Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-22 01:58:50.582 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46046 10 6452 1 2025-08-22 01:59:50.985 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53942 10 6452 1 2025-08-22 02:00:51.391 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34672 10 6452 1 2025-08-22 01:56:17.135 00:06:00.162 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 02:01:37.253 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 02:01:37.403 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 02:01:37.268 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 02:01:37.206 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 02:01:37.289 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 02:01:51.795 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41520 10 6452 1 2025-08-22 02:02:52.199 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:47292 10 6452 1 2025-08-22 01:58:17.140 00:06:00.156 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 02:03:52.613 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34886 10 6452 1 2025-08-22 02:04:53.015 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41104 10 6452 1 2025-08-22 02:05:53.379 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41922 10 6452 1 2025-08-22 02:06:37.386 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 02:06:37.411 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 02:06:37.405 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 02:06:37.228 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 02:06:37.303 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 02:06:53.778 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:52444 10 6452 1 2025-08-22 02:07:54.147 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:59698 10 6452 1 2025-08-22 02:03:17.137 00:06:00.162 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 02:08:54.559 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57872 10 6452 1 2025-08-22 02:09:54.923 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:45696 10 6452 1 2025-08-22 02:05:17.142 00:06:00.157 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 02:10:55.355 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42402 10 6452 1 2025-08-22 02:11:38.720 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 02:11:38.947 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 02:11:38.687 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 02:11:39.148 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 02:11:39.231 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 02:11:55.759 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:52460 10 6452 1 2025-08-22 02:12:56.130 00:00:10.569 TCP 1.101.0.1:3000 -> 23.104.0.1:50830 10 6452 1 2025-08-22 02:13:56.744 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39864 10 6452 1 2025-08-22 02:14:57.113 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36592 10 6452 1 2025-08-22 02:10:17.143 00:06:00.158 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 02:15:57.528 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55456 10 6452 1 2025-08-22 02:16:37.545 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 02:16:37.659 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 02:16:37.556 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 02:16:37.448 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 02:16:37.628 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 02:16:57.935 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:59770 10 6452 1 2025-08-22 02:12:17.146 00:06:00.154 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 02:17:58.357 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57604 10 6452 1 2025-08-22 02:18:58.754 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:41568 10 6452 1 2025-08-22 02:19:59.132 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34248 10 6452 1 2025-08-22 02:20:59.532 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54688 10 6452 1 2025-08-22 02:21:37.729 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 02:21:37.773 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 02:21:37.682 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 02:21:37.684 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 02:21:37.812 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 02:21:59.939 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:55230 10 6452 1 2025-08-22 02:17:17.143 00:06:00.158 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 02:23:00.352 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33046 10 6452 1 2025-08-22 02:24:00.759 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:45942 10 6452 1 2025-08-22 02:19:17.147 00:06:00.152 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 02:25:01.191 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34344 10 6452 1 2025-08-22 02:26:01.595 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52962 10 6452 1 2025-08-22 02:26:37.891 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 02:26:37.839 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 02:26:37.786 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 02:26:37.716 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 02:26:37.868 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 02:27:01.996 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35714 10 6452 1 2025-08-22 02:28:02.398 00:00:10.456 TCP 1.101.0.1:3000 -> 23.104.0.1:47262 10 6452 1 2025-08-22 02:29:02.889 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:46586 10 6452 1 2025-08-22 02:24:17.147 00:06:00.160 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 02:30:03.318 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:52506 10 6452 1 2025-08-22 02:31:03.739 00:00:10.402 TCP 1.101.0.1:3000 -> 23.104.0.1:34012 12 10367 1 2025-08-22 02:26:17.154 00:06:00.150 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 02:31:38.077 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 02:31:38.114 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 02:31:37.652 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 02:31:37.716 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 02:31:37.798 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 02:32:04.175 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41904 10 6452 1 2025-08-22 02:33:04.534 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46280 12 6556 1 2025-08-22 02:34:04.929 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:40410 10 6452 1 2025-08-22 02:35:05.340 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58256 10 6452 1 2025-08-22 02:31:17.148 00:06:00.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 02:36:05.747 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38456 10 6452 1 2025-08-22 02:36:37.877 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 02:36:38.048 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 02:36:37.969 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 02:36:37.780 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 02:36:37.794 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 02:37:06.116 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39920 10 6452 1 2025-08-22 02:33:17.152 00:06:00.157 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 02:38:06.525 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52370 10 6452 1 2025-08-22 02:39:06.928 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:57936 10 6452 1 2025-08-22 02:40:07.354 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34784 10 6452 1 2025-08-22 02:41:07.753 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45364 10 6452 1 2025-08-22 02:41:37.936 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 02:41:37.939 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 02:41:37.944 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 02:41:37.839 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 02:41:37.922 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 02:42:08.154 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:54042 10 6452 1 2025-08-22 02:38:17.150 00:06:00.162 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 02:43:08.517 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40268 10 6452 1 2025-08-22 02:44:08.918 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50484 10 6452 1 2025-08-22 02:45:09.324 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38124 10 6452 1 2025-08-22 02:40:17.155 00:06:00.156 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 02:46:09.730 00:00:10.454 TCP 1.101.0.1:3000 -> 23.104.0.1:58204 12 10365 1 2025-08-22 02:46:38.174 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 02:46:38.171 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 02:46:38.165 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 02:46:37.928 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 02:46:38.091 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 02:47:10.247 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53870 10 6452 1 2025-08-22 02:48:10.647 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56822 10 6452 1 2025-08-22 02:49:11.056 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34950 10 6452 1 2025-08-22 02:45:17.156 00:06:00.158 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 02:50:11.458 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40750 10 6452 1 2025-08-22 02:51:11.856 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:37862 10 6452 1 2025-08-22 02:51:38.331 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 02:51:38.290 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 02:51:38.239 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 02:51:38.332 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 02:51:38.417 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 02:47:17.159 00:06:00.153 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 02:52:12.272 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51826 10 6452 1 2025-08-22 02:53:12.681 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:53788 10 6452 1 2025-08-22 02:54:13.107 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58492 10 6452 1 2025-08-22 02:55:13.507 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58034 10 6452 1 2025-08-22 02:56:13.916 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59936 10 6452 1 2025-08-22 02:56:38.597 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 02:56:38.366 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 02:56:38.205 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 02:56:37.991 00:00:00.046 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 02:56:38.514 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 02:52:17.161 00:06:00.155 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 02:57:14.328 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39912 10 6452 1 2025-08-22 02:58:14.733 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44390 10 6452 1 Summary: total flows: 137, total bytes: 424809, total packets: 1024, avg bps: 911, avg pps: 0, avg bpp: 414 Time window: 2025-08-22 01:56:17 - 2025-08-22 02:58:25 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0041s User: 0.0000s Wall: 0.0020s flows/second: 66831.8 Runtime: 0.0021s