Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-21 23:59:02.156 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52468 10 6452 1 2025-08-22 00:00:02.516 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51730 10 6452 1 2025-08-22 00:01:02.917 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41060 12 6556 1 2025-08-21 23:56:17.106 00:06:00.159 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 00:01:34.968 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 00:01:35.079 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 00:01:34.971 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 00:01:34.855 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 00:01:35.055 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 00:02:03.319 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:49818 10 6452 1 2025-08-21 23:57:17.105 00:06:00.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 00:03:03.699 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50058 10 6452 1 2025-08-22 00:04:04.116 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:45444 10 6452 1 2025-08-22 00:05:04.490 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:41424 10 6452 1 2025-08-22 00:06:04.897 00:00:10.457 TCP 1.101.0.1:3000 -> 23.104.0.1:52318 12 10367 1 2025-08-22 00:06:34.988 00:00:00.032 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 00:06:34.949 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 00:06:34.988 00:00:00.039 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 00:06:35.156 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 00:06:35.073 00:00:00.037 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 00:07:05.394 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41716 10 6452 1 2025-08-22 00:03:17.108 00:06:00.159 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 00:08:05.797 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37272 10 6452 1 2025-08-22 00:09:06.198 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54898 10 6452 1 2025-08-22 00:04:17.107 00:06:00.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 00:10:06.605 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51682 10 6452 1 2025-08-22 00:11:07.006 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37004 10 6452 1 2025-08-22 00:11:35.307 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 00:11:35.225 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 00:11:35.221 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 00:11:35.212 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 00:11:34.814 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 00:12:07.401 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57666 10 6452 1 2025-08-22 00:13:07.807 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:35352 10 6452 1 2025-08-22 00:14:08.180 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40446 10 6452 1 2025-08-22 00:10:17.108 00:06:00.160 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 00:15:08.582 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43416 10 6452 1 2025-08-22 00:16:08.984 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46030 10 6452 1 2025-08-22 00:11:17.108 00:06:00.167 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 00:16:35.208 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 00:16:35.189 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 00:16:34.768 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 00:16:35.126 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 00:16:35.060 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 00:17:09.386 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48164 10 6452 1 2025-08-22 00:18:09.782 00:00:10.711 TCP 1.101.0.1:3000 -> 23.104.0.1:49080 10 6452 1 2025-08-22 00:19:10.531 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46534 10 6452 1 2025-08-22 00:20:10.937 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:49820 10 6452 1 2025-08-22 00:21:11.354 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46396 10 6452 1 2025-08-22 00:21:35.267 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 00:21:35.234 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 00:21:35.243 00:00:00.019 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 00:21:35.546 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 00:21:35.326 00:00:00.019 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 00:17:17.112 00:06:00.162 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 00:22:11.759 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:49274 10 6452 1 2025-08-22 00:18:17.109 00:06:00.168 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 00:23:12.176 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43368 10 6452 1 2025-08-22 00:24:12.579 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52486 10 6452 1 2025-08-22 00:25:12.981 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50820 10 6452 1 2025-08-22 00:26:13.388 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:39712 10 6452 1 2025-08-22 00:26:35.583 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 00:26:35.508 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 00:26:35.291 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 00:26:35.499 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 00:26:35.613 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 00:27:13.750 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33752 10 6452 1 2025-08-22 00:28:14.159 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:32964 10 6452 1 2025-08-22 00:24:17.115 00:06:00.161 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 00:29:14.571 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37196 10 6452 1 2025-08-22 00:25:17.112 00:06:00.166 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 00:30:14.979 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37648 10 6452 1 2025-08-22 00:31:15.359 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54166 10 6452 1 2025-08-22 00:31:35.518 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 00:31:35.541 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 00:31:35.124 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 00:31:35.435 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 00:31:35.500 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 00:32:15.721 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:58032 10 6452 1 2025-08-22 00:33:16.104 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46658 10 6452 1 2025-08-22 00:34:16.512 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42170 10 6452 1 2025-08-22 00:35:16.912 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37946 10 6452 1 2025-08-22 00:31:17.115 00:06:00.160 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 00:36:17.324 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36768 10 6452 1 2025-08-22 00:36:35.819 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 00:36:35.577 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 00:36:35.680 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 00:36:35.738 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 00:36:35.570 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 00:32:17.115 00:06:00.165 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 00:37:17.732 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39626 10 6452 1 2025-08-22 00:38:18.115 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44314 10 6452 1 2025-08-22 00:39:18.514 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49054 10 6452 1 2025-08-22 00:40:18.914 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:34394 10 6452 1 2025-08-22 00:41:19.275 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40392 10 6452 1 2025-08-22 00:41:35.904 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 00:41:35.903 00:00:00.031 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 00:41:36.048 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 00:41:36.069 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 00:41:35.987 00:00:00.032 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 00:42:19.692 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49274 10 6452 1 2025-08-22 00:38:17.117 00:06:00.162 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 00:43:20.114 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37948 10 6452 1 2025-08-22 00:39:17.115 00:06:00.166 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 00:44:20.513 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39220 10 6452 1 2025-08-22 00:45:20.919 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:40646 10 6452 1 2025-08-22 00:46:21.296 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50326 10 6452 1 2025-08-22 00:46:35.808 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 00:46:35.717 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 00:46:35.733 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 00:46:35.639 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 00:46:35.814 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 00:47:21.697 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54796 10 6452 1 2025-08-22 00:48:22.105 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40740 10 6452 1 2025-08-22 00:49:22.519 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42734 10 6452 1 2025-08-22 00:45:17.117 00:06:00.161 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 00:50:22.923 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:39836 10 6452 1 2025-08-22 00:46:17.125 00:06:00.156 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 00:51:35.806 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 00:51:23.339 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44830 10 6452 1 2025-08-22 00:51:35.701 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 00:51:35.951 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 00:51:35.878 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 00:51:36.034 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 00:52:23.744 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:55674 10 6452 1 2025-08-22 00:53:24.110 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:44592 11 6504 1 2025-08-22 00:54:24.565 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39566 10 6452 1 2025-08-22 00:55:24.961 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57352 10 6452 1 2025-08-22 00:56:25.327 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35866 10 6452 1 2025-08-22 00:56:35.771 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 00:56:35.829 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-22 00:56:35.912 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-22 00:56:36.157 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-22 00:56:35.977 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-22 00:52:17.119 00:06:00.161 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-22 00:57:25.731 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:44046 10 6452 1 2025-08-22 00:53:17.116 00:06:00.166 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-22 00:58:26.143 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37410 10 6452 1 Summary: total flows: 138, total bytes: 421809, total packets: 1037, avg bps: 892, avg pps: 0, avg bpp: 406 Time window: 2025-08-21 23:56:17 - 2025-08-22 00:59:17 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0030s User: 0.0020s Wall: 0.0021s flows/second: 66961.4 Runtime: 0.0021s