Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-09 19:58:48.291 00:00:10.515 TCP 1.101.0.1:3000 -> 23.104.0.1:45302 14 14282 1 2025-08-09 19:59:48.841 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:36878 10 6452 1 2025-08-09 20:00:43.332 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 20:00:43.421 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 20:00:43.462 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 20:00:43.296 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 20:00:43.251 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 20:00:49.263 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:41844 10 6452 1 2025-08-09 20:01:49.634 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53792 10 6452 1 2025-08-09 20:02:49.995 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:38026 10 6452 1 2025-08-09 19:58:10.475 00:06:00.247 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 20:03:50.419 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58104 10 6452 1 2025-08-09 19:59:10.472 00:06:00.253 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 20:04:50.821 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:43646 10 6452 1 2025-08-09 20:05:43.480 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 20:05:43.402 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 20:05:43.047 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 20:05:43.407 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 20:05:43.489 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 20:05:51.206 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43334 10 6452 1 2025-08-09 20:06:51.608 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56388 10 6452 1 2025-08-09 20:07:52.014 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37022 10 6452 1 2025-08-09 20:08:52.429 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42594 10 6452 1 2025-08-09 20:09:52.836 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48338 10 6452 1 2025-08-09 20:05:10.484 00:06:00.241 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 20:10:43.773 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 20:10:43.852 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 20:10:43.896 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 20:10:43.835 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 20:10:43.918 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 20:10:53.246 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53652 10 6452 1 2025-08-09 20:06:10.480 00:06:00.247 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 20:11:53.658 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43326 10 6452 1 2025-08-09 20:12:54.019 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46544 10 6452 1 2025-08-09 20:13:54.422 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56338 10 6452 1 2025-08-09 20:14:54.825 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52658 10 6452 1 2025-08-09 20:15:43.650 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 20:15:43.655 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 20:15:43.765 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 20:15:43.609 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 20:15:43.732 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 20:15:55.230 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:34782 10 6452 1 2025-08-09 20:16:55.588 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41604 10 6452 1 2025-08-09 20:12:10.491 00:06:00.238 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 20:17:55.998 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:37970 10 6452 1 2025-08-09 20:13:10.489 00:06:00.243 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 20:18:56.361 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35694 10 6452 1 2025-08-09 20:19:56.725 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33694 10 6452 1 2025-08-09 20:20:43.634 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 20:20:43.636 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 20:20:43.418 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 20:20:43.560 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 20:20:43.643 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 20:20:57.139 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56150 10 6452 1 2025-08-09 20:21:57.549 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57948 10 6452 1 2025-08-09 20:22:57.949 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:51848 10 6452 1 2025-08-09 20:23:58.320 00:00:10.511 TCP 1.101.0.1:3000 -> 23.104.0.1:34320 14 14280 1 2025-08-09 20:19:10.498 00:06:00.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 20:24:58.870 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58102 10 6452 1 2025-08-09 20:20:10.496 00:06:00.238 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 20:25:44.137 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 20:25:43.767 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 20:25:43.741 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 20:25:43.934 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 20:25:44.056 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 20:25:59.280 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55528 10 6452 1 2025-08-09 20:26:59.694 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52490 10 6452 1 2025-08-09 20:28:00.125 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56170 10 6452 1 2025-08-09 20:29:00.531 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58380 10 6452 1 2025-08-09 20:30:00.940 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:45434 10 6452 1 2025-08-09 20:30:43.975 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 20:30:44.098 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 20:30:43.979 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 20:30:43.839 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 20:30:44.057 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 20:31:01.360 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57590 10 6452 1 2025-08-09 20:26:10.501 00:06:00.240 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 20:27:10.498 00:06:00.245 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 20:32:01.724 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39248 10 6452 1 2025-08-09 20:33:02.138 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41704 10 6452 1 2025-08-09 20:34:02.541 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:47730 10 6452 1 2025-08-09 20:35:02.899 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40500 10 6452 1 2025-08-09 20:35:44.275 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 20:35:44.078 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 20:35:44.139 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 20:35:44.107 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 20:35:44.193 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 20:36:03.315 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46866 10 6452 1 2025-08-09 20:37:03.714 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37738 10 6452 1 2025-08-09 20:33:10.505 00:06:00.238 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 20:38:04.127 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50244 10 6452 1 2025-08-09 20:34:10.503 00:06:00.243 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 20:39:04.527 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52432 10 6452 1 2025-08-09 20:40:04.892 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:45518 12 6556 1 2025-08-09 20:40:44.424 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 20:40:44.224 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 20:40:44.217 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 20:40:44.108 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 20:40:44.341 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 20:41:05.312 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58290 10 6452 1 2025-08-09 20:42:05.724 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38084 10 6452 1 2025-08-09 20:43:06.133 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53992 10 6452 1 2025-08-09 20:44:06.496 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36936 10 6452 1 2025-08-09 20:40:10.511 00:06:00.236 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 20:45:06.897 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:33204 10 6452 1 2025-08-09 20:45:44.216 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 20:45:44.225 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 20:45:44.242 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 20:45:44.304 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 20:45:44.387 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 20:41:10.508 00:06:00.246 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 20:46:07.315 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44554 10 6452 1 2025-08-09 20:47:07.721 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:53454 10 6452 1 2025-08-09 20:48:08.114 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36524 10 6452 1 2025-08-09 20:49:08.473 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42942 10 6452 1 2025-08-09 20:50:08.880 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:39662 12 6556 1 2025-08-09 20:50:44.704 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 20:50:44.611 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 20:50:44.630 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 20:50:44.433 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 20:50:44.517 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 20:51:09.299 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36232 10 6452 1 2025-08-09 20:47:10.511 00:06:00.237 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 20:52:09.663 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46384 10 6452 1 2025-08-09 20:48:10.508 00:06:00.242 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 20:53:10.093 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37586 10 6452 1 2025-08-09 20:54:10.503 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53744 10 6452 1 2025-08-09 20:55:10.909 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52920 10 6452 1 2025-08-09 20:55:44.642 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 20:55:44.609 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 20:55:44.563 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 20:55:44.411 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 20:55:44.559 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 20:56:11.310 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59306 10 6452 1 2025-08-09 20:57:11.714 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:49490 10 6452 1 2025-08-09 20:58:12.129 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35824 10 6452 1 Summary: total flows: 136, total bytes: 431882, total packets: 1016, avg bps: 956, avg pps: 0, avg bpp: 425 Time window: 2025-08-09 19:58:10 - 2025-08-09 20:58:22 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0019s User: 0.0029s Wall: 0.0025s flows/second: 53606.4 Runtime: 0.0026s