Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-25 02:58:44.988 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39354 10 6870 1 2025-08-25 02:59:45.394 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:50988 10 6870 1 2025-08-25 03:00:45.815 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52718 10 6870 1 2025-08-25 03:01:46.220 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40056 10 6870 1 2025-08-25 02:57:18.811 00:06:00.059 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-25 02:57:18.808 00:06:00.065 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-25 03:02:46.622 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54300 10 6870 1 2025-08-25 03:03:04.869 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 03:03:04.887 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 03:03:05.085 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 03:03:05.130 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 03:03:05.214 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 03:03:47.031 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33638 10 6870 1 2025-08-25 03:04:47.432 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50314 10 6870 1 2025-08-25 03:05:47.837 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:42542 10 6870 1 2025-08-25 03:06:48.262 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60978 10 6870 1 2025-08-25 03:07:48.631 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45942 10 6870 1 2025-08-25 03:08:05.264 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 03:08:05.179 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 03:08:05.129 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 03:08:05.129 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 03:08:05.182 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 03:08:49.000 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:59882 10 6870 1 2025-08-25 03:04:18.811 00:06:00.060 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-25 03:04:18.808 00:06:00.065 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-25 03:09:49.425 00:00:10.670 TCP 1.101.0.1:3000 -> 23.104.0.1:45374 10 6870 1 2025-08-25 03:10:50.134 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55326 10 6870 1 2025-08-25 03:11:50.540 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53202 10 6870 1 2025-08-25 03:12:50.904 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:52494 10 6870 1 2025-08-25 03:13:05.496 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 03:13:05.244 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 03:13:05.247 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 03:13:05.216 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 03:13:05.413 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 03:13:51.277 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46680 10 6870 1 2025-08-25 03:14:51.685 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44916 10 6870 1 2025-08-25 03:15:52.105 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:33532 10 6870 1 2025-08-25 03:11:18.811 00:06:00.067 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-25 03:11:18.814 00:06:00.061 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-25 03:16:52.520 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54548 10 6870 1 2025-08-25 03:17:52.925 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:44304 10 6870 1 2025-08-25 03:18:05.691 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 03:18:05.605 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 03:18:05.517 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 03:18:05.571 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 03:18:05.608 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 03:18:53.310 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48854 10 6870 1 2025-08-25 03:19:53.709 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46260 10 6870 1 2025-08-25 03:20:54.087 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55300 10 6870 1 2025-08-25 03:21:54.501 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57566 10 6870 1 2025-08-25 03:23:05.554 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 03:23:05.488 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 03:23:05.548 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 03:23:05.517 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 03:22:54.865 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:34182 10 6870 1 2025-08-25 03:23:05.637 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 03:18:18.812 00:06:00.068 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-25 03:18:18.813 00:06:00.063 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-25 03:23:55.284 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36320 10 6870 1 2025-08-25 03:24:55.689 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58050 10 6870 1 2025-08-25 03:25:56.110 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56808 10 6870 1 2025-08-25 03:26:56.514 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:32946 10 6870 1 2025-08-25 03:28:05.677 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 03:28:05.631 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 03:28:05.353 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 03:28:05.406 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 03:27:56.883 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42714 10 6870 1 2025-08-25 03:28:05.490 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 03:28:57.292 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39496 10 6870 1 2025-08-25 03:29:57.695 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42702 10 6870 1 2025-08-25 03:25:18.813 00:06:00.071 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-25 03:25:18.816 00:06:00.066 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-25 03:30:58.132 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52626 10 6870 1 2025-08-25 03:31:58.498 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47066 10 6870 1 2025-08-25 03:33:05.790 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 03:33:05.638 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 03:32:58.911 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50978 10 6870 1 2025-08-25 03:33:05.709 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 03:33:05.450 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 03:33:05.708 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 03:33:59.277 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:42544 10 6870 1 2025-08-25 03:34:59.650 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42134 10 6870 1 2025-08-25 03:36:00.062 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46938 10 6870 1 2025-08-25 03:37:00.466 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58402 10 6870 1 2025-08-25 03:32:18.818 00:06:00.066 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-25 03:32:18.816 00:06:00.070 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-25 03:38:05.738 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 03:38:05.748 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 03:38:05.656 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 03:38:05.916 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 03:38:05.654 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 03:38:00.877 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51642 10 6870 1 2025-08-25 03:39:01.236 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55052 10 6870 1 2025-08-25 03:40:01.644 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45262 10 6870 1 2025-08-25 03:41:02.050 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60266 10 6870 1 2025-08-25 03:42:02.458 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:35048 10 6870 1 2025-08-25 03:43:06.162 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 03:43:05.877 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 03:43:05.887 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 03:43:06.126 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 03:43:06.208 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 03:43:02.829 00:00:10.406 TCP 1.101.0.1:3000 -> 23.104.0.1:51924 10 6870 1 2025-08-25 03:44:03.275 00:00:10.622 TCP 1.101.0.1:3000 -> 23.104.0.1:51692 10 6870 1 2025-08-25 03:39:18.817 00:06:00.073 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-25 03:39:18.819 00:06:00.069 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-25 03:45:03.943 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:43358 10 6870 1 2025-08-25 03:46:04.351 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35112 10 6870 1 2025-08-25 03:47:04.751 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45318 10 6870 1 2025-08-25 03:48:06.112 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 03:48:06.114 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 03:48:05.612 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 03:48:06.168 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 03:48:06.251 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 03:48:05.118 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59500 10 6870 1 2025-08-25 03:49:05.520 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39474 10 6870 1 2025-08-25 03:50:05.924 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:43850 10 6870 1 2025-08-25 03:46:18.818 00:06:00.073 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-25 03:46:18.822 00:06:00.067 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-25 03:51:06.357 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45148 10 6870 1 2025-08-25 03:52:06.763 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:53084 10 6870 1 2025-08-25 03:53:06.207 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 03:53:05.964 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 03:53:05.987 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 03:53:06.125 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 03:53:06.073 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 03:53:07.129 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58592 10 6870 1 2025-08-25 03:54:07.535 00:00:14.197 TCP 1.101.0.1:3000 -> 23.104.0.1:39508 10 6870 1 2025-08-25 03:55:11.770 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38058 10 6870 1 2025-08-25 03:56:12.173 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55546 10 6870 1 2025-08-25 03:57:12.575 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:39142 12 10367 1 2025-08-25 03:58:06.428 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 03:58:06.267 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 03:58:06.272 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 03:58:06.097 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 03:58:06.344 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 03:53:18.821 00:06:00.073 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-25 03:53:18.823 00:06:00.067 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-25 03:58:13.058 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55324 10 6452 1 Summary: total flows: 138, total bytes: 445897, total packets: 1034, avg bps: 958, avg pps: 0, avg bpp: 431 Time window: 2025-08-25 02:57:18 - 2025-08-25 03:59:18 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0033s User: 0.0016s Wall: 0.0029s flows/second: 47883.4 Runtime: 0.0029s