Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-02 17:58:48.138 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:57798 12 10367 1 2025-08-02 17:54:06.539 00:06:00.182 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 17:59:48.611 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34254 10 6452 1 2025-08-02 18:00:49.014 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:34022 10 6452 1 2025-08-02 18:01:49.410 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46198 10 6452 1 2025-08-02 18:02:18.935 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 18:02:18.858 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 18:02:18.711 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 18:02:18.927 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 18:02:19.010 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 18:02:49.814 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39206 10 6452 1 2025-08-02 18:03:50.217 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60244 10 6452 1 2025-08-02 18:04:50.626 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40770 10 6452 1 2025-08-02 18:00:06.542 00:06:00.179 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 18:05:51.031 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60428 10 6452 1 2025-08-02 18:01:06.540 00:06:00.183 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 18:06:51.440 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:56576 10 6452 1 2025-08-02 18:07:18.966 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 18:07:18.772 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 18:07:19.064 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 18:07:18.866 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 18:07:19.147 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 18:07:51.889 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:35540 12 6556 1 2025-08-02 18:08:52.308 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52110 10 6452 1 2025-08-02 18:09:52.713 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56150 10 6452 1 2025-08-02 18:10:53.118 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52460 10 6452 1 2025-08-02 18:11:53.477 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37054 10 6452 1 2025-08-02 18:07:06.546 00:06:00.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 18:12:19.084 00:00:00.047 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 18:12:19.142 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 18:12:19.144 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 18:12:19.122 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 18:12:19.003 00:00:00.046 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 18:12:53.878 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:34880 10 6452 1 2025-08-02 18:08:06.543 00:06:00.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 18:13:54.306 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45992 10 6452 1 2025-08-02 18:14:54.706 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36354 10 6452 1 2025-08-02 18:15:55.119 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56042 10 6452 1 2025-08-02 18:16:55.521 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55744 10 6452 1 2025-08-02 18:17:19.302 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 18:17:18.974 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 18:17:19.218 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 18:17:18.993 00:00:00.052 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 18:17:19.220 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 18:17:55.928 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:33490 10 6452 1 2025-08-02 18:14:06.547 00:06:00.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 18:18:56.357 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52600 10 6452 1 2025-08-02 18:15:06.547 00:06:00.179 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 18:19:56.761 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:39878 10 6452 1 2025-08-02 18:20:57.209 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44826 10 6452 1 2025-08-02 18:21:57.616 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58670 10 6452 1 2025-08-02 18:22:19.419 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 18:22:19.337 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 18:22:19.345 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 18:22:19.177 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 18:22:19.212 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 18:22:58.027 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57256 10 6452 1 2025-08-02 18:23:58.423 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:57906 12 10367 1 2025-08-02 18:24:58.860 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:37486 10 6452 1 2025-08-02 18:25:59.276 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41896 10 6452 1 2025-08-02 18:21:06.550 00:06:00.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 18:26:59.647 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54050 10 6452 1 2025-08-02 18:22:06.548 00:06:00.180 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 18:27:19.585 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 18:27:19.547 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 18:27:19.504 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 18:27:19.244 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 18:27:19.501 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 18:28:00.006 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50790 10 6452 1 2025-08-02 18:29:00.409 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:59836 10 6452 1 2025-08-02 18:30:00.829 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51896 10 6452 1 2025-08-02 18:31:01.236 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56226 10 6452 1 2025-08-02 18:32:01.639 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:35374 10 6452 1 2025-08-02 18:32:19.423 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 18:32:19.589 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 18:32:19.459 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 18:32:19.377 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 18:32:19.341 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 18:28:06.552 00:06:00.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 18:33:02.005 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38192 10 6452 1 2025-08-02 18:29:06.550 00:06:00.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 18:34:02.411 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:44428 10 6452 1 2025-08-02 18:35:02.774 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33730 10 6452 1 2025-08-02 18:36:03.190 00:00:10.406 TCP 1.101.0.1:3000 -> 23.104.0.1:45440 10 6452 1 2025-08-02 18:37:03.681 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:54576 10 6452 1 2025-08-02 18:37:19.766 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 18:37:19.765 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 18:37:19.623 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 18:37:19.899 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 18:37:19.981 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 18:38:04.114 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:35448 10 6452 1 2025-08-02 18:39:04.522 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44804 10 6452 1 2025-08-02 18:35:06.554 00:06:00.177 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 18:40:04.929 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:51820 10 6452 1 2025-08-02 18:36:06.551 00:06:00.182 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 18:41:05.349 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56112 10 6452 1 2025-08-02 18:42:19.935 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 18:42:19.902 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 18:42:19.726 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 18:42:19.732 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 18:42:05.712 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:43676 10 6452 1 2025-08-02 18:42:19.851 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 18:43:06.107 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51786 10 6452 1 2025-08-02 18:44:06.507 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42296 10 6452 1 2025-08-02 18:45:06.914 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40408 10 6452 1 2025-08-02 18:46:07.312 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42886 10 6452 1 2025-08-02 18:42:06.555 00:06:00.177 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 18:47:20.420 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 18:47:07.719 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:48076 10 6452 1 2025-08-02 18:47:20.162 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 18:47:20.162 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 18:47:20.061 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 18:47:20.337 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 18:43:06.555 00:06:00.182 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 18:48:08.138 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53092 10 6452 1 2025-08-02 18:49:08.543 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35750 10 6452 1 2025-08-02 18:50:08.954 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58012 10 6452 1 2025-08-02 18:51:09.356 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52916 10 6452 1 2025-08-02 18:52:19.759 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 18:52:19.966 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 18:52:19.835 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 18:52:19.917 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 18:52:20.066 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 18:52:09.764 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:44402 10 6452 1 2025-08-02 18:53:10.202 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33040 10 6452 1 2025-08-02 18:49:06.560 00:06:00.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 18:54:10.611 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:52014 10 6452 1 2025-08-02 18:50:06.557 00:06:00.180 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 18:55:10.965 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45778 10 6452 1 2025-08-02 18:56:11.381 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47096 10 6452 1 2025-08-02 18:57:20.312 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 18:57:20.079 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 18:57:20.191 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 18:57:11.785 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60920 10 6452 1 2025-08-02 18:57:19.998 00:00:00.037 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 18:57:20.230 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 18:58:12.193 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33316 12 6556 1 Summary: total flows: 137, total bytes: 424915, total packets: 1026, avg bps: 881, avg pps: 0, avg bpp: 414 Time window: 2025-08-02 17:54:06 - 2025-08-02 18:58:22 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0036s User: 0.0009s Wall: 0.0022s flows/second: 61740.6 Runtime: 0.0022s