Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-13 03:59:04.115 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:60542 10 6452 1 2025-09-13 03:54:28.834 00:06:00.042 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-13 04:00:04.518 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:53190 10 6452 1 2025-09-13 04:01:04.883 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:52190 10 6452 1 2025-09-13 04:02:05.295 00:00:10.637 TCP 1.101.0.1:3000 -> 23.104.0.1:55730 10 6452 1 2025-09-13 04:02:22.545 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 04:02:22.634 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 04:02:22.624 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 04:02:22.637 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 04:02:22.721 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 04:03:05.969 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:59632 10 6452 1 2025-09-13 04:04:06.383 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49118 10 6452 1 2025-09-13 03:59:28.833 00:06:00.049 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-13 04:05:06.786 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58940 10 6452 1 2025-09-13 04:06:07.191 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34260 10 6452 1 2025-09-13 04:01:28.835 00:06:00.044 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-13 04:07:07.592 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43806 10 6452 1 2025-09-13 04:07:22.653 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 04:07:22.743 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 04:07:22.736 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 04:07:22.604 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 04:07:22.572 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 04:08:07.995 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44562 10 6452 1 2025-09-13 04:09:08.405 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:58630 10 6452 1 2025-09-13 04:10:08.852 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:56884 10 6452 1 2025-09-13 04:11:09.278 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38458 10 6452 1 2025-09-13 04:06:28.835 00:06:00.048 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-13 04:12:23.006 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 04:12:22.715 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 04:12:09.681 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52496 10 6452 1 2025-09-13 04:12:22.872 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 04:12:22.763 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 04:12:22.922 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 04:13:10.108 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58786 10 6452 1 2025-09-13 04:08:28.839 00:06:00.041 TCP 179.21.23.23:179 -> 179.21.23.21:38570 9 601 1 2025-09-13 04:14:10.508 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38120 10 6452 1 2025-09-13 04:15:10.908 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53394 10 6452 1 2025-09-13 04:16:11.315 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44406 10 6452 1 2025-09-13 04:17:23.067 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 04:17:23.095 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 04:17:11.716 00:00:12.306 TCP 1.101.0.1:3000 -> 23.104.0.1:45490 10 6452 1 2025-09-13 04:17:22.983 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 04:17:23.159 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 04:17:22.985 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 04:18:14.058 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44518 10 6452 1 2025-09-13 04:13:28.840 00:06:00.044 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-13 04:19:14.463 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55838 10 6452 1 2025-09-13 04:20:14.864 00:00:12.750 TCP 1.101.0.1:3000 -> 23.104.0.1:55538 9 4643 1 2025-09-13 04:15:28.882 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-13 04:20:30.095 00:00:10.280 TCP 1.101.0.1:3000 -> 23.104.0.1:57102 9 5092 1 2025-09-13 04:21:31.755 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:42612 10 6452 1 2025-09-13 04:22:23.182 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 04:22:23.006 00:00:00.050 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 04:22:23.098 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 04:22:22.795 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 04:22:23.099 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 04:22:32.121 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54654 10 6452 1 2025-09-13 04:23:32.524 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:50124 10 6452 1 2025-09-13 04:24:32.878 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:46488 12 10367 1 2025-09-13 04:20:28.841 00:06:00.045 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-13 04:25:33.361 00:00:10.606 TCP 1.101.0.1:3000 -> 23.104.0.1:41306 10 6452 1 2025-09-13 04:26:34.005 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49474 12 6556 1 2025-09-13 04:27:23.132 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 04:27:23.186 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 04:27:23.050 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 04:27:22.945 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 04:27:23.048 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 04:22:28.883 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-13 04:27:34.411 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:32792 10 6452 1 2025-09-13 04:28:34.817 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36384 10 6452 1 2025-09-13 04:29:35.224 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33668 10 6452 1 2025-09-13 04:30:35.636 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43520 10 6452 1 2025-09-13 04:31:36.036 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46100 10 6452 1 2025-09-13 04:32:23.180 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 04:32:23.073 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 04:32:23.327 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 04:32:23.073 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 04:32:23.098 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 04:27:28.842 00:06:00.046 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-13 04:32:36.439 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54288 10 6452 1 2025-09-13 04:33:36.840 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:54440 10 6452 1 2025-09-13 04:29:28.884 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-13 04:34:37.225 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38584 10 6452 1 2025-09-13 04:35:37.634 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58448 10 6452 1 2025-09-13 04:36:38.039 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60350 10 6452 1 2025-09-13 04:37:23.430 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 04:37:23.542 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 04:37:23.105 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 04:37:23.249 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 04:37:23.332 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 04:37:38.442 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36238 10 6452 1 2025-09-13 04:38:38.845 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:40340 10 6452 1 2025-09-13 04:34:28.845 00:06:00.045 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-13 04:39:39.275 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53596 10 6452 1 2025-09-13 04:40:39.681 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50270 10 6452 1 2025-09-13 04:36:28.886 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-13 04:41:40.112 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38938 10 6452 1 2025-09-13 04:42:23.478 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 04:42:23.287 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 04:42:23.558 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 04:42:23.522 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 04:42:23.394 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 04:42:40.515 00:00:10.804 TCP 1.101.0.1:3000 -> 23.104.0.1:46090 10 6452 1 2025-09-13 04:43:41.367 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60112 10 6452 1 2025-09-13 04:44:41.770 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:39820 10 6452 1 2025-09-13 04:45:42.193 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:55370 10 6452 1 2025-09-13 04:41:28.847 00:06:00.045 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-13 04:46:42.611 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35066 10 6452 1 2025-09-13 04:47:23.710 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 04:47:23.572 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 04:47:23.627 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 04:47:23.530 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 04:47:23.626 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 04:47:43.017 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35192 10 6452 1 2025-09-13 04:43:28.888 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-13 04:48:43.381 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52382 10 6452 1 2025-09-13 04:49:43.785 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44398 10 6452 1 2025-09-13 04:50:44.190 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:38574 10 6452 1 2025-09-13 04:51:44.554 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47710 10 6452 1 2025-09-13 04:52:23.947 00:00:00.033 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 04:52:23.957 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 04:52:23.655 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 04:52:24.094 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 04:52:24.176 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 04:52:44.961 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57736 10 6452 1 2025-09-13 04:48:28.849 00:06:00.044 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-13 04:53:45.365 00:00:10.402 TCP 1.101.0.1:3000 -> 23.104.0.1:45646 12 10367 1 2025-09-13 04:54:45.800 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41536 10 6452 1 2025-09-13 04:50:28.890 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-13 04:55:46.207 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33902 10 6452 1 2025-09-13 04:56:46.614 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40546 10 6452 1 2025-09-13 04:57:23.866 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 04:57:23.636 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 04:57:23.465 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 04:57:23.630 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 04:57:23.713 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 04:57:47.020 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:51740 10 6452 1 Summary: total flows: 137, total bytes: 419198, total packets: 975, avg bps: 880, avg pps: 0, avg bpp: 429 Time window: 2025-09-13 03:54:28 - 2025-09-13 04:57:57 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0037s User: 0.0009s Wall: 0.0035s flows/second: 38809.9 Runtime: 0.0035s