Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-21 09:58:54.707 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59868 10 6452 1 2025-09-21 09:54:32.829 00:06:00.011 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-21 09:59:55.121 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39172 10 6452 1 2025-09-21 10:00:55.527 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:44140 10 6452 1 2025-09-21 10:01:20.818 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-21 10:01:20.674 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-21 10:01:20.586 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 10:01:20.820 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 10:01:20.904 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-21 10:01:55.884 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41832 10 6452 1 2025-09-21 10:02:56.287 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:32996 10 6452 1 2025-09-21 10:03:56.680 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44324 10 6452 1 2025-09-21 10:04:57.109 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:40858 10 6452 1 2025-09-21 10:00:32.837 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-21 10:05:57.541 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41572 10 6452 1 2025-09-21 10:06:20.853 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-21 10:06:21.046 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-21 10:06:21.101 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-21 10:06:21.063 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 10:06:20.771 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 10:01:32.831 00:06:00.012 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-21 10:06:57.950 00:00:10.407 TCP 1.101.0.1:3000 -> 23.104.0.1:54006 12 10367 1 2025-09-21 10:07:58.392 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58996 10 6452 1 2025-09-21 10:08:58.795 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:45788 10 6452 1 2025-09-21 10:09:59.183 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:59794 10 6452 1 2025-09-21 10:10:59.606 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41336 10 6452 1 2025-09-21 10:11:21.067 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-21 10:11:20.736 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-21 10:11:21.001 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 10:11:20.976 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 10:11:21.059 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-21 10:12:00.012 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:52322 10 6452 1 2025-09-21 10:07:32.840 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-21 10:13:00.416 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48458 10 6452 1 2025-09-21 10:08:32.833 00:06:00.011 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-21 10:14:00.814 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38830 10 6452 1 2025-09-21 10:15:01.227 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46110 10 6452 1 2025-09-21 10:16:01.632 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60356 10 6452 1 2025-09-21 10:16:21.144 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-21 10:16:21.367 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-21 10:16:20.948 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 10:16:21.283 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 10:16:21.365 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-21 10:17:02.040 00:00:10.448 TCP 1.101.0.1:3000 -> 23.104.0.1:50826 12 10365 1 2025-09-21 10:18:02.532 00:00:10.675 TCP 1.101.0.1:3000 -> 23.104.0.1:60900 10 6452 1 2025-09-21 10:19:03.248 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39050 10 6452 1 2025-09-21 10:14:32.842 00:06:00.007 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-21 10:20:03.651 00:00:10.781 TCP 1.101.0.1:3000 -> 23.104.0.1:43978 10 6452 1 2025-09-21 10:15:32.835 00:06:00.017 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-21 10:21:04.472 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45224 10 6452 1 2025-09-21 10:21:21.214 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-21 10:21:21.110 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 10:21:21.214 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 10:21:21.162 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-21 10:21:21.296 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-21 10:22:04.887 00:00:10.886 TCP 1.101.0.1:3000 -> 23.104.0.1:42444 12 6556 1 2025-09-21 10:23:05.816 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59220 10 6452 1 2025-09-21 10:24:06.220 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53252 10 6452 1 2025-09-21 10:25:06.637 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:45388 10 6452 1 2025-09-21 10:26:07.037 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53782 10 6452 1 2025-09-21 10:26:21.519 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-21 10:26:21.520 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-21 10:26:21.393 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 10:26:21.472 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 10:26:21.555 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-21 10:21:32.848 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-21 10:27:07.440 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45992 10 6452 1 2025-09-21 10:22:32.837 00:06:00.018 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-21 10:28:07.843 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:56744 10 6452 1 2025-09-21 10:29:08.236 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:52132 10 6452 1 2025-09-21 10:30:08.609 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54286 10 6452 1 2025-09-21 10:31:09.010 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60822 10 6452 1 2025-09-21 10:31:21.555 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-21 10:31:21.383 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-21 10:31:21.307 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 10:31:21.244 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 10:31:21.325 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-21 10:32:09.417 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40102 10 6452 1 2025-09-21 10:33:09.820 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53414 10 6452 1 2025-09-21 10:28:32.852 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-21 10:34:10.225 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46256 10 6452 1 2025-09-21 10:29:32.840 00:06:00.016 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-21 10:35:10.634 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44718 10 6452 1 2025-09-21 10:36:21.756 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-21 10:36:21.604 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-21 10:36:21.518 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-21 10:36:21.444 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 10:36:21.675 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 10:36:11.039 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35662 10 6452 1 2025-09-21 10:37:11.451 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54396 10 6452 1 2025-09-21 10:38:11.855 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:36730 10 6452 1 2025-09-21 10:39:12.271 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36378 10 6452 1 2025-09-21 10:40:12.630 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39704 10 6452 1 2025-09-21 10:35:32.854 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-21 10:41:21.710 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-21 10:41:21.398 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-21 10:41:21.472 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 10:41:13.038 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:59814 10 6452 1 2025-09-21 10:41:21.706 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 10:41:21.790 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-21 10:36:32.842 00:06:00.016 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-21 10:42:13.465 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40884 10 6452 1 2025-09-21 10:43:13.869 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52810 10 6452 1 2025-09-21 10:44:14.279 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39250 10 6452 1 2025-09-21 10:45:14.689 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54542 10 6452 1 2025-09-21 10:46:21.719 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-21 10:46:21.685 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 10:46:21.569 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 10:46:21.781 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-21 10:46:21.651 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-21 10:46:15.114 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39938 10 6452 1 2025-09-21 10:47:15.527 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58506 10 6452 1 2025-09-21 10:42:32.855 00:06:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-21 10:48:15.935 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:57378 10 6452 1 2025-09-21 10:43:32.846 00:06:00.012 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-21 10:49:16.370 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57552 10 6452 1 2025-09-21 10:50:16.782 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38796 10 6452 1 2025-09-21 10:51:21.937 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-21 10:51:21.776 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-21 10:51:21.873 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 10:51:21.853 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 10:51:21.936 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-21 10:51:17.188 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52852 10 6452 1 2025-09-21 10:52:17.553 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:36918 10 6452 1 2025-09-21 10:53:17.951 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:56910 10 6452 1 2025-09-21 10:54:18.347 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41574 10 6452 1 2025-09-21 10:49:32.856 00:06:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-21 10:55:18.751 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53068 10 6452 1 2025-09-21 10:50:32.846 00:06:00.012 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-21 10:56:21.883 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-21 10:56:21.692 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-21 10:56:21.805 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 10:56:21.890 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 10:56:21.973 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-21 10:56:19.155 00:00:10.435 TCP 1.101.0.1:3000 -> 23.104.0.1:45502 12 10367 1 2025-09-21 10:57:19.635 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48570 10 6452 1 2025-09-21 10:58:20.046 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42692 10 6452 1 Summary: total flows: 137, total bytes: 425812, total packets: 970, avg bps: 887, avg pps: 0, avg bpp: 438 Time window: 2025-09-21 09:54:32 - 2025-09-21 10:58:30 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0027s User: 0.0018s Wall: 0.0019s flows/second: 72061.7 Runtime: 0.0019s