Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-16 20:58:41.518 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57380 10 6452 1 2025-09-16 20:59:09.736 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 20:59:09.653 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 20:59:09.805 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 20:59:09.668 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 20:59:09.653 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 20:59:41.887 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:41638 10 6452 1 2025-09-16 21:00:42.251 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56748 10 6452 1 2025-09-16 20:56:30.638 00:06:00.005 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 21:01:42.659 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60384 10 6452 1 2025-09-16 21:02:43.067 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39140 10 6452 1 2025-09-16 21:03:43.473 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58608 10 6452 1 2025-09-16 21:04:09.815 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 21:04:09.678 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 21:04:09.767 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 21:04:09.811 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 21:04:09.895 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 20:59:30.641 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-16 21:04:43.876 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44852 10 6452 1 2025-09-16 21:05:44.283 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46004 10 6452 1 2025-09-16 21:06:44.686 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45554 10 6452 1 2025-09-16 21:07:45.069 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:37022 10 6452 1 2025-09-16 21:03:30.639 00:06:00.004 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 21:08:45.433 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:48912 10 6452 1 2025-09-16 21:09:09.965 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 21:09:09.602 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 21:09:09.965 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 21:09:10.164 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 21:09:10.080 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 21:09:45.815 00:00:10.478 TCP 1.101.0.1:3000 -> 23.104.0.1:55356 10 6452 1 2025-09-16 21:10:46.329 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51234 10 6452 1 2025-09-16 21:06:30.641 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-16 21:11:46.688 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:49030 10 6452 1 2025-09-16 21:12:47.162 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34582 10 6452 1 2025-09-16 21:13:47.564 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:49884 10 6452 1 2025-09-16 21:14:09.887 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 21:14:09.858 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 21:14:09.858 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 21:14:09.941 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 21:14:10.006 00:00:00.029 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 21:14:47.964 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52760 10 6452 1 2025-09-16 21:10:30.641 00:06:00.005 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 21:15:48.371 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35530 10 6452 1 2025-09-16 21:16:48.773 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39300 10 6452 1 2025-09-16 21:17:49.141 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52086 10 6452 1 2025-09-16 21:13:30.642 00:06:00.004 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-16 21:18:49.504 00:00:10.940 TCP 1.101.0.1:3000 -> 23.104.0.1:51010 10 6452 1 2025-09-16 21:19:09.904 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 21:19:09.870 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 21:19:09.952 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 21:19:10.047 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 21:19:10.165 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 21:19:50.486 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35384 10 6452 1 2025-09-16 21:20:50.848 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:48392 10 6452 1 2025-09-16 21:21:51.231 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38096 10 6452 1 2025-09-16 21:17:30.643 00:06:00.004 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 21:22:51.635 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39830 10 6452 1 2025-09-16 21:23:52.037 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57142 10 6452 1 2025-09-16 21:24:10.488 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 21:24:10.395 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 21:24:10.242 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 21:24:10.444 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 21:24:10.527 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 21:24:52.441 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:60878 10 6452 1 2025-09-16 21:20:30.644 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-16 21:25:52.802 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51016 10 6452 1 2025-09-16 21:26:53.204 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49496 10 6452 1 2025-09-16 21:27:53.606 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43420 10 6452 1 2025-09-16 21:28:54.012 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43826 10 6452 1 2025-09-16 21:29:10.099 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 21:29:10.186 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 21:29:10.197 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 21:29:10.182 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 21:29:10.265 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 21:24:30.643 00:06:00.004 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 21:29:54.413 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59764 10 6452 1 2025-09-16 21:30:54.817 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41786 10 6452 1 2025-09-16 21:31:55.224 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:38776 10 6452 1 2025-09-16 21:27:30.644 00:06:00.005 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-16 21:32:55.583 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35378 10 6452 1 2025-09-16 21:33:55.990 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39178 10 6452 1 2025-09-16 21:34:10.577 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 21:34:10.326 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 21:34:10.487 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 21:34:10.365 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 21:34:10.496 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 21:34:56.394 00:00:10.434 TCP 1.101.0.1:3000 -> 23.104.0.1:60968 12 10367 1 2025-09-16 21:35:56.864 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60638 10 6452 1 2025-09-16 21:31:30.646 00:06:00.005 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 21:36:57.286 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34442 10 6452 1 2025-09-16 21:37:57.688 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:33570 10 6452 1 2025-09-16 21:38:58.084 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52452 10 6452 1 2025-09-16 21:39:10.545 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 21:39:10.571 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 21:39:10.465 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 21:39:10.403 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 21:39:10.462 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 21:34:30.648 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-16 21:39:58.488 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46292 10 6452 1 2025-09-16 21:40:58.905 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44022 10 6452 1 2025-09-16 21:41:59.315 00:00:10.671 TCP 1.101.0.1:3000 -> 23.104.0.1:54894 10 6452 1 2025-09-16 21:43:00.030 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44910 10 6452 1 2025-09-16 21:38:30.647 00:06:00.006 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 21:44:00.430 00:00:10.666 TCP 1.101.0.1:3000 -> 23.104.0.1:45520 10 6452 1 2025-09-16 21:44:10.591 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 21:44:10.635 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 21:44:10.526 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 21:44:10.585 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 21:44:10.668 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 21:45:01.136 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33998 10 6452 1 2025-09-16 21:46:01.538 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54398 10 6452 1 2025-09-16 21:41:30.651 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-16 21:47:01.943 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:53940 10 6452 1 2025-09-16 21:48:02.362 00:00:10.680 TCP 1.101.0.1:3000 -> 23.104.0.1:40114 10 6452 1 2025-09-16 21:49:10.674 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 21:49:10.889 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 21:49:10.462 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 21:49:03.099 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50500 10 6452 1 2025-09-16 21:49:10.881 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 21:49:10.963 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 21:50:03.494 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43946 10 6452 1 2025-09-16 21:45:30.649 00:06:00.006 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 21:51:03.898 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:57378 10 6452 1 2025-09-16 21:52:04.265 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48290 10 6452 1 2025-09-16 21:53:04.672 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:48380 10 6452 1 2025-09-16 21:48:30.652 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 9 601 1 2025-09-16 21:54:10.738 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 21:54:10.789 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 21:54:10.781 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 21:54:10.632 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 21:54:10.714 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 21:54:05.037 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45068 10 6452 1 2025-09-16 21:55:05.439 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38478 10 6452 1 2025-09-16 21:56:05.840 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:50104 10 6452 1 2025-09-16 21:57:06.223 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36108 10 6452 1 2025-09-16 21:52:30.650 00:06:00.007 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 21:58:06.628 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:48608 10 6452 1 Summary: total flows: 137, total bytes: 420532, total packets: 1015, avg bps: 904, avg pps: 0, avg bpp: 414 Time window: 2025-09-16 20:56:30 - 2025-09-16 21:58:30 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0048s User: 0.0000s Wall: 0.0020s flows/second: 69752.3 Runtime: 0.0020s