Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-22 18:58:56.619 00:00:10.472 TCP 1.101.0.1:3000 -> 23.104.0.1:57320 10 6452 1 2025-08-22 18:59:57.138 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46398 10 6452 1 2025-08-22 19:00:57.549 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37692 10 6452 1 2025-08-22 19:01:57.780 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 19:01:57.696 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 19:01:57.701 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 19:01:57.714 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 19:01:57.696 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 19:01:57.980 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:40756 10 6452 1 2025-08-22 19:02:58.393 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54422 10 6452 1 2025-08-22 18:58:17.541 00:06:00.073 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 19:03:58.796 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:45506 10 6452 1 2025-08-22 19:04:59.220 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47670 10 6452 1 2025-08-22 19:00:17.544 00:06:00.067 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 19:05:59.628 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39952 10 6452 1 2025-08-22 19:06:57.908 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 19:06:57.838 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 19:06:57.890 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 19:06:57.639 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 19:06:57.825 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 19:07:00.034 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33036 10 6452 1 2025-08-22 19:08:00.449 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56548 10 6452 1 2025-08-22 19:09:00.845 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:45876 10 6452 1 2025-08-22 19:10:01.273 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52918 10 6452 1 2025-08-22 19:05:17.542 00:06:00.073 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 19:11:01.683 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:36828 10 6452 1 2025-08-22 19:11:57.944 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 19:11:58.043 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 19:11:57.827 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 19:11:57.944 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 19:11:58.028 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 19:12:02.064 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53678 10 6452 1 2025-08-22 19:07:17.545 00:06:00.067 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 19:13:02.470 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59040 10 6452 1 2025-08-22 19:14:02.876 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34328 10 6452 1 2025-08-22 19:15:03.284 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45106 10 6452 1 2025-08-22 19:16:03.687 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59080 10 6452 1 2025-08-22 19:16:58.161 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 19:16:57.876 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 19:16:57.757 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 19:16:58.160 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 19:16:58.242 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 19:17:04.111 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51454 10 6452 1 2025-08-22 19:12:17.543 00:06:00.072 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 19:18:04.522 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40614 10 6452 1 2025-08-22 19:14:17.545 00:06:00.067 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 19:19:04.929 00:00:10.354 TCP 1.101.0.1:3000 -> 23.104.0.1:58672 10 6452 1 2025-08-22 19:20:05.326 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55138 10 6452 1 2025-08-22 19:21:05.744 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38902 10 6452 1 2025-08-22 19:21:58.129 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 19:21:58.133 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 19:21:58.117 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 19:21:58.146 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 19:21:58.229 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 19:22:06.158 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:48446 10 6452 1 2025-08-22 19:23:06.535 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52152 10 6452 1 2025-08-22 19:19:17.544 00:06:00.072 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 19:24:06.943 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42606 10 6452 1 2025-08-22 19:25:07.365 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45834 10 6452 1 2025-08-22 19:21:17.547 00:06:00.067 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 19:26:07.769 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44500 10 6452 1 2025-08-22 19:26:58.209 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 19:26:58.208 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 19:26:58.216 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 19:26:58.076 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 19:26:58.291 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 19:27:08.176 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:32972 10 6452 1 2025-08-22 19:28:08.592 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40580 10 6452 1 2025-08-22 19:29:08.997 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41410 10 6452 1 2025-08-22 19:30:09.399 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42854 10 6452 1 2025-08-22 19:26:17.546 00:06:00.073 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 19:31:09.800 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45098 10 6452 1 2025-08-22 19:31:58.412 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 19:31:58.049 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 19:31:58.382 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 19:31:58.190 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 19:31:58.329 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 19:32:10.206 00:00:11.309 TCP 1.101.0.1:3000 -> 23.104.0.1:38938 10 6452 1 2025-08-22 19:28:17.549 00:06:00.072 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 19:33:11.554 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55784 10 6452 1 2025-08-22 19:34:11.959 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44626 10 6452 1 2025-08-22 19:35:12.364 00:00:10.667 TCP 1.101.0.1:3000 -> 23.104.0.1:34728 10 6452 1 2025-08-22 19:36:13.095 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48032 10 6452 1 2025-08-22 19:36:58.789 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 19:36:58.800 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 19:36:58.870 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 19:36:58.822 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 19:36:58.706 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 19:37:13.500 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55526 10 6452 1 2025-08-22 19:33:17.547 00:06:00.078 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 19:38:13.898 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:42550 10 6452 1 2025-08-22 19:39:14.308 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:54048 10 6452 1 2025-08-22 19:35:17.550 00:06:00.073 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 19:40:14.676 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58146 10 6452 1 2025-08-22 19:41:15.103 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:42702 10 6452 1 2025-08-22 19:41:58.625 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 19:41:58.543 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 19:41:58.409 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 19:41:58.369 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 19:41:58.542 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 19:42:15.476 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38518 10 6452 1 2025-08-22 19:43:15.836 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:49034 10 6452 1 2025-08-22 19:44:16.262 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46318 10 6452 1 2025-08-22 19:40:17.548 00:06:00.078 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 19:45:16.661 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53390 10 6452 1 2025-08-22 19:46:17.022 00:00:13.246 TCP 1.101.0.1:3000 -> 23.104.0.1:35254 10 6452 1 2025-08-22 19:46:58.612 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 19:46:58.744 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 19:46:58.620 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 19:46:58.710 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 19:46:58.794 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 19:42:17.552 00:06:00.072 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 19:47:20.337 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54812 10 6452 1 2025-08-22 19:48:20.753 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:33434 10 6452 1 2025-08-22 19:49:21.188 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38608 10 6452 1 2025-08-22 19:50:21.589 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49658 10 6452 1 2025-08-22 19:51:21.991 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:33658 10 6452 1 2025-08-22 19:51:58.890 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 19:51:58.490 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 19:51:58.664 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 19:51:58.880 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 19:51:58.962 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 19:47:17.551 00:06:00.079 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 19:52:22.408 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:36110 10 6452 1 2025-08-22 19:53:22.776 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58552 10 6452 1 2025-08-22 19:49:17.553 00:06:00.073 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 19:54:23.184 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33210 10 6452 1 2025-08-22 19:55:23.589 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54904 10 6452 1 2025-08-22 19:56:23.992 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47494 10 6452 1 2025-08-22 19:56:58.952 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 19:56:59.060 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 19:56:58.918 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 19:56:58.811 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 19:56:58.895 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 19:57:24.396 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50794 10 6452 1 2025-08-22 19:58:24.804 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42606 10 6452 1 Summary: total flows: 136, total bytes: 416016, total packets: 1004, avg bps: 919, avg pps: 0, avg bpp: 414 Time window: 2025-08-22 18:58:17 - 2025-08-22 19:58:35 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0027s User: 0.0018s Wall: 0.0020s flows/second: 67972.5 Runtime: 0.0020s