Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-22 03:59:39.359 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45490 10 6452 1 2025-08-22 03:55:17.192 00:06:00.143 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 04:00:39.766 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:36916 10 6452 1 2025-08-22 04:01:39.677 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 04:01:39.663 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 04:01:39.661 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 04:01:39.596 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 04:01:39.590 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 04:01:40.141 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35886 10 6452 1 2025-08-22 03:57:17.195 00:06:00.138 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 04:02:40.554 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58500 10 6452 1 2025-08-22 04:03:40.918 00:00:10.852 TCP 1.101.0.1:3000 -> 23.104.0.1:52420 10 6452 1 2025-08-22 04:04:41.808 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53022 10 6452 1 2025-08-22 04:05:42.211 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58376 10 6452 1 2025-08-22 04:06:40.373 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 04:06:40.115 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 04:06:40.257 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 04:06:40.165 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 04:06:40.457 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 04:06:42.621 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51202 10 6452 1 2025-08-22 04:02:17.194 00:06:00.141 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 04:07:43.023 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42682 10 6452 1 2025-08-22 04:08:43.426 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55378 10 6452 1 2025-08-22 04:04:17.197 00:06:00.136 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 04:09:43.828 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:51734 10 6452 1 2025-08-22 04:10:44.267 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35628 10 6452 1 2025-08-22 04:11:39.926 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 04:11:39.774 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 04:11:39.897 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 04:11:39.932 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 04:11:40.016 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 04:11:44.669 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50526 10 6452 1 2025-08-22 04:12:45.096 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34374 10 6452 1 2025-08-22 04:13:45.500 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40662 12 6556 1 2025-08-22 04:09:17.196 00:06:00.141 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 04:14:45.904 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:49756 10 6452 1 2025-08-22 04:15:46.275 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36276 10 6452 1 2025-08-22 04:11:17.199 00:06:00.136 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 04:16:39.920 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 04:16:39.680 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 04:16:40.163 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 04:16:40.082 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 04:16:39.991 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 04:16:46.676 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46786 10 6452 1 2025-08-22 04:17:47.104 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44994 10 6452 1 2025-08-22 04:18:47.505 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37532 10 6452 1 2025-08-22 04:19:47.908 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:33456 12 6556 1 2025-08-22 04:20:48.317 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:58394 10 6452 1 2025-08-22 04:16:17.198 00:06:00.141 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 04:21:40.364 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 04:21:40.154 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 04:21:40.288 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 04:21:40.182 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 04:21:40.282 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 04:21:48.681 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:60560 10 6452 1 2025-08-22 04:22:49.049 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47060 10 6452 1 2025-08-22 04:18:17.201 00:06:00.136 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 04:23:49.455 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55464 10 6452 1 2025-08-22 04:24:49.856 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:41972 10 6452 1 2025-08-22 04:25:50.235 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44120 10 6452 1 2025-08-22 04:26:40.316 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 04:26:40.275 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 04:26:40.101 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 04:26:40.093 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 04:26:40.400 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 04:26:50.644 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50702 10 6452 1 2025-08-22 04:27:51.066 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42004 10 6452 1 2025-08-22 04:23:17.199 00:06:00.142 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 04:28:51.475 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41936 10 6452 1 2025-08-22 04:29:51.890 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:53106 12 6556 1 2025-08-22 04:25:17.202 00:06:00.138 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 04:30:52.314 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35782 10 6452 1 2025-08-22 04:31:39.960 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 04:31:40.194 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 04:31:40.266 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 04:31:40.194 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 04:31:40.277 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 04:31:52.717 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:44718 10 6452 1 2025-08-22 04:32:53.146 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40294 10 6452 1 2025-08-22 04:33:53.509 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36020 10 6452 1 2025-08-22 04:34:53.915 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58470 10 6452 1 2025-08-22 04:30:17.202 00:06:00.141 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 04:35:54.324 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48070 10 6452 1 2025-08-22 04:36:40.506 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 04:36:40.425 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 04:36:40.352 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 04:36:40.371 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 04:36:40.424 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 04:36:54.724 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:48320 10 6452 1 2025-08-22 04:32:17.205 00:06:00.135 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 04:37:55.139 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59460 10 6452 1 2025-08-22 04:38:55.501 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:45666 10 6452 1 2025-08-22 04:39:55.911 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:49888 10 6452 1 2025-08-22 04:40:56.347 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36280 10 6452 1 2025-08-22 04:41:40.308 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 04:41:40.315 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 04:41:40.300 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 04:41:40.585 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 04:41:40.392 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 04:41:56.750 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:32888 10 6452 1 2025-08-22 04:37:17.206 00:06:00.140 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 04:42:57.150 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58138 10 6452 1 2025-08-22 04:43:57.514 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41044 10 6452 1 2025-08-22 04:39:17.208 00:06:00.135 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 04:44:57.921 00:00:10.425 TCP 1.101.0.1:3000 -> 23.104.0.1:37734 11 6504 1 2025-08-22 04:45:58.387 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:33784 10 6452 1 2025-08-22 04:46:40.704 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 04:46:40.754 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 04:46:40.228 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 04:46:40.757 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 04:46:40.841 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 04:46:58.787 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34234 10 6452 1 2025-08-22 04:47:59.194 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55550 10 6452 1 2025-08-22 04:48:59.598 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58358 10 6452 1 2025-08-22 04:44:17.206 00:06:00.140 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 04:50:00.007 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:33186 10 6452 1 2025-08-22 04:51:00.367 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58262 10 6452 1 2025-08-22 04:46:17.209 00:06:00.137 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 04:51:40.691 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 04:51:40.741 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 04:51:40.506 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 04:51:40.547 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 04:51:40.774 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 04:52:00.770 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:51962 10 6452 1 2025-08-22 04:53:01.139 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52366 10 6452 1 2025-08-22 04:54:01.501 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48484 10 6452 1 2025-08-22 04:55:01.905 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38146 10 6452 1 2025-08-22 04:56:02.304 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41728 10 6452 1 2025-08-22 04:51:17.210 00:06:00.142 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 04:56:40.600 00:00:00.020 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 04:56:40.787 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 04:56:40.810 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 04:56:40.717 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 04:56:40.799 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 04:57:02.703 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49010 10 6452 1 2025-08-22 04:58:03.110 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:56590 10 6452 1 2025-08-22 04:53:17.214 00:06:00.136 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 Summary: total flows: 137, total bytes: 411650, total packets: 1029, avg bps: 857, avg pps: 0, avg bpp: 400 Time window: 2025-08-22 03:55:17 - 2025-08-22 04:59:17 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0021s User: 0.0021s Wall: 0.0024s flows/second: 55962.2 Runtime: 0.0025s