Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-28 13:58:40.324 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60762 10 6452 1 2025-08-28 13:54:20.506 00:06:00.246 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-28 13:59:45.325 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-28 13:59:45.248 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 13:59:45.384 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 13:59:45.382 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 13:59:45.243 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 13:59:40.738 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49902 10 6452 1 2025-08-28 14:00:41.142 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33810 10 6452 1 2025-08-28 14:01:41.553 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47508 10 6452 1 2025-08-28 13:57:20.508 00:06:00.242 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-28 14:02:41.960 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49142 10 6452 1 2025-08-28 14:03:42.364 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37896 10 6452 1 2025-08-28 14:04:45.219 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 14:04:45.128 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 14:04:45.157 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 14:04:45.214 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 14:04:45.297 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-28 14:04:42.768 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37006 10 6452 1 2025-08-28 14:05:43.182 00:00:10.602 TCP 1.101.0.1:3000 -> 23.104.0.1:33490 10 6452 1 2025-08-28 14:01:20.506 00:06:00.248 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-28 14:06:43.831 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:56620 10 6452 1 2025-08-28 14:07:44.227 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:60244 10 6452 1 2025-08-28 14:08:44.589 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33540 10 6452 1 2025-08-28 14:04:20.511 00:06:00.243 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-28 14:09:45.465 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 14:09:45.516 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 14:09:45.201 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 14:09:45.219 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 14:09:45.548 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-28 14:09:44.993 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53288 10 6452 1 2025-08-28 14:10:45.397 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39896 10 6452 1 2025-08-28 14:11:45.797 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:45378 10 6452 1 2025-08-28 14:12:46.181 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:50014 10 6452 1 2025-08-28 14:08:20.507 00:06:00.250 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-28 14:13:46.545 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58258 10 6452 1 2025-08-28 14:14:45.600 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-28 14:14:45.446 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 14:14:45.614 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 14:14:45.438 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 14:14:45.518 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 14:14:46.958 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39404 10 6452 1 2025-08-28 14:15:47.363 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:54518 10 6452 1 2025-08-28 14:11:20.511 00:06:00.246 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-28 14:16:47.765 00:00:11.972 TCP 1.101.0.1:3000 -> 23.104.0.1:38644 10 6452 1 2025-08-28 14:17:49.788 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47926 10 6452 1 2025-08-28 14:18:50.193 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51844 10 6452 1 2025-08-28 14:19:45.566 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 14:19:45.704 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 14:19:45.563 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 14:19:45.465 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 14:19:45.647 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-28 14:19:50.602 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45726 10 6452 1 2025-08-28 14:15:20.509 00:06:00.250 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-28 14:20:50.961 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34902 10 6452 1 2025-08-28 14:21:51.363 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51058 10 6452 1 2025-08-28 14:22:51.765 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41248 10 6452 1 2025-08-28 14:18:20.512 00:06:00.246 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-28 14:23:52.175 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50002 10 6452 1 2025-08-28 14:24:45.620 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-28 14:24:45.797 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 14:24:45.843 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 14:24:45.538 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 14:24:45.725 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 14:24:52.579 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:39282 10 6452 1 2025-08-28 14:25:52.943 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:49404 10 6452 1 2025-08-28 14:26:53.321 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:43066 12 10365 1 2025-08-28 14:22:20.512 00:06:00.248 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-28 14:27:53.760 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:54422 10 6452 1 2025-08-28 14:28:54.183 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53594 10 6452 1 2025-08-28 14:29:46.163 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-28 14:29:46.091 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 14:29:45.886 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 14:29:46.053 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 14:29:46.082 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 14:29:54.588 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56768 10 6452 1 2025-08-28 14:25:20.515 00:06:00.243 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-28 14:30:54.986 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35668 10 6452 1 2025-08-28 14:31:55.385 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50398 10 6452 1 2025-08-28 14:32:55.786 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37926 10 6452 1 2025-08-28 14:33:56.191 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58560 10 6452 1 2025-08-28 14:29:20.514 00:06:00.248 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-28 14:34:45.889 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 14:34:46.308 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 14:34:45.993 00:00:00.051 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 14:34:46.264 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 14:34:46.348 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-28 14:34:56.592 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47722 10 6452 1 2025-08-28 14:35:57.012 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33006 10 6452 1 2025-08-28 14:36:57.420 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40372 10 6452 1 2025-08-28 14:32:20.517 00:06:00.243 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-28 14:37:57.837 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:59544 10 6452 1 2025-08-28 14:38:58.263 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:58864 10 6452 1 2025-08-28 14:39:46.050 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 14:39:45.818 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 14:39:45.991 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 14:39:45.973 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 14:39:46.055 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-28 14:39:58.636 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:52684 10 6452 1 2025-08-28 14:40:59.058 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51188 10 6452 1 2025-08-28 14:36:20.514 00:06:00.250 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-28 14:41:59.463 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43004 10 6452 1 2025-08-28 14:42:59.872 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35326 10 6452 1 2025-08-28 14:44:00.278 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40832 10 6452 1 2025-08-28 14:39:20.518 00:06:00.248 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-28 14:44:46.248 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 14:44:46.289 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 14:44:45.994 00:00:00.050 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 14:44:45.947 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 14:44:46.030 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-28 14:45:00.640 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39672 10 6452 1 2025-08-28 14:46:01.055 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48146 10 6452 1 2025-08-28 14:47:01.458 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:52964 12 10367 1 2025-08-28 14:48:01.904 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:43198 10 6452 1 2025-08-28 14:43:20.517 00:06:00.253 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-28 14:49:02.326 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:46112 10 6452 1 2025-08-28 14:49:46.441 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-28 14:49:46.016 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 14:49:46.228 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 14:49:46.290 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 14:49:46.357 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 14:50:02.692 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:32870 10 6452 1 2025-08-28 14:51:03.106 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39472 10 6452 1 2025-08-28 14:46:20.518 00:06:00.249 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-28 14:52:03.464 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51898 10 6452 1 2025-08-28 14:53:03.870 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47806 10 6452 1 2025-08-28 14:54:04.278 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:57042 10 6452 1 2025-08-28 14:54:46.342 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-28 14:54:46.342 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-28 14:54:46.165 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 14:54:46.505 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-28 14:54:46.588 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-28 14:55:04.678 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:48770 10 6452 1 2025-08-28 14:50:20.518 00:06:00.253 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-28 14:56:05.050 00:00:10.482 TCP 1.101.0.1:3000 -> 23.104.0.1:50528 10 6452 1 2025-08-28 14:57:05.567 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:59694 10 6452 1 2025-08-28 14:58:05.932 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:60262 10 6452 1 2025-08-28 14:53:20.521 00:06:00.250 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 Summary: total flows: 138, total bytes: 425566, total packets: 1036, avg bps: 872, avg pps: 0, avg bpp: 410 Time window: 2025-08-28 13:54:20 - 2025-08-28 14:59:20 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0038s User: 0.0008s Wall: 0.0031s flows/second: 45142.3 Runtime: 0.0031s