Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-06 00:59:17.092 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:48802 10 6452 1 2025-09-06 01:00:17.453 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:40360 10 6452 1 2025-09-06 00:56:25.263 00:06:00.154 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-06 01:01:17.887 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:37872 10 6452 1 2025-09-06 01:02:18.299 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38970 10 6452 1 2025-09-06 01:03:18.702 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57510 10 6452 1 2025-09-06 01:03:49.646 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 01:03:49.563 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 01:03:49.561 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 01:03:49.330 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 01:03:49.562 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 01:04:19.111 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60638 10 6452 1 2025-09-06 01:05:19.508 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:59124 10 6452 1 2025-09-06 01:00:25.265 00:06:00.149 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-06 01:06:19.871 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54874 10 6452 1 2025-09-06 01:07:20.283 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59212 10 6452 1 2025-09-06 01:03:25.263 00:06:00.155 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-06 01:08:20.688 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56818 10 6452 1 2025-09-06 01:08:49.819 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 01:08:49.739 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 01:08:49.634 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 01:08:49.562 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 01:08:49.737 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 01:09:21.114 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45700 10 6452 1 2025-09-06 01:10:21.516 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53598 10 6452 1 2025-09-06 01:11:21.874 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59154 12 6556 1 2025-09-06 01:07:25.266 00:06:00.150 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-06 01:12:22.288 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55544 10 6452 1 2025-09-06 01:13:22.695 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35764 10 6452 1 2025-09-06 01:13:49.808 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 01:13:49.897 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 01:13:49.845 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 01:13:50.084 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 01:13:50.168 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 01:14:23.117 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58870 10 6452 1 2025-09-06 01:10:25.264 00:06:00.155 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-06 01:15:23.519 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56088 10 6452 1 2025-09-06 01:16:23.928 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:52696 10 6452 1 2025-09-06 01:17:24.364 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55426 10 6452 1 2025-09-06 01:18:24.778 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56382 10 6452 1 2025-09-06 01:18:49.858 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 01:18:49.828 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 01:18:49.927 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 01:18:49.592 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 01:18:49.775 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 01:14:25.267 00:06:00.151 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-06 01:19:25.189 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58438 10 6452 1 2025-09-06 01:20:25.595 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:47174 10 6452 1 2025-09-06 01:21:25.968 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:38526 10 6452 1 2025-09-06 01:17:25.266 00:06:00.156 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-06 01:22:26.404 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:59542 10 6452 1 2025-09-06 01:23:26.762 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:41476 10 6452 1 2025-09-06 01:23:49.851 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 01:23:49.860 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 01:23:49.921 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 01:23:49.769 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 01:23:50.117 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 01:24:27.186 00:00:10.915 TCP 1.101.0.1:3000 -> 23.104.0.1:54530 10 6452 1 2025-09-06 01:25:28.138 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34270 10 6452 1 2025-09-06 01:21:25.267 00:06:00.152 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-06 01:26:28.542 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36502 10 6452 1 2025-09-06 01:27:28.942 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:46726 10 6452 1 2025-09-06 01:28:29.358 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:36350 10 6452 1 2025-09-06 01:28:49.926 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 01:28:49.973 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 01:28:49.842 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 01:28:50.013 00:00:00.034 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 01:28:50.104 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 01:24:25.267 00:06:00.156 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-06 01:29:29.721 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50400 10 6452 1 2025-09-06 01:30:30.127 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:57060 10 6452 1 2025-09-06 01:31:30.505 00:00:10.933 TCP 1.101.0.1:3000 -> 23.104.0.1:48932 10 6452 1 2025-09-06 01:32:31.480 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:60622 10 6452 1 2025-09-06 01:28:25.268 00:06:00.153 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-06 01:33:31.855 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:54904 10 6452 1 2025-09-06 01:33:49.973 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 01:33:49.977 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 01:33:50.060 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 01:33:50.229 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 01:33:50.185 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 01:34:32.270 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41700 10 6452 1 2025-09-06 01:35:32.632 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56536 10 6452 1 2025-09-06 01:31:25.267 00:06:00.156 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-06 01:36:33.035 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58070 10 6452 1 2025-09-06 01:37:33.440 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50046 10 6452 1 2025-09-06 01:38:33.847 00:00:10.453 TCP 1.101.0.1:3000 -> 23.104.0.1:41774 12 10367 1 2025-09-06 01:38:50.683 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 01:38:50.827 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 01:38:50.758 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 01:38:50.689 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 01:38:50.771 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 01:39:34.335 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59302 10 6452 1 2025-09-06 01:35:25.272 00:06:00.152 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-06 01:40:34.740 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47298 10 6452 1 2025-09-06 01:41:35.142 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59530 10 6452 1 2025-09-06 01:42:35.554 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42598 10 6452 1 2025-09-06 01:38:25.269 00:06:00.157 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-06 01:43:35.958 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:56870 12 10367 1 2025-09-06 01:43:50.255 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 01:43:50.257 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 01:43:50.266 00:00:00.029 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 01:43:50.332 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 01:43:50.415 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 01:44:36.435 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33828 10 6452 1 2025-09-06 01:45:36.841 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:54796 10 6452 1 2025-09-06 01:46:37.265 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36160 10 6452 1 2025-09-06 01:42:25.276 00:06:00.148 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-06 01:47:37.670 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46600 10 6452 1 2025-09-06 01:48:50.862 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 01:48:38.100 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41170 10 6452 1 2025-09-06 01:48:50.603 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 01:48:50.780 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 01:48:50.451 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 01:48:50.780 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 01:49:38.511 00:00:10.716 TCP 1.101.0.1:3000 -> 23.104.0.1:53656 10 6452 1 2025-09-06 01:45:25.274 00:06:00.153 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-06 01:50:39.267 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54152 10 6452 1 2025-09-06 01:51:39.676 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:50794 10 6452 1 2025-09-06 01:52:40.123 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40796 11 6492 1 2025-09-06 01:53:50.806 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 01:53:50.823 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 01:53:50.683 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 01:53:50.606 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 01:53:40.525 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47228 10 6452 1 2025-09-06 01:53:50.723 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 01:49:25.280 00:06:00.146 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-06 01:54:40.931 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:49288 10 6452 1 2025-09-06 01:55:41.358 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56318 10 6452 1 2025-09-06 01:56:41.765 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40448 10 6452 1 2025-09-06 01:52:25.277 00:06:00.153 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-06 01:57:42.133 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47044 10 6452 1 Summary: total flows: 131, total bytes: 417139, total packets: 1000, avg bps: 897, avg pps: 0, avg bpp: 417 Time window: 2025-09-06 00:56:25 - 2025-09-06 01:58:25 Total flows processed: 131, passed: 131, Blocks skipped: 0, Bytes read: 13688 Sys: 0.0035s User: 0.0014s Wall: 0.0021s flows/second: 62352.9 Runtime: 0.0021s