Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-23 21:58:46.539 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60750 10 6452 1 2025-08-23 21:54:18.219 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 11 705 1 2025-08-23 21:54:18.216 00:06:00.006 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-23 21:59:46.937 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:47808 10 6452 1 2025-08-23 22:00:47.351 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47926 10 6452 1 2025-08-23 22:01:47.749 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52418 10 6452 1 2025-08-23 22:02:30.195 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-23 22:02:30.291 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-23 22:02:30.000 00:00:00.032 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 22:02:30.195 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 22:02:30.278 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-23 22:02:48.151 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41102 10 6452 1 2025-08-23 22:03:48.556 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:37752 10 6452 1 2025-08-23 22:04:48.955 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56088 10 6452 1 2025-08-23 22:05:49.361 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39958 10 6452 1 2025-08-23 22:01:18.219 00:06:00.005 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-23 22:01:18.221 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-23 22:06:49.765 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:33968 10 6452 1 2025-08-23 22:07:30.344 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-23 22:07:30.271 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-23 22:07:30.309 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 22:07:30.393 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 22:07:30.475 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-23 22:07:50.183 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34546 10 6452 1 2025-08-23 22:08:50.590 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39902 10 6452 1 2025-08-23 22:09:51.004 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:54166 10 6452 1 2025-08-23 22:10:51.368 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33068 10 6452 1 2025-08-23 22:11:51.770 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53762 10 6452 1 2025-08-23 22:12:30.435 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-23 22:12:30.528 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-23 22:12:30.447 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 22:12:30.353 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 22:12:30.435 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-23 22:12:52.183 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35880 10 6452 1 2025-08-23 22:08:18.221 00:06:00.006 TCP 179.21.23.21:38570 -> 179.21.23.23:179 9 601 1 2025-08-23 22:08:18.220 00:06:00.010 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-23 22:13:52.587 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49630 10 6452 1 2025-08-23 22:14:52.992 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:48382 10 6452 1 2025-08-23 22:15:53.406 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53294 10 6452 1 2025-08-23 22:16:53.771 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:54278 10 6452 1 2025-08-23 22:17:30.614 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-23 22:17:30.499 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-23 22:17:30.424 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 22:17:30.572 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 22:17:30.656 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-23 22:17:54.181 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46474 10 6452 1 2025-08-23 22:18:54.587 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:44698 10 6452 1 2025-08-23 22:19:54.984 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45896 10 6452 1 2025-08-23 22:15:18.227 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-08-23 22:15:18.220 00:06:00.010 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-23 22:20:55.388 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43942 10 6452 1 2025-08-23 22:21:55.793 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56104 10 6452 1 2025-08-23 22:22:30.625 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-23 22:22:30.630 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-23 22:22:30.664 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 22:22:30.696 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 22:22:30.778 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-23 22:22:56.196 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:48290 10 6452 1 2025-08-23 22:23:56.593 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51750 10 6452 1 2025-08-23 22:24:56.996 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42646 10 6452 1 2025-08-23 22:25:57.402 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:38602 10 6452 1 2025-08-23 22:26:57.774 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40952 10 6452 1 2025-08-23 22:22:18.228 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-08-23 22:22:18.223 00:06:00.009 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-23 22:27:30.665 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-23 22:27:30.584 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 22:27:30.492 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-23 22:27:30.696 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-23 22:27:30.776 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 22:27:58.183 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38104 10 6452 1 2025-08-23 22:28:58.587 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:35564 10 6452 1 2025-08-23 22:29:58.952 00:00:11.042 TCP 1.101.0.1:3000 -> 23.104.0.1:45884 10 6452 1 2025-08-23 22:31:00.035 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34458 10 6452 1 2025-08-23 22:32:00.437 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:42678 10 6452 1 2025-08-23 22:32:30.670 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-23 22:32:30.833 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-23 22:32:30.794 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 22:32:30.757 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 22:32:30.842 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-23 22:33:00.850 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:39570 10 6452 1 2025-08-23 22:34:01.235 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38814 10 6452 1 2025-08-23 22:29:18.226 00:06:00.008 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-23 22:29:18.229 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-08-23 22:35:01.635 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59696 10 6452 1 2025-08-23 22:36:02.055 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40508 10 6452 1 2025-08-23 22:37:02.461 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36216 10 6452 1 2025-08-23 22:37:30.935 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-23 22:37:31.203 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-23 22:37:31.058 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 22:37:30.850 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 22:37:30.976 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-23 22:38:02.861 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:49196 10 6452 1 2025-08-23 22:39:03.236 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:51090 10 6452 1 2025-08-23 22:40:03.610 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46588 10 6452 1 2025-08-23 22:41:04.020 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52218 10 6452 1 2025-08-23 22:36:18.228 00:06:00.011 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-23 22:36:18.233 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-08-23 22:42:04.423 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57516 10 6452 1 2025-08-23 22:42:31.065 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-23 22:42:31.179 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-23 22:42:30.842 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 22:42:31.069 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 22:42:31.151 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-23 22:43:04.795 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:53438 10 6452 1 2025-08-23 22:44:05.179 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59742 10 6452 1 2025-08-23 22:45:05.586 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37238 10 6452 1 2025-08-23 22:46:05.984 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56962 10 6452 1 2025-08-23 22:47:06.389 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49516 10 6452 1 2025-08-23 22:47:31.233 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-23 22:47:31.091 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-23 22:47:31.204 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-23 22:47:31.143 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 22:47:31.150 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 22:43:18.236 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-08-23 22:48:06.791 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39968 10 6452 1 2025-08-23 22:43:18.228 00:06:00.012 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-23 22:49:07.194 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36190 10 6452 1 2025-08-23 22:50:07.599 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:54326 10 6452 1 2025-08-23 22:51:07.959 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:49586 10 6452 1 2025-08-23 22:52:08.365 00:00:12.521 TCP 1.101.0.1:3000 -> 23.104.0.1:49260 10 6452 1 2025-08-23 22:52:31.290 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-23 22:52:31.071 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-23 22:52:31.198 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 22:52:31.234 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 22:52:31.317 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-23 22:53:10.926 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:50178 10 6452 1 2025-08-23 22:54:11.353 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47196 10 6452 1 2025-08-23 22:50:18.232 00:06:00.011 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-23 22:50:18.238 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-08-23 22:55:11.758 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:53556 10 6452 1 2025-08-23 22:56:12.171 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35126 10 6452 1 2025-08-23 22:57:12.569 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37900 10 6452 1 2025-08-23 22:57:31.728 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-23 22:57:31.701 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-23 22:57:31.640 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-23 22:57:31.574 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 22:57:31.645 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 22:58:12.932 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:45122 10 6452 1 Summary: total flows: 138, total bytes: 415138, total packets: 982, avg bps: 863, avg pps: 0, avg bpp: 422 Time window: 2025-08-23 21:54:18 - 2025-08-23 22:58:23 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0037s User: 0.0009s Wall: 0.0026s flows/second: 52428.8 Runtime: 0.0027s