Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-04 18:58:50.547 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36014 10 6452 1 2025-09-04 18:59:50.957 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46332 10 6452 1 2025-09-04 18:55:24.639 00:06:00.204 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-04 19:00:51.364 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40470 10 6452 1 2025-09-04 19:01:51.773 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46916 10 6452 1 2025-09-04 19:02:52.190 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:41380 10 6452 1 2025-09-04 19:03:13.548 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 19:03:13.394 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 19:03:13.550 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 19:03:13.381 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 19:03:13.632 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 19:03:52.617 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34726 10 6452 1 2025-09-04 19:04:52.983 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33168 10 6452 1 2025-09-04 19:00:24.638 00:06:00.208 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-04 19:05:53.396 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50236 10 6452 1 2025-09-04 19:06:53.803 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54162 10 6452 1 2025-09-04 19:02:24.642 00:06:00.202 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-04 19:07:54.201 00:00:10.726 TCP 1.101.0.1:3000 -> 23.104.0.1:47346 10 6452 1 2025-09-04 19:08:13.766 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 19:08:13.784 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 19:08:13.690 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 19:08:13.762 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 19:08:13.773 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 19:08:54.961 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49320 10 6452 1 2025-09-04 19:09:55.366 00:00:10.550 TCP 1.101.0.1:3000 -> 23.104.0.1:37456 10 6452 1 2025-09-04 19:10:55.953 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52528 10 6452 1 2025-09-04 19:11:56.360 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:60362 10 6452 1 2025-09-04 19:07:24.640 00:06:00.207 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-04 19:12:56.730 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:53928 10 6452 1 2025-09-04 19:13:13.858 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 19:13:13.755 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 19:13:13.911 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 19:13:13.909 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 19:13:13.994 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 19:13:57.144 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47900 10 6452 1 2025-09-04 19:09:24.644 00:06:00.202 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-04 19:14:57.565 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33068 10 6452 1 2025-09-04 19:15:57.980 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39498 10 6452 1 2025-09-04 19:16:58.389 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53212 10 6452 1 2025-09-04 19:18:14.035 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 19:17:58.789 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33444 10 6452 1 2025-09-04 19:18:13.787 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 19:18:13.762 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 19:18:13.952 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 19:18:13.786 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 19:18:59.190 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35244 10 6452 1 2025-09-04 19:14:24.641 00:06:00.209 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-04 19:19:59.606 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:40156 10 6452 1 2025-09-04 19:21:00.051 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36226 10 6452 1 2025-09-04 19:16:24.645 00:06:00.204 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-04 19:22:00.456 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59698 10 6452 1 2025-09-04 19:23:13.648 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 19:23:13.799 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 19:23:13.900 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 19:23:13.784 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 19:23:00.856 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:57056 10 6452 1 2025-09-04 19:23:13.984 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 19:24:01.275 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48340 10 6452 1 2025-09-04 19:25:01.678 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47154 10 6452 1 2025-09-04 19:26:02.115 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40326 10 6452 1 2025-09-04 19:21:24.642 00:06:00.209 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-04 19:27:02.523 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:60858 10 6452 1 2025-09-04 19:28:13.825 00:00:00.032 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 19:28:13.843 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 19:28:13.938 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 19:28:14.009 00:00:00.047 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 19:28:02.882 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45966 10 6452 1 2025-09-04 19:28:14.022 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 19:23:24.647 00:06:00.201 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-04 19:29:03.251 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42750 10 6452 1 2025-09-04 19:30:03.661 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:37730 10 6452 1 2025-09-04 19:31:04.071 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53256 10 6452 1 2025-09-04 19:32:04.479 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:43488 10 6452 1 2025-09-04 19:33:04.897 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48098 10 6452 1 2025-09-04 19:33:13.954 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 19:33:13.901 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 19:33:13.861 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 19:33:13.951 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 19:33:13.944 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 19:28:24.646 00:06:00.206 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-04 19:34:05.303 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:34182 10 6452 1 2025-09-04 19:35:05.702 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39988 10 6452 1 2025-09-04 19:30:24.647 00:06:00.202 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-04 19:36:06.119 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57398 10 6452 1 2025-09-04 19:37:06.524 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43610 10 6452 1 2025-09-04 19:38:14.418 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 19:38:14.395 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 19:38:14.074 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 19:38:14.336 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 19:38:14.335 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 19:38:06.930 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:33784 10 6452 1 2025-09-04 19:39:07.357 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35410 10 6452 1 2025-09-04 19:40:07.761 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:36782 10 6452 1 2025-09-04 19:35:24.649 00:06:00.209 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-04 19:41:08.140 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44938 10 6452 1 2025-09-04 19:42:08.541 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44892 10 6452 1 2025-09-04 19:37:24.650 00:06:00.203 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-04 19:43:14.381 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 19:43:14.279 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 19:43:14.383 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 19:43:14.434 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 19:43:14.466 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 19:43:08.942 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:51652 10 6452 1 2025-09-04 19:44:09.319 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52300 10 6452 1 2025-09-04 19:45:09.724 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55100 10 6452 1 2025-09-04 19:46:10.137 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48192 10 6452 1 2025-09-04 19:47:10.539 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48994 10 6452 1 2025-09-04 19:42:24.649 00:06:00.210 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-04 19:48:14.471 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 19:48:14.341 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 19:48:14.321 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 19:48:14.504 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 19:48:14.404 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 19:48:10.940 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37214 10 6452 1 2025-09-04 19:49:11.355 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52186 10 6452 1 2025-09-04 19:44:24.652 00:06:00.204 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-04 19:50:11.757 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:51498 10 6452 1 2025-09-04 19:51:12.140 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:37328 11 6504 1 2025-09-04 19:52:12.602 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:57552 10 6452 1 2025-09-04 19:53:14.596 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 19:53:14.513 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 19:53:14.342 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 19:53:14.512 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 19:53:14.395 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 19:53:12.968 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51952 10 6452 1 2025-09-04 19:54:13.367 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47914 10 6452 1 2025-09-04 19:49:24.652 00:06:00.210 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-04 19:55:13.771 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:38542 10 6452 1 2025-09-04 19:56:14.141 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:59792 10 6452 1 2025-09-04 19:51:24.654 00:06:00.204 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-04 19:57:14.498 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46732 10 6452 1 2025-09-04 19:58:14.633 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 19:58:14.551 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 19:58:14.604 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 19:58:14.551 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 19:58:14.719 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 19:58:14.903 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47770 10 6452 1 Summary: total flows: 137, total bytes: 416929, total packets: 1019, avg bps: 882, avg pps: 0, avg bpp: 409 Time window: 2025-09-04 18:55:24 - 2025-09-04 19:58:25 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0041s User: 0.0000s Wall: 0.0018s flows/second: 74742.4 Runtime: 0.0019s