Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-20 05:59:03.113 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:57188 10 6452 1 2025-09-20 05:54:32.288 00:06:00.042 TCP 179.21.23.21:38570 -> 179.21.23.23:179 11 705 1 2025-09-20 06:00:03.528 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:42424 10 6452 1 2025-09-20 06:00:47.227 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 06:00:47.152 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 06:00:47.158 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 06:00:47.145 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 06:00:47.072 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 06:01:03.889 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33140 10 6452 1 2025-09-20 06:02:04.295 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53448 10 6452 1 2025-09-20 06:03:04.692 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36168 10 6452 1 2025-09-20 06:04:05.111 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53680 10 6452 1 2025-09-20 06:05:05.511 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49676 10 6452 1 2025-09-20 06:00:32.287 00:06:00.008 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 06:05:47.323 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 06:05:47.009 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 06:05:47.122 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 06:05:47.257 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 06:05:47.240 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 06:06:05.875 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45714 10 6452 1 2025-09-20 06:01:32.289 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 8 549 1 2025-09-20 06:07:06.279 00:00:11.118 TCP 1.101.0.1:3000 -> 23.104.0.1:41330 10 6452 1 2025-09-20 06:08:07.438 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:32782 10 6452 1 2025-09-20 06:09:07.843 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:47220 10 6452 1 2025-09-20 06:10:08.225 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:56902 10 6452 1 2025-09-20 06:10:47.472 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 06:10:47.222 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 06:10:47.129 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 06:10:47.289 00:00:00.041 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 06:10:47.389 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 06:11:08.639 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45418 11 6492 1 2025-09-20 06:12:09.039 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60070 10 6452 1 2025-09-20 06:07:32.287 00:06:00.009 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 06:13:09.442 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50094 10 6452 1 2025-09-20 06:08:32.290 00:06:00.044 TCP 179.21.23.21:38570 -> 179.21.23.23:179 11 705 1 2025-09-20 06:14:09.807 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:45208 10 6452 1 2025-09-20 06:15:10.179 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56000 10 6452 1 2025-09-20 06:15:47.420 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 06:15:47.422 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 06:15:47.282 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 06:15:47.508 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 06:15:47.591 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 06:16:10.579 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40252 10 6452 1 2025-09-20 06:17:10.997 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49300 10 6452 1 2025-09-20 06:18:11.404 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50546 10 6452 1 2025-09-20 06:19:11.825 00:00:12.969 TCP 1.101.0.1:3000 -> 23.104.0.1:53936 12 6556 1 2025-09-20 06:14:32.292 00:06:00.007 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 06:20:14.852 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60298 10 6452 1 2025-09-20 06:15:32.294 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 8 549 1 2025-09-20 06:20:47.801 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 06:20:47.771 00:00:00.032 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 06:20:47.476 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 06:20:47.393 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 06:20:47.475 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 06:21:15.265 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55454 10 6452 1 2025-09-20 06:22:15.667 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:50194 10 6452 1 2025-09-20 06:23:16.031 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50746 10 6452 1 2025-09-20 06:24:16.439 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:33370 10 6452 1 2025-09-20 06:25:16.877 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54892 10 6452 1 2025-09-20 06:25:47.654 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 06:25:47.728 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 06:25:47.796 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 06:25:47.437 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 06:25:47.570 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 06:26:17.284 00:00:10.518 TCP 1.101.0.1:3000 -> 23.104.0.1:40554 14 14280 1 2025-09-20 06:21:32.294 00:06:00.009 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 06:27:17.837 00:00:10.405 TCP 1.101.0.1:3000 -> 23.104.0.1:34348 10 6452 1 2025-09-20 06:22:32.298 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-20 06:28:18.280 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:46104 10 6452 1 2025-09-20 06:29:18.702 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53170 10 6452 1 2025-09-20 06:30:19.115 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:52046 10 6452 1 2025-09-20 06:30:47.785 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 06:30:47.783 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 06:30:47.720 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 06:30:47.498 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 06:30:47.867 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 06:31:19.504 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34000 10 6452 1 2025-09-20 06:32:19.912 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:36082 10 6452 1 2025-09-20 06:33:20.338 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:36274 10 6452 1 2025-09-20 06:28:32.294 00:06:00.010 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 06:34:20.731 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:48444 10 6452 1 2025-09-20 06:29:32.300 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-20 06:35:21.146 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42822 10 6452 1 2025-09-20 06:35:47.708 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 06:35:47.677 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 06:35:47.859 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 06:35:47.913 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 06:35:47.995 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 06:36:21.506 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:38046 10 6452 1 2025-09-20 06:37:21.904 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59530 12 6556 1 2025-09-20 06:38:22.314 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41086 10 6452 1 2025-09-20 06:39:22.728 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45060 10 6452 1 2025-09-20 06:35:32.295 00:06:00.009 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 06:40:23.139 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52194 10 6452 1 2025-09-20 06:40:47.964 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 06:40:47.529 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 06:40:48.003 00:00:00.055 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 06:40:47.966 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 06:40:48.085 00:00:00.056 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 06:36:32.302 00:06:00.000 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-20 06:41:23.541 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:55058 12 10367 1 2025-09-20 06:42:24.019 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55628 10 6452 1 2025-09-20 06:43:24.426 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42162 10 6452 1 2025-09-20 06:44:24.828 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55810 10 6452 1 2025-09-20 06:45:25.230 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46864 10 6452 1 2025-09-20 06:45:48.169 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 06:45:47.968 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 06:45:48.085 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 06:45:47.858 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 06:45:48.086 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 06:46:25.633 00:00:10.520 TCP 1.101.0.1:3000 -> 23.104.0.1:40696 14 14282 1 2025-09-20 06:42:32.298 00:06:00.008 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 06:47:26.202 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47798 10 6452 1 2025-09-20 06:43:32.303 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-20 06:48:26.612 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57728 10 6452 1 2025-09-20 06:49:27.016 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:54628 10 6452 1 2025-09-20 06:50:27.391 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55458 10 6452 1 2025-09-20 06:50:48.248 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 06:50:48.221 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 06:50:48.071 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 06:50:47.940 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 06:50:48.165 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 06:51:27.793 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:49128 10 6452 1 2025-09-20 06:52:28.167 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34036 12 6556 1 2025-09-20 06:53:28.570 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51718 10 6452 1 2025-09-20 06:49:32.300 00:06:00.006 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 06:54:28.969 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:51552 10 6452 1 2025-09-20 06:50:32.305 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 06:55:29.385 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:40550 10 6452 1 2025-09-20 06:55:48.349 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 06:55:48.389 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 06:55:48.313 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 06:55:48.268 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 06:55:48.351 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 06:56:29.785 00:00:11.576 TCP 1.101.0.1:3000 -> 23.104.0.1:57684 10 6452 1 2025-09-20 06:57:31.401 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57756 10 6452 1 2025-09-20 06:58:31.805 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48188 10 6452 1 Summary: total flows: 137, total bytes: 434410, total packets: 989, avg bps: 902, avg pps: 0, avg bpp: 439 Time window: 2025-09-20 05:54:32 - 2025-09-20 06:58:42 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0039s User: 0.0020s Wall: 0.0022s flows/second: 63284.1 Runtime: 0.0022s