Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-03 14:59:18.577 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:39900 10 6452 1 2025-08-03 14:55:07.044 00:06:00.078 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-03 15:00:18.976 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:55022 10 6452 1 2025-08-03 15:01:19.393 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44440 10 6452 1 2025-08-03 14:57:07.049 00:06:00.072 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-03 15:02:19.797 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60666 10 6452 1 2025-08-03 15:02:44.593 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 15:02:44.343 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 15:02:44.277 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 15:02:44.212 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 15:02:44.510 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 15:03:20.200 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57938 10 6452 1 2025-08-03 15:04:20.603 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53878 10 6452 1 2025-08-03 15:05:21.006 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55412 10 6452 1 2025-08-03 15:06:21.412 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42100 10 6452 1 2025-08-03 15:02:07.046 00:06:00.076 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-03 15:07:21.824 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55490 10 6452 1 2025-08-03 15:07:44.313 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 15:07:44.313 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 15:07:44.257 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 15:07:44.310 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 15:07:44.394 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 15:08:22.226 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57726 10 6452 1 2025-08-03 15:04:07.050 00:06:00.071 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-03 15:09:22.630 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33082 10 6452 1 2025-08-03 15:10:23.037 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44862 10 6452 1 2025-08-03 15:11:23.439 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41094 10 6452 1 2025-08-03 15:12:23.844 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:51900 10 6452 1 2025-08-03 15:12:44.625 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 15:12:44.629 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 15:12:44.481 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 15:12:44.636 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 15:12:44.718 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 15:13:24.218 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:59780 10 6452 1 2025-08-03 15:09:07.052 00:06:00.073 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-03 15:14:24.582 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:33426 10 6452 1 2025-08-03 15:15:24.977 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46904 10 6452 1 2025-08-03 15:11:07.056 00:06:00.068 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-03 15:16:25.382 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53412 10 6452 1 2025-08-03 15:17:25.794 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60020 10 6452 1 2025-08-03 15:17:44.372 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 15:17:44.453 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 15:17:44.311 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 15:17:44.372 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 15:17:44.455 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 15:18:26.203 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51162 10 6452 1 2025-08-03 15:19:26.605 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34754 10 6452 1 2025-08-03 15:20:27.009 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:50894 10 6452 1 2025-08-03 15:16:07.054 00:06:00.076 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-03 15:21:27.373 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:46614 10 6452 1 2025-08-03 15:22:27.777 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:51588 10 6452 1 2025-08-03 15:22:44.670 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 15:22:44.561 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 15:22:44.642 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 15:22:44.570 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 15:22:44.653 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 15:18:07.057 00:06:00.071 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-03 15:23:28.205 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43640 10 6452 1 2025-08-03 15:24:28.616 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:33958 10 6452 1 2025-08-03 15:25:29.081 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:34782 10 6452 1 2025-08-03 15:26:29.442 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:52036 10 6452 1 2025-08-03 15:27:44.747 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 15:27:44.719 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 15:27:44.658 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 15:27:44.529 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 15:27:29.842 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:46524 11 6504 1 2025-08-03 15:27:44.664 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 15:23:07.059 00:06:00.074 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-03 15:28:30.327 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51992 10 6452 1 2025-08-03 15:29:30.728 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:55272 10 6452 1 2025-08-03 15:25:07.061 00:06:00.069 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-03 15:30:31.140 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60382 10 6452 1 2025-08-03 15:31:31.545 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57582 10 6452 1 2025-08-03 15:32:44.890 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 15:32:44.855 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 15:32:44.599 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 15:32:44.809 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 15:32:31.941 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45928 10 6452 1 2025-08-03 15:32:44.892 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 15:33:32.353 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36386 10 6452 1 2025-08-03 15:34:32.753 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60546 10 6452 1 2025-08-03 15:30:07.061 00:06:00.074 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-03 15:35:33.154 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44330 10 6452 1 2025-08-03 15:36:33.564 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60802 10 6452 1 2025-08-03 15:32:07.066 00:06:00.068 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-03 15:37:44.960 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 15:37:44.969 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 15:37:44.589 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 15:37:44.965 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 15:37:33.971 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:34624 10 6452 1 2025-08-03 15:37:45.049 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 15:38:34.339 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45124 10 6452 1 2025-08-03 15:39:34.699 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57044 10 6452 1 2025-08-03 15:40:35.120 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60284 10 6452 1 2025-08-03 15:41:35.524 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39024 10 6452 1 2025-08-03 15:37:07.064 00:06:00.075 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-03 15:42:44.946 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 15:42:44.778 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 15:42:44.922 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 15:42:44.863 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 15:42:44.866 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 15:42:35.937 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:42622 10 6452 1 2025-08-03 15:43:36.358 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43726 10 6452 1 2025-08-03 15:39:07.067 00:06:00.068 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-03 15:44:36.766 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:45378 10 6452 1 2025-08-03 15:45:37.184 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59888 10 6452 1 2025-08-03 15:46:37.591 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:57552 10 6452 1 2025-08-03 15:47:44.906 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 15:47:45.293 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 15:47:45.138 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 15:47:38.034 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:51800 10 6452 1 2025-08-03 15:47:45.190 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 15:47:45.210 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 15:48:38.433 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54746 10 6452 1 2025-08-03 15:44:07.067 00:06:00.072 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-03 15:49:38.839 00:00:10.353 TCP 1.101.0.1:3000 -> 23.104.0.1:35480 10 6452 1 2025-08-03 15:50:39.234 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37038 10 6452 1 2025-08-03 15:46:07.071 00:06:00.066 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-03 15:51:39.641 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52600 10 6452 1 2025-08-03 15:52:44.927 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 15:52:45.226 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 15:52:45.148 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 15:52:45.335 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 15:52:45.144 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 15:52:40.063 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50332 10 6452 1 2025-08-03 15:53:40.473 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35880 10 6452 1 2025-08-03 15:54:40.878 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:58208 10 6452 1 2025-08-03 15:55:41.278 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47058 10 6452 1 2025-08-03 15:51:07.072 00:06:00.070 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-03 15:56:41.707 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:49490 10 6452 1 2025-08-03 15:57:45.912 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 15:57:46.202 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 15:57:46.041 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 15:57:46.142 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 15:57:46.225 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 15:57:42.136 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58790 10 6452 1 2025-08-03 15:53:07.075 00:06:00.064 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 Summary: total flows: 137, total bytes: 411338, total packets: 1023, avg bps: 856, avg pps: 0, avg bpp: 402 Time window: 2025-08-03 14:55:07 - 2025-08-03 15:59:07 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0014s User: 0.0028s Wall: 0.0040s flows/second: 34079.8 Runtime: 0.0040s