Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-01 14:58:52.113 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:57650 12 10365 1 2025-08-01 14:59:52.555 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60784 10 6452 1 2025-08-01 15:00:52.970 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:42334 10 6452 1 2025-08-01 15:01:46.340 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 15:01:46.249 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 15:01:46.331 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 15:01:46.519 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 15:01:46.258 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 15:01:53.341 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58272 10 6452 1 2025-08-01 14:58:05.950 00:05:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 15:02:53.747 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53874 10 6452 1 2025-08-01 14:59:05.948 00:05:00.268 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 15:03:54.154 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45558 10 6452 1 2025-08-01 15:04:54.529 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:42968 10 6452 1 2025-08-01 15:05:54.956 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33774 10 6452 1 2025-08-01 15:06:46.465 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 15:06:46.382 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 15:06:46.387 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 15:06:46.391 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 15:06:46.347 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 15:06:55.361 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40542 10 6452 1 2025-08-01 15:07:55.763 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41276 10 6452 1 2025-08-01 15:04:05.954 00:05:00.260 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 15:05:05.951 00:05:00.266 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 15:08:56.184 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46038 10 6452 1 2025-08-01 15:09:56.585 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55670 10 6452 1 2025-08-01 15:10:56.986 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37046 10 6452 1 2025-08-01 15:11:46.643 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 15:11:46.693 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 15:11:46.557 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 15:11:46.433 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 15:11:46.562 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 15:11:57.390 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33670 10 6452 1 2025-08-01 15:12:57.756 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:34648 10 6452 1 2025-08-01 15:10:05.956 00:05:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 15:13:58.118 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54070 10 6452 1 2025-08-01 15:11:05.953 00:05:00.268 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 15:14:58.520 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41616 10 6452 1 2025-08-01 15:15:58.922 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:50586 10 6452 1 2025-08-01 15:16:46.702 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 15:16:46.634 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 15:16:46.659 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 15:16:46.702 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 15:16:46.785 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 15:16:59.335 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:59434 10 6452 1 2025-08-01 15:17:59.697 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60468 10 6452 1 2025-08-01 15:19:00.112 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35016 10 6452 1 2025-08-01 15:16:05.959 00:05:00.264 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 15:20:00.529 00:00:13.853 TCP 1.101.0.1:3000 -> 23.104.0.1:46216 10 6452 1 2025-08-01 15:17:05.955 00:05:00.270 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 15:21:04.420 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48722 10 6452 1 2025-08-01 15:21:47.201 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 15:21:46.949 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 15:21:46.894 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 15:21:47.069 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 15:21:47.152 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 15:22:04.821 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46878 10 6452 1 2025-08-01 15:23:05.227 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41350 10 6452 1 2025-08-01 15:24:05.628 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57322 10 6452 1 2025-08-01 15:25:06.034 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52362 10 6452 1 2025-08-01 15:22:05.959 00:05:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 15:26:06.433 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46774 10 6452 1 2025-08-01 15:26:46.903 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 15:26:46.979 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 15:26:46.886 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 15:26:46.741 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 15:26:46.820 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 15:23:05.958 00:05:00.268 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 15:27:06.834 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:45794 10 6452 1 2025-08-01 15:28:07.225 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:59458 10 6452 1 2025-08-01 15:29:07.621 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45298 10 6452 1 2025-08-01 15:30:08.025 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43148 10 6452 1 2025-08-01 15:31:08.441 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35228 10 6452 1 2025-08-01 15:31:47.069 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 15:31:46.995 00:00:00.035 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 15:31:46.707 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 15:31:46.883 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 15:31:46.966 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 15:28:05.964 00:05:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 15:32:08.846 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:33786 10 6452 1 2025-08-01 15:29:05.960 00:05:00.270 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 15:33:09.276 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53330 10 6452 1 2025-08-01 15:34:09.682 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:48860 10 6452 1 2025-08-01 15:35:10.116 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55450 10 6452 1 2025-08-01 15:36:10.520 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50000 10 6452 1 2025-08-01 15:36:47.068 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 15:36:46.984 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 15:36:46.994 00:00:00.043 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 15:36:46.939 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 15:36:46.985 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 15:37:10.923 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:33942 10 6452 1 2025-08-01 15:34:05.963 00:05:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 15:38:11.344 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34116 10 6452 1 2025-08-01 15:35:05.961 00:05:00.269 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 15:39:11.750 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42418 10 6452 1 2025-08-01 15:40:12.152 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46478 10 6452 1 2025-08-01 15:41:12.564 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40996 10 6452 1 2025-08-01 15:41:47.099 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 15:41:46.985 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 15:41:47.254 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 15:41:46.976 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 15:41:47.059 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 15:42:12.971 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:35722 10 6452 1 2025-08-01 15:43:13.393 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43832 10 6452 1 2025-08-01 15:40:05.964 00:05:00.275 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 15:44:13.802 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:35832 10 6452 1 2025-08-01 15:41:05.962 00:05:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 15:45:14.173 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:42344 10 6452 1 2025-08-01 15:46:14.541 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60142 10 6452 1 2025-08-01 15:46:47.465 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 15:46:47.310 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 15:46:47.419 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 15:46:47.101 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 15:46:47.382 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 15:47:14.938 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:40980 10 6452 1 2025-08-01 15:48:15.357 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37720 10 6452 1 2025-08-01 15:49:15.759 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:34624 10 6452 1 2025-08-01 15:46:05.968 00:05:00.272 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 15:50:16.177 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54566 10 6452 1 2025-08-01 15:47:05.965 00:05:00.277 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 15:51:16.582 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52290 10 6452 1 2025-08-01 15:51:47.603 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 15:51:47.416 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 15:51:47.348 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 15:51:47.284 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 15:51:47.521 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 15:52:16.980 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58598 10 6452 1 2025-08-01 15:53:17.384 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57910 10 6452 1 2025-08-01 15:54:17.789 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50270 10 6452 1 2025-08-01 15:55:18.187 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:38498 10 6452 1 2025-08-01 15:52:05.972 00:05:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-01 15:56:18.543 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:56546 10 6452 1 2025-08-01 15:56:47.624 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-01 15:56:47.478 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-01 15:56:47.384 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 15:56:47.550 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-01 15:56:47.632 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-01 15:53:05.969 00:05:00.276 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-01 15:57:18.904 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57126 10 6452 1 2025-08-01 15:58:19.308 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56174 10 6452 1 Summary: total flows: 140, total bytes: 420913, total packets: 1022, avg bps: 929, avg pps: 0, avg bpp: 411 Time window: 2025-08-01 14:58:05 - 2025-08-01 15:58:29 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0040s User: 0.0000s Wall: 0.0021s flows/second: 68192.1 Runtime: 0.0021s