Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-30 19:58:55.157 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44320 10 6452 1 2025-08-30 19:59:55.522 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33522 10 6452 1 2025-08-30 20:00:50.672 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-30 20:00:50.715 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-30 20:00:50.437 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-30 20:00:50.146 00:00:00.029 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-30 20:00:50.588 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-30 20:00:55.930 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:39904 10 6452 1 2025-08-30 19:56:21.783 00:06:00.121 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-30 20:01:56.365 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47788 10 6452 1 2025-08-30 20:02:56.769 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51218 10 6452 1 2025-08-30 20:03:57.179 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50146 10 6452 1 2025-08-30 19:59:21.780 00:06:00.125 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-30 20:04:57.581 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44880 10 6452 1 2025-08-30 20:05:50.907 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-30 20:05:51.111 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-30 20:05:50.847 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-30 20:05:50.912 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-30 20:05:50.995 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-30 20:05:57.989 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40430 12 6556 1 2025-08-30 20:06:58.399 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49558 10 6452 1 2025-08-30 20:07:58.832 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47472 10 6452 1 2025-08-30 20:03:21.785 00:06:00.118 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-30 20:08:59.237 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:54142 10 6452 1 2025-08-30 20:09:59.680 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:40396 10 6452 1 2025-08-30 20:10:50.541 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-30 20:10:50.534 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-30 20:10:50.458 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-30 20:10:50.431 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-30 20:10:50.459 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-30 20:11:00.085 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48426 10 6452 1 2025-08-30 20:06:21.782 00:06:00.125 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-30 20:12:00.492 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39196 10 6452 1 2025-08-30 20:13:00.896 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33804 10 6452 1 2025-08-30 20:14:01.304 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45886 10 6452 1 2025-08-30 20:15:01.668 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45342 10 6452 1 2025-08-30 20:10:21.786 00:06:00.119 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-30 20:15:50.222 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-30 20:15:50.355 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-30 20:15:50.233 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-30 20:15:50.650 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-30 20:15:50.732 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-30 20:16:02.101 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:54304 10 6452 1 2025-08-30 20:17:02.459 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58526 10 6452 1 2025-08-30 20:18:02.859 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:51552 10 6452 1 2025-08-30 20:13:21.791 00:06:00.117 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-30 20:19:03.280 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53300 10 6452 1 2025-08-30 20:20:03.683 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:39108 10 6452 1 2025-08-30 20:20:50.782 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-30 20:20:50.427 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-30 20:20:50.553 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-30 20:20:50.455 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-30 20:20:50.700 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-30 20:21:04.108 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51286 10 6452 1 2025-08-30 20:22:04.511 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:49584 10 6452 1 2025-08-30 20:17:21.798 00:06:00.108 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-30 20:23:04.911 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49960 10 6452 1 2025-08-30 20:24:05.321 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39528 10 6452 1 2025-08-30 20:25:05.723 00:00:12.169 TCP 1.101.0.1:3000 -> 23.104.0.1:44706 10 6452 1 2025-08-30 20:20:21.795 00:06:00.116 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-30 20:25:50.947 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-30 20:25:50.811 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-30 20:25:50.866 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-30 20:25:50.761 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-30 20:25:50.864 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-30 20:26:07.930 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51960 10 6452 1 2025-08-30 20:27:08.331 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47802 10 6452 1 2025-08-30 20:28:08.735 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49824 10 6452 1 2025-08-30 20:29:09.111 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51280 10 6452 1 2025-08-30 20:24:21.800 00:06:00.109 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-30 20:30:09.515 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60518 10 6452 1 2025-08-30 20:30:50.819 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-30 20:30:50.740 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-30 20:30:50.806 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-30 20:30:50.824 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-30 20:30:50.738 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-30 20:31:09.919 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52228 10 6452 1 2025-08-30 20:27:21.798 00:06:00.114 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-30 20:32:10.321 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49198 10 6452 1 2025-08-30 20:33:10.725 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:47050 10 6452 1 2025-08-30 20:34:11.139 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58612 10 6452 1 2025-08-30 20:35:11.541 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49458 10 6452 1 2025-08-30 20:35:50.863 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-30 20:35:50.962 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-30 20:35:50.535 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-30 20:35:50.962 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-30 20:35:51.045 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-30 20:31:21.801 00:06:00.112 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-30 20:36:11.943 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:48786 10 6452 1 2025-08-30 20:37:12.355 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45242 10 6452 1 2025-08-30 20:38:12.715 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49380 10 6452 1 2025-08-30 20:34:21.797 00:06:00.118 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-30 20:39:13.100 00:00:12.942 TCP 1.101.0.1:3000 -> 23.104.0.1:60108 10 6452 1 2025-08-30 20:40:16.111 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48694 10 6452 1 2025-08-30 20:40:51.197 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-30 20:40:51.269 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-30 20:40:51.272 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-30 20:40:50.923 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-30 20:40:51.115 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-30 20:41:16.515 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40928 10 6452 1 2025-08-30 20:42:16.921 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58444 10 6452 1 2025-08-30 20:38:21.802 00:06:00.111 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-30 20:43:17.327 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:44422 12 10367 1 2025-08-30 20:44:17.807 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:36912 10 6452 1 2025-08-30 20:45:18.173 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45374 10 6452 1 2025-08-30 20:45:51.569 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-30 20:45:51.770 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-30 20:45:51.606 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-30 20:45:51.761 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-30 20:45:51.844 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-30 20:41:21.800 00:06:00.117 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-30 20:46:18.535 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38164 10 6452 1 2025-08-30 20:47:18.938 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:52978 10 6452 1 2025-08-30 20:48:19.359 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34076 10 6452 1 2025-08-30 20:49:19.767 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:34056 10 6452 1 2025-08-30 20:45:21.806 00:06:00.110 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-30 20:50:20.137 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34706 10 6452 1 2025-08-30 20:50:51.392 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-30 20:50:51.266 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-30 20:50:51.209 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-30 20:50:50.943 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-30 20:50:51.310 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-30 20:51:20.544 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39302 10 6452 1 2025-08-30 20:52:20.949 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:47768 10 6452 1 2025-08-30 20:48:21.804 00:06:00.114 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-30 20:53:21.364 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47136 10 6452 1 2025-08-30 20:54:21.769 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:33638 10 6452 1 2025-08-30 20:55:22.188 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:54476 10 6452 1 2025-08-30 20:55:51.169 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-30 20:55:51.402 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-30 20:55:51.185 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-30 20:55:51.445 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-30 20:55:51.528 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-30 20:56:22.584 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48026 10 6452 1 2025-08-30 20:52:21.813 00:06:00.103 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-30 20:57:22.988 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:37698 10 6452 1 2025-08-30 20:58:23.353 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49962 10 6452 1 Summary: total flows: 137, total bytes: 420896, total packets: 1022, avg bps: 902, avg pps: 0, avg bpp: 411 Time window: 2025-08-30 19:56:21 - 2025-08-30 20:58:33 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0034s User: 0.0011s Wall: 0.0024s flows/second: 56033.1 Runtime: 0.0025s