Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-20 00:59:22.365 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:60908 10 6452 1 2025-09-20 01:00:22.753 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34920 10 6452 1 2025-09-20 01:00:41.093 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 01:00:41.180 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 01:00:40.934 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 01:00:41.098 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 01:00:41.180 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 01:01:23.150 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60432 10 6452 1 2025-09-20 01:02:23.556 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34014 10 6452 1 2025-09-20 01:03:23.969 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:47978 10 6452 1 2025-09-20 00:59:32.168 00:06:00.028 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 01:04:24.390 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34902 10 6452 1 2025-09-20 01:00:32.192 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-20 01:05:24.792 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52160 10 6452 1 2025-09-20 01:05:41.267 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 01:05:41.124 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 01:05:41.129 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 01:05:41.220 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 01:05:41.183 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 01:06:25.194 00:00:18.188 TCP 1.101.0.1:3000 -> 23.104.0.1:59764 10 6452 1 2025-09-20 01:07:33.449 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52700 10 6452 1 2025-09-20 01:08:33.855 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:36456 10 6452 1 2025-09-20 01:09:34.278 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50180 10 6452 1 2025-09-20 01:10:42.027 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 01:10:42.252 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 01:10:41.823 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 01:10:42.090 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 01:10:41.944 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 01:10:34.687 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33264 10 6452 1 2025-09-20 01:06:32.172 00:06:00.027 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 01:11:35.058 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53504 10 6452 1 2025-09-20 01:07:32.194 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-20 01:12:35.459 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53950 10 6452 1 2025-09-20 01:13:35.862 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48368 10 6452 1 2025-09-20 01:14:36.276 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45762 10 6452 1 2025-09-20 01:15:41.602 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 01:15:41.445 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 01:15:41.580 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 01:15:41.289 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 01:15:41.519 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 01:15:36.679 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:52890 10 6452 1 2025-09-20 01:16:37.109 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35964 10 6452 1 2025-09-20 01:17:37.518 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59614 10 6452 1 2025-09-20 01:13:32.173 00:06:00.026 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 01:18:37.921 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43258 10 6452 1 2025-09-20 01:14:32.196 00:06:00.000 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-20 01:19:38.319 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:54286 10 6452 1 2025-09-20 01:20:41.573 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 01:20:41.455 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 01:20:41.544 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 01:20:41.527 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 01:20:41.609 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 01:20:38.677 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43050 10 6452 1 2025-09-20 01:21:39.101 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49900 10 6452 1 2025-09-20 01:22:39.509 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34494 10 6452 1 2025-09-20 01:23:39.913 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36744 10 6452 1 2025-09-20 01:24:40.318 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40836 10 6452 1 2025-09-20 01:20:32.177 00:06:00.024 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 01:25:41.827 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 01:25:41.762 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 01:25:41.844 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 01:25:41.711 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 01:25:41.744 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 01:25:40.730 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40780 10 6452 1 2025-09-20 01:21:32.197 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-20 01:26:41.137 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57356 10 6452 1 2025-09-20 01:27:41.547 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34224 10 6452 1 2025-09-20 01:28:41.909 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47788 10 6452 1 2025-09-20 01:29:42.310 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53792 10 6452 1 2025-09-20 01:30:42.280 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 01:30:41.946 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 01:30:41.778 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 01:30:42.278 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 01:30:41.861 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 01:30:42.677 00:00:10.565 TCP 1.101.0.1:3000 -> 23.104.0.1:37276 10 6452 1 2025-09-20 01:31:43.281 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:46740 10 6452 1 2025-09-20 01:27:32.178 00:06:00.024 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 01:32:43.730 00:00:10.490 TCP 1.101.0.1:3000 -> 23.104.0.1:36362 10 6452 1 2025-09-20 01:28:32.198 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-20 01:33:44.261 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52136 10 6452 1 2025-09-20 01:34:44.665 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:60976 10 6452 1 2025-09-20 01:35:41.921 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 01:35:41.827 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 01:35:41.795 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 01:35:41.920 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 01:35:42.005 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 01:35:45.035 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40352 10 6452 1 2025-09-20 01:36:45.435 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47168 10 6452 1 2025-09-20 01:37:45.839 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:49402 10 6452 1 2025-09-20 01:38:46.217 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45134 10 6452 1 2025-09-20 01:34:32.178 00:06:00.024 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 01:39:46.621 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45014 10 6452 1 2025-09-20 01:35:32.198 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-20 01:40:41.964 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 01:40:41.830 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 01:40:41.959 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 01:40:42.011 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 01:40:42.060 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 01:40:47.025 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58268 10 6452 1 2025-09-20 01:41:47.431 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:39400 10 6452 1 2025-09-20 01:42:47.794 00:00:13.097 TCP 1.101.0.1:3000 -> 23.104.0.1:53214 10 6452 1 2025-09-20 01:43:50.932 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:53512 10 6452 1 2025-09-20 01:44:51.358 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60332 10 6452 1 2025-09-20 01:45:41.825 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 01:45:42.084 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 01:45:41.878 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 01:45:41.971 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 01:45:42.065 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 01:45:51.764 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:47368 10 6452 1 2025-09-20 01:41:32.179 00:06:00.024 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 01:46:52.133 00:00:10.892 TCP 1.101.0.1:3000 -> 23.104.0.1:48120 10 6452 1 2025-09-20 01:42:32.199 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-20 01:47:53.084 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58702 10 6452 1 2025-09-20 01:48:53.488 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60090 10 6452 1 2025-09-20 01:49:53.896 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:36042 12 6556 1 2025-09-20 01:50:42.071 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 01:50:42.408 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 01:50:42.402 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 01:50:42.289 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 01:50:42.154 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 01:50:54.315 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43434 10 6452 1 2025-09-20 01:51:54.719 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52374 10 6452 1 2025-09-20 01:52:55.130 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36222 10 6452 1 2025-09-20 01:48:32.182 00:06:00.022 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 01:53:55.532 00:00:11.027 TCP 1.101.0.1:3000 -> 23.104.0.1:54576 10 6452 1 2025-09-20 01:49:32.202 00:06:00.000 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-20 01:54:57.244 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60690 10 6452 1 2025-09-20 01:55:42.268 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 01:55:42.058 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 01:55:42.101 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 01:55:42.262 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 01:55:42.344 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 01:55:57.648 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46148 10 6452 1 2025-09-20 01:56:58.066 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:55550 10 6452 1 2025-09-20 01:57:58.462 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53068 10 6452 1 Summary: total flows: 135, total bytes: 406756, total packets: 940, avg bps: 922, avg pps: 0, avg bpp: 432 Time window: 2025-09-20 00:59:22 - 2025-09-20 01:58:08 Total flows processed: 135, passed: 135, Blocks skipped: 0, Bytes read: 14104 Sys: 0.0035s User: 0.0009s Wall: 0.0020s flows/second: 67128.8 Runtime: 0.0020s