Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-19 23:58:56.704 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52726 10 6452 1 2025-09-19 23:54:32.145 00:06:00.037 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-19 23:54:32.179 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-19 23:59:57.114 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:35358 10 6452 1 2025-09-20 00:00:39.593 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 00:00:39.816 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 00:00:39.898 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 00:00:39.945 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 00:00:39.981 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 00:00:57.535 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:34444 10 6452 1 2025-09-20 00:01:57.938 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:43546 10 6452 1 2025-09-20 00:02:58.355 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34024 10 6452 1 2025-09-20 00:03:58.758 00:00:10.734 TCP 1.101.0.1:3000 -> 23.104.0.1:48636 10 6452 1 2025-09-20 00:04:59.530 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:50740 10 6452 1 2025-09-20 00:05:40.339 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 00:05:40.166 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 00:05:39.931 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 00:05:40.262 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 00:05:40.015 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 00:05:59.903 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35944 10 6452 1 2025-09-20 00:01:32.146 00:06:00.038 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 00:01:32.180 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-20 00:07:00.309 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:49898 10 6452 1 2025-09-20 00:08:00.724 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42860 10 6452 1 2025-09-20 00:09:01.138 00:00:10.645 TCP 1.101.0.1:3000 -> 23.104.0.1:43530 10 6452 1 2025-09-20 00:10:01.826 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39812 10 6452 1 2025-09-20 00:10:40.079 00:00:00.040 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 00:10:39.900 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 00:10:39.950 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 00:10:39.996 00:00:00.040 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 00:10:40.001 00:00:00.050 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 00:11:02.230 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53388 10 6452 1 2025-09-20 00:12:02.632 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40674 10 6452 1 2025-09-20 00:13:03.059 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43356 10 6452 1 2025-09-20 00:08:32.182 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-20 00:08:32.150 00:06:00.036 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 00:14:03.461 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40464 10 6452 1 2025-09-20 00:15:03.873 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49768 10 6452 1 2025-09-20 00:15:40.197 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 00:15:40.284 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 00:15:40.275 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 00:15:40.207 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 00:15:40.359 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 00:16:04.235 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50074 10 6452 1 2025-09-20 00:17:04.641 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59970 12 6556 1 2025-09-20 00:18:05.061 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57786 10 6452 1 2025-09-20 00:19:05.484 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:34632 10 6452 1 2025-09-20 00:20:05.900 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50888 10 6452 1 2025-09-20 00:15:32.183 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-20 00:15:32.157 00:06:00.031 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 00:20:40.239 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 00:20:40.321 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 00:20:40.414 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 00:20:40.158 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 00:20:40.158 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 00:21:06.315 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:58136 10 6452 1 2025-09-20 00:22:06.730 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41836 10 6452 1 2025-09-20 00:23:07.143 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41250 10 6452 1 2025-09-20 00:24:07.548 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:49142 10 6452 1 2025-09-20 00:25:07.920 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36878 10 6452 1 2025-09-20 00:25:40.480 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 00:25:40.442 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 00:25:40.440 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 00:25:40.480 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 00:25:40.523 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 00:26:08.333 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46008 10 6452 1 2025-09-20 00:27:08.740 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55434 10 6452 1 2025-09-20 00:22:32.157 00:06:00.032 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 00:22:32.185 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-20 00:28:09.148 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52118 10 6452 1 2025-09-20 00:29:09.552 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:51484 10 6452 1 2025-09-20 00:30:09.906 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35596 10 6452 1 2025-09-20 00:30:40.561 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 00:30:40.414 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 00:30:40.428 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 00:30:40.480 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 00:30:40.544 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 00:31:10.313 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39694 10 6452 1 2025-09-20 00:32:10.680 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60980 10 6452 1 2025-09-20 00:33:11.109 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52506 10 6452 1 2025-09-20 00:34:11.472 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51644 10 6452 1 2025-09-20 00:29:32.160 00:06:00.031 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 00:29:32.186 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-20 00:35:11.878 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:43528 10 6452 1 2025-09-20 00:35:40.595 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 00:35:40.432 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 00:35:40.613 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 00:35:40.668 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 00:35:40.696 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 00:36:12.241 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:58664 10 6452 1 2025-09-20 00:37:12.595 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:48432 10 6452 1 2025-09-20 00:38:12.965 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39940 10 6452 1 2025-09-20 00:39:13.365 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44294 10 6452 1 2025-09-20 00:40:13.769 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38372 10 6452 1 2025-09-20 00:40:40.665 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 00:40:40.490 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 00:40:40.905 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 00:40:40.901 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 00:40:40.988 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 00:41:14.175 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56460 10 6452 1 2025-09-20 00:36:32.189 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-20 00:36:32.161 00:06:00.031 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 00:42:14.579 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33894 10 6452 1 2025-09-20 00:43:14.986 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39534 10 6452 1 2025-09-20 00:44:15.394 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55996 10 6452 1 2025-09-20 00:45:15.804 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:57874 10 6452 1 2025-09-20 00:45:40.822 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 00:45:40.463 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 00:45:40.935 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 00:45:41.075 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 00:45:41.159 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 00:46:16.218 00:00:10.402 TCP 1.101.0.1:3000 -> 23.104.0.1:40376 12 10367 1 2025-09-20 00:47:16.660 00:00:11.214 TCP 1.101.0.1:3000 -> 23.104.0.1:39324 10 6452 1 2025-09-20 00:48:17.908 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43488 12 6556 1 2025-09-20 00:43:32.190 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-20 00:43:32.165 00:06:00.029 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 00:49:18.326 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36506 10 6452 1 2025-09-20 00:50:18.731 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52040 10 6452 1 2025-09-20 00:50:40.910 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 00:50:40.728 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 00:50:40.732 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 00:50:40.816 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 00:50:40.997 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 00:51:19.140 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56638 10 6452 1 2025-09-20 00:52:19.509 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53210 10 6452 1 2025-09-20 00:53:19.912 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53428 10 6452 1 2025-09-20 00:54:20.320 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38474 10 6452 1 2025-09-20 00:55:20.731 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:45186 10 6452 1 2025-09-20 00:50:32.190 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-20 00:50:32.168 00:06:00.027 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-20 00:55:40.994 00:00:00.033 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-20 00:55:41.027 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 00:55:41.143 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-20 00:55:40.993 00:00:00.041 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-20 00:55:41.226 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-20 00:56:21.147 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59366 10 6452 1 2025-09-20 00:57:21.548 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47392 10 6452 1 2025-09-20 00:58:21.954 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48276 10 6452 1 Summary: total flows: 138, total bytes: 418585, total packets: 975, avg bps: 872, avg pps: 0, avg bpp: 429 Time window: 2025-09-19 23:54:32 - 2025-09-20 00:58:32 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0034s User: 0.0017s Wall: 0.0022s flows/second: 62412.5 Runtime: 0.0022s