Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-03 19:59:23.724 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:60144 10 6452 1 2025-08-03 20:00:24.135 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45030 10 6452 1 2025-08-03 19:56:07.142 00:06:00.065 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-03 20:01:24.547 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:41748 10 6452 1 2025-08-03 20:02:24.918 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36910 10 6452 1 2025-08-03 20:02:49.860 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 20:02:50.256 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 20:02:49.978 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 20:02:50.128 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 20:02:50.174 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 19:58:07.146 00:06:00.059 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-03 20:03:25.320 00:00:10.499 TCP 1.101.0.1:3000 -> 23.104.0.1:40418 12 10367 1 2025-08-03 20:04:25.860 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39446 10 6452 1 2025-08-03 20:05:26.274 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:40170 10 6452 1 2025-08-03 20:06:26.672 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43904 10 6452 1 2025-08-03 20:07:27.099 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:60130 10 6452 1 2025-08-03 20:07:49.960 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 20:07:50.483 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 20:07:50.186 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 20:07:50.233 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 20:07:50.400 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 20:03:07.144 00:06:00.065 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-03 20:08:27.460 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55942 10 6452 1 2025-08-03 20:09:27.864 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39832 10 6452 1 2025-08-03 20:05:07.147 00:06:00.060 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-03 20:10:28.274 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46350 10 6452 1 2025-08-03 20:11:28.674 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35442 10 6452 1 2025-08-03 20:12:29.035 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60244 10 6452 1 2025-08-03 20:12:49.951 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 20:12:50.492 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 20:12:50.452 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 20:12:50.449 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 20:12:50.408 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 20:13:29.432 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35620 10 6452 1 2025-08-03 20:14:29.797 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:46464 10 6452 1 2025-08-03 20:10:07.149 00:06:00.063 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-03 20:15:30.174 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44856 10 6452 1 2025-08-03 20:16:30.575 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41062 10 6452 1 2025-08-03 20:12:07.151 00:06:00.059 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-03 20:17:30.981 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45148 10 6452 1 2025-08-03 20:17:50.404 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 20:17:50.508 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 20:17:50.536 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 20:17:50.625 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 20:17:50.708 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 20:18:31.391 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49222 10 6452 1 2025-08-03 20:19:31.758 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:52114 10 6452 1 2025-08-03 20:20:32.190 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33980 10 6452 1 2025-08-03 20:21:32.599 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53912 10 6452 1 2025-08-03 20:17:07.149 00:06:00.064 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-03 20:22:33.016 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48996 10 6452 1 2025-08-03 20:22:50.369 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 20:22:50.491 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 20:22:50.483 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 20:22:50.679 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 20:22:50.287 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 20:23:33.376 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33060 10 6452 1 2025-08-03 20:19:07.151 00:06:00.062 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-03 20:24:33.782 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43376 10 6452 1 2025-08-03 20:25:34.186 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43658 10 6452 1 2025-08-03 20:26:34.544 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43474 10 6452 1 2025-08-03 20:27:34.912 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:40230 10 6452 1 2025-08-03 20:27:50.777 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 20:27:50.680 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 20:27:50.644 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 20:27:50.780 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 20:27:50.863 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 20:28:35.331 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35658 10 6452 1 2025-08-03 20:24:07.152 00:06:00.066 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-03 20:29:35.700 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45080 10 6452 1 2025-08-03 20:30:36.118 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:48886 10 6452 1 2025-08-03 20:26:07.155 00:06:00.061 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-03 20:31:36.515 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54732 10 6452 1 2025-08-03 20:32:36.922 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:36092 10 6452 1 2025-08-03 20:32:51.158 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 20:32:51.263 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 20:32:51.152 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 20:32:50.729 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 20:32:51.076 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 20:33:37.343 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51984 10 6452 1 2025-08-03 20:34:37.749 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37744 10 6452 1 2025-08-03 20:35:38.152 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34540 10 6452 1 2025-08-03 20:31:07.153 00:06:00.065 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-03 20:36:38.557 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37108 10 6452 1 2025-08-03 20:37:38.960 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47326 10 6452 1 2025-08-03 20:37:50.827 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 20:37:50.832 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 20:37:50.893 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 20:37:50.824 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 20:37:50.908 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 20:33:07.156 00:06:00.062 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-03 20:38:39.365 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48926 10 6452 1 2025-08-03 20:39:39.764 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:59582 10 6452 1 2025-08-03 20:40:40.181 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34570 10 6452 1 2025-08-03 20:41:40.581 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38376 10 6452 1 2025-08-03 20:42:51.086 00:00:00.048 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 20:42:50.826 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 20:42:51.089 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 20:42:50.931 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 20:42:40.981 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45558 10 6452 1 2025-08-03 20:42:51.003 00:00:00.047 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 20:38:07.155 00:06:00.066 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-03 20:43:41.391 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53978 10 6452 1 2025-08-03 20:44:41.788 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35232 10 6452 1 2025-08-03 20:40:07.158 00:06:00.060 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-03 20:45:42.198 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38656 10 6452 1 2025-08-03 20:46:42.609 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34972 10 6452 1 2025-08-03 20:47:51.306 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 20:47:50.958 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 20:47:51.095 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 20:47:51.037 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 20:47:51.223 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 20:47:43.016 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48594 10 6452 1 2025-08-03 20:48:43.427 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47606 10 6452 1 2025-08-03 20:49:43.828 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:33814 10 6452 1 2025-08-03 20:45:07.156 00:06:00.066 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-03 20:50:44.252 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43290 10 6452 1 2025-08-03 20:51:44.668 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42458 10 6452 1 2025-08-03 20:47:07.160 00:06:00.060 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-03 20:52:50.955 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 20:52:51.089 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 20:52:50.964 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 20:52:51.271 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 20:52:51.355 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 20:52:45.110 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52298 10 6452 1 2025-08-03 20:53:45.514 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53490 10 6452 1 2025-08-03 20:54:45.926 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:53404 10 6452 1 2025-08-03 20:55:46.353 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:54500 10 6452 1 2025-08-03 20:56:46.724 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:54108 10 6452 1 2025-08-03 20:52:07.160 00:06:00.067 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-03 20:57:51.283 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-03 20:57:51.662 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-03 20:57:51.063 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-03 20:57:51.371 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 20:57:51.200 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-03 20:57:47.134 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33092 10 6452 1 Summary: total flows: 136, total bytes: 414340, total packets: 1010, avg bps: 891, avg pps: 0, avg bpp: 410 Time window: 2025-08-03 19:56:07 - 2025-08-03 20:58:07 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0030s User: 0.0010s Wall: 0.0022s flows/second: 63226.0 Runtime: 0.0022s