Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-27 21:58:50.746 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54520 10 6452 1 2025-08-27 21:59:25.648 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-27 21:59:25.803 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-27 21:59:25.749 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-27 21:59:25.816 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-27 21:59:25.899 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-27 21:59:51.149 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47084 10 6452 1 2025-08-27 21:55:20.205 00:06:00.208 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-27 22:00:51.559 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49950 10 6452 1 2025-08-27 22:01:51.960 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44306 10 6452 1 2025-08-27 22:02:52.362 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42732 10 6452 1 2025-08-27 21:58:20.209 00:06:00.202 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-27 22:03:52.729 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45810 10 6452 1 2025-08-27 22:04:26.049 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-27 22:04:25.983 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-27 22:04:25.897 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-27 22:04:25.898 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-27 22:04:25.981 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-27 22:04:53.137 00:00:10.529 TCP 1.101.0.1:3000 -> 23.104.0.1:37258 10 6452 1 2025-08-27 22:05:53.701 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:57420 10 6452 1 2025-08-27 22:06:54.091 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56586 10 6452 1 2025-08-27 22:02:20.208 00:06:00.208 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-27 22:07:54.494 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:58554 10 6452 1 2025-08-27 22:08:54.855 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:59848 10 6452 1 2025-08-27 22:09:26.146 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-27 22:09:25.971 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-27 22:09:26.063 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-27 22:09:26.230 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-27 22:09:26.135 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-27 22:09:55.271 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33246 10 6452 1 2025-08-27 22:05:20.211 00:06:00.202 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-27 22:10:55.682 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:60244 10 6452 1 2025-08-27 22:11:56.057 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:57408 10 6452 1 2025-08-27 22:12:56.477 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43524 10 6452 1 2025-08-27 22:13:56.837 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:50744 11 6492 1 2025-08-27 22:09:20.210 00:06:00.206 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-27 22:14:26.387 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-27 22:14:26.342 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-27 22:14:26.278 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-27 22:14:26.631 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-27 22:14:26.305 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-27 22:14:57.256 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:44742 10 6452 1 2025-08-27 22:15:57.618 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42048 10 6452 1 2025-08-27 22:16:58.025 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47416 10 6452 1 2025-08-27 22:12:20.213 00:06:00.200 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-27 22:17:58.429 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49084 10 6452 1 2025-08-27 22:18:58.832 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:56574 10 6452 1 2025-08-27 22:19:26.362 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-27 22:19:26.182 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-27 22:19:26.302 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-27 22:19:26.422 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-27 22:19:26.506 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-27 22:19:59.227 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37646 10 6452 1 2025-08-27 22:20:59.630 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43990 10 6452 1 2025-08-27 22:16:20.212 00:06:00.205 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-27 22:22:00.039 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33900 10 6452 1 2025-08-27 22:23:00.436 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55626 10 6452 1 2025-08-27 22:24:00.838 00:00:10.353 TCP 1.101.0.1:3000 -> 23.104.0.1:43876 10 6452 1 2025-08-27 22:19:20.217 00:06:00.206 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-27 22:24:26.558 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-27 22:24:26.393 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-27 22:24:26.393 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-27 22:24:26.469 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-27 22:24:26.476 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-27 22:25:01.227 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46068 10 6452 1 2025-08-27 22:26:01.630 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40878 10 6452 1 2025-08-27 22:27:02.034 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59262 10 6452 1 2025-08-27 22:28:02.449 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60228 10 6452 1 2025-08-27 22:23:20.215 00:06:00.212 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-27 22:29:02.860 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:60094 10 6452 1 2025-08-27 22:29:26.396 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-27 22:29:26.398 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-27 22:29:26.521 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-27 22:29:26.043 00:00:00.016 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-27 22:29:26.315 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-27 22:30:03.234 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44502 10 6452 1 2025-08-27 22:31:03.637 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42048 10 6452 1 2025-08-27 22:26:20.216 00:06:00.206 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-27 22:32:04.059 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41830 10 6452 1 2025-08-27 22:33:04.424 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36842 10 6452 1 2025-08-27 22:34:04.829 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48264 10 6452 1 2025-08-27 22:34:26.880 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-27 22:34:26.881 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-27 22:34:26.695 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-27 22:34:26.785 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-27 22:34:26.796 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-27 22:35:05.229 00:00:10.428 TCP 1.101.0.1:3000 -> 23.104.0.1:40570 10 6452 1 2025-08-27 22:30:20.216 00:06:00.214 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-27 22:36:05.693 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:39914 10 6452 1 2025-08-27 22:37:06.056 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38512 10 6452 1 2025-08-27 22:38:06.461 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34320 10 6452 1 2025-08-27 22:33:20.217 00:06:00.209 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-27 22:39:06.866 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54632 10 6452 1 2025-08-27 22:39:26.995 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-27 22:39:26.917 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-27 22:39:26.826 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-27 22:39:26.726 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-27 22:39:26.913 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-27 22:40:07.277 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42160 10 6452 1 2025-08-27 22:41:07.685 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50296 10 6452 1 2025-08-27 22:42:08.116 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43060 10 6452 1 2025-08-27 22:37:20.217 00:06:00.213 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-27 22:43:08.525 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50476 10 6452 1 2025-08-27 22:44:08.931 00:00:10.404 TCP 1.101.0.1:3000 -> 23.104.0.1:58832 13 6608 1 2025-08-27 22:44:26.818 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-27 22:44:26.810 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-27 22:44:26.810 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-27 22:44:26.666 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-27 22:44:26.735 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-27 22:45:09.390 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35808 10 6452 1 2025-08-27 22:40:20.220 00:06:00.207 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-27 22:46:09.753 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:49110 10 6452 1 2025-08-27 22:47:10.179 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47650 10 6452 1 2025-08-27 22:48:10.582 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38142 10 6452 1 2025-08-27 22:49:10.982 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51710 10 6452 1 2025-08-27 22:49:26.718 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-27 22:49:26.711 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-27 22:49:26.933 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-27 22:49:26.853 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-27 22:44:20.219 00:06:00.215 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-27 22:49:26.936 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-27 22:50:11.391 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50416 10 6452 1 2025-08-27 22:51:11.795 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:41742 10 6452 1 2025-08-27 22:47:20.222 00:06:00.210 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-27 22:52:12.168 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41522 10 6452 1 2025-08-27 22:53:12.580 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:39862 10 6452 1 2025-08-27 22:54:12.988 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59114 10 6452 1 2025-08-27 22:54:27.038 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-27 22:54:26.955 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-27 22:54:26.830 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-27 22:54:26.957 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-27 22:54:26.952 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-27 22:55:13.389 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53552 10 6452 1 2025-08-27 22:51:20.219 00:06:00.217 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-27 22:56:13.795 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54288 10 6452 1 2025-08-27 22:57:14.202 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:41064 10 6452 1 2025-08-27 22:58:14.569 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47678 10 6452 1 Summary: total flows: 137, total bytes: 417073, total packets: 1022, avg bps: 881, avg pps: 0, avg bpp: 408 Time window: 2025-08-27 21:55:20 - 2025-08-27 22:58:24 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0036s User: 0.0009s Wall: 0.0040s flows/second: 34509.6 Runtime: 0.0040s