Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-23 13:58:40.012 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51054 10 6452 1 2025-09-23 13:54:33.836 00:06:00.151 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-23 13:59:40.410 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:37824 10 6452 1 2025-09-23 14:00:40.775 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38428 10 6452 1 2025-09-23 14:01:41.190 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:45542 12 10365 1 2025-09-23 14:02:23.535 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-23 14:02:23.452 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-23 14:02:23.360 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 14:02:23.455 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 14:02:23.538 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-23 14:02:41.673 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32888 10 6452 1 2025-09-23 13:58:33.835 00:06:00.157 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-23 14:03:42.104 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33672 10 6452 1 2025-09-23 14:04:42.512 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54280 10 6452 1 2025-09-23 14:05:42.918 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:45818 10 6452 1 2025-09-23 14:01:33.837 00:06:00.152 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-23 14:06:43.287 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43190 10 6452 1 2025-09-23 14:07:23.405 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 14:07:23.311 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-23 14:07:23.516 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-23 14:07:23.538 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 14:07:23.488 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-23 14:07:43.691 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38586 10 6452 1 2025-09-23 14:08:44.068 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43970 10 6452 1 2025-09-23 14:09:44.477 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59028 10 6452 1 2025-09-23 14:05:33.836 00:06:00.157 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-23 14:10:44.882 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47646 10 6452 1 2025-09-23 14:11:45.291 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34090 10 6452 1 2025-09-23 14:12:23.657 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-23 14:12:23.640 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-23 14:12:23.638 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-23 14:12:23.433 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 14:12:23.573 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 14:12:45.700 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:39582 10 6452 1 2025-09-23 14:08:33.841 00:06:00.150 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-23 14:13:46.098 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41748 10 6452 1 2025-09-23 14:14:46.503 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:47814 10 6452 1 2025-09-23 14:15:46.868 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55080 10 6452 1 2025-09-23 14:16:47.272 00:00:10.581 TCP 1.101.0.1:3000 -> 23.104.0.1:57104 10 6452 1 2025-09-23 14:17:23.689 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-23 14:17:23.587 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-23 14:17:23.554 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 14:17:23.508 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 14:17:23.591 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-23 14:12:33.840 00:06:00.155 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-23 14:17:47.890 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:43380 10 6452 1 2025-09-23 14:18:48.310 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:46896 10 6452 1 2025-09-23 14:19:48.679 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59964 10 6452 1 2025-09-23 14:15:33.842 00:06:00.150 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-23 14:20:49.039 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38758 10 6452 1 2025-09-23 14:21:49.442 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:55372 12 10365 1 2025-09-23 14:22:23.892 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-23 14:22:23.634 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-23 14:22:23.810 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-23 14:22:23.411 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 14:22:23.809 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 14:22:49.919 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46346 10 6452 1 2025-09-23 14:23:50.328 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51568 10 6452 1 2025-09-23 14:19:33.842 00:06:00.153 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-23 14:24:50.733 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:56966 10 6452 1 2025-09-23 14:25:51.106 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51158 10 6452 1 2025-09-23 14:26:51.515 00:00:10.680 TCP 1.101.0.1:3000 -> 23.104.0.1:33598 10 6452 1 2025-09-23 14:27:23.928 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-23 14:27:23.839 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-23 14:27:23.679 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-23 14:27:23.809 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 14:27:23.845 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 14:22:33.846 00:06:00.149 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-23 14:27:52.233 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41894 10 6452 1 2025-09-23 14:28:52.636 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40400 10 6452 1 2025-09-23 14:29:53.000 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33836 10 6452 1 2025-09-23 14:26:33.845 00:05:00.155 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-23 14:30:53.408 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36052 10 6452 1 2025-09-23 14:31:53.818 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:35034 10 6452 1 2025-09-23 14:32:24.062 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-23 14:32:24.055 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-23 14:32:23.732 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 14:32:23.809 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 14:32:23.892 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-23 14:32:54.192 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54158 10 6452 1 2025-09-23 14:33:54.590 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:53724 10 6452 1 2025-09-23 14:29:33.850 00:06:00.150 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-23 14:34:55.004 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45038 10 6452 1 2025-09-23 14:35:55.368 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36160 10 6452 1 2025-09-23 14:32:33.854 00:05:00.149 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-23 14:36:55.781 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:48238 10 6452 1 2025-09-23 14:37:24.268 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-23 14:37:24.254 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-23 14:37:24.119 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-23 14:37:24.149 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 14:37:24.186 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 14:37:56.140 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50492 10 6452 1 2025-09-23 14:38:56.544 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52916 10 6452 1 2025-09-23 14:39:56.944 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:52632 10 6452 1 2025-09-23 14:36:33.857 00:05:00.144 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-23 14:40:57.314 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34756 10 6452 1 2025-09-23 14:41:57.720 00:00:10.446 TCP 1.101.0.1:3000 -> 23.104.0.1:44104 14 10469 1 2025-09-23 14:42:24.225 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-23 14:42:24.141 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-23 14:42:24.143 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-23 14:42:24.197 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 14:42:24.142 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 14:38:33.855 00:05:00.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-23 14:42:58.203 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60254 10 6452 1 2025-09-23 14:43:58.609 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:32858 10 6452 1 2025-09-23 14:44:58.975 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:42318 10 6452 1 2025-09-23 14:45:59.362 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:53766 10 6452 1 2025-09-23 14:42:33.859 00:05:00.172 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-23 14:46:59.786 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36346 10 6452 1 2025-09-23 14:47:24.328 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-23 14:47:24.268 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-23 14:47:24.382 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 14:47:24.260 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 14:47:24.343 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-23 14:48:00.188 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56422 10 6452 1 2025-09-23 14:44:33.856 00:05:00.179 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-23 14:49:00.595 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42808 10 6452 1 2025-09-23 14:50:01.007 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34126 10 6452 1 2025-09-23 14:51:01.406 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60198 10 6452 1 2025-09-23 14:52:01.817 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56844 10 6452 1 2025-09-23 14:52:24.588 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-23 14:52:24.313 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-23 14:52:24.382 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-23 14:52:24.259 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 14:52:24.504 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 14:48:33.862 00:05:00.173 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-23 14:53:02.227 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38316 10 6452 1 2025-09-23 14:54:02.640 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33966 10 6452 1 2025-09-23 14:50:33.857 00:05:00.179 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-23 14:55:03.050 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55912 10 6452 1 2025-09-23 14:56:03.462 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50320 10 6452 1 2025-09-23 14:57:03.861 00:00:11.012 TCP 1.101.0.1:3000 -> 23.104.0.1:45268 10 6452 1 2025-09-23 14:57:24.484 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-23 14:57:24.380 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-23 14:57:24.516 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-23 14:57:24.215 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 14:57:24.402 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-23 14:58:04.909 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48412 12 6556 1 2025-09-23 14:54:33.861 00:05:00.175 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 Summary: total flows: 139, total bytes: 429439, total packets: 1038, avg bps: 880, avg pps: 0, avg bpp: 413 Time window: 2025-09-23 13:54:33 - 2025-09-23 14:59:34 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0037s User: 0.0027s Wall: 0.0028s flows/second: 49962.1 Runtime: 0.0028s