Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-03 11:59:05.753 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57328 10 6452 1 2025-08-03 12:00:06.118 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48790 10 6452 1 2025-08-03 12:01:06.516 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39360 10 6452 1 2025-08-03 12:02:06.921 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:37362 10 6452 1 2025-08-03 12:02:40.491 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 12:02:40.570 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 12:02:40.414 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 12:02:40.607 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 12:02:40.690 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 12:03:07.309 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39824 10 6452 1 2025-08-03 12:00:06.963 00:05:00.115 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-03 12:00:06.964 00:05:00.111 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-03 12:04:07.710 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56416 10 6452 1 2025-08-03 12:05:08.113 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53484 10 6452 1 2025-08-03 12:06:08.515 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51670 10 6452 1 2025-08-03 12:07:08.879 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41518 10 6452 1 2025-08-03 12:07:40.796 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 12:07:40.592 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 12:07:40.598 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 12:07:40.466 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 12:07:40.715 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 12:08:09.280 00:00:10.572 TCP 1.101.0.1:3000 -> 23.104.0.1:40348 10 6452 1 2025-08-03 12:09:09.886 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39606 12 6556 1 2025-08-03 12:06:06.966 00:05:00.111 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-03 12:06:06.964 00:05:00.116 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-03 12:10:10.296 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37252 10 6452 1 2025-08-03 12:11:10.708 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33542 10 6452 1 2025-08-03 12:12:11.111 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43592 10 6452 1 2025-08-03 12:12:40.722 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 12:12:40.726 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 12:12:40.724 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 12:12:40.677 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 12:12:40.641 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 12:13:11.517 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55874 10 6452 1 2025-08-03 12:14:11.919 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34188 10 6452 1 2025-08-03 12:15:12.322 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:50658 10 6452 1 2025-08-03 12:12:06.969 00:05:00.114 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-03 12:12:06.966 00:05:00.119 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-03 12:16:12.697 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50374 10 6452 1 2025-08-03 12:17:13.107 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:50654 10 6452 1 2025-08-03 12:17:41.266 00:00:00.030 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 12:17:41.001 00:00:00.039 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 12:17:41.329 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 12:17:41.227 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 12:17:41.183 00:00:00.031 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 12:18:13.474 00:00:10.425 TCP 1.101.0.1:3000 -> 23.104.0.1:56014 11 6504 1 2025-08-03 12:19:13.938 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:33396 10 6452 1 2025-08-03 12:20:14.322 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43928 10 6452 1 2025-08-03 12:21:14.730 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:52436 10 6452 1 2025-08-03 12:18:06.969 00:05:00.113 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-03 12:18:06.967 00:05:00.118 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-03 12:22:15.143 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46358 10 6452 1 2025-08-03 12:22:40.901 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 12:22:40.950 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 12:22:40.827 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 12:22:40.847 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 12:22:40.818 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 12:23:15.550 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58366 10 6452 1 2025-08-03 12:24:15.952 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43172 10 6452 1 2025-08-03 12:25:16.313 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49666 10 6452 1 2025-08-03 12:26:16.717 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:34394 10 6452 1 2025-08-03 12:27:17.129 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59702 10 6452 1 2025-08-03 12:27:41.064 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 12:27:40.982 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 12:27:40.972 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 12:27:41.073 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 12:27:40.992 00:00:00.041 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 12:24:06.970 00:05:00.115 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-03 12:24:06.973 00:05:00.110 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-03 12:28:17.531 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:57524 10 6452 1 2025-08-03 12:29:17.928 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:54404 10 6452 1 2025-08-03 12:30:18.347 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39690 10 6452 1 2025-08-03 12:31:18.750 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60200 10 6452 1 2025-08-03 12:32:19.150 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:48960 10 6452 1 2025-08-03 12:32:41.650 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 12:32:41.647 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 12:32:41.661 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 12:32:40.960 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 12:32:41.568 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 12:33:19.519 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41824 10 6452 1 2025-08-03 12:30:06.971 00:05:00.116 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-03 12:30:06.973 00:05:00.111 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-03 12:34:19.931 00:00:10.460 TCP 1.101.0.1:3000 -> 23.104.0.1:34602 12 10367 1 2025-08-03 12:35:20.426 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56392 10 6452 1 2025-08-03 12:36:20.829 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59120 10 6452 1 2025-08-03 12:37:21.241 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43542 10 6452 1 2025-08-03 12:37:41.345 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 12:37:41.280 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 12:37:41.301 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 12:37:41.229 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 12:37:41.312 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 12:38:21.645 00:00:10.455 TCP 1.101.0.1:3000 -> 23.104.0.1:60660 12 10367 1 2025-08-03 12:39:22.137 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37328 10 6452 1 2025-08-03 12:36:06.973 00:05:00.116 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-03 12:36:06.976 00:05:00.111 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-03 12:40:22.543 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:40806 10 6452 1 2025-08-03 12:41:22.896 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:41038 12 6556 1 2025-08-03 12:42:23.316 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:32916 10 6452 1 2025-08-03 12:42:41.395 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 12:42:41.258 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 12:42:41.219 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 12:42:41.347 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 12:42:41.429 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 12:43:23.734 00:00:10.448 TCP 1.101.0.1:3000 -> 23.104.0.1:41326 12 10365 1 2025-08-03 12:44:24.221 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:53106 10 6452 1 2025-08-03 12:45:24.646 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33324 10 6452 1 2025-08-03 12:42:06.978 00:05:00.110 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-03 12:42:06.976 00:05:00.115 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-03 12:46:25.074 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42708 10 6452 1 2025-08-03 12:47:41.383 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 12:47:25.478 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:35474 10 6452 1 2025-08-03 12:47:41.207 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 12:47:41.475 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 12:47:41.323 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 12:47:41.302 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 12:48:25.904 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58542 10 6452 1 2025-08-03 12:49:26.312 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40486 10 6452 1 2025-08-03 12:50:26.713 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50082 10 6452 1 2025-08-03 12:51:27.116 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56460 10 6452 1 2025-08-03 12:48:06.979 00:05:00.110 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-03 12:48:06.976 00:05:00.115 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-03 12:52:27.516 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35700 10 6452 1 2025-08-03 12:52:41.524 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 12:52:41.416 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 12:52:41.656 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 12:52:41.687 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 12:52:41.770 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 12:53:27.922 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49936 10 6452 1 2025-08-03 12:54:28.334 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43818 10 6452 1 2025-08-03 12:55:28.735 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35926 10 6452 1 2025-08-03 12:56:29.145 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52660 10 6452 1 2025-08-03 12:57:29.548 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55360 10 6452 1 2025-08-03 12:57:42.077 00:00:00.030 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 12:57:41.746 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 12:57:41.958 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 12:57:41.757 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 12:57:41.994 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 12:54:06.978 00:05:00.115 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-03 12:54:06.980 00:05:00.111 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-03 12:58:29.914 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44550 10 6452 1 Summary: total flows: 140, total bytes: 429003, total packets: 1031, avg bps: 952, avg pps: 0, avg bpp: 416 Time window: 2025-08-03 11:59:05 - 2025-08-03 12:59:07 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0034s User: 0.0011s Wall: 0.0021s flows/second: 67892.5 Runtime: 0.0021s