Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-15 23:58:59.694 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:44852 10 6452 1 2025-09-16 00:00:00.094 00:00:10.650 TCP 1.101.0.1:3000 -> 23.104.0.1:56362 10 6452 1 2025-09-16 00:01:00.783 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:47376 10 6452 1 2025-09-15 23:56:30.183 00:06:00.034 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 00:02:01.152 00:00:12.652 TCP 1.101.0.1:3000 -> 23.104.0.1:47258 10 6452 1 2025-09-16 00:03:03.857 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:52710 10 6452 1 2025-09-16 00:03:44.437 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 00:03:44.440 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 00:03:44.441 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 00:03:44.420 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 00:03:44.519 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 00:04:04.282 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43914 10 6452 1 2025-09-15 23:59:30.214 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-16 00:05:04.690 00:00:10.408 TCP 1.101.0.1:3000 -> 23.104.0.1:33854 12 10365 1 2025-09-16 00:06:05.140 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54622 10 6452 1 2025-09-16 00:07:05.540 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52346 10 6452 1 2025-09-16 00:08:05.938 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:40620 10 6452 1 2025-09-16 00:03:30.183 00:06:00.036 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 00:08:44.943 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 00:08:44.372 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 00:08:44.866 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 00:08:44.949 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 00:08:44.989 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 00:09:06.353 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37698 10 6452 1 2025-09-16 00:10:06.757 00:00:10.451 TCP 1.101.0.1:3000 -> 23.104.0.1:40954 12 10365 1 2025-09-16 00:11:07.248 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:46000 10 6452 1 2025-09-16 00:06:30.217 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-16 00:12:07.649 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46032 10 6452 1 2025-09-16 00:13:08.072 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33076 10 6452 1 2025-09-16 00:13:44.700 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 00:13:44.800 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 00:13:44.663 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 00:13:44.648 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 00:13:44.730 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 00:14:08.478 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38304 10 6452 1 2025-09-16 00:15:08.880 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:55514 10 6452 1 2025-09-16 00:10:30.186 00:06:00.038 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 00:16:09.244 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52642 10 6452 1 2025-09-16 00:17:09.648 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49686 10 6452 1 2025-09-16 00:18:10.053 00:00:10.805 TCP 1.101.0.1:3000 -> 23.104.0.1:41016 12 6556 1 2025-09-16 00:13:30.218 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-16 00:18:45.500 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 00:18:45.416 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 00:18:45.347 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 00:18:45.349 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 00:18:45.418 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 00:19:10.897 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49558 10 6452 1 2025-09-16 00:20:11.304 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:46024 12 10367 1 2025-09-16 00:21:11.784 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42276 10 6452 1 2025-09-16 00:22:12.189 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:55928 10 6452 1 2025-09-16 00:17:30.189 00:06:00.036 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 00:23:12.587 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53634 10 6452 1 2025-09-16 00:23:44.820 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 00:23:44.893 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 00:23:44.762 00:00:00.031 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 00:23:45.082 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 00:23:45.164 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 00:24:12.983 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49366 10 6452 1 2025-09-16 00:25:13.393 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44238 10 6452 1 2025-09-16 00:20:30.222 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-16 00:26:13.794 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51810 10 6452 1 2025-09-16 00:27:14.204 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47512 10 6452 1 2025-09-16 00:28:14.607 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38680 10 6452 1 2025-09-16 00:28:45.045 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 00:28:45.161 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 00:28:45.075 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 00:28:45.267 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 00:28:45.348 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 00:29:15.010 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45322 10 6452 1 2025-09-16 00:24:30.190 00:06:00.036 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 00:30:15.416 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:37366 10 6452 1 2025-09-16 00:31:15.838 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:56140 10 6452 1 2025-09-16 00:32:16.270 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54650 10 6452 1 2025-09-16 00:27:30.224 00:06:00.000 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-16 00:33:16.668 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53716 10 6452 1 2025-09-16 00:33:44.853 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 00:33:44.858 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 00:33:45.163 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 00:33:45.232 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 00:33:45.316 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 00:34:17.032 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58540 10 6452 1 2025-09-16 00:35:17.432 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:46102 10 6452 1 2025-09-16 00:36:17.848 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:37862 10 6452 1 2025-09-16 00:31:30.196 00:06:00.052 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 00:37:18.275 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51356 10 6452 1 2025-09-16 00:38:18.677 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52362 10 6452 1 2025-09-16 00:38:45.358 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 00:38:45.050 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 00:38:45.292 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 00:38:45.359 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 00:38:45.375 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 00:39:19.097 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39508 10 6452 1 2025-09-16 00:34:30.223 00:06:00.022 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 757 1 2025-09-16 00:40:19.491 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56740 10 6452 1 2025-09-16 00:41:19.894 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:33914 10 6452 1 2025-09-16 00:42:20.312 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33776 10 6452 1 2025-09-16 00:43:20.721 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:44416 10 6452 1 2025-09-16 00:38:30.195 00:06:00.055 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 00:43:45.381 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 00:43:45.328 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 00:43:45.330 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 00:43:45.206 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 00:43:45.414 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 00:44:21.153 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51410 10 6452 1 2025-09-16 00:45:21.565 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:58852 10 6452 1 2025-09-16 00:41:30.199 00:06:00.049 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-16 00:46:21.981 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59914 10 6452 1 2025-09-16 00:47:22.390 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40510 10 6452 1 2025-09-16 00:48:22.799 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:50500 10 6452 1 2025-09-16 00:48:45.526 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 00:48:45.322 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 00:48:45.327 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 00:48:45.356 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 00:48:45.444 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 00:49:23.194 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50844 10 6452 1 2025-09-16 00:45:30.198 00:06:00.054 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 00:50:23.591 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46770 10 6452 1 2025-09-16 00:51:24.000 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:44524 10 6452 1 2025-09-16 00:52:24.359 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:34386 10 6452 1 2025-09-16 00:48:30.202 00:06:00.052 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-16 00:53:24.758 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:38728 10 6452 1 2025-09-16 00:53:45.587 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 00:53:45.320 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 00:53:45.598 00:00:00.029 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 00:53:45.338 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 00:53:45.503 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 00:54:25.182 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59890 10 6452 1 2025-09-16 00:55:25.583 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36472 10 6452 1 2025-09-16 00:56:25.990 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:46320 10 6452 1 2025-09-16 00:52:30.199 00:06:00.059 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 00:57:26.416 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60060 10 6452 1 2025-09-16 00:58:26.825 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46942 10 6452 1 2025-09-16 00:58:45.421 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 00:58:45.409 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 00:58:45.535 00:00:00.031 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 00:58:45.524 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 00:58:45.607 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 137, total bytes: 426798, total packets: 989, avg bps: 914, avg pps: 0, avg bpp: 431 Time window: 2025-09-15 23:56:30 - 2025-09-16 00:58:45 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0042s User: 0.0000s Wall: 0.0024s flows/second: 56775.0 Runtime: 0.0024s