Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-25 20:59:06.530 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40090 10 6452 1 2025-09-25 21:00:06.937 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:46752 10 6452 1 2025-09-25 21:01:07.358 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34646 10 6452 1 2025-09-25 20:57:34.913 00:05:00.173 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-25 21:02:07.761 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48138 10 6452 1 2025-09-25 21:03:08.168 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42638 10 6452 1 2025-09-25 21:03:29.733 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-25 21:03:29.596 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-25 21:03:29.641 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-25 21:03:29.648 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-25 21:03:29.651 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-25 20:59:34.911 00:05:00.177 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-25 21:04:08.532 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38110 10 6452 1 2025-09-25 21:05:08.935 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:33762 10 6452 1 2025-09-25 21:06:09.317 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41594 10 6452 1 2025-09-25 21:07:09.720 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:48848 10 6452 1 2025-09-25 21:03:34.915 00:05:00.172 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-25 21:08:10.135 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56560 10 6452 1 2025-09-25 21:08:29.853 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-25 21:08:29.773 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-25 21:08:29.571 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-25 21:08:29.688 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-25 21:08:29.770 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-25 21:09:10.538 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:34404 10 6452 1 2025-09-25 21:05:34.912 00:05:00.177 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-25 21:10:10.897 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36526 10 6452 1 2025-09-25 21:11:11.304 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:46666 10 6452 1 2025-09-25 21:12:11.715 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40534 10 6452 1 2025-09-25 21:13:12.118 00:00:10.512 TCP 1.101.0.1:3000 -> 23.104.0.1:57064 10 6452 1 2025-09-25 21:13:29.777 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-25 21:13:29.787 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-25 21:13:29.781 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-25 21:13:29.694 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-25 21:13:29.766 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-25 21:09:34.914 00:05:00.172 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-25 21:14:12.670 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:47278 10 6452 1 2025-09-25 21:15:13.031 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48028 10 6452 1 2025-09-25 21:11:34.913 00:05:00.179 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-25 21:16:13.393 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44426 10 6452 1 2025-09-25 21:17:13.795 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:45100 10 6452 1 2025-09-25 21:18:14.173 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34504 10 6452 1 2025-09-25 21:18:29.601 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-25 21:18:29.815 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-25 21:18:29.750 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-25 21:18:30.091 00:00:00.043 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-25 21:18:30.009 00:00:00.042 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-25 21:19:14.570 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34620 10 6452 1 2025-09-25 21:15:34.918 00:05:00.173 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-25 21:20:14.931 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:48168 10 6452 1 2025-09-25 21:21:15.358 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:48064 12 10367 1 2025-09-25 21:17:34.915 00:05:00.178 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-25 21:22:15.847 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:43854 10 6452 1 2025-09-25 21:23:29.966 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-25 21:23:16.280 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46906 10 6452 1 2025-09-25 21:23:29.870 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-25 21:23:29.822 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-25 21:23:29.964 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-25 21:23:30.047 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-25 21:24:16.687 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39050 10 6452 1 2025-09-25 21:25:17.101 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53752 10 6452 1 2025-09-25 21:21:34.920 00:05:00.172 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-25 21:26:17.506 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54406 10 6452 1 2025-09-25 21:27:17.912 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:45108 12 6556 1 2025-09-25 21:23:34.916 00:05:00.177 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-25 21:28:30.092 00:00:00.036 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-25 21:28:29.808 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-25 21:28:18.337 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48320 10 6452 1 2025-09-25 21:28:30.117 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-25 21:28:30.113 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-25 21:28:30.011 00:00:00.035 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-25 21:29:18.743 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43232 10 6452 1 2025-09-25 21:30:19.145 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39784 10 6452 1 2025-09-25 21:31:19.556 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37506 10 6452 1 2025-09-25 21:27:34.922 00:05:00.171 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-25 21:32:19.963 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50856 10 6452 1 2025-09-25 21:33:30.158 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-25 21:33:30.260 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-25 21:33:30.290 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-25 21:33:30.249 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-25 21:33:20.373 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53462 10 6452 1 2025-09-25 21:33:30.333 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-25 21:29:34.920 00:05:00.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-25 21:34:20.775 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50286 10 6452 1 2025-09-25 21:35:21.183 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:35722 10 6452 1 2025-09-25 21:36:21.547 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49450 10 6452 1 2025-09-25 21:37:21.957 00:00:10.713 TCP 1.101.0.1:3000 -> 23.104.0.1:39452 10 6452 1 2025-09-25 21:33:34.922 00:05:00.170 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-25 21:38:30.523 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-25 21:38:30.467 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-25 21:38:30.279 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-25 21:38:30.346 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-25 21:38:30.440 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-25 21:38:22.704 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33316 10 6452 1 2025-09-25 21:39:23.115 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44606 10 6452 1 2025-09-25 21:35:34.921 00:05:00.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-25 21:40:23.517 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55318 10 6452 1 2025-09-25 21:41:23.929 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:37956 10 6452 1 2025-09-25 21:42:24.342 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50534 10 6452 1 2025-09-25 21:43:30.487 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-25 21:43:30.349 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-25 21:43:30.284 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-25 21:43:30.430 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-25 21:43:30.520 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-25 21:39:34.936 00:05:00.158 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-25 21:43:24.743 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42418 10 6452 1 2025-09-25 21:44:25.147 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51162 10 6452 1 2025-09-25 21:41:34.923 00:05:00.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-25 21:45:25.546 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48522 10 6452 1 2025-09-25 21:46:25.949 00:00:10.406 TCP 1.101.0.1:3000 -> 23.104.0.1:52700 12 10365 1 2025-09-25 21:47:26.397 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34140 10 6452 1 2025-09-25 21:48:30.511 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-25 21:48:30.438 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-25 21:48:30.565 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-25 21:48:30.266 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-25 21:48:30.429 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-25 21:48:26.769 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46938 10 6452 1 2025-09-25 21:45:34.927 00:05:00.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-25 21:49:27.183 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43172 10 6452 1 2025-09-25 21:50:27.594 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52858 10 6452 1 2025-09-25 21:51:27.992 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56036 10 6452 1 2025-09-25 21:47:34.925 00:05:00.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-25 21:52:28.399 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:56380 10 6452 1 2025-09-25 21:53:30.663 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-25 21:53:30.663 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-25 21:53:30.563 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-25 21:53:30.746 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-25 21:53:30.829 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-25 21:53:28.796 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47924 10 6452 1 2025-09-25 21:54:29.198 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38622 10 6452 1 2025-09-25 21:51:34.929 00:05:00.169 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-25 21:55:29.577 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:52820 10 6452 1 2025-09-25 21:56:29.993 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47182 10 6452 1 2025-09-25 21:53:34.926 00:05:00.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-25 21:57:30.398 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:59552 10 6452 1 2025-09-25 21:58:30.829 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-25 21:58:30.747 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-25 21:58:30.848 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-25 21:58:30.609 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-25 21:58:30.779 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-25 21:58:30.789 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35418 10 6452 1 Summary: total flows: 140, total bytes: 424932, total packets: 1026, avg bps: 927, avg pps: 0, avg bpp: 414 Time window: 2025-09-25 20:57:34 - 2025-09-25 21:58:41 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0047s User: 0.0000s Wall: 0.0020s flows/second: 69722.5 Runtime: 0.0020s