 23.104.0.1:58192 10 6452 1 2025-09-30 16:16:37.179 00:06:00.186 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-30 16:22:25.216 00:00:10.477 TCP 1.101.0.1:3000 -> 23.104.0.1:40224 10 6452 1 2025-09-30 16:17:37.182 00:06:00.180 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-30 16:23:25.737 00:00:10.641 TCP 1.101.0.1:3000 -> 23.104.0.1:53138 10 6452 1 2025-09-30 16:24:26.414 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:55044 10 6452 1 2025-09-30 16:25:26.778 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56046 10 6452 1 2025-09-30 16:25:48.489 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 16:25:48.375 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 16:25:48.242 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 16:25:48.237 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 16:25:48.324 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 16:26:27.183 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38018 10 6452 1 2025-09-30 16:27:27.586 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58568 10 6452 1 2025-09-30 16:28:27.991 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46598 10 6452 1 2025-09-30 16:23:37.183 00:06:00.184 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-30 16:29:28.410 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:45208 10 6452 1 2025-09-30 16:24:37.184 00:06:00.179 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-30 16:30:28.807 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33790 10 6452 1 2025-09-30 16:30:48.742 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 16:30:48.659 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 16:30:48.623 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 16:30:48.537 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 16:30:48.641 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 16:31:29.172 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40604 10 6452 1 2025-09-30 16:32:29.582 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:54778 10 6452 1 2025-09-30 16:33:30.010 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:47788 10 6452 1 2025-09-30 16:34:30.431 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54294 10 6452 1 2025-09-30 16:30:37.185 00:06:00.184 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-30 16:35:48.659 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 16:35:30.839 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:51318 10 6452 1 2025-09-30 16:35:48.584 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 16:35:48.321 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 16:35:48.577 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 16:35:48.730 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 16:31:37.186 00:06:00.179 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-30 16:36:31.259 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42532 10 6452 1 2025-09-30 16:37:31.673 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33526 10 6452 1 2025-09-30 16:38:32.100 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:51110 10 6452 1 2025-09-30 16:39:32.483 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39106 10 6452 1 2025-09-30 16:40:32.887 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:47526 10 6452 1 2025-09-30 16:40:48.561 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 16:40:48.603 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 16:40:48.731 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 16:40:48.788 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 16:40:48.815 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 16:41:33.311 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53906 10 6452 1 2025-09-30 16:37:37.185 00:06:00.186 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-30 16:42:33.714 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:47456 10 6452 1 2025-09-30 16:38:37.187 00:06:00.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-30 16:43:34.135 00:00:10.455 TCP 1.101.0.1:3000 -> 23.104.0.1:45640 10 6452 1 2025-09-30 16:44:34.630 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43024 10 6452 1 2025-09-30 16:45:35.035 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33140 10 6452 1 2025-09-30 16:45:48.970 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 16:45:48.735 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 16:45:48.938 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 16:45:48.792 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 16:45:49.022 00:00:00.036 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 16:46:35.436 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33388 10 6452 1 2025-09-30 16:47:35.836 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:44784 10 6452 1 2025-09-30 16:48:36.266 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48646 10 6452 1 2025-09-30 16:44:37.187 00:06:00.190 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-30 16:49:36.667 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60260 10 6452 1 2025-09-30 16:45:37.189 00:06:00.185 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-30 16:50:37.097 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34236 10 6452 1 2025-09-30 16:50:48.890 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 16:50:48.702 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 16:50:48.781 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 16:50:49.306 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 16:50:48.863 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 16:51:37.499 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59912 10 6452 1 2025-09-30 16:52:37.900 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50374 10 6452 1 2025-09-30 16:53:38.264 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:47076 10 6452 1 2025-09-30 16:54:38.688 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33786 10 6452 1 2025-09-30 16:55:39.109 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:35666 10 6452 1 2025-09-30 16:55:48.787 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-30 16:55:49.009 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 16:55:49.026 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-30 16:55:48.875 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-30 16:55:49.107 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-30 16:51:37.189 00:06:00.192 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-30 16:56:39.472 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:49168 10 6452 1 2025-09-30 16:52:37.192 00:06:00.187 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-30 16:57:39.854 00:00:10.455 TCP 1.101.0.1:3000 -> 23.104.0.1:47820 12 10369 1 2025-09-30 16:58:40.351 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40366 10 6452 1 Summary: total flows: 138, total bytes: 436998, total packets: 1041, avg bps: 921, avg pps: 0, avg bpp: 419 Time window: 2025-09-30 15:55:37 - 2025-09-30 16:58:50 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0043s User: 0.0011s Wall: 0.0021s flows/second: 66637.6 Runtime: 0.0021s