Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-20 21:59:33.755 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:46930 10 6452 1 2025-09-20 22:00:34.180 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38928 10 6452 1 2025-09-20 22:01:06.213 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 22:01:06.484 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 22:01:06.191 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 22:01:06.232 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 22:01:06.314 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 22:01:34.581 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:52984 10 6452 1 2025-09-20 22:02:34.946 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42926 10 6452 1 2025-09-20 22:03:35.360 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38390 10 6452 1 2025-09-20 21:59:32.600 00:06:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-20 22:04:35.763 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:39652 10 6452 1 2025-09-20 22:00:32.579 00:06:00.026 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 22:05:36.183 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39076 10 6452 1 2025-09-20 22:06:06.847 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 22:06:06.994 00:00:00.034 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 22:06:06.727 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 22:06:06.768 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 22:06:06.851 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 22:06:36.550 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58014 10 6452 1 2025-09-20 22:07:36.971 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:40168 10 6452 1 2025-09-20 22:08:37.405 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39668 10 6452 1 2025-09-20 22:09:37.812 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40400 10 6452 1 2025-09-20 22:10:38.219 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57806 10 6452 1 2025-09-20 22:11:06.721 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 22:11:06.638 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 22:11:06.575 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 22:11:06.480 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 22:11:06.727 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 22:06:32.602 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-20 22:11:38.629 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38382 10 6452 1 2025-09-20 22:07:32.581 00:06:00.025 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 22:12:39.033 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34696 10 6452 1 2025-09-20 22:13:39.440 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58152 10 6452 1 2025-09-20 22:14:39.843 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:48958 10 6452 1 2025-09-20 22:15:40.230 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42768 10 6452 1 2025-09-20 22:16:06.754 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 22:16:06.669 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 22:16:06.566 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 22:16:06.664 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 22:16:06.747 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 22:16:40.635 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60242 10 6452 1 2025-09-20 22:17:41.056 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34038 10 6452 1 2025-09-20 22:13:32.603 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-20 22:18:41.421 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58646 10 6452 1 2025-09-20 22:14:32.584 00:06:00.023 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 22:19:41.826 00:00:10.354 TCP 1.101.0.1:3000 -> 23.104.0.1:53746 10 6452 1 2025-09-20 22:20:42.219 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58440 10 6452 1 2025-09-20 22:21:06.972 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 22:21:06.843 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 22:21:06.842 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 22:21:06.746 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 22:21:06.890 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 22:21:42.579 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42226 10 6452 1 2025-09-20 22:22:42.983 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48128 10 6452 1 2025-09-20 22:23:43.384 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40188 10 6452 1 2025-09-20 22:24:43.783 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35760 10 6452 1 2025-09-20 22:20:32.604 00:06:00.004 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-20 22:25:44.188 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41072 10 6452 1 2025-09-20 22:26:07.209 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 22:26:07.074 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 22:26:07.074 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 22:26:07.073 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 22:26:07.126 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 22:21:32.587 00:06:00.026 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 22:26:44.594 00:00:11.227 TCP 1.101.0.1:3000 -> 23.104.0.1:55028 12 6556 1 2025-09-20 22:27:45.855 00:00:10.842 TCP 1.101.0.1:3000 -> 23.104.0.1:41762 10 6452 1 2025-09-20 22:28:46.729 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48662 10 6452 1 2025-09-20 22:29:47.136 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58794 10 6452 1 2025-09-20 22:30:47.536 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35748 10 6452 1 2025-09-20 22:31:07.278 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 22:31:06.947 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 22:31:06.945 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 22:31:06.770 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 22:31:07.196 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 22:31:47.942 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:39696 10 6452 1 2025-09-20 22:27:32.608 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-20 22:32:48.355 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:45914 10 6452 1 2025-09-20 22:28:32.588 00:06:00.024 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 22:33:48.722 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50280 10 6452 1 2025-09-20 22:34:49.112 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58750 10 6452 1 2025-09-20 22:35:49.528 00:00:10.621 TCP 1.101.0.1:3000 -> 23.104.0.1:60854 10 6452 1 2025-09-20 22:36:07.162 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 22:36:07.079 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 22:36:07.080 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 22:36:07.099 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 22:36:07.080 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 22:36:50.188 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39794 10 6452 1 2025-09-20 22:37:50.586 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:37948 10 6452 1 2025-09-20 22:38:50.943 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44220 10 6452 1 2025-09-20 22:34:32.610 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-20 22:39:51.352 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35168 10 6452 1 2025-09-20 22:35:32.589 00:06:00.025 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 22:40:51.757 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:55876 10 6452 1 2025-09-20 22:41:07.338 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 22:41:07.307 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 22:41:07.310 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 22:41:07.308 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 22:41:07.392 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 22:41:52.172 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:57710 12 10365 1 2025-09-20 22:42:52.648 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58626 10 6452 1 2025-09-20 22:43:53.060 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48524 10 6452 1 2025-09-20 22:44:53.457 00:00:14.427 TCP 1.101.0.1:3000 -> 23.104.0.1:52632 10 6452 1 2025-09-20 22:46:07.196 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 22:46:07.480 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 22:46:07.388 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 22:46:07.227 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 22:45:57.925 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:42232 10 6452 1 2025-09-20 22:46:07.279 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 22:41:32.613 00:06:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-20 22:46:58.312 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52030 10 6452 1 2025-09-20 22:42:32.594 00:06:00.021 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 22:47:58.717 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57436 10 6452 1 2025-09-20 22:48:59.124 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46616 10 6452 1 2025-09-20 22:49:59.529 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52166 10 6452 1 2025-09-20 22:51:07.538 00:00:00.037 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 22:51:07.539 00:00:00.020 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 22:51:07.312 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 22:51:07.614 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 22:51:07.698 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 22:50:59.931 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:46380 10 6452 1 2025-09-20 22:52:00.350 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36052 10 6452 1 2025-09-20 22:53:00.756 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:36864 10 6452 1 2025-09-20 22:48:32.612 00:06:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-20 22:54:01.128 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:56458 10 6452 1 2025-09-20 22:49:32.597 00:06:00.019 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-20 22:55:01.491 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55322 10 6452 1 2025-09-20 22:56:07.334 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 22:56:07.529 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 22:56:07.481 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 22:56:07.453 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 22:56:07.537 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 22:56:01.891 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:37812 10 6452 1 2025-09-20 22:57:02.276 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:56574 10 6452 1 2025-09-20 22:58:02.637 00:00:22.717 TCP 1.101.0.1:3000 -> 23.104.0.1:48716 10 6452 1 Summary: total flows: 135, total bytes: 410669, total packets: 942, avg bps: 929, avg pps: 0, avg bpp: 435 Time window: 2025-09-20 21:59:32 - 2025-09-20 22:58:25 Total flows processed: 135, passed: 135, Blocks skipped: 0, Bytes read: 14104 Sys: 0.0021s User: 0.0021s Wall: 0.0017s flows/second: 77364.5 Runtime: 0.0018s