Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-13 18:59:14.823 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40596 10 6452 1 2025-09-13 18:55:29.147 00:04:00.027 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-13 18:56:29.172 00:04:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 5 355 1 2025-09-13 19:00:15.229 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50784 10 6452 1 2025-09-13 19:01:15.588 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42728 10 6452 1 2025-09-13 19:02:15.989 00:00:10.579 TCP 1.101.0.1:3000 -> 23.104.0.1:53236 10 6452 1 2025-09-13 19:02:40.718 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 19:02:40.627 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 19:02:40.808 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 19:02:40.569 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 19:02:40.635 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 19:03:16.601 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37604 10 6452 1 2025-09-13 19:00:29.151 00:04:00.025 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-13 19:04:17.008 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48266 10 6452 1 2025-09-13 19:05:17.410 00:00:10.762 TCP 1.101.0.1:3000 -> 23.104.0.1:46518 10 6452 1 2025-09-13 19:01:29.172 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-13 19:06:18.213 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52894 10 6452 1 2025-09-13 19:07:18.612 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45248 10 6452 1 2025-09-13 19:07:40.948 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 19:07:40.805 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 19:07:40.624 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 19:07:40.893 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 19:07:40.976 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 19:08:19.013 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34088 10 6452 1 2025-09-13 19:05:29.151 00:04:00.028 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-13 19:09:19.418 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53958 10 6452 1 2025-09-13 19:10:19.823 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33860 10 6452 1 2025-09-13 19:11:20.230 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37240 10 6452 1 2025-09-13 19:08:29.176 00:04:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 5 355 1 2025-09-13 19:12:20.634 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34640 10 6452 1 2025-09-13 19:12:40.876 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 19:12:40.902 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 19:12:40.896 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 19:12:40.802 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 19:12:40.794 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 19:13:21.034 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49354 10 6452 1 2025-09-13 19:14:21.443 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56780 10 6452 1 2025-09-13 19:10:29.152 00:06:00.027 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-13 19:15:21.845 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:60858 10 6452 1 2025-09-13 19:16:22.280 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:55872 10 6452 1 2025-09-13 19:13:29.176 00:04:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 5 355 1 2025-09-13 19:17:22.653 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37236 10 6452 1 2025-09-13 19:17:40.743 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 19:17:40.561 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 19:17:41.064 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 19:17:40.988 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 19:17:41.148 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 19:18:23.073 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60366 10 6452 1 2025-09-13 19:19:23.474 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51874 10 6452 1 2025-09-13 19:20:23.878 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40888 10 6452 1 2025-09-13 19:17:29.152 00:04:00.028 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-13 19:21:24.237 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48862 10 6452 1 2025-09-13 19:18:29.177 00:04:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 5 355 1 2025-09-13 19:22:24.645 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54292 10 6452 1 2025-09-13 19:22:41.083 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 19:22:41.081 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 19:22:41.204 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 19:22:41.075 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 19:22:41.157 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 19:23:25.057 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48058 10 6452 1 2025-09-13 19:24:25.458 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50700 10 6452 1 2025-09-13 19:25:25.865 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43276 10 6452 1 2025-09-13 19:22:29.154 00:04:00.030 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-13 19:26:26.281 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49214 10 6452 1 2025-09-13 19:23:29.178 00:04:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 5 355 1 2025-09-13 19:27:26.683 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51726 10 6452 1 2025-09-13 19:27:41.438 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 19:27:41.438 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 19:27:41.544 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 19:27:41.268 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 19:27:41.351 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 19:28:27.121 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47908 10 6452 1 2025-09-13 19:29:27.520 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:54228 10 6452 1 2025-09-13 19:30:27.895 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:37418 12 6556 1 2025-09-13 19:27:29.154 00:04:00.030 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-13 19:31:28.318 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52352 10 6452 1 2025-09-13 19:28:29.181 00:04:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 5 355 1 2025-09-13 19:32:41.366 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 19:32:28.721 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:45494 10 6452 1 2025-09-13 19:32:41.276 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 19:32:41.283 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 19:32:41.067 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 19:32:41.284 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 19:33:29.108 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:57028 10 6452 1 2025-09-13 19:34:29.470 00:00:10.453 TCP 1.101.0.1:3000 -> 23.104.0.1:60160 12 10367 1 2025-09-13 19:35:29.966 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55192 10 6452 1 2025-09-13 19:32:29.155 00:04:00.030 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-13 19:36:30.366 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39774 10 6452 1 2025-09-13 19:37:41.588 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 19:37:41.328 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 19:37:30.763 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:40744 10 6452 1 2025-09-13 19:37:41.470 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 19:37:41.234 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 19:37:41.504 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 19:33:29.181 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-13 19:38:31.182 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47538 10 6452 1 2025-09-13 19:39:31.580 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36366 10 6452 1 2025-09-13 19:40:31.945 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47096 10 6452 1 2025-09-13 19:37:29.158 00:04:00.030 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-13 19:41:32.353 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41534 10 6452 1 2025-09-13 19:42:41.568 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 19:42:41.312 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 19:42:41.550 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 19:42:32.754 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:53820 10 6452 1 2025-09-13 19:42:41.472 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 19:42:41.554 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 19:43:33.179 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54206 10 6452 1 2025-09-13 19:40:29.183 00:04:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 5 355 1 2025-09-13 19:44:33.584 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55312 10 6452 1 2025-09-13 19:45:33.995 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:40362 10 6452 1 2025-09-13 19:42:29.158 00:04:00.028 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-13 19:46:34.365 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38288 10 6452 1 2025-09-13 19:47:41.493 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 19:47:41.564 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 19:47:41.574 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 19:47:41.487 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 19:47:41.570 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 19:47:34.729 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:41722 10 6452 1 2025-09-13 19:48:35.137 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47234 10 6452 1 2025-09-13 19:45:29.184 00:04:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 5 355 1 2025-09-13 19:49:35.540 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38266 10 6452 1 2025-09-13 19:50:35.947 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:44936 10 6452 1 2025-09-13 19:51:36.370 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46732 10 6452 1 2025-09-13 19:47:29.161 00:06:00.026 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-13 19:52:41.562 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 19:52:41.646 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 19:52:41.475 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 19:52:41.618 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 19:52:41.480 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 19:52:36.739 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:42538 10 6452 1 2025-09-13 19:53:37.123 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36382 10 6452 1 2025-09-13 19:50:29.184 00:04:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 5 355 1 2025-09-13 19:54:37.537 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:53890 10 6452 1 2025-09-13 19:55:37.912 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53704 10 6452 1 2025-09-13 19:56:38.335 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44766 10 6452 1 2025-09-13 19:57:41.939 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 19:57:41.935 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 19:57:41.809 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 19:57:41.870 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 19:57:41.952 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 19:57:38.745 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44644 10 6452 1 2025-09-13 19:54:29.163 00:04:00.026 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-13 19:58:39.150 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:32774 10 6452 1 Summary: total flows: 143, total bytes: 418320, total packets: 971, avg bps: 880, avg pps: 0, avg bpp: 430 Time window: 2025-09-13 18:55:29 - 2025-09-13 19:58:49 Total flows processed: 143, passed: 143, Blocks skipped: 0, Bytes read: 14936 Sys: 0.0046s User: 0.0009s Wall: 0.0018s flows/second: 81074.0 Runtime: 0.0018s