Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-01 04:58:51.512 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49052 10 6452 1 2025-08-01 04:59:51.921 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50970 10 6452 1 2025-08-01 05:00:52.333 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:32916 10 6452 1 2025-08-01 05:01:34.817 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 05:01:34.640 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 05:01:34.532 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 05:01:34.366 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 05:01:34.733 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 05:01:52.734 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56592 10 6452 1 2025-08-01 05:02:53.142 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48312 10 6452 1 2025-08-01 05:03:53.557 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58090 10 6452 1 2025-08-01 04:59:05.759 00:06:00.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-01 05:04:53.967 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:55224 10 6452 1 2025-08-01 05:00:05.757 00:06:00.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-01 05:05:54.381 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55772 10 6452 1 2025-08-01 05:06:34.367 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 05:06:34.455 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 05:06:34.206 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 05:06:34.379 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 05:06:34.463 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 05:06:54.782 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39000 10 6452 1 2025-08-01 05:07:55.189 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52820 10 6452 1 2025-08-01 05:08:55.607 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:52890 10 6452 1 2025-08-01 05:09:56.000 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37134 10 6452 1 2025-08-01 05:06:05.761 00:06:00.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-01 05:10:56.413 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55676 10 6452 1 2025-08-01 05:11:34.723 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 05:11:34.694 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 05:11:34.647 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 05:11:34.615 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 05:11:34.640 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 05:07:05.761 00:06:00.229 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-01 05:11:56.819 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:38436 10 6452 1 2025-08-01 05:12:57.187 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:56356 10 6452 1 2025-08-01 05:13:57.549 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40610 10 6452 1 2025-08-01 05:14:57.949 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40678 10 6452 1 2025-08-01 05:15:58.363 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59716 10 6452 1 2025-08-01 05:16:34.731 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 05:16:34.716 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 05:16:34.850 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 05:16:34.504 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 05:16:34.649 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 05:16:58.724 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36406 10 6452 1 2025-08-01 05:17:59.128 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57634 10 6452 1 2025-08-01 05:13:05.763 00:06:00.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-01 05:14:05.763 00:06:00.229 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-01 05:18:59.502 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53220 10 6452 1 2025-08-01 05:19:59.907 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:48342 10 6452 1 2025-08-01 05:21:00.276 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52764 10 6452 1 2025-08-01 05:21:34.663 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 05:21:35.084 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 05:21:35.000 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 05:21:35.079 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 05:21:35.003 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 05:22:00.681 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:43926 10 6452 1 2025-08-01 05:23:01.112 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35828 10 6452 1 2025-08-01 05:24:01.512 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38340 10 6452 1 2025-08-01 05:20:05.769 00:06:00.222 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-01 05:25:01.918 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48784 10 6452 1 2025-08-01 05:21:05.766 00:06:00.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-01 05:26:02.320 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43400 10 6452 1 2025-08-01 05:26:34.733 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 05:26:34.747 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 05:26:34.834 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 05:26:34.738 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 05:26:34.819 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 05:27:02.726 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47592 10 6452 1 2025-08-01 05:28:03.132 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60334 10 6452 1 2025-08-01 05:29:03.531 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42658 10 6452 1 2025-08-01 05:30:03.943 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54198 10 6452 1 2025-08-01 05:31:04.354 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56054 10 6452 1 2025-08-01 05:31:34.763 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 05:31:34.975 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 05:31:34.687 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 05:31:34.975 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 05:31:35.058 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 05:27:05.770 00:06:00.221 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-01 05:32:04.757 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:59424 10 6452 1 2025-08-01 05:28:05.773 00:06:00.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-01 05:33:05.139 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53220 10 6452 1 2025-08-01 05:34:05.545 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54002 10 6452 1 2025-08-01 05:35:05.948 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41476 10 6452 1 2025-08-01 05:36:06.353 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55788 10 6452 1 2025-08-01 05:36:35.357 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 05:36:35.404 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 05:36:35.312 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 05:36:35.222 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 05:36:35.304 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 05:37:06.753 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:52300 10 6452 1 2025-08-01 05:34:05.773 00:05:00.250 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 05:38:07.181 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59540 10 6452 1 2025-08-01 05:35:05.773 00:05:00.231 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 05:39:07.590 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42792 10 6452 1 2025-08-01 05:40:07.998 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54498 10 6452 1 2025-08-01 05:41:08.429 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:36522 10 6452 1 2025-08-01 05:41:35.190 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 05:41:35.008 00:00:00.043 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 05:41:35.164 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 05:41:35.044 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 05:41:35.106 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 05:42:08.798 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60952 10 6452 1 2025-08-01 05:43:09.202 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58164 10 6452 1 2025-08-01 05:40:05.777 00:05:00.262 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 05:44:09.612 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:32824 10 6452 1 2025-08-01 05:41:05.774 00:05:00.267 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 05:45:09.980 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:60058 10 6452 1 2025-08-01 05:46:10.399 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:32878 10 6452 1 2025-08-01 05:46:35.223 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 05:46:35.318 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 05:46:35.313 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 05:46:35.265 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 05:46:35.140 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 05:47:10.803 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37884 10 6452 1 2025-08-01 05:48:11.210 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34978 10 6452 1 2025-08-01 05:49:11.575 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46878 10 6452 1 2025-08-01 05:46:05.777 00:05:00.262 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 05:50:11.978 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44672 10 6452 1 2025-08-01 05:47:05.775 00:05:00.270 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 05:51:12.348 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:56896 10 6452 1 2025-08-01 05:51:35.218 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 05:51:35.309 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 05:51:35.347 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 05:51:35.218 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 05:51:35.301 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 05:52:12.710 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43450 10 6452 1 2025-08-01 05:53:13.141 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59650 10 6452 1 2025-08-01 05:54:13.544 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47960 10 6452 1 2025-08-01 05:55:13.951 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38740 10 6452 1 2025-08-01 05:52:05.777 00:05:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 05:56:14.321 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57000 10 6452 1 2025-08-01 05:56:35.407 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 05:56:35.537 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 05:56:35.460 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 05:56:35.639 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 05:56:35.722 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 05:53:05.776 00:05:00.271 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 05:57:14.727 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35638 10 6452 1 2025-08-01 05:58:15.130 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60692 10 6452 1 Summary: total flows: 138, total bytes: 416754, total packets: 1016, avg bps: 932, avg pps: 0, avg bpp: 410 Time window: 2025-08-01 04:58:51 - 2025-08-01 05:58:25 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0027s User: 0.0018s Wall: 0.0028s flows/second: 49962.4 Runtime: 0.0028s