Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-09 02:58:45.679 00:00:10.458 TCP 1.101.0.1:3000 -> 23.104.0.1:32986 12 10367 1 2025-08-09 02:59:46.179 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:56708 10 6452 1 2025-08-09 03:00:22.908 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 03:00:22.827 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:00:22.745 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 03:00:22.898 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 03:00:22.787 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:00:46.544 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:59308 10 6452 1 2025-08-09 02:56:10.065 00:06:00.101 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 03:01:46.966 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50608 10 6452 1 2025-08-09 02:57:10.062 00:06:00.106 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 03:02:47.371 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34426 10 6452 1 2025-08-09 03:03:47.779 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:57284 10 6452 1 2025-08-09 03:04:48.196 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:50034 10 6452 1 2025-08-09 03:05:23.243 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 03:05:23.237 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 03:05:23.014 00:00:00.031 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:05:23.174 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:05:23.255 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 03:05:48.614 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59776 10 6452 1 2025-08-09 03:06:48.974 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:48754 10 6452 1 2025-08-09 03:07:49.390 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48394 10 6452 1 2025-08-09 03:03:10.066 00:06:00.102 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 03:08:49.800 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:49256 12 10367 1 2025-08-09 03:04:10.065 00:06:00.107 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 03:09:50.283 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:38616 10 6452 1 2025-08-09 03:10:23.149 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 03:10:23.359 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 03:10:23.298 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:10:23.151 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:10:23.233 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 03:10:50.645 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:54406 10 6452 1 2025-08-09 03:11:51.005 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58832 10 6452 1 2025-08-09 03:12:51.409 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39060 10 6452 1 2025-08-09 03:13:51.812 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34508 10 6452 1 2025-08-09 03:14:52.213 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39816 10 6452 1 2025-08-09 03:10:10.072 00:06:00.099 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 03:15:23.284 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 03:15:23.233 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 03:15:23.341 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:15:23.087 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:15:23.170 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 03:15:52.612 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41690 10 6452 1 2025-08-09 03:11:10.070 00:06:00.107 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 03:16:52.977 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41438 10 6452 1 2025-08-09 03:17:53.385 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60882 10 6452 1 2025-08-09 03:18:53.784 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58016 10 6452 1 2025-08-09 03:19:54.190 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57680 10 6452 1 2025-08-09 03:20:23.348 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 03:20:23.486 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 03:20:23.449 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:20:23.414 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:20:23.497 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 03:20:54.588 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44178 10 6452 1 2025-08-09 03:21:54.995 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51850 10 6452 1 2025-08-09 03:17:10.075 00:06:00.101 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 03:22:55.399 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44028 10 6452 1 2025-08-09 03:18:10.073 00:06:00.107 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 03:23:55.768 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:33328 11 6492 1 2025-08-09 03:24:56.202 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:40542 10 6452 1 2025-08-09 03:25:23.674 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 03:25:23.813 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 03:25:23.641 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:25:23.511 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:25:23.594 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 03:25:56.566 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36246 10 6452 1 2025-08-09 03:26:56.975 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49424 10 6452 1 2025-08-09 03:27:57.378 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43102 10 6452 1 2025-08-09 03:28:57.786 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:45038 10 6452 1 2025-08-09 03:24:10.078 00:06:00.101 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 03:29:58.153 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60704 10 6452 1 2025-08-09 03:25:10.074 00:06:00.105 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 03:30:23.860 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 03:30:23.791 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 03:30:23.799 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:30:23.861 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:30:23.945 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 03:30:58.581 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55342 10 6452 1 2025-08-09 03:31:58.981 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53018 10 6452 1 2025-08-09 03:32:59.385 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:47746 10 6452 1 2025-08-09 03:33:59.818 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:59762 10 6452 1 2025-08-09 03:35:00.191 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:33810 10 6452 1 2025-08-09 03:35:23.613 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 03:35:23.532 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:35:23.536 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 03:35:23.524 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 03:35:23.504 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:31:10.077 00:06:00.104 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 03:36:00.549 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:42512 10 6452 1 2025-08-09 03:32:10.076 00:06:00.108 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 03:37:00.907 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:55036 10 6452 1 2025-08-09 03:38:01.278 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:45328 10 6452 1 2025-08-09 03:39:01.644 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47662 10 6452 1 2025-08-09 03:40:02.064 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34650 10 6452 1 2025-08-09 03:40:23.757 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 03:40:23.749 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 03:40:23.855 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 03:40:23.698 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:40:23.674 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:41:02.468 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:44070 10 6452 1 2025-08-09 03:42:02.864 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50332 10 6452 1 2025-08-09 03:38:10.079 00:06:00.105 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 03:43:03.272 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35550 10 6452 1 2025-08-09 03:44:03.676 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:58288 10 6452 1 2025-08-09 03:39:10.077 00:06:00.110 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 03:45:04.109 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42448 10 6452 1 2025-08-09 03:45:23.922 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 03:45:23.839 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 03:45:23.765 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 03:45:23.904 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:45:23.839 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:46:04.511 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60158 10 6452 1 2025-08-09 03:47:04.925 00:00:10.405 TCP 1.101.0.1:3000 -> 23.104.0.1:49100 10 6452 1 2025-08-09 03:48:05.398 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:57778 10 6452 1 2025-08-09 03:49:05.751 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58678 10 6452 1 2025-08-09 03:45:10.081 00:06:00.116 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 03:50:06.155 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37488 10 6452 1 2025-08-09 03:50:23.924 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 03:50:24.082 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 03:50:23.840 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:50:23.816 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:50:23.899 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 03:46:10.078 00:06:00.122 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 03:51:06.556 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34336 10 6452 1 2025-08-09 03:52:06.973 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43210 10 6452 1 2025-08-09 03:53:07.382 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:46692 10 6452 1 2025-08-09 03:54:07.741 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:50082 10 6452 1 2025-08-09 03:55:08.137 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47354 10 6452 1 2025-08-09 03:55:24.064 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 03:55:23.970 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 03:55:24.070 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 03:55:23.925 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:55:23.982 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:56:08.540 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37220 10 6452 1 2025-08-09 03:52:10.084 00:06:00.118 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 03:57:08.944 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:33216 10 6452 1 2025-08-09 03:53:10.082 00:06:00.122 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 03:58:09.368 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:43372 10 6452 1 Summary: total flows: 138, total bytes: 425608, total packets: 1037, avg bps: 900, avg pps: 0, avg bpp: 410 Time window: 2025-08-09 02:56:10 - 2025-08-09 03:59:10 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0012s User: 0.0023s Wall: 0.0015s flows/second: 94654.8 Runtime: 0.0015s