Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-24 23:59:30.794 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:53526 10 6452 1 2025-08-24 23:55:18.756 00:06:00.044 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-24 23:55:18.794 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-08-25 00:00:31.181 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40658 10 6452 1 2025-08-25 00:01:31.589 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45536 10 6452 1 2025-08-25 00:02:31.993 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58908 10 6452 1 2025-08-25 00:03:01.385 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 00:03:01.478 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 00:03:01.477 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 00:03:01.372 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 00:03:01.303 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 00:03:32.350 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:42440 10 6452 1 2025-08-25 00:04:32.721 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:46824 10 6452 1 2025-08-25 00:05:33.145 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57828 10 6452 1 2025-08-25 00:06:33.542 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51202 10 6452 1 2025-08-25 00:02:18.797 00:06:00.006 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-08-25 00:02:18.760 00:06:00.046 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-25 00:07:33.937 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:60040 10 6452 1 2025-08-25 00:08:01.508 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 00:08:01.723 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 00:08:01.627 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 00:08:01.506 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 00:08:01.590 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 00:08:34.371 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33154 10 6452 1 2025-08-25 00:09:34.780 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57552 10 6452 1 2025-08-25 00:10:35.189 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47086 10 6452 1 2025-08-25 00:11:35.590 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37022 10 6452 1 2025-08-25 00:12:35.988 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34918 10 6452 1 2025-08-25 00:13:01.825 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 00:13:01.769 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 00:13:01.577 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 00:13:01.918 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 00:13:02.003 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 00:13:36.398 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47294 10 6452 1 2025-08-25 00:09:18.803 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-08-25 00:09:18.763 00:06:00.044 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-25 00:14:36.800 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56836 10 6452 1 2025-08-25 00:15:37.208 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59140 10 6452 1 2025-08-25 00:16:37.614 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50368 10 6452 1 2025-08-25 00:17:38.015 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43730 10 6452 1 2025-08-25 00:18:01.631 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 00:18:01.768 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 00:18:01.675 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 00:18:01.670 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 00:18:01.851 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 00:18:38.417 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49996 10 6452 1 2025-08-25 00:19:38.828 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:57536 10 6452 1 2025-08-25 00:20:39.258 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46860 10 6452 1 2025-08-25 00:16:18.804 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 8 549 1 2025-08-25 00:16:18.763 00:06:00.045 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-25 00:21:39.665 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:57846 10 6452 1 2025-08-25 00:22:40.101 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:33812 10 6452 1 2025-08-25 00:23:01.945 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 00:23:01.970 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 00:23:01.788 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 00:23:01.807 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 00:23:01.862 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 00:23:40.463 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34186 10 6452 1 2025-08-25 00:24:40.861 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:44160 10 6452 1 2025-08-25 00:25:41.236 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:51120 10 6452 1 2025-08-25 00:26:41.592 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49700 10 6452 1 2025-08-25 00:27:42.011 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54544 10 6452 1 2025-08-25 00:28:01.750 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 00:28:01.937 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 00:28:01.936 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 00:28:01.936 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 00:28:02.020 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 00:23:18.767 00:06:00.041 TCP 179.21.23.21:38570 -> 179.21.23.23:179 8 549 1 2025-08-25 00:23:18.764 00:06:00.046 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-25 00:28:42.413 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43494 10 6452 1 2025-08-25 00:29:42.813 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51010 10 6452 1 2025-08-25 00:30:43.218 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40354 10 6452 1 2025-08-25 00:31:43.619 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:51228 10 6452 1 2025-08-25 00:32:43.986 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:49780 10 6452 1 2025-08-25 00:33:01.839 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 00:33:01.842 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 00:33:01.827 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 00:33:02.035 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 00:33:02.119 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 00:33:44.361 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40488 10 6452 1 2025-08-25 00:34:44.767 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:52296 10 6452 1 2025-08-25 00:30:18.808 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-08-25 00:30:18.769 00:06:00.043 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-25 00:35:45.178 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48638 10 6452 1 2025-08-25 00:36:45.587 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52698 10 6452 1 2025-08-25 00:37:45.984 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47510 10 6452 1 2025-08-25 00:38:02.289 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 00:38:02.158 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 00:38:02.076 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 00:38:02.087 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 00:38:02.208 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 00:38:46.393 00:00:11.210 TCP 1.101.0.1:3000 -> 23.104.0.1:60224 11 6504 1 2025-08-25 00:39:47.644 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34522 10 6452 1 2025-08-25 00:40:48.058 00:00:10.468 TCP 1.101.0.1:3000 -> 23.104.0.1:60292 10 6452 1 2025-08-25 00:41:48.552 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:51954 10 6452 1 2025-08-25 00:37:18.771 00:06:00.046 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-25 00:37:18.810 00:06:00.004 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-08-25 00:42:48.917 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51146 10 6452 1 2025-08-25 00:43:02.184 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 00:43:02.382 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 00:43:02.129 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 00:43:02.102 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 00:43:02.316 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 00:43:49.320 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55478 10 6452 1 2025-08-25 00:44:49.720 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52100 10 6452 1 2025-08-25 00:45:50.122 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52880 10 6452 1 2025-08-25 00:46:50.537 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54038 10 6452 1 2025-08-25 00:48:02.432 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 00:48:02.385 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 00:48:02.191 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 00:47:50.941 00:00:10.609 TCP 1.101.0.1:3000 -> 23.104.0.1:56732 10 6452 1 2025-08-25 00:48:02.295 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 00:48:02.378 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 00:48:51.589 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41710 10 6452 1 2025-08-25 00:44:18.814 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-08-25 00:44:18.775 00:06:00.045 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-25 00:49:51.995 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55096 10 6452 1 2025-08-25 00:50:52.397 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50218 10 6452 1 2025-08-25 00:51:52.811 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:47932 10 6452 1 2025-08-25 00:53:02.520 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 00:52:53.189 00:00:10.762 TCP 1.101.0.1:3000 -> 23.104.0.1:57916 12 6556 1 2025-08-25 00:53:02.356 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 00:53:02.379 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 00:53:02.456 00:00:00.036 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 00:53:02.460 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 00:53:53.995 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39048 10 6452 1 2025-08-25 00:54:54.395 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56830 10 6452 1 2025-08-25 00:55:54.800 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53598 10 6452 1 2025-08-25 00:51:18.817 00:06:00.004 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 653 1 2025-08-25 00:51:18.776 00:06:00.047 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-25 00:56:55.208 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46124 10 6452 1 2025-08-25 00:58:03.002 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 00:58:02.962 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 00:58:02.653 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 00:58:02.519 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 00:58:02.918 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 00:57:55.618 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55894 10 6452 1 Summary: total flows: 137, total bytes: 408426, total packets: 967, avg bps: 867, avg pps: 0, avg bpp: 422 Time window: 2025-08-24 23:55:18 - 2025-08-25 00:58:05 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0017s User: 0.0025s Wall: 0.0023s flows/second: 59669.7 Runtime: 0.0023s