Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-04 00:59:24.972 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47906 10 6452 1 2025-09-04 01:00:25.371 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:37322 10 6452 1 2025-09-04 00:57:24.229 00:04:00.295 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-04 01:01:25.733 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36314 10 6452 1 2025-09-04 00:58:24.234 00:04:00.287 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-09-04 01:02:26.146 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45940 10 6452 1 2025-09-04 01:02:52.003 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 01:02:51.666 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 01:02:51.756 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 01:02:51.737 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 01:02:51.919 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 01:03:26.552 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59038 10 6452 1 2025-09-04 01:03:24.237 00:01:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-09-04 01:04:26.956 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47564 10 6452 1 2025-09-04 01:05:27.365 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36634 10 6452 1 2025-09-04 01:02:24.232 00:04:00.291 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-04 01:06:27.769 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53410 10 6452 1 2025-09-04 01:05:24.237 00:02:00.289 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-09-04 01:07:28.190 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:33868 10 6452 1 2025-09-04 01:07:51.967 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 01:07:51.970 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 01:07:52.101 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 01:07:52.077 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 01:07:52.161 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 01:08:28.555 00:00:11.030 TCP 1.101.0.1:3000 -> 23.104.0.1:37598 10 6452 1 2025-09-04 01:08:24.236 00:01:00.289 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-09-04 01:09:29.623 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:56524 10 6452 1 2025-09-04 01:10:29.982 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57016 10 6452 1 2025-09-04 01:07:24.233 00:04:00.295 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-04 01:11:30.384 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38222 10 6452 1 2025-09-04 01:10:24.239 00:02:00.288 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-09-04 01:12:30.787 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60180 10 6452 1 2025-09-04 01:12:52.027 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 01:12:52.088 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 01:12:52.091 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 01:12:51.966 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 01:12:51.943 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 01:13:31.189 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34830 10 6452 1 2025-09-04 01:13:24.239 00:01:00.288 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-09-04 01:14:31.595 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32796 10 6452 1 2025-09-04 01:15:32.002 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42532 10 6452 1 2025-09-04 01:12:24.236 00:04:00.293 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-04 01:16:32.404 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45548 10 6452 1 2025-09-04 01:17:32.809 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35460 10 6452 1 2025-09-04 01:17:51.941 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 01:17:52.221 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 01:17:52.119 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 01:17:52.090 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 01:17:52.172 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 01:18:33.221 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57646 10 6452 1 2025-09-04 01:15:24.238 00:04:00.287 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-09-04 01:19:33.621 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:56270 10 6452 1 2025-09-04 01:20:33.997 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46580 10 6452 1 2025-09-04 01:17:24.238 00:04:00.293 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-04 01:21:34.400 00:00:10.462 TCP 1.101.0.1:3000 -> 23.104.0.1:53420 10 6452 1 2025-09-04 01:22:52.324 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 01:22:34.901 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:42372 10 6452 1 2025-09-04 01:22:52.105 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 01:22:52.288 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 01:22:51.919 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 01:22:52.242 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 01:22:24.237 00:01:00.293 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-09-04 01:23:35.285 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51170 10 6452 1 2025-09-04 01:20:24.240 00:04:00.287 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-09-04 01:24:35.691 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54124 10 6452 1 2025-09-04 01:25:36.109 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43792 10 6452 1 2025-09-04 01:24:24.237 00:02:00.294 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-09-04 01:26:36.526 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33586 10 6452 1 2025-09-04 01:27:36.896 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41856 10 6452 1 2025-09-04 01:27:52.416 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 01:27:52.335 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 01:27:52.342 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 01:27:52.383 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 01:27:52.334 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 01:27:24.239 00:01:00.292 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-09-04 01:28:37.299 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59176 10 6452 1 2025-09-04 01:25:24.240 00:04:00.289 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-09-04 01:29:37.706 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44066 10 6452 1 2025-09-04 01:30:38.111 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56242 10 6452 1 2025-09-04 01:31:38.526 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:59064 10 6452 1 2025-09-04 01:32:38.941 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:49642 10 6452 1 2025-09-04 01:32:52.422 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 01:32:52.246 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 01:32:52.339 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 01:32:52.073 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 01:32:52.339 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 01:29:24.239 00:04:00.294 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-04 01:33:39.357 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51540 10 6452 1 2025-09-04 01:30:24.243 00:04:00.289 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-09-04 01:34:39.757 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42066 10 6452 1 2025-09-04 01:35:40.123 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34718 10 6452 1 2025-09-04 01:35:24.247 00:01:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-09-04 01:36:40.527 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42244 10 6452 1 2025-09-04 01:37:52.697 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 01:37:40.934 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:51288 10 6452 1 2025-09-04 01:37:52.469 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 01:37:52.370 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 01:37:52.609 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 01:37:52.694 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 01:34:24.243 00:04:00.290 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-04 01:38:41.359 00:00:10.748 TCP 1.101.0.1:3000 -> 23.104.0.1:52396 10 6452 1 2025-09-04 01:37:24.246 00:02:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-09-04 01:39:42.163 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:54232 10 6452 1 2025-09-04 01:40:42.527 00:00:10.421 TCP 1.101.0.1:3000 -> 23.104.0.1:42914 11 6504 1 2025-09-04 01:40:24.249 00:01:00.283 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-09-04 01:41:43.011 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:58718 10 6452 1 2025-09-04 01:42:52.583 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 01:42:52.520 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 01:42:52.404 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 01:42:52.643 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 01:42:43.376 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47392 10 6452 1 2025-09-04 01:42:52.725 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 01:39:24.246 00:04:00.288 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-04 01:43:43.778 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41196 10 6452 1 2025-09-04 01:42:24.250 00:02:00.283 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-09-04 01:44:44.185 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:46868 10 6452 1 2025-09-04 01:45:44.583 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35856 10 6452 1 2025-09-04 01:45:24.252 00:01:00.282 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-09-04 01:46:44.986 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49466 10 6452 1 2025-09-04 01:47:52.782 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 01:47:52.594 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 01:47:52.596 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 01:47:52.672 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 01:47:52.755 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 01:47:45.392 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:35420 10 6452 1 2025-09-04 01:44:24.247 00:04:00.289 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-04 01:48:45.822 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39260 10 6452 1 2025-09-04 01:49:46.225 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47882 10 6452 1 2025-09-04 01:49:24.249 00:01:00.286 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-09-04 01:50:46.642 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:53984 10 6452 1 2025-09-04 01:47:24.250 00:04:00.283 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-09-04 01:51:47.068 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41276 10 6452 1 2025-09-04 01:52:53.314 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 01:52:53.197 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 01:52:52.734 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 01:52:53.070 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 01:52:53.231 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 01:52:47.475 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39088 10 6452 1 2025-09-04 01:51:24.251 00:02:00.286 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-09-04 01:53:47.873 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37706 10 6452 1 2025-09-04 01:54:48.278 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35410 10 6452 1 2025-09-04 01:54:24.251 00:01:00.285 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-09-04 01:55:48.680 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48840 10 6452 1 2025-09-04 01:52:24.254 00:04:00.281 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-09-04 01:56:49.112 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50340 10 6452 1 2025-09-04 01:57:52.889 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 01:57:52.885 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 01:57:52.704 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 01:57:52.889 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 01:57:52.972 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 01:57:49.519 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40228 10 6452 1 2025-09-04 01:56:24.252 00:02:00.287 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 Summary: total flows: 152, total bytes: 410723, total packets: 1013, avg bps: 897, avg pps: 0, avg bpp: 405 Time window: 2025-09-04 00:57:24 - 2025-09-04 01:58:24 Total flows processed: 152, passed: 152, Blocks skipped: 0, Bytes read: 15872 Sys: 0.0023s User: 0.0023s Wall: 0.0021s flows/second: 72037.8 Runtime: 0.0021s