Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-28 04:58:53.139 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:36450 10 6452 1 2025-08-28 04:59:34.435 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-28 04:59:34.264 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 04:59:34.252 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 04:59:34.342 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 04:59:34.352 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 04:59:53.514 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:58672 10 6452 1 2025-08-28 04:55:20.344 00:06:00.227 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-28 05:00:53.941 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:46230 10 6452 1 2025-08-28 05:01:54.364 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54430 10 6452 1 2025-08-28 05:02:54.774 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46032 10 6452 1 2025-08-28 04:58:20.348 00:06:00.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-28 05:03:55.181 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48644 10 6452 1 2025-08-28 05:04:34.740 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 05:04:34.733 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 05:04:34.526 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 05:04:34.335 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 05:04:34.417 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-28 05:04:55.580 00:00:11.020 TCP 1.101.0.1:3000 -> 23.104.0.1:42034 10 6452 1 2025-08-28 05:05:56.638 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38260 10 6452 1 2025-08-28 05:06:57.005 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:50876 10 6452 1 2025-08-28 05:02:20.348 00:06:00.226 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-28 05:07:57.399 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34776 10 6452 1 2025-08-28 05:08:57.801 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:33886 10 6452 1 2025-08-28 05:09:34.548 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-28 05:09:34.457 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 05:09:34.457 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 05:09:34.583 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 05:09:34.464 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 05:09:58.214 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35532 10 6452 1 2025-08-28 05:05:20.351 00:06:00.221 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-28 05:10:58.620 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46150 10 6452 1 2025-08-28 05:11:59.035 00:00:10.422 TCP 1.101.0.1:3000 -> 23.104.0.1:48742 11 6504 1 2025-08-28 05:12:59.491 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:32914 10 6452 1 2025-08-28 05:13:59.854 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49844 10 6452 1 2025-08-28 05:09:20.348 00:06:00.226 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-28 05:14:34.546 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-28 05:14:34.571 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 05:14:34.470 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 05:14:34.465 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 05:14:34.569 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 05:15:00.269 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55230 10 6452 1 2025-08-28 05:16:00.678 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:46386 10 6452 1 2025-08-28 05:17:01.053 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56588 10 6452 1 2025-08-28 05:12:20.352 00:06:00.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-28 05:18:01.453 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52522 10 6452 1 2025-08-28 05:19:01.872 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:33372 10 6452 1 2025-08-28 05:19:34.853 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 05:19:34.898 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 05:19:34.696 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 05:19:34.840 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 05:19:34.922 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-28 05:20:02.249 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49830 10 6452 1 2025-08-28 05:21:02.660 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35172 10 6452 1 2025-08-28 05:16:20.351 00:06:00.224 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-28 05:22:03.098 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47282 10 6452 1 2025-08-28 05:23:03.505 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56636 10 6452 1 2025-08-28 05:24:03.912 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:52924 10 6452 1 2025-08-28 05:19:20.354 00:06:00.219 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-28 05:24:34.636 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 05:24:34.747 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 05:24:34.836 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 05:24:34.637 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 05:24:34.720 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-28 05:25:04.276 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:55656 10 6452 1 2025-08-28 05:26:04.649 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49896 10 6452 1 2025-08-28 05:27:05.069 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34106 10 6452 1 2025-08-28 05:28:05.468 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:49672 10 6452 1 2025-08-28 05:23:20.353 00:06:00.224 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-28 05:29:05.827 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50934 10 6452 1 2025-08-28 05:29:34.684 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 05:29:34.616 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 05:29:34.700 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 05:29:34.784 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-28 05:29:34.994 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 05:30:06.226 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42522 10 6452 1 2025-08-28 05:31:06.635 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44294 10 6452 1 2025-08-28 05:26:20.356 00:06:00.219 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-28 05:32:07.041 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36914 10 6452 1 2025-08-28 05:33:07.440 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45100 10 6452 1 2025-08-28 05:34:07.843 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:49168 10 6452 1 2025-08-28 05:34:34.972 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 05:34:34.855 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 05:34:35.064 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-28 05:34:35.153 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 05:34:34.983 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 05:35:08.264 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41424 10 6452 1 2025-08-28 05:30:20.355 00:06:00.224 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-28 05:36:08.677 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41220 10 6452 1 2025-08-28 05:37:09.103 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35100 10 6452 1 2025-08-28 05:38:09.502 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36728 10 6452 1 2025-08-28 05:33:20.361 00:06:00.215 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-28 05:39:09.918 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48198 10 6452 1 2025-08-28 05:39:35.370 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-28 05:39:35.181 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 05:39:35.119 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 05:39:35.144 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 05:39:35.287 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 05:40:10.320 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38424 10 6452 1 2025-08-28 05:41:10.692 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58092 10 6452 1 2025-08-28 05:37:20.360 00:06:00.221 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-28 05:42:11.110 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57902 10 6452 1 2025-08-28 05:43:11.512 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:52202 10 6452 1 2025-08-28 05:44:11.880 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49002 10 6452 1 2025-08-28 05:44:35.319 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 05:44:35.309 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 05:44:35.055 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 05:44:35.445 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 05:44:35.535 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-28 05:45:12.280 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51842 10 6452 1 2025-08-28 05:40:20.361 00:06:00.217 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-28 05:46:12.685 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58264 10 6452 1 2025-08-28 05:47:13.110 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:58040 10 6452 1 2025-08-28 05:48:13.516 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48558 10 6452 1 2025-08-28 05:44:20.360 00:06:00.222 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-28 05:49:13.914 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36212 10 6452 1 2025-08-28 05:49:35.499 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-28 05:49:35.417 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 05:49:35.415 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 05:49:35.247 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 05:49:35.335 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 05:50:14.318 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56850 10 6452 1 2025-08-28 05:51:14.721 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45666 10 6452 1 2025-08-28 05:47:20.363 00:06:00.217 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-28 05:52:15.134 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33784 10 6452 1 2025-08-28 05:53:15.497 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:51154 10 6452 1 2025-08-28 05:54:15.872 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:39598 10 6452 1 2025-08-28 05:54:35.550 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-28 05:54:35.247 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 05:54:35.224 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 05:54:35.365 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 05:54:35.468 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 05:55:16.234 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34156 10 6452 1 2025-08-28 05:51:20.360 00:06:00.223 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-28 05:56:16.647 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57198 10 6452 1 2025-08-28 05:57:17.052 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:40832 12 10367 1 2025-08-28 05:58:17.530 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44976 10 6452 1 Summary: total flows: 137, total bytes: 420844, total packets: 1021, avg bps: 888, avg pps: 0, avg bpp: 412 Time window: 2025-08-28 04:55:20 - 2025-08-28 05:58:27 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0040s User: 0.0008s Wall: 0.0018s flows/second: 77442.0 Runtime: 0.0018s