Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-20 08:59:21.820 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55602 10 6452 1 2025-09-20 08:55:32.337 00:06:00.005 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 09:00:22.232 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34556 10 6452 1 2025-09-20 09:00:50.698 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 09:00:50.783 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:00:50.776 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:00:50.780 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 09:00:50.858 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 08:56:32.338 00:06:00.007 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 09:01:22.635 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49522 10 6452 1 2025-09-20 09:02:23.041 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:43574 10 6452 1 2025-09-20 09:03:23.407 00:00:11.039 TCP 1.101.0.1:3000 -> 23.104.0.1:51130 10 6452 1 2025-09-20 09:04:24.486 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58800 10 6452 1 2025-09-20 09:05:24.889 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:42358 10 6452 1 2025-09-20 09:05:50.774 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 09:05:50.779 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 09:05:50.473 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:05:50.839 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:05:50.921 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 09:06:25.306 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37702 10 6452 1 2025-09-20 09:02:32.341 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 09:07:25.671 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:33476 12 6556 1 2025-09-20 09:03:32.340 00:06:00.006 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 09:08:26.138 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50710 10 6452 1 2025-09-20 09:09:26.553 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40614 10 6452 1 2025-09-20 09:10:26.961 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48698 10 6452 1 2025-09-20 09:10:50.783 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:10:50.937 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:10:50.937 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 09:10:51.071 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 09:10:51.022 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 09:11:27.368 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55840 10 6452 1 2025-09-20 09:12:27.784 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48496 10 6452 1 2025-09-20 09:13:28.145 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43164 10 6452 1 2025-09-20 09:09:32.343 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-09-20 09:14:28.549 00:00:10.486 TCP 1.101.0.1:3000 -> 23.104.0.1:51802 10 6452 1 2025-09-20 09:10:32.343 00:06:00.006 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 09:15:29.101 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36432 10 6452 1 2025-09-20 09:15:50.988 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 09:15:51.128 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 09:15:51.164 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:15:50.727 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:15:50.810 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 09:16:29.460 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38366 10 6452 1 2025-09-20 09:17:29.858 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:45998 10 6452 1 2025-09-20 09:18:30.226 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39528 10 6452 1 2025-09-20 09:19:30.590 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41718 10 6452 1 2025-09-20 09:20:30.994 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36750 10 6452 1 2025-09-20 09:20:51.313 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 09:20:51.325 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 09:20:51.316 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:20:51.538 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:20:51.621 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 09:16:32.346 00:06:00.004 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 09:21:31.401 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54964 10 6452 1 2025-09-20 09:17:32.345 00:06:00.004 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 09:22:31.805 00:00:10.527 TCP 1.101.0.1:3000 -> 23.104.0.1:37338 10 6452 1 2025-09-20 09:23:32.371 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53376 10 6452 1 2025-09-20 09:24:32.771 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:36438 10 6452 1 2025-09-20 09:25:33.189 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34828 10 6452 1 2025-09-20 09:25:51.123 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 09:25:51.367 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 09:25:51.327 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:25:51.231 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:25:51.315 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 09:26:33.554 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58276 10 6452 1 2025-09-20 09:27:33.960 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34418 10 6452 1 2025-09-20 09:23:32.347 00:06:00.004 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 09:28:34.357 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37368 10 6452 1 2025-09-20 09:24:32.348 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 09:29:34.760 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:36486 10 6452 1 2025-09-20 09:30:35.181 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48532 10 6452 1 2025-09-20 09:30:51.278 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 09:30:51.358 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 09:30:51.354 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:30:51.356 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:30:51.439 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 09:31:35.577 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:42258 10 6452 1 2025-09-20 09:32:35.984 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45946 10 6452 1 2025-09-20 09:33:36.386 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60334 12 6556 1 2025-09-20 09:34:36.791 00:00:10.862 TCP 1.101.0.1:3000 -> 23.104.0.1:41486 10 6452 1 2025-09-20 09:30:32.348 00:06:00.004 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 09:35:37.690 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56144 10 6452 1 2025-09-20 09:35:51.874 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 09:35:51.875 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 09:35:51.816 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:35:51.610 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:35:51.700 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 09:31:32.349 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 09:36:38.111 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55868 10 6452 1 2025-09-20 09:37:38.512 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53492 10 6452 1 2025-09-20 09:38:38.917 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:43428 10 6452 1 2025-09-20 09:39:39.281 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33112 10 6452 1 2025-09-20 09:40:51.563 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 09:40:51.386 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 09:40:51.382 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 09:40:51.607 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:40:51.479 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:40:39.688 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55410 10 6452 1 2025-09-20 09:41:40.110 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44510 10 6452 1 2025-09-20 09:37:32.349 00:06:00.007 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 09:42:40.513 00:00:10.545 TCP 1.101.0.1:3000 -> 23.104.0.1:41938 10 6452 1 2025-09-20 09:38:32.351 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 09:43:41.111 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45542 10 6452 1 2025-09-20 09:44:41.514 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48236 10 6452 1 2025-09-20 09:45:51.669 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 09:45:51.673 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 09:45:51.559 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:45:41.911 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55892 10 6452 1 2025-09-20 09:45:51.594 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:45:51.679 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 09:46:42.322 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:59296 10 6452 1 2025-09-20 09:47:42.696 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55808 10 6452 1 2025-09-20 09:48:43.109 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52032 10 6452 1 2025-09-20 09:44:32.352 00:06:00.004 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 09:49:43.470 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40224 10 6452 1 2025-09-20 09:45:32.354 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 09:50:51.747 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 09:50:51.638 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:50:43.876 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45448 10 6452 1 2025-09-20 09:50:51.749 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:50:51.672 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 09:50:51.833 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 09:51:44.236 00:00:10.450 TCP 1.101.0.1:3000 -> 23.104.0.1:57744 12 10367 1 2025-09-20 09:52:44.732 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40862 10 6452 1 2025-09-20 09:53:45.142 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60882 10 6452 1 2025-09-20 09:54:45.546 00:00:11.796 TCP 1.101.0.1:3000 -> 23.104.0.1:49952 10 6452 1 2025-09-20 09:55:52.982 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 09:55:52.738 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 09:55:52.773 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:55:52.629 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 09:55:52.712 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 09:55:47.399 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49238 10 6452 1 2025-09-20 09:51:32.353 00:06:00.004 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 09:56:47.801 00:00:10.718 TCP 1.101.0.1:3000 -> 23.104.0.1:38512 10 6452 1 2025-09-20 09:52:32.354 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 09:57:48.570 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50512 10 6452 1 Summary: total flows: 137, total bytes: 415357, total packets: 1027, avg bps: 879, avg pps: 0, avg bpp: 404 Time window: 2025-09-20 08:55:32 - 2025-09-20 09:58:32 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0023s User: 0.0011s Wall: 0.0012s flows/second: 111728.5 Runtime: 0.0012s