Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-13 13:58:49.508 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:47222 10 6452 1 2025-09-13 13:59:49.920 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:60616 10 6452 1 2025-09-13 14:00:50.356 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57410 10 6452 1 2025-09-13 13:56:29.051 00:05:00.032 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-13 14:01:50.764 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:46664 10 6452 1 2025-09-13 14:02:34.823 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 14:02:34.618 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 14:02:34.788 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 14:02:34.537 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 14:02:34.741 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 14:02:51.188 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51808 10 6452 1 2025-09-13 14:03:51.599 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60576 10 6452 1 2025-09-13 14:04:51.981 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41470 10 6452 1 2025-09-13 14:00:29.079 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-13 14:05:52.344 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46180 10 6452 1 2025-09-13 14:02:29.052 00:04:00.032 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-13 14:06:52.748 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50938 10 6452 1 2025-09-13 14:07:29.080 00:00:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 1 71 1 2025-09-13 14:07:34.760 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 14:07:34.487 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 14:07:34.708 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 14:07:34.687 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 14:07:34.769 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 14:07:53.154 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44450 10 6452 1 2025-09-13 14:08:53.557 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:39444 10 6452 1 2025-09-13 14:09:53.985 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46300 10 6452 1 2025-09-13 14:10:54.389 00:00:10.625 TCP 1.101.0.1:3000 -> 23.104.0.1:55128 10 6452 1 2025-09-13 14:11:55.061 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56524 10 6452 1 2025-09-13 14:07:29.052 00:06:00.031 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-13 14:08:29.081 00:04:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 5 355 1 2025-09-13 14:12:34.892 00:00:00.037 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 14:12:35.238 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 14:12:35.368 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 14:12:35.146 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 14:12:35.451 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 14:12:55.468 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:48996 10 6452 1 2025-09-13 14:13:55.825 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38484 10 6452 1 2025-09-13 14:14:56.225 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54198 10 6452 1 2025-09-13 14:15:56.627 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38944 10 6452 1 2025-09-13 14:16:57.034 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41072 10 6452 1 2025-09-13 14:13:29.082 00:04:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 5 355 1 2025-09-13 14:17:34.874 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 14:17:34.947 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 14:17:35.079 00:00:00.044 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 14:17:34.996 00:00:00.044 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 14:17:35.002 00:00:00.032 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 14:17:57.435 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58390 10 6452 1 2025-09-13 14:18:57.842 00:00:10.548 TCP 1.101.0.1:3000 -> 23.104.0.1:45012 10 6452 1 2025-09-13 14:14:29.054 00:06:00.031 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-13 14:19:58.429 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:47348 10 6452 1 2025-09-13 14:20:58.823 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:42332 10 6452 1 2025-09-13 14:21:59.192 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47308 10 6452 1 2025-09-13 14:22:34.716 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 14:22:34.865 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 14:22:35.071 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 14:22:34.987 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 14:22:34.988 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 14:22:59.591 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58324 10 6452 1 2025-09-13 14:18:29.082 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-13 14:23:59.996 00:00:12.411 TCP 1.101.0.1:3000 -> 23.104.0.1:42230 10 6452 1 2025-09-13 14:25:02.471 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:35946 10 6452 1 2025-09-13 14:26:02.832 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:50348 10 6452 1 2025-09-13 14:21:29.056 00:06:00.031 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-13 14:27:03.257 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:33052 10 6452 1 2025-09-13 14:27:34.939 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 14:27:35.162 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 14:27:35.098 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 14:27:35.159 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 14:27:35.242 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 14:28:03.652 00:00:10.877 TCP 1.101.0.1:3000 -> 23.104.0.1:58592 10 6452 1 2025-09-13 14:29:04.562 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:51620 10 6452 1 2025-09-13 14:30:04.956 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34934 10 6452 1 2025-09-13 14:25:29.084 00:06:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-13 14:31:05.362 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46596 10 6452 1 2025-09-13 14:32:05.776 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33848 10 6452 1 2025-09-13 14:32:35.438 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 14:32:35.264 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 14:32:35.263 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 14:32:35.181 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 14:32:35.357 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 14:33:06.186 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33550 10 6452 1 2025-09-13 14:28:29.060 00:05:00.028 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-13 14:34:06.598 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40246 10 6452 1 2025-09-13 14:35:07.007 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53578 10 6452 1 2025-09-13 14:36:07.407 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40888 10 6452 1 2025-09-13 14:37:07.808 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60200 10 6452 1 2025-09-13 14:32:29.083 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-13 14:37:35.465 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 14:37:35.380 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 14:37:35.245 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 14:37:35.287 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 14:37:35.383 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 14:38:08.221 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57680 10 6452 1 2025-09-13 14:34:29.061 00:04:00.027 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-13 14:39:08.627 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41640 10 6452 1 2025-09-13 14:39:29.086 00:00:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 1 71 1 2025-09-13 14:40:09.028 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:36892 10 6452 1 2025-09-13 14:41:09.445 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55306 10 6452 1 2025-09-13 14:42:09.846 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:57642 10 6452 1 2025-09-13 14:42:35.796 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 14:42:35.857 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 14:42:35.645 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 14:42:35.861 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 14:42:35.943 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 14:43:10.280 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51196 12 6556 1 2025-09-13 14:44:10.678 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48318 10 6452 1 2025-09-13 14:40:29.087 00:04:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 5 355 1 2025-09-13 14:39:29.062 00:06:00.030 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-13 14:45:11.108 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45956 10 6452 1 2025-09-13 14:46:11.514 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47978 10 6452 1 2025-09-13 14:47:11.920 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41470 10 6452 1 2025-09-13 14:47:35.826 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 14:47:35.744 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 14:47:35.613 00:00:00.029 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 14:47:35.502 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 14:47:35.381 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 14:48:12.332 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36112 10 6452 1 2025-09-13 14:49:12.744 00:00:10.413 TCP 1.101.0.1:3000 -> 23.104.0.1:35902 12 6556 1 2025-09-13 14:45:29.088 00:04:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 5 355 1 2025-09-13 14:50:13.207 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44144 10 6452 1 2025-09-13 14:51:13.610 00:00:10.781 TCP 1.101.0.1:3000 -> 23.104.0.1:33364 10 6452 1 2025-09-13 14:46:29.064 00:06:00.031 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-13 14:52:14.430 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43878 10 6452 1 2025-09-13 14:52:35.780 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 14:52:35.630 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 14:52:35.700 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 14:52:35.329 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 14:52:35.698 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 14:53:14.832 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:60506 10 6452 1 2025-09-13 14:54:15.261 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:56258 10 6452 1 2025-09-13 14:55:15.615 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47692 10 6452 1 2025-09-13 14:50:29.090 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-13 14:56:16.019 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:49434 10 6452 1 2025-09-13 14:57:16.435 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48946 10 6452 1 2025-09-13 14:57:35.865 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 14:57:35.704 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 14:57:35.703 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 14:57:35.743 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 14:57:35.783 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 14:53:29.065 00:06:00.030 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-13 14:58:16.839 00:00:10.354 TCP 1.101.0.1:3000 -> 23.104.0.1:38622 10 6452 1 Summary: total flows: 141, total bytes: 414367, total packets: 969, avg bps: 876, avg pps: 0, avg bpp: 427 Time window: 2025-09-13 13:56:29 - 2025-09-13 14:59:29 Total flows processed: 141, passed: 141, Blocks skipped: 0, Bytes read: 14728 Sys: 0.0036s User: 0.0018s Wall: 0.0023s flows/second: 62199.9 Runtime: 0.0023s