Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-01 07:59:03.693 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40126 10 6452 1 2025-08-01 08:00:04.111 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49006 10 6452 1 2025-08-01 08:01:04.514 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49674 10 6452 1 2025-08-01 08:01:38.185 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 08:01:38.102 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 08:01:38.228 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 08:01:38.121 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 08:01:38.249 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 07:58:05.816 00:05:00.274 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 08:02:04.920 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:44486 10 6452 1 2025-08-01 07:59:05.814 00:05:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 08:03:05.338 00:00:11.064 TCP 1.101.0.1:3000 -> 23.104.0.1:41716 10 6452 1 2025-08-01 08:04:06.440 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33532 10 6452 1 2025-08-01 08:05:06.850 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:41434 10 6452 1 2025-08-01 08:06:07.262 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56614 10 6452 1 2025-08-01 08:06:38.139 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 08:06:38.093 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 08:06:37.947 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 08:06:37.992 00:00:00.053 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 08:06:38.074 00:00:00.054 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 08:07:07.669 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54386 10 6452 1 2025-08-01 08:04:05.820 00:05:00.273 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 08:08:08.097 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57766 10 6452 1 2025-08-01 08:05:05.817 00:05:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 08:09:08.501 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59198 10 6452 1 2025-08-01 08:10:08.911 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:34586 10 6452 1 2025-08-01 08:11:09.272 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34668 10 6452 1 2025-08-01 08:11:38.323 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 08:11:38.135 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 08:11:38.239 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 08:11:38.237 00:00:00.029 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 08:11:38.326 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 08:12:09.676 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52278 10 6452 1 2025-08-01 08:13:10.102 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58996 10 6452 1 2025-08-01 08:10:05.821 00:05:00.276 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 08:14:10.509 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52766 10 6452 1 2025-08-01 08:11:05.818 00:05:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 08:15:10.919 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:59214 10 6452 1 2025-08-01 08:16:11.316 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42806 10 6452 1 2025-08-01 08:16:38.690 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 08:16:38.679 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 08:16:38.511 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 08:16:38.365 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 08:16:38.607 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 08:17:11.718 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:60616 10 6452 1 2025-08-01 08:18:12.103 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40114 10 6452 1 2025-08-01 08:19:12.508 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59062 10 6452 1 2025-08-01 08:16:05.825 00:05:00.274 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 08:20:12.922 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:35538 11 6504 1 2025-08-01 08:17:05.821 00:05:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 08:21:13.419 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:45600 10 6452 1 2025-08-01 08:21:38.492 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 08:21:38.205 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 08:21:38.366 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 08:21:38.132 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 08:21:38.410 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 08:22:13.779 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37468 10 6452 1 2025-08-01 08:23:14.145 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38834 10 6452 1 2025-08-01 08:24:14.543 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43432 10 6452 1 2025-08-01 08:25:14.952 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55070 10 6452 1 2025-08-01 08:22:05.831 00:05:00.269 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 08:26:15.359 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36110 10 6452 1 2025-08-01 08:26:38.559 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 08:26:38.406 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 08:26:38.524 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 08:26:38.507 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 08:26:38.476 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 08:23:05.828 00:05:00.275 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 08:27:15.730 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45324 10 6452 1 2025-08-01 08:28:16.148 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:48290 10 6452 1 2025-08-01 08:29:16.530 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51134 10 6452 1 2025-08-01 08:30:16.936 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:49924 10 6452 1 2025-08-01 08:31:17.318 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36388 10 6452 1 2025-08-01 08:31:38.742 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 08:31:38.582 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 08:31:38.508 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 08:31:38.614 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 08:31:38.661 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 08:28:05.832 00:05:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 08:32:17.723 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37390 10 6452 1 2025-08-01 08:29:05.829 00:05:00.275 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 08:33:18.109 00:00:10.435 TCP 1.101.0.1:3000 -> 23.104.0.1:46962 12 10367 1 2025-08-01 08:34:18.585 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54216 10 6452 1 2025-08-01 08:35:18.988 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49062 10 6452 1 2025-08-01 08:36:19.397 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59808 10 6452 1 2025-08-01 08:36:38.776 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 08:36:38.787 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 08:36:38.311 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 08:36:39.348 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 08:36:39.429 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 08:37:19.794 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:47416 10 6452 1 2025-08-01 08:34:05.834 00:05:00.269 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 08:38:20.200 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:37980 10 6452 1 2025-08-01 08:35:05.831 00:05:00.274 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 08:39:20.603 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34914 10 6452 1 2025-08-01 08:40:21.011 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:38180 10 6452 1 2025-08-01 08:41:21.402 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43362 10 6452 1 2025-08-01 08:41:38.700 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 08:41:38.524 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 08:41:38.523 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 08:41:38.837 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 08:41:38.920 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 08:42:21.808 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34704 10 6452 1 2025-08-01 08:43:22.207 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43366 10 6452 1 2025-08-01 08:40:05.835 00:05:00.269 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 08:44:22.608 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45780 10 6452 1 2025-08-01 08:41:05.832 00:05:00.273 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 08:45:22.975 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34554 10 6452 1 2025-08-01 08:46:23.377 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50278 10 6452 1 2025-08-01 08:46:39.094 00:00:00.037 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 08:46:38.879 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 08:46:38.880 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 08:46:38.735 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 08:46:39.012 00:00:00.036 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 08:47:23.777 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45706 10 6452 1 2025-08-01 08:48:24.180 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58094 10 6452 1 2025-08-01 08:49:24.585 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45346 10 6452 1 2025-08-01 08:46:05.835 00:05:00.269 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 08:50:24.960 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37966 10 6452 1 2025-08-01 08:47:05.834 00:05:00.274 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 08:51:25.364 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48372 10 6452 1 2025-08-01 08:51:38.966 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 08:51:39.201 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 08:51:39.094 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 08:51:38.880 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 08:51:38.963 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 08:52:25.768 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:52554 10 6452 1 2025-08-01 08:53:26.187 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58568 10 6452 1 2025-08-01 08:54:26.592 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46234 10 6452 1 2025-08-01 08:55:27.000 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50794 10 6452 1 2025-08-01 08:52:05.837 00:05:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 08:56:38.941 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 08:56:39.182 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 08:56:38.852 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 08:56:27.361 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37724 10 6452 1 2025-08-01 08:56:39.225 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 08:56:39.308 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 08:53:05.833 00:05:00.277 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 08:57:27.767 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41558 10 6452 1 2025-08-01 08:58:28.173 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58754 10 6452 1 Summary: total flows: 140, total bytes: 420967, total packets: 1023, avg bps: 927, avg pps: 0, avg bpp: 411 Time window: 2025-08-01 07:58:05 - 2025-08-01 08:58:38 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0025s User: 0.0016s Wall: 0.0022s flows/second: 65020.8 Runtime: 0.0022s