Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-21 17:59:14.483 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:32836 10 6452 1 2025-09-21 18:00:14.883 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:43272 10 6452 1 2025-09-21 18:01:15.319 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37310 10 6452 1 2025-09-21 18:01:30.686 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-21 18:01:30.572 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-21 18:01:30.446 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 18:01:30.603 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 18:01:30.483 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-21 18:02:15.681 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:51204 10 6452 1 2025-09-21 17:57:33.041 00:06:00.042 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-21 18:03:16.103 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47938 10 6452 1 2025-09-21 18:04:16.512 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57946 10 6452 1 2025-09-21 17:59:33.080 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-21 18:05:16.915 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60162 10 6452 1 2025-09-21 18:06:30.730 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-21 18:06:30.646 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-21 18:06:30.662 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 18:06:30.646 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 18:06:30.647 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-21 18:06:17.277 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:35412 12 10367 1 2025-09-21 18:07:17.750 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:52290 10 6452 1 2025-09-21 18:08:18.165 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42498 10 6452 1 2025-09-21 18:09:18.571 00:00:11.065 TCP 1.101.0.1:3000 -> 23.104.0.1:41454 10 6452 1 2025-09-21 18:04:33.041 00:06:00.044 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-21 18:10:19.673 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:55316 10 6452 1 2025-09-21 18:11:30.691 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-21 18:11:30.670 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-21 18:11:30.719 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 18:11:30.606 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 18:11:30.611 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-21 18:11:20.107 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54864 10 6452 1 2025-09-21 18:06:33.081 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-21 18:12:20.508 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48366 10 6452 1 2025-09-21 18:13:20.910 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42464 10 6452 1 2025-09-21 18:14:21.311 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42178 10 6452 1 2025-09-21 18:15:21.712 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:55908 10 6452 1 2025-09-21 18:16:30.585 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-21 18:16:30.741 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 18:16:30.584 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 18:16:30.926 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-21 18:16:30.668 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-21 18:16:22.125 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45966 10 6452 1 2025-09-21 18:11:33.044 00:06:00.043 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-21 18:17:22.525 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59774 10 6452 1 2025-09-21 18:18:22.938 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:49944 10 6452 1 2025-09-21 18:13:33.084 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-21 18:19:23.353 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58932 10 6452 1 2025-09-21 18:20:23.714 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57282 10 6452 1 2025-09-21 18:21:30.969 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-21 18:21:30.783 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 18:21:30.905 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 18:21:30.966 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-21 18:21:30.988 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-21 18:21:24.115 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:52306 10 6452 1 2025-09-21 18:22:24.536 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46108 10 6452 1 2025-09-21 18:23:24.938 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33766 10 6452 1 2025-09-21 18:18:33.046 00:06:00.043 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-21 18:24:25.355 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:37720 10 6452 1 2025-09-21 18:20:33.085 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-21 18:25:25.764 00:00:10.817 TCP 1.101.0.1:3000 -> 23.104.0.1:60686 10 6452 1 2025-09-21 18:26:30.844 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-21 18:26:30.919 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-21 18:26:30.842 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 18:26:30.760 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 18:26:30.767 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-21 18:26:26.630 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55440 10 6452 1 2025-09-21 18:27:27.029 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40626 10 6452 1 2025-09-21 18:28:27.431 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50588 10 6452 1 2025-09-21 18:29:27.844 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:40086 10 6452 1 2025-09-21 18:25:33.048 00:06:00.042 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-21 18:30:28.233 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:52264 10 6452 1 2025-09-21 18:31:30.832 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 18:31:31.190 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-21 18:31:31.077 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 18:31:31.062 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-21 18:31:31.159 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-21 18:31:28.600 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48776 10 6452 1 2025-09-21 18:27:33.087 00:06:00.000 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-21 18:32:29.006 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:55574 10 6452 1 2025-09-21 18:33:29.370 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48086 10 6452 1 2025-09-21 18:34:29.778 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56758 10 6452 1 2025-09-21 18:35:30.183 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34022 10 6452 1 2025-09-21 18:36:31.282 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-21 18:36:31.152 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-21 18:36:31.129 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 18:36:31.200 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 18:36:31.204 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-21 18:36:30.587 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47258 10 6452 1 2025-09-21 18:32:33.049 00:06:00.041 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-21 18:37:30.990 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55936 10 6452 1 2025-09-21 18:38:31.360 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53606 10 6452 1 2025-09-21 18:34:33.087 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-21 18:39:31.770 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:35144 10 6452 1 2025-09-21 18:40:32.187 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36078 10 6452 1 2025-09-21 18:41:31.369 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-21 18:41:31.295 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-21 18:41:31.175 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 18:41:31.287 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 18:41:31.289 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-21 18:41:32.592 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:50456 10 6452 1 2025-09-21 18:42:32.960 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55870 10 6452 1 2025-09-21 18:43:33.367 00:00:10.898 TCP 1.101.0.1:3000 -> 23.104.0.1:52838 10 6452 1 2025-09-21 18:39:33.052 00:06:00.041 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-21 18:44:34.304 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48636 10 6452 1 2025-09-21 18:45:34.722 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36966 10 6452 1 2025-09-21 18:41:33.090 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-21 18:46:31.433 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-21 18:46:31.217 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 18:46:31.428 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 18:46:31.384 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-21 18:46:31.510 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-21 18:46:35.132 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40000 10 6452 1 2025-09-21 18:47:35.538 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59432 10 6452 1 2025-09-21 18:48:35.936 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:34086 10 6452 1 2025-09-21 18:49:36.363 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51806 10 6452 1 2025-09-21 18:50:36.723 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40876 10 6452 1 2025-09-21 18:51:31.604 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-21 18:51:31.220 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 18:51:31.444 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 18:51:31.562 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-21 18:46:33.058 00:06:00.037 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-21 18:51:31.527 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-21 18:51:37.130 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54250 10 6452 1 2025-09-21 18:52:37.532 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49250 10 6452 1 2025-09-21 18:48:33.091 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-21 18:53:37.946 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:49356 10 6452 1 2025-09-21 18:54:38.319 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46528 10 6452 1 2025-09-21 18:55:38.727 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51366 10 6452 1 2025-09-21 18:56:31.630 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 18:56:31.531 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-21 18:56:31.611 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-21 18:56:31.458 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-21 18:56:31.714 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-21 18:56:39.137 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41772 10 6452 1 2025-09-21 18:57:39.503 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48196 10 6452 1 2025-09-21 18:53:33.060 00:06:00.036 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-21 18:58:39.906 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:59686 10 6452 1 Summary: total flows: 137, total bytes: 417880, total packets: 964, avg bps: 898, avg pps: 0, avg bpp: 433 Time window: 2025-09-21 17:57:33 - 2025-09-21 18:59:33 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0039s User: 0.0010s Wall: 0.0018s flows/second: 74693.8 Runtime: 0.0019s