Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-04 03:58:39.903 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36572 10 6452 1 2025-08-04 03:54:07.344 00:06:00.009 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-08-04 03:59:40.316 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37568 10 6452 1 2025-08-04 04:00:40.722 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:47036 10 6452 1 2025-08-04 04:01:41.119 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40644 10 6452 1 2025-08-04 04:02:41.521 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47570 10 6452 1 2025-08-04 04:02:59.943 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-04 04:02:59.891 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-04 04:02:59.744 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 04:02:59.893 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 04:02:59.977 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-04 04:03:41.936 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:51174 10 6452 1 2025-08-04 03:59:07.310 00:06:00.046 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-04 04:04:42.356 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:47298 10 6452 1 2025-08-04 04:05:42.756 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:39672 10 6452 1 2025-08-04 04:01:07.355 00:06:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-08-04 04:06:43.181 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46978 10 6452 1 2025-08-04 04:08:00.049 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-04 04:07:59.739 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-04 04:07:59.961 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-04 04:07:59.709 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 04:07:59.967 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 04:07:43.588 00:00:16.520 TCP 1.101.0.1:3000 -> 23.104.0.1:36820 10 6452 1 2025-08-04 04:08:50.155 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33866 10 6452 1 2025-08-04 04:09:50.563 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60730 10 6452 1 2025-08-04 04:10:50.971 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:42316 10 6452 1 2025-08-04 04:06:07.316 00:06:00.043 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-04 04:11:51.392 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:52230 10 6452 1 2025-08-04 04:13:00.328 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-04 04:13:00.386 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-04 04:13:00.296 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 04:13:00.245 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 04:12:51.796 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:41060 10 6452 1 2025-08-04 04:13:00.328 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-04 04:08:07.355 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-08-04 04:13:52.217 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56510 10 6452 1 2025-08-04 04:14:52.632 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:42634 10 6452 1 2025-08-04 04:15:53.030 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53884 10 6452 1 2025-08-04 04:16:53.429 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:44034 10 6452 1 2025-08-04 04:18:00.207 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-04 04:18:00.155 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-04 04:18:00.012 00:00:00.043 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 04:17:53.839 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:47292 10 6452 1 2025-08-04 04:18:00.155 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 04:18:00.238 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-04 04:13:07.337 00:06:00.027 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-04 04:18:54.262 00:00:10.412 TCP 1.101.0.1:3000 -> 23.104.0.1:33190 10 6452 1 2025-08-04 04:15:07.357 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-08-04 04:19:54.713 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:58418 11 6492 1 2025-08-04 04:20:55.115 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52218 10 6452 1 2025-08-04 04:21:55.522 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40174 10 6452 1 2025-08-04 04:23:00.376 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-04 04:23:00.435 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-04 04:23:00.301 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-04 04:23:00.171 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 04:23:00.294 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 04:22:55.930 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:49528 10 6452 1 2025-08-04 04:23:56.318 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:33482 10 6452 1 2025-08-04 04:20:07.339 00:06:00.023 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-04 04:24:56.698 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39702 10 6452 1 2025-08-04 04:25:57.113 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52950 10 6452 1 2025-08-04 04:22:07.359 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-08-04 04:26:57.519 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37160 10 6452 1 2025-08-04 04:28:00.037 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-04 04:28:00.037 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-04 04:28:00.272 00:00:00.032 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 04:28:00.267 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 04:28:00.350 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-04 04:27:57.922 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:59408 10 6452 1 2025-08-04 04:28:58.343 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47040 10 6452 1 2025-08-04 04:29:58.704 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:41572 10 6452 1 2025-08-04 04:30:59.099 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:59178 10 6452 1 2025-08-04 04:31:59.498 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60190 10 6452 1 2025-08-04 04:27:07.342 00:06:00.021 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-04 04:33:00.295 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-04 04:33:00.467 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-04 04:33:00.421 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-04 04:33:00.300 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 04:33:00.211 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 04:32:59.920 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:32780 10 6452 1 2025-08-04 04:29:07.360 00:06:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-08-04 04:34:00.279 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44398 10 6452 1 2025-08-04 04:35:00.687 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:39934 10 6452 1 2025-08-04 04:36:01.068 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42998 10 6452 1 2025-08-04 04:37:01.483 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41676 10 6452 1 2025-08-04 04:38:00.659 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-04 04:38:00.337 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-04 04:38:00.566 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 04:38:00.660 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 04:38:00.742 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-04 04:38:01.887 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:45614 10 6452 1 2025-08-04 04:34:07.342 00:06:00.023 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-04 04:39:02.278 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:57776 10 6452 1 2025-08-04 04:40:02.696 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50678 10 6452 1 2025-08-04 04:36:07.361 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-08-04 04:41:03.109 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48908 10 6452 1 2025-08-04 04:42:03.511 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49044 10 6452 1 2025-08-04 04:43:00.598 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-04 04:43:00.527 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-04 04:43:00.529 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-04 04:43:00.456 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 04:43:00.517 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 04:43:03.909 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:60848 10 6452 1 2025-08-04 04:44:04.282 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41532 10 6452 1 2025-08-04 04:45:04.646 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47524 10 6452 1 2025-08-04 04:41:07.342 00:06:00.023 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-04 04:46:05.022 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45810 10 6452 1 2025-08-04 04:47:05.424 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48978 10 6452 1 2025-08-04 04:48:00.759 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-04 04:48:00.805 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-04 04:48:00.706 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 04:48:00.847 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 04:48:00.931 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-04 04:43:07.362 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-08-04 04:48:05.825 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51540 10 6452 1 2025-08-04 04:49:06.230 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54722 10 6452 1 2025-08-04 04:50:06.628 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37252 10 6452 1 2025-08-04 04:51:07.035 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59626 10 6452 1 2025-08-04 04:52:07.440 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38822 10 6452 1 2025-08-04 04:53:00.776 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-04 04:53:00.777 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-04 04:53:00.842 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-04 04:53:00.742 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 04:53:00.695 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 04:48:07.343 00:06:00.024 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-04 04:53:07.844 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:35856 10 6452 1 2025-08-04 04:54:08.274 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36684 10 6452 1 2025-08-04 04:50:07.363 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-08-04 04:55:08.683 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60458 10 6452 1 2025-08-04 04:56:09.096 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40810 10 6452 1 2025-08-04 04:57:09.494 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39076 10 6452 1 2025-08-04 04:58:01.141 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-04 04:58:00.953 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-04 04:58:00.954 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 04:58:01.233 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 04:58:01.315 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-04 04:58:09.900 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36622 10 6452 1 Summary: total flows: 137, total bytes: 413641, total packets: 956, avg bps: 858, avg pps: 0, avg bpp: 432 Time window: 2025-08-04 03:54:07 - 2025-08-04 04:58:20 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0034s User: 0.0009s Wall: 0.0019s flows/second: 72106.9 Runtime: 0.0019s