Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-03 21:59:11.915 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60302 10 6452 1 2025-08-03 22:00:12.319 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54906 10 6452 1 2025-08-03 22:01:12.737 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:49418 10 6452 1 2025-08-03 21:57:07.182 00:06:00.061 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-03 22:02:13.150 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60708 10 6452 1 2025-08-03 22:02:52.693 00:00:00.019 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 22:02:52.429 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 22:02:52.637 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 22:02:52.604 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 22:02:52.422 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 22:03:13.571 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57678 10 6452 1 2025-08-03 21:59:07.181 00:06:00.066 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-03 22:04:13.970 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53998 10 6452 1 2025-08-03 22:05:14.385 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:37874 10 6452 1 2025-08-03 22:06:14.789 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55602 10 6452 1 2025-08-03 22:07:15.194 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37084 10 6452 1 2025-08-03 22:07:53.359 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 22:07:52.991 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 22:07:52.837 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 22:07:53.087 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 22:07:52.919 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 22:08:15.600 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36618 10 6452 1 2025-08-03 22:04:07.185 00:06:00.061 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-03 22:09:16.008 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:58216 10 6452 1 2025-08-03 22:10:16.405 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58546 10 6452 1 2025-08-03 22:06:07.182 00:06:00.066 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-03 22:11:16.813 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41752 10 6452 1 2025-08-03 22:12:17.213 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56794 10 6452 1 2025-08-03 22:12:52.865 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 22:12:52.778 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 22:12:52.548 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 22:12:52.782 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 22:12:52.704 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 22:13:17.615 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42986 10 6452 1 2025-08-03 22:14:18.018 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:57608 12 10365 1 2025-08-03 22:15:18.497 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:47658 10 6452 1 2025-08-03 22:11:07.185 00:06:00.061 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-03 22:16:18.861 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52020 10 6452 1 2025-08-03 22:17:19.272 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:33726 10 6452 1 2025-08-03 22:17:52.712 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 22:17:52.789 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 22:17:52.790 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 22:17:52.883 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 22:17:52.871 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 22:13:07.182 00:06:00.066 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-03 22:18:19.682 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43546 10 6452 1 2025-08-03 22:19:20.112 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51880 10 6452 1 2025-08-03 22:20:20.513 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59712 10 6452 1 2025-08-03 22:21:20.915 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53490 10 6452 1 2025-08-03 22:22:21.320 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52106 11 6492 1 2025-08-03 22:22:52.954 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 22:22:52.976 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 22:22:52.836 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 22:22:52.835 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 22:22:52.919 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 22:18:07.186 00:06:00.066 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-03 22:23:21.681 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43568 10 6452 1 2025-08-03 22:24:22.103 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38744 10 6452 1 2025-08-03 22:20:07.185 00:06:00.069 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-03 22:25:22.507 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36026 10 6452 1 2025-08-03 22:26:22.912 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:49318 10 6452 1 2025-08-03 22:27:23.276 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41304 10 6452 1 2025-08-03 22:27:53.142 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 22:27:53.280 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 22:27:53.264 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 22:27:53.309 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 22:27:53.347 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 22:28:23.683 00:00:10.530 TCP 1.101.0.1:3000 -> 23.104.0.1:46342 14 14282 1 2025-08-03 22:29:24.251 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:57390 10 6452 1 2025-08-03 22:25:07.188 00:06:00.065 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-03 22:30:24.669 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60120 10 6452 1 2025-08-03 22:31:25.084 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:52594 10 6452 1 2025-08-03 22:27:07.186 00:06:00.070 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-03 22:32:25.490 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37294 10 6452 1 2025-08-03 22:32:53.134 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 22:32:53.316 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 22:32:53.658 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 22:32:53.520 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 22:32:53.740 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 22:33:25.894 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39462 10 6452 1 2025-08-03 22:34:26.296 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:56340 10 6452 1 2025-08-03 22:35:26.667 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46142 10 6452 1 2025-08-03 22:36:27.091 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39354 10 6452 1 2025-08-03 22:32:07.190 00:06:00.065 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-03 22:37:27.504 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50416 10 6452 1 2025-08-03 22:37:53.404 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 22:37:53.109 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 22:37:53.504 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 22:37:53.043 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 22:37:53.586 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 22:38:27.908 00:00:10.446 TCP 1.101.0.1:3000 -> 23.104.0.1:37480 12 10365 1 2025-08-03 22:34:07.187 00:06:00.070 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-03 22:39:28.393 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44112 10 6452 1 2025-08-03 22:40:28.797 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55018 10 6452 1 2025-08-03 22:41:29.201 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54954 10 6452 1 2025-08-03 22:42:29.600 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:56180 11 6504 1 2025-08-03 22:42:53.419 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 22:42:53.133 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 22:42:53.547 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 22:42:53.544 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 22:42:53.630 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 22:43:30.019 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:32936 10 6452 1 2025-08-03 22:39:07.191 00:06:00.064 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-03 22:44:30.418 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33380 10 6452 1 2025-08-03 22:45:30.824 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35150 10 6452 1 2025-08-03 22:41:07.190 00:06:00.069 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-03 22:46:31.230 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39198 10 6452 1 2025-08-03 22:47:31.636 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57170 10 6452 1 2025-08-03 22:47:53.767 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 22:47:53.329 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 22:47:53.448 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 22:47:53.684 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 22:47:53.327 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 22:48:32.031 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55838 10 6452 1 2025-08-03 22:49:32.434 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41820 10 6452 1 2025-08-03 22:50:32.839 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:39784 10 6452 1 2025-08-03 22:46:07.194 00:06:00.062 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-03 22:51:33.265 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59830 10 6452 1 2025-08-03 22:52:33.670 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41792 10 6452 1 2025-08-03 22:52:53.710 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 22:52:53.630 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 22:52:53.577 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 22:52:53.628 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 22:52:53.632 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 22:48:07.192 00:06:00.067 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-03 22:53:34.105 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:41564 11 6504 1 2025-08-03 22:54:34.563 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45112 10 6452 1 2025-08-03 22:55:34.970 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:37238 10 6452 1 2025-08-03 22:56:35.420 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:45080 10 6452 1 2025-08-03 22:57:35.787 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:48060 10 6452 1 2025-08-03 22:57:53.808 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 22:57:53.781 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 22:57:53.723 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 22:57:53.725 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 22:57:53.644 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 22:53:07.198 00:06:00.060 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-03 22:58:36.146 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33598 10 6452 1 Summary: total flows: 137, total bytes: 432677, total packets: 1029, avg bps: 930, avg pps: 0, avg bpp: 420 Time window: 2025-08-03 21:57:07 - 2025-08-03 22:59:07 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0020s User: 0.0010s Wall: 0.0020s flows/second: 69973.2 Runtime: 0.0020s