Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-05 08:59:37.931 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:40334 10 6452 1 2025-09-05 08:56:24.927 00:05:00.191 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-05 09:00:38.321 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55660 10 6452 1 2025-09-05 09:01:38.722 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43878 10 6452 1 2025-09-05 08:58:24.930 00:05:00.186 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-05 09:02:39.127 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55394 10 6452 1 2025-09-05 09:03:30.322 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 09:03:30.422 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 09:03:30.404 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 09:03:30.336 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 09:03:30.418 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 09:03:39.499 00:00:10.518 TCP 1.101.0.1:3000 -> 23.104.0.1:40616 14 14491 1 2025-09-05 09:04:40.067 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57216 10 6661 1 2025-09-05 09:05:40.467 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50002 10 6661 1 2025-09-05 09:02:24.928 00:05:00.191 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-05 09:06:40.872 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50282 10 6661 1 2025-09-05 09:07:41.278 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45600 10 6661 1 2025-09-05 09:04:24.932 00:05:00.184 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-05 09:08:30.434 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 09:08:30.305 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 09:08:30.345 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 09:08:30.312 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 09:08:30.395 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 09:08:41.693 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52232 10 6661 1 2025-09-05 09:09:42.067 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50274 10 6661 1 2025-09-05 09:10:42.472 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49876 10 6661 1 2025-09-05 09:11:42.875 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37922 10 6661 1 2025-09-05 09:08:24.931 00:05:00.189 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-05 09:12:43.284 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38838 10 6661 1 2025-09-05 09:13:30.519 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 09:13:30.407 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 09:13:30.258 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 09:13:30.205 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 09:13:30.288 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 09:13:43.687 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56838 10 6661 1 2025-09-05 09:10:24.934 00:05:00.184 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-05 09:14:44.118 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38492 10 6661 1 2025-09-05 09:15:44.533 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:35958 10 6661 1 2025-09-05 09:16:44.893 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:53740 12 6765 1 2025-09-05 09:17:45.323 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:42514 10 6661 1 2025-09-05 09:14:24.931 00:05:00.189 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-05 09:18:30.778 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 09:18:30.631 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 09:18:30.637 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 09:18:30.514 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 09:18:30.695 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 09:18:45.687 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:53824 10 6661 1 2025-09-05 09:19:46.118 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35390 10 6661 1 2025-09-05 09:16:24.934 00:05:00.184 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-05 09:20:46.520 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41352 10 6661 1 2025-09-05 09:21:46.926 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:34626 10 6661 1 2025-09-05 09:22:47.355 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56614 10 6661 1 2025-09-05 09:23:30.455 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 09:23:30.791 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 09:23:30.600 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 09:23:30.793 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 09:23:30.876 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 09:23:47.763 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:42600 10 6661 1 2025-09-05 09:20:24.932 00:05:00.189 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-05 09:24:48.192 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57034 10 6661 1 2025-09-05 09:25:48.558 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:40226 10 6661 1 2025-09-05 09:22:24.937 00:05:00.182 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-05 09:26:48.956 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48672 10 6661 1 2025-09-05 09:27:49.362 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:49934 10 6661 1 2025-09-05 09:28:31.128 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 09:28:31.123 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 09:28:30.854 00:00:00.031 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 09:28:31.138 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 09:28:31.220 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 09:28:49.732 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:48596 10 6661 1 2025-09-05 09:29:50.110 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:34730 10 6661 1 2025-09-05 09:26:24.935 00:05:00.187 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-05 09:30:50.479 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44034 10 6661 1 2025-09-05 09:31:50.882 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:43094 10 6661 1 2025-09-05 09:28:24.937 00:05:00.183 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-05 09:32:51.309 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:34634 10 6661 1 2025-09-05 09:33:31.017 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 09:33:30.933 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 09:33:31.098 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 09:33:30.646 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 09:33:30.934 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 09:33:51.670 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33242 10 6661 1 2025-09-05 09:34:52.100 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43226 10 6661 1 2025-09-05 09:35:52.511 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56198 10 6661 1 2025-09-05 09:32:24.938 00:05:00.187 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-05 09:36:52.910 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40474 10 6661 1 2025-09-05 09:37:53.270 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:53712 10 6661 1 2025-09-05 09:38:30.927 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 09:38:30.932 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 09:38:30.694 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 09:38:31.143 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 09:34:24.940 00:05:00.182 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-05 09:38:31.226 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 09:38:53.638 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41832 10 6661 1 2025-09-05 09:39:54.002 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56526 10 6661 1 2025-09-05 09:40:54.401 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55322 10 6661 1 2025-09-05 09:41:54.764 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41410 10 6661 1 2025-09-05 09:38:24.938 00:05:00.187 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-05 09:42:55.177 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:52804 12 10367 1 2025-09-05 09:43:31.591 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 09:43:31.398 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 09:43:31.346 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 09:43:30.850 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 09:43:31.507 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 09:43:55.658 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56870 10 6452 1 2025-09-05 09:40:24.941 00:05:00.184 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-05 09:44:56.079 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52982 10 6452 1 2025-09-05 09:45:56.479 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57520 10 6452 1 2025-09-05 09:46:56.883 00:00:10.404 TCP 1.101.0.1:3000 -> 23.104.0.1:41130 10 6452 1 2025-09-05 09:47:57.328 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:48046 10 6452 1 2025-09-05 09:44:24.939 00:05:00.189 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-05 09:48:31.321 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 09:48:31.307 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 09:48:31.080 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 09:48:31.084 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 09:48:31.165 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 09:48:57.725 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50250 10 6452 1 2025-09-05 09:49:58.136 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60432 10 6452 1 2025-09-05 09:46:24.947 00:05:00.183 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-05 09:50:58.544 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40508 10 6452 1 2025-09-05 09:51:58.910 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41482 10 6452 1 2025-09-05 09:52:59.270 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60682 10 6452 1 2025-09-05 09:53:31.454 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 09:53:31.395 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 09:53:31.200 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 09:53:31.077 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 09:53:31.161 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 09:53:59.676 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37800 10 6452 1 2025-09-05 09:50:24.945 00:05:00.188 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-05 09:55:00.102 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:37352 10 6452 1 2025-09-05 09:56:00.496 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38904 10 6452 1 2025-09-05 09:52:24.948 00:05:00.184 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-05 09:57:00.898 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59520 10 6452 1 2025-09-05 09:58:01.305 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:44496 10 6452 1 2025-09-05 09:58:31.571 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 09:58:31.330 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 09:58:31.338 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 09:58:31.155 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 09:58:31.488 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 Summary: total flows: 139, total bytes: 430548, total packets: 1018, avg bps: 924, avg pps: 0, avg bpp: 422 Time window: 2025-09-05 08:56:24 - 2025-09-05 09:58:31 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0022s User: 0.0011s Wall: 0.0014s flows/second: 99083.7 Runtime: 0.0014s