Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-17 20:59:19.397 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46188 10 6452 1 2025-08-17 20:59:35.672 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-17 20:59:35.531 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-17 20:59:35.487 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 20:59:35.589 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 20:59:35.674 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-17 21:00:19.756 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57458 10 6452 1 2025-08-17 20:57:14.890 00:05:00.403 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-17 21:01:20.156 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39046 10 6452 1 2025-08-17 21:02:20.563 00:00:10.547 TCP 1.101.0.1:3000 -> 23.104.0.1:54736 10 6452 1 2025-08-17 20:59:14.887 00:05:00.409 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-17 21:03:21.142 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44210 10 6452 1 2025-08-17 21:04:35.394 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 21:04:21.545 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47784 12 6556 1 2025-08-17 21:04:35.966 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 21:04:35.821 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-17 21:04:36.057 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-17 21:04:36.049 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-17 21:05:21.945 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55644 10 6452 1 2025-08-17 21:06:22.359 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53748 10 6452 1 2025-08-17 21:03:14.890 00:05:00.405 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-17 21:07:22.766 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43188 10 6452 1 2025-08-17 21:08:23.177 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:49068 10 6452 1 2025-08-17 21:05:14.888 00:05:00.409 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-17 21:09:35.613 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-17 21:09:35.841 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 21:09:35.922 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 21:09:35.880 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-17 21:09:23.537 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53970 10 6452 1 2025-08-17 21:09:36.006 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-17 21:10:23.945 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41558 10 6452 1 2025-08-17 21:11:24.357 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48190 10 6452 1 2025-08-17 21:12:24.767 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60082 10 6452 1 2025-08-17 21:09:14.892 00:05:00.404 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-17 21:13:25.180 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47598 10 6452 1 2025-08-17 21:14:35.929 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-17 21:14:35.955 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 21:14:25.577 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51702 10 6452 1 2025-08-17 21:14:35.683 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 21:14:35.928 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-17 21:14:35.766 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-17 21:11:14.892 00:05:00.407 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-17 21:15:25.943 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:43588 10 6452 1 2025-08-17 21:16:26.315 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57460 10 6452 1 2025-08-17 21:17:26.725 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:41940 10 6452 1 2025-08-17 21:18:27.153 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45522 10 6452 1 2025-08-17 21:15:14.898 00:05:00.399 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-17 21:19:35.800 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-17 21:19:36.059 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 21:19:36.147 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 21:19:36.149 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-17 21:19:27.554 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:57244 10 6452 1 2025-08-17 21:19:36.231 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-17 21:20:27.980 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:47656 10 6452 1 2025-08-17 21:17:14.896 00:05:00.403 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-17 21:21:28.350 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:42398 10 6452 1 2025-08-17 21:22:28.716 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36342 11 6492 1 2025-08-17 21:23:29.126 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:52256 10 6452 1 2025-08-17 21:24:29.546 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53628 10 6452 1 2025-08-17 21:24:36.458 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-17 21:24:36.564 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 21:24:36.524 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 21:24:36.616 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-17 21:24:36.608 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-17 21:21:14.903 00:05:00.397 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-17 21:25:29.946 00:00:10.449 TCP 1.101.0.1:3000 -> 23.104.0.1:45926 12 10365 1 2025-08-17 21:26:30.435 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38470 10 6452 1 2025-08-17 21:23:14.899 00:05:00.402 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-17 21:27:30.842 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:49078 10 6452 1 2025-08-17 21:28:31.229 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:56216 10 6452 1 2025-08-17 21:29:35.912 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 21:29:36.336 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-17 21:29:36.307 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-17 21:29:36.254 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 21:29:36.255 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-17 21:29:31.622 00:00:10.683 TCP 1.101.0.1:3000 -> 23.104.0.1:52934 10 6452 1 2025-08-17 21:30:32.349 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51038 10 6452 1 2025-08-17 21:27:14.902 00:05:00.400 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-17 21:31:32.750 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34738 10 6452 1 2025-08-17 21:32:33.159 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49528 10 6452 1 2025-08-17 21:29:14.901 00:05:00.404 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-17 21:33:33.561 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40914 10 6452 1 2025-08-17 21:34:36.324 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-17 21:34:36.227 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-17 21:34:36.264 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 21:34:36.240 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 21:34:36.227 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-17 21:34:33.963 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:52074 10 6452 1 2025-08-17 21:35:34.361 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:60990 11 6504 1 2025-08-17 21:36:34.778 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55190 10 6452 1 2025-08-17 21:33:14.904 00:05:00.401 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-17 21:37:35.191 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:48146 10 6452 1 2025-08-17 21:38:35.553 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58260 10 6452 1 2025-08-17 21:35:14.906 00:05:00.401 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-17 21:39:36.483 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-17 21:39:36.326 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-17 21:39:36.274 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 21:39:36.399 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 21:39:36.332 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-17 21:39:35.954 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58820 10 6452 1 2025-08-17 21:40:36.316 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:49882 12 10367 1 2025-08-17 21:41:36.755 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:43528 10 6452 1 2025-08-17 21:42:37.121 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42216 10 6452 1 2025-08-17 21:39:14.910 00:05:00.394 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-17 21:43:37.485 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:37382 10 6452 1 2025-08-17 21:44:36.676 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-17 21:44:36.524 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 21:44:36.602 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 21:44:36.677 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-17 21:44:36.685 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-17 21:44:37.880 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:44836 10 6452 1 2025-08-17 21:41:14.910 00:05:00.398 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-17 21:45:38.313 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57598 10 6452 1 2025-08-17 21:46:38.714 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:55308 10 6452 1 2025-08-17 21:47:39.096 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35614 10 6452 1 2025-08-17 21:48:39.502 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55138 10 6452 1 2025-08-17 21:45:14.915 00:05:00.391 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-17 21:49:36.674 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-17 21:49:36.480 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 21:49:36.721 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 21:49:36.683 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-17 21:49:36.805 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-17 21:49:39.865 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54114 10 6452 1 2025-08-17 21:50:40.282 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:44842 12 10365 1 2025-08-17 21:47:14.913 00:05:00.396 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-17 21:51:40.745 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39620 10 6452 1 2025-08-17 21:52:41.154 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57174 10 6452 1 2025-08-17 21:53:41.555 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59180 10 6452 1 2025-08-17 21:54:36.858 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-17 21:54:36.622 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 21:54:36.823 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 21:54:36.497 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-17 21:54:36.906 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-17 21:54:41.962 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43146 10 6452 1 2025-08-17 21:51:14.917 00:05:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-17 21:55:42.362 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51956 12 6556 1 2025-08-17 21:56:42.765 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:32956 10 6452 1 2025-08-17 21:53:14.914 00:05:00.395 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-17 21:57:43.191 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:33282 10 6452 1 Summary: total flows: 139, total bytes: 422589, total packets: 1022, avg bps: 923, avg pps: 0, avg bpp: 413 Time window: 2025-08-17 20:57:14 - 2025-08-17 21:58:15 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0014s User: 0.0027s Wall: 0.0022s flows/second: 64527.8 Runtime: 0.0022s