Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-09 02:58:45.679 00:00:10.458 TCP 1.101.0.1:3000 -> 23.104.0.1:32986 12 10367 1 2025-08-09 02:59:46.179 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:56708 10 6452 1 2025-08-09 02:55:10.062 00:05:00.102 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-09 02:55:10.064 00:06:00.102 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 03:00:22.909 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 03:00:22.826 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:00:22.897 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 03:00:22.744 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 03:00:22.787 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:00:46.544 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:59308 10 6452 1 2025-08-09 03:01:46.965 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50608 10 6452 1 2025-08-09 03:02:47.370 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34426 10 6452 1 2025-08-09 03:03:47.779 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:57284 10 6452 1 2025-08-09 03:04:48.195 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:50034 10 6452 1 2025-08-09 03:01:10.063 00:04:00.106 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-09 03:05:23.255 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 03:05:23.243 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 03:05:23.014 00:00:00.031 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:05:23.174 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:05:23.237 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 03:05:48.614 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59776 10 6452 1 2025-08-09 03:06:48.974 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:48754 10 6452 1 2025-08-09 03:02:10.067 00:06:00.101 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 03:07:49.390 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48394 10 6452 1 2025-08-09 03:08:49.800 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:49256 12 10367 1 2025-08-09 03:09:10.070 00:00:00.098 TCP 179.21.23.23:179 -> 179.21.23.21:38570 2 123 1 2025-08-09 03:09:50.282 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:38616 10 6452 1 2025-08-09 03:10:23.149 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 03:10:23.298 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:10:23.151 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:10:23.360 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 03:10:23.233 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 03:10:50.646 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:54406 10 6452 1 2025-08-09 03:06:10.067 00:06:00.106 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 03:11:51.006 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58832 10 6452 1 2025-08-09 03:12:51.409 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39060 10 6452 1 2025-08-09 03:13:51.813 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34508 10 6452 1 2025-08-09 03:10:10.072 00:04:00.098 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-09 03:14:52.213 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39816 10 6452 1 2025-08-09 03:15:23.170 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 03:15:23.284 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 03:15:23.340 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:15:23.087 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:15:23.233 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 03:15:52.612 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41690 10 6452 1 2025-08-09 03:16:52.977 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41438 10 6452 1 2025-08-09 03:17:53.386 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60882 10 6452 1 2025-08-09 03:13:10.069 00:06:00.109 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 03:18:53.785 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58016 10 6452 1 2025-08-09 03:15:10.074 00:04:00.101 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-09 03:19:54.189 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57680 10 6452 1 2025-08-09 03:20:23.346 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 03:20:23.447 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:20:23.413 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:20:23.485 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 03:20:23.495 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 03:20:54.588 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44178 10 6452 1 2025-08-09 03:21:54.994 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51850 10 6452 1 2025-08-09 03:22:55.399 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44028 10 6452 1 2025-08-09 03:23:55.768 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:33328 11 6492 1 2025-08-09 03:20:10.075 00:06:00.101 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 03:24:56.202 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:40542 10 6452 1 2025-08-09 03:20:10.073 00:06:00.106 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 03:25:23.593 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 03:25:23.640 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:25:23.510 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:25:23.812 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 03:25:23.674 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 03:25:56.566 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36246 10 6452 1 2025-08-09 03:26:56.975 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49424 10 6452 1 2025-08-09 03:27:10.074 00:00:00.105 TCP 179.21.23.21:38570 -> 179.21.23.23:179 2 123 1 2025-08-09 03:27:57.376 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43102 10 6452 1 2025-08-09 03:28:57.787 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:45038 10 6452 1 2025-08-09 03:29:58.153 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60704 10 6452 1 2025-08-09 03:30:23.945 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 03:30:23.860 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 03:30:23.799 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:30:23.862 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:30:23.791 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 03:30:58.581 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55342 10 6452 1 2025-08-09 03:28:10.074 00:04:00.106 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-09 03:31:58.980 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53018 10 6452 1 2025-08-09 03:27:10.076 00:06:00.103 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 03:32:59.384 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:47746 10 6452 1 2025-08-09 03:33:59.816 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:59762 10 6452 1 2025-08-09 03:35:00.190 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:33810 10 6452 1 2025-08-09 03:35:23.536 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 03:35:23.503 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:35:23.531 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:35:23.523 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 03:35:23.614 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 03:36:00.548 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:42512 10 6452 1 2025-08-09 03:33:10.076 00:04:00.108 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-09 03:37:00.906 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:55036 10 6452 1 2025-08-09 03:38:01.277 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45328 10 6452 1 2025-08-09 03:34:10.078 00:06:00.104 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 03:39:01.644 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47662 10 6452 1 2025-08-09 03:40:02.064 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34650 10 6452 1 2025-08-09 03:40:23.748 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 03:40:23.697 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:40:23.674 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:40:23.855 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 03:40:23.756 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 03:41:10.081 00:00:00.101 TCP 179.21.23.23:179 -> 179.21.23.21:38570 2 123 1 2025-08-09 03:41:02.467 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:44070 10 6452 1 2025-08-09 03:42:02.863 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50332 10 6452 1 2025-08-09 03:38:10.077 00:06:00.111 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 03:43:03.272 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35550 10 6452 1 2025-08-09 03:44:03.677 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:58288 10 6452 1 2025-08-09 03:45:04.109 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42448 10 6452 1 2025-08-09 03:45:23.839 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 03:45:23.904 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:45:23.839 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:45:23.765 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 03:45:23.921 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 03:42:10.080 00:04:00.105 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-09 03:46:04.510 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60158 10 6452 1 2025-08-09 03:47:04.923 00:00:10.405 TCP 1.101.0.1:3000 -> 23.104.0.1:49100 10 6452 1 2025-08-09 03:48:05.396 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:57778 10 6452 1 2025-08-09 03:49:05.750 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58678 10 6452 1 2025-08-09 03:45:10.079 00:06:00.122 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 03:50:06.154 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37488 10 6452 1 2025-08-09 03:50:23.815 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:50:24.082 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 03:50:23.924 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 03:50:23.840 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:50:23.899 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 03:47:10.082 00:04:00.116 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-09 03:51:06.557 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34336 10 6452 1 2025-08-09 03:52:06.975 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43210 10 6452 1 2025-08-09 03:53:07.381 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:46692 10 6452 1 2025-08-09 03:54:07.742 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:50082 10 6452 1 2025-08-09 03:55:08.137 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47354 10 6452 1 2025-08-09 03:55:24.063 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 03:55:23.970 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 03:55:23.925 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:55:23.982 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 03:55:24.070 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 03:56:08.541 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37220 10 6452 1 2025-08-09 03:52:10.084 00:06:00.118 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 03:52:10.083 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-08-09 03:57:08.944 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:33216 10 6452 1 2025-08-09 03:58:09.369 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:43372 10 6452 1 Summary: total flows: 143, total bytes: 425802, total packets: 1040, avg bps: 898, avg pps: 0, avg bpp: 409 Time window: 2025-08-09 02:55:10 - 2025-08-09 03:58:19 Total flows processed: 143, passed: 143, Blocks skipped: 0, Bytes read: 14936 Sys: 0.0026s User: 0.0017s Wall: 0.0021s flows/second: 69283.3 Runtime: 0.0021s