Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-23 23:58:52.638 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37978 10 6452 1 2025-09-23 23:59:53.041 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54310 10 6452 1 2025-09-23 23:55:34.052 00:06:00.137 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-24 00:00:53.446 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56734 10 6452 1 2025-09-24 00:01:53.843 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:51216 10 6452 1 2025-09-24 00:02:35.266 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-24 00:02:35.371 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-24 00:02:35.418 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-24 00:02:35.259 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-24 00:02:35.341 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-24 00:02:54.273 00:00:11.001 TCP 1.101.0.1:3000 -> 23.104.0.1:58678 10 6452 1 2025-09-24 00:03:55.313 00:00:10.796 TCP 1.101.0.1:3000 -> 23.104.0.1:44888 10 6452 1 2025-09-24 00:04:56.145 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34426 10 6452 1 2025-09-24 00:00:34.051 00:06:00.143 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-24 00:05:56.550 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:34638 10 6452 1 2025-09-24 00:06:56.922 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:50076 10 6452 1 2025-09-24 00:07:35.763 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-24 00:02:34.053 00:06:00.137 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-24 00:07:35.559 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-24 00:07:35.786 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-24 00:07:35.454 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-24 00:07:35.679 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-24 00:07:57.292 00:00:10.506 TCP 1.101.0.1:3000 -> 23.104.0.1:53704 10 6452 1 2025-09-24 00:08:57.833 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:48608 10 6452 1 2025-09-24 00:09:58.245 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60356 10 6452 1 2025-09-24 00:10:58.654 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55238 10 6452 1 2025-09-24 00:11:59.101 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48614 10 6452 1 2025-09-24 00:07:34.053 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-09-24 00:12:35.767 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-24 00:12:35.732 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-24 00:12:35.602 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-24 00:12:35.643 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-24 00:12:35.685 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-24 00:12:59.501 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41882 10 6452 1 2025-09-24 00:13:59.905 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34962 10 6452 1 2025-09-24 00:09:34.060 00:05:59.999 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-09-24 00:15:00.308 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33178 10 6452 1 2025-09-24 00:16:00.713 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53330 10 6452 1 2025-09-24 00:17:01.122 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:36230 12 10367 1 2025-09-24 00:17:35.824 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-24 00:17:35.813 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-24 00:17:35.748 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-24 00:17:35.714 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-24 00:17:35.741 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-24 00:18:01.600 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:55868 10 6452 1 2025-09-24 00:13:34.194 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 790 1 2025-09-24 00:19:01.968 00:00:11.037 TCP 1.101.0.1:3000 -> 23.104.0.1:56424 10 6452 1 2025-09-24 00:20:03.050 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34858 10 6452 1 2025-09-24 00:15:34.192 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-09-24 00:21:03.459 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48090 10 6452 1 2025-09-24 00:22:03.872 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46070 10 6452 1 2025-09-24 00:22:35.919 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-24 00:22:35.781 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-24 00:22:35.671 00:00:00.030 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-24 00:22:35.852 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-24 00:22:35.836 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-24 00:23:04.284 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46624 10 6452 1 2025-09-24 00:24:04.683 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53832 10 6452 1 2025-09-24 00:20:34.058 00:04:00.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-09-24 00:25:05.113 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55178 10 6452 1 2025-09-24 00:26:05.516 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:46962 10 6452 1 2025-09-24 00:22:34.061 00:04:00.136 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-24 00:27:05.882 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35858 10 6452 1 2025-09-24 00:27:35.980 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-24 00:27:35.969 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-24 00:27:35.651 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-24 00:27:35.976 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-24 00:27:36.059 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-24 00:28:06.283 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:47132 10 6452 1 2025-09-24 00:29:06.653 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53930 10 6452 1 2025-09-24 00:25:34.059 00:04:00.139 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-09-24 00:30:07.068 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53100 10 6452 1 2025-09-24 00:31:07.436 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:55818 12 10365 1 2025-09-24 00:27:34.063 00:04:00.134 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-24 00:32:07.913 00:00:10.575 TCP 1.101.0.1:3000 -> 23.104.0.1:49690 10 6452 1 2025-09-24 00:32:35.956 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-24 00:32:35.857 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-24 00:32:36.205 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-24 00:32:35.968 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-24 00:32:36.038 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-24 00:33:08.530 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36180 10 6452 1 2025-09-24 00:34:08.932 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:42642 10 6452 1 2025-09-24 00:35:09.319 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49514 10 6452 1 2025-09-24 00:30:34.061 00:06:00.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-24 00:36:09.744 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:40598 10 6452 1 2025-09-24 00:37:10.121 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36804 10 6452 1 2025-09-24 00:32:34.065 00:06:00.135 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-24 00:37:36.463 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-24 00:37:36.342 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-24 00:37:36.227 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-24 00:37:36.258 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-24 00:37:36.381 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-24 00:38:10.528 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37700 10 6452 1 2025-09-24 00:39:10.884 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:45998 12 6556 1 2025-09-24 00:40:11.313 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33620 10 6452 1 2025-09-24 00:41:11.717 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:38060 10 6452 1 2025-09-24 00:42:12.130 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35572 10 6452 1 2025-09-24 00:37:34.062 00:06:00.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-24 00:42:36.272 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-24 00:42:36.332 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-24 00:42:36.127 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-24 00:42:36.272 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-24 00:42:36.355 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-24 00:43:12.539 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:52056 10 6452 1 2025-09-24 00:44:12.953 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36378 10 6452 1 2025-09-24 00:39:34.065 00:06:00.135 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-24 00:45:13.359 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:45802 10 6452 1 2025-09-24 00:46:13.718 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:49184 10 6452 1 2025-09-24 00:47:14.134 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:58252 10 6452 1 2025-09-24 00:47:36.269 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-24 00:47:36.364 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-24 00:47:36.368 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-24 00:47:36.136 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-24 00:47:36.352 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-24 00:48:14.502 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53586 10 6452 1 2025-09-24 00:49:14.904 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:35818 10 6452 1 2025-09-24 00:44:34.065 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-09-24 00:50:15.268 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55698 10 6452 1 2025-09-24 00:50:34.204 00:01:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 3 175 1 2025-09-24 00:51:15.675 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55542 10 6452 1 2025-09-24 00:46:34.067 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-09-24 00:52:16.108 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57614 10 6452 1 2025-09-24 00:52:36.556 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-24 00:52:36.529 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-24 00:52:36.470 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-24 00:52:36.206 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-24 00:52:36.473 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-24 00:53:16.512 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37998 10 6452 1 2025-09-24 00:52:34.203 00:01:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 3 194 1 2025-09-24 00:54:16.879 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37966 10 6452 1 2025-09-24 00:55:17.280 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52862 10 6452 1 2025-09-24 00:56:17.681 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55514 10 6452 1 2025-09-24 00:52:34.065 00:04:00.145 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-09-24 00:57:18.109 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:38482 10 6452 1 2025-09-24 00:57:36.639 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-24 00:57:36.557 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-24 00:57:36.567 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-24 00:57:36.674 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-24 00:57:36.344 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-24 00:58:18.529 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:32822 10 6452 1 2025-09-24 00:54:34.069 00:04:00.140 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 Summary: total flows: 141, total bytes: 425055, total packets: 1028, avg bps: 899, avg pps: 0, avg bpp: 413 Time window: 2025-09-23 23:55:34 - 2025-09-24 00:58:34 Total flows processed: 141, passed: 141, Blocks skipped: 0, Bytes read: 14728 Sys: 0.0035s User: 0.0018s Wall: 0.0019s flows/second: 76044.3 Runtime: 0.0019s