Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-20 16:58:51.794 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:33438 10 6452 1 2025-08-20 16:59:52.208 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:51562 10 6452 1 2025-08-20 17:00:57.510 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 17:00:57.538 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 17:00:57.484 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 17:00:57.176 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 17:00:57.427 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 17:00:52.614 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55808 10 6452 1 2025-08-20 17:01:53.018 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43174 10 6452 1 2025-08-20 17:02:53.418 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54666 10 6452 1 2025-08-20 16:58:16.423 00:06:00.246 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 17:03:53.828 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39700 10 6452 1 2025-08-20 16:59:16.424 00:06:00.242 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 17:04:54.191 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:57322 10 6452 1 2025-08-20 17:05:57.669 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 17:05:57.686 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 17:05:57.715 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 17:05:57.688 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 17:05:57.770 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 17:05:54.623 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:45118 10 6452 1 2025-08-20 17:06:54.991 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47468 10 6452 1 2025-08-20 17:07:55.357 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60466 10 6452 1 2025-08-20 17:08:55.761 00:00:10.448 TCP 1.101.0.1:3000 -> 23.104.0.1:47268 10 6452 1 2025-08-20 17:09:56.249 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:55030 10 6452 1 2025-08-20 17:05:16.424 00:06:00.247 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 17:10:57.773 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 17:10:57.547 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 17:10:57.641 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 17:10:57.674 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 17:10:57.757 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 17:10:56.610 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44840 10 6452 1 2025-08-20 17:06:16.426 00:06:00.242 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 17:11:57.016 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:52046 11 6504 1 2025-08-20 17:12:57.473 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:34238 10 6452 1 2025-08-20 17:13:57.832 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:35218 10 6452 1 2025-08-20 17:14:58.217 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58188 10 6452 1 2025-08-20 17:15:57.757 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 17:15:57.767 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 17:15:57.853 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 17:15:57.868 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 17:15:57.951 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 17:15:58.627 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:39916 10 6452 1 2025-08-20 17:16:59.025 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33914 10 6452 1 2025-08-20 17:12:16.424 00:06:00.249 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 17:17:59.439 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36926 10 6452 1 2025-08-20 17:13:16.426 00:06:00.245 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 17:18:59.848 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:52610 10 6452 1 2025-08-20 17:20:00.227 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34154 10 6452 1 2025-08-20 17:20:57.910 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 17:20:57.956 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 17:20:57.868 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 17:20:57.956 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 17:20:58.038 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 17:21:00.632 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33548 10 6452 1 2025-08-20 17:22:01.037 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59858 10 6452 1 2025-08-20 17:23:01.446 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37438 10 6452 1 2025-08-20 17:24:01.813 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:36686 10 6452 1 2025-08-20 17:19:16.427 00:06:00.250 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 17:25:02.227 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33442 10 6452 1 2025-08-20 17:20:16.431 00:06:00.244 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 17:25:57.996 00:00:00.049 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 17:25:58.004 00:00:00.038 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 17:25:57.953 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 17:25:58.130 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 17:25:58.213 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 17:26:02.638 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:35088 10 6452 1 2025-08-20 17:27:03.007 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50612 10 6452 1 2025-08-20 17:28:03.367 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:52452 10 6452 1 2025-08-20 17:29:03.789 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37672 10 6452 1 2025-08-20 17:30:04.199 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56482 10 6452 1 2025-08-20 17:30:58.311 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 17:30:58.081 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 17:30:58.161 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 17:30:57.655 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 17:30:58.228 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 17:31:04.600 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57368 10 6452 1 2025-08-20 17:26:16.430 00:06:00.250 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 17:27:16.433 00:06:00.245 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 17:32:04.960 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59718 10 6452 1 2025-08-20 17:33:05.372 00:00:10.527 TCP 1.101.0.1:3000 -> 23.104.0.1:44874 10 6452 1 2025-08-20 17:34:05.929 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:54404 10 6452 1 2025-08-20 17:35:06.316 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:32906 10 6452 1 2025-08-20 17:35:58.386 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 17:35:58.390 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 17:35:58.236 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 17:35:58.384 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 17:35:58.467 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 17:36:06.726 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:39654 10 6452 1 2025-08-20 17:37:07.144 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42776 10 6452 1 2025-08-20 17:33:16.434 00:06:00.246 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 17:38:07.551 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54298 10 6452 1 2025-08-20 17:34:16.437 00:06:00.241 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 17:39:07.958 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47286 10 6452 1 2025-08-20 17:40:08.365 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:42108 10 6452 1 2025-08-20 17:40:58.345 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 17:40:58.266 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 17:40:58.225 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 17:40:58.200 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 17:40:58.282 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 17:41:08.717 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56402 10 6452 1 2025-08-20 17:42:09.137 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53356 10 6452 1 2025-08-20 17:43:09.541 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55466 10 6452 1 2025-08-20 17:44:09.940 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:47126 10 6452 1 2025-08-20 17:40:16.435 00:06:00.247 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 17:45:10.359 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49410 10 6452 1 2025-08-20 17:45:58.410 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 17:45:58.418 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 17:45:58.039 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 17:45:58.481 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 17:45:58.563 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 17:41:16.439 00:06:00.243 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 17:46:10.763 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:47740 10 6452 1 2025-08-20 17:47:11.182 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:51620 10 6452 1 2025-08-20 17:48:11.607 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40866 10 6452 1 2025-08-20 17:49:12.012 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60948 10 6452 1 2025-08-20 17:50:12.419 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49218 10 6452 1 2025-08-20 17:50:58.430 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 17:50:58.347 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 17:50:58.343 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 17:50:58.424 00:00:00.041 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 17:50:58.347 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 17:51:12.825 00:00:10.618 TCP 1.101.0.1:3000 -> 23.104.0.1:36500 10 6452 1 2025-08-20 17:47:16.439 00:06:00.250 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 17:52:13.484 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46568 10 6452 1 2025-08-20 17:48:16.442 00:06:00.244 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 17:53:13.891 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:53718 12 6556 1 2025-08-20 17:54:14.314 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45554 10 6452 1 2025-08-20 17:55:14.714 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:33044 10 6452 1 2025-08-20 17:55:58.668 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 17:55:58.370 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 17:55:58.586 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 17:55:58.534 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 17:55:58.591 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 17:56:15.127 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55396 10 6452 1 2025-08-20 17:57:15.532 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54672 10 6452 1 2025-08-20 17:58:15.937 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:59306 10 6452 1 Summary: total flows: 136, total bytes: 416172, total packets: 1007, avg bps: 922, avg pps: 0, avg bpp: 413 Time window: 2025-08-20 16:58:16 - 2025-08-20 17:58:26 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0039s User: 0.0010s Wall: 0.0019s flows/second: 72462.6 Runtime: 0.0019s