Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-05 15:58:45.725 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43898 10 6452 1 2025-08-05 15:59:46.137 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49576 10 6452 1 2025-08-05 16:00:46.499 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:35954 10 6452 1 2025-08-05 16:01:46.899 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:34900 10 6452 1 2025-08-05 16:02:47.317 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:58734 10 6452 1 2025-08-05 15:58:08.079 00:06:00.106 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 16:03:43.255 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 16:03:43.169 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 16:03:43.175 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 16:03:42.740 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 16:03:43.172 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 16:03:47.690 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46392 10 6452 1 2025-08-05 15:59:08.078 00:06:00.110 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 16:04:48.122 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48864 10 6452 1 2025-08-05 16:05:48.521 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53386 10 6452 1 2025-08-05 16:06:48.884 00:00:10.352 TCP 1.101.0.1:3000 -> 23.104.0.1:45388 10 6452 1 2025-08-05 16:07:49.277 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53504 10 6452 1 2025-08-05 16:08:43.057 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 16:08:43.343 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 16:08:43.144 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 16:08:43.149 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 16:08:43.231 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 16:08:49.688 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:50950 10 6452 1 2025-08-05 16:09:50.113 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40578 10 6452 1 2025-08-05 16:05:08.080 00:06:00.106 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 16:10:50.524 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48220 10 6452 1 2025-08-05 16:06:08.077 00:06:00.112 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 16:11:50.937 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:46668 10 6452 1 2025-08-05 16:12:51.365 00:00:10.601 TCP 1.101.0.1:3000 -> 23.104.0.1:49558 10 6452 1 2025-08-05 16:13:43.442 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 16:13:43.775 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 16:13:43.728 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 16:13:43.199 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 16:13:43.525 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 16:13:52.002 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42502 10 6452 1 2025-08-05 16:14:52.404 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60042 10 6452 1 2025-08-05 16:15:52.815 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:36938 10 6452 1 2025-08-05 16:16:53.214 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:59110 10 6452 1 2025-08-05 16:12:08.082 00:06:00.106 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 16:17:53.580 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48636 10 6452 1 2025-08-05 16:13:08.079 00:06:00.112 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 16:18:43.481 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 16:18:43.320 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 16:18:43.479 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 16:18:43.226 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 16:18:43.399 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 16:18:53.985 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:37004 10 6452 1 2025-08-05 16:19:54.348 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35258 10 6452 1 2025-08-05 16:20:54.711 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:51108 10 6452 1 2025-08-05 16:21:55.133 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39294 10 6452 1 2025-08-05 16:22:55.535 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45640 10 6452 1 2025-08-05 16:23:43.555 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 16:23:43.628 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 16:23:43.583 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 16:23:43.486 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 16:23:43.474 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 16:19:08.083 00:06:00.107 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 16:23:55.939 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:39108 10 6452 1 2025-08-05 16:24:56.369 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:44842 10 6452 1 2025-08-05 16:20:08.081 00:06:00.111 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 16:25:56.797 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42560 10 6452 1 2025-08-05 16:26:57.197 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46064 10 6452 1 2025-08-05 16:27:57.609 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49132 10 6452 1 2025-08-05 16:28:43.554 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 16:28:43.692 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 16:28:43.651 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 16:28:43.577 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 16:28:43.470 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 16:28:58.011 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37610 10 6452 1 2025-08-05 16:29:58.413 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:53938 10 6452 1 2025-08-05 16:26:08.084 00:06:00.107 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 16:30:58.828 00:00:10.353 TCP 1.101.0.1:3000 -> 23.104.0.1:51450 10 6452 1 2025-08-05 16:31:59.218 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34488 12 6556 1 2025-08-05 16:27:08.082 00:06:00.112 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 16:32:59.627 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59804 10 6452 1 2025-08-05 16:33:43.908 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 16:33:43.611 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 16:33:43.607 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 16:33:43.657 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 16:33:43.825 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 16:33:59.994 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:38070 10 6452 1 2025-08-05 16:35:00.378 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51478 10 6452 1 2025-08-05 16:36:00.782 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46130 10 6452 1 2025-08-05 16:37:01.194 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42698 10 6452 1 2025-08-05 16:33:08.086 00:06:00.107 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 16:38:01.598 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49840 10 6452 1 2025-08-05 16:38:43.762 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 16:38:44.381 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 16:38:43.790 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 16:38:43.865 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 16:38:43.948 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 16:34:08.083 00:06:00.112 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 16:39:02.004 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53306 10 6452 1 2025-08-05 16:40:02.412 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59874 10 6452 1 2025-08-05 16:41:02.813 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60370 10 6452 1 2025-08-05 16:42:03.218 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42164 10 6452 1 2025-08-05 16:43:03.625 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49162 10 6452 1 2025-08-05 16:43:44.172 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 16:43:44.074 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 16:43:44.103 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 16:43:43.926 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 16:43:44.089 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 16:44:04.028 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39184 10 6452 1 2025-08-05 16:40:08.088 00:06:00.107 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 16:45:04.434 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57358 10 6452 1 2025-08-05 16:41:08.084 00:06:00.113 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 16:46:04.840 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:59252 10 6452 1 2025-08-05 16:47:05.228 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37064 10 6452 1 2025-08-05 16:48:05.635 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:59574 10 6452 1 2025-08-05 16:48:44.258 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 16:48:44.004 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 16:48:44.179 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 16:48:44.109 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 16:48:44.177 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 16:49:06.066 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41366 10 6452 1 2025-08-05 16:50:06.468 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56174 10 6452 1 2025-08-05 16:51:06.872 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59528 10 6452 1 2025-08-05 16:47:08.090 00:06:00.107 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 16:52:07.282 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54876 10 6452 1 2025-08-05 16:48:08.087 00:06:00.113 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 16:53:07.684 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43350 10 6452 1 2025-08-05 16:53:44.176 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 16:53:43.863 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 16:53:44.015 00:00:00.035 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 16:53:44.286 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 16:53:44.368 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 16:54:08.116 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:33156 10 6452 1 2025-08-05 16:55:08.520 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50036 10 6452 1 2025-08-05 16:56:08.929 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:59892 10 6452 1 2025-08-05 16:57:09.371 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60958 10 6452 1 2025-08-05 16:58:09.776 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52126 10 6452 1 2025-08-05 16:58:44.586 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 16:58:44.389 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 16:58:44.160 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 16:58:44.389 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 16:58:44.472 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 136, total bytes: 416120, total packets: 1006, avg bps: 915, avg pps: 0, avg bpp: 413 Time window: 2025-08-05 15:58:08 - 2025-08-05 16:58:44 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0031s User: 0.0010s Wall: 0.0022s flows/second: 63191.0 Runtime: 0.0022s