Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-14 20:59:03.358 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44986 10 6452 1 2025-08-14 21:00:03.757 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:59000 10 6452 1 2025-08-14 21:01:04.131 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54510 10 6452 1 2025-08-14 21:02:04.545 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41886 10 6452 1 2025-08-14 21:03:09.221 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 21:03:08.899 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 21:03:08.970 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 21:03:09.007 00:00:00.042 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 21:03:09.138 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 20:58:13.209 00:06:00.660 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-14 21:03:04.946 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43154 10 6452 1 2025-08-14 20:59:13.213 00:06:00.654 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-14 21:04:05.366 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54284 10 6452 1 2025-08-14 21:05:05.769 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:48190 10 6452 1 2025-08-14 21:06:06.156 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:45850 10 6452 1 2025-08-14 21:07:06.525 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:54408 10 6452 1 2025-08-14 21:08:09.263 00:00:00.010 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 21:08:09.310 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 21:08:09.309 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 21:08:09.160 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 21:08:09.166 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 21:08:06.939 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48802 10 6452 1 2025-08-14 21:09:07.352 00:00:10.407 TCP 1.101.0.1:3000 -> 23.104.0.1:48448 10 6452 1 2025-08-14 21:05:13.212 00:06:00.659 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-14 21:10:07.810 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36468 10 6452 1 2025-08-14 21:06:13.214 00:06:00.656 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-14 21:11:08.211 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35078 10 6452 1 2025-08-14 21:12:08.614 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56060 10 6452 1 2025-08-14 21:13:09.243 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 21:13:09.305 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 21:13:09.305 00:00:00.030 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 21:13:09.108 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 21:13:09.159 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 21:13:09.015 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:54164 10 6452 1 2025-08-14 21:14:09.376 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:54024 10 6452 1 2025-08-14 21:15:09.734 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:49700 10 6452 1 2025-08-14 21:16:10.144 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60764 10 6452 1 2025-08-14 21:12:13.217 00:06:00.656 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-14 21:17:10.545 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52974 10 6452 1 2025-08-14 21:18:09.491 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 21:18:09.322 00:00:00.012 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 21:18:09.225 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 21:18:09.262 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 21:18:09.408 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 21:13:13.222 00:06:00.649 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-14 21:18:10.948 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53444 10 6452 1 2025-08-14 21:19:11.362 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39896 10 6452 1 2025-08-14 21:20:11.764 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40754 10 6452 1 2025-08-14 21:21:12.175 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:59394 10 6452 1 2025-08-14 21:22:12.538 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56422 10 6452 1 2025-08-14 21:23:09.471 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 21:23:09.523 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 21:23:09.355 00:00:00.015 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 21:23:09.379 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 21:23:09.460 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 21:23:12.941 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:33090 10 6452 1 2025-08-14 21:19:13.220 00:06:00.655 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-14 21:24:13.362 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53078 10 6452 1 2025-08-14 21:20:13.222 00:06:00.650 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-14 21:25:13.766 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:48420 10 6452 1 2025-08-14 21:26:14.137 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:60654 10 6452 1 2025-08-14 21:27:14.501 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45504 10 6452 1 2025-08-14 21:28:09.918 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 21:28:09.873 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 21:28:09.614 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 21:28:09.775 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 21:28:09.834 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 21:28:14.901 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:33766 10 6452 1 2025-08-14 21:29:15.260 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42688 10 6452 1 2025-08-14 21:30:15.621 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43492 10 6452 1 2025-08-14 21:26:13.223 00:06:00.655 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-14 21:31:16.028 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47116 10 6452 1 2025-08-14 21:27:13.225 00:06:00.648 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-14 21:32:16.435 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44012 10 6452 1 2025-08-14 21:33:09.639 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 21:33:09.637 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 21:33:09.667 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 21:33:09.335 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 21:33:09.426 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 21:33:16.797 00:00:10.352 TCP 1.101.0.1:3000 -> 23.104.0.1:34192 10 6452 1 2025-08-14 21:34:17.188 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34268 10 6452 1 2025-08-14 21:35:17.554 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38084 10 6452 1 2025-08-14 21:36:17.979 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38110 10 6452 1 2025-08-14 21:37:18.379 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59970 10 6452 1 2025-08-14 21:38:09.798 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 21:38:09.711 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 21:38:09.719 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 21:38:09.422 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 21:38:09.715 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 21:33:13.228 00:06:00.652 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-14 21:38:18.781 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:59448 10 6452 1 2025-08-14 21:34:13.231 00:06:00.647 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-14 21:39:19.214 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46572 10 6452 1 2025-08-14 21:40:19.616 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:36590 10 6452 1 2025-08-14 21:41:19.984 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43838 10 6452 1 2025-08-14 21:42:20.411 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53300 10 6452 1 2025-08-14 21:43:09.909 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 21:43:09.837 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 21:43:09.733 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 21:43:09.910 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 21:43:09.993 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 21:43:20.815 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:47850 10 6452 1 2025-08-14 21:44:21.194 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49244 10 6452 1 2025-08-14 21:40:13.232 00:06:00.651 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-14 21:45:21.591 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46764 10 6452 1 2025-08-14 21:41:13.235 00:06:00.646 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-14 21:46:21.994 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57284 10 6452 1 2025-08-14 21:47:22.395 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:52112 10 6452 1 2025-08-14 21:48:10.249 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 21:48:10.164 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 21:48:10.183 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 21:48:10.111 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 21:48:10.193 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 21:48:22.756 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:34138 10 6452 1 2025-08-14 21:49:23.174 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34798 10 6452 1 2025-08-14 21:50:23.581 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49844 10 6452 1 2025-08-14 21:51:23.981 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:35330 10 6452 1 2025-08-14 21:47:13.233 00:06:00.656 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-14 21:52:24.402 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45596 10 6452 1 2025-08-14 21:53:09.966 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 21:53:09.843 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 21:53:09.884 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 21:53:09.998 00:00:00.037 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 21:53:10.000 00:00:00.035 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 21:48:13.236 00:06:00.650 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-14 21:53:24.812 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44622 10 6452 1 2025-08-14 21:54:25.219 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53854 10 6452 1 2025-08-14 21:55:25.618 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54474 12 6556 1 2025-08-14 21:56:26.021 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:52030 10 6452 1 2025-08-14 21:57:26.418 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39112 10 6452 1 2025-08-14 21:58:10.181 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 21:58:09.988 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 21:58:10.047 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 21:58:10.098 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 21:58:10.145 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 21:58:26.818 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:32866 10 6452 1 Summary: total flows: 136, total bytes: 416120, total packets: 1006, avg bps: 918, avg pps: 0, avg bpp: 413 Time window: 2025-08-14 20:58:13 - 2025-08-14 21:58:37 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0025s User: 0.0016s Wall: 0.0041s flows/second: 33381.6 Runtime: 0.0041s