Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-05 19:59:24.419 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51164 10 6452 1 2025-08-05 20:00:24.783 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36880 10 6452 1 2025-08-05 19:56:08.176 00:06:00.092 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 20:01:25.187 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58700 10 6452 1 2025-08-05 19:57:08.173 00:06:00.097 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 20:02:25.591 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39962 10 6452 1 2025-08-05 20:03:26.001 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48802 10 6452 1 2025-08-05 20:03:48.156 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 20:03:47.873 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 20:03:47.744 00:00:00.020 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 20:03:48.096 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 20:03:48.074 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 20:04:26.405 00:00:10.421 TCP 1.101.0.1:3000 -> 23.104.0.1:54266 11 6504 1 2025-08-05 20:05:26.867 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38300 10 6452 1 2025-08-05 20:06:27.276 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:36584 11 6504 1 2025-08-05 20:07:27.740 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44666 10 6452 1 2025-08-05 20:03:08.177 00:06:00.093 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 20:08:28.111 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:53380 10 6452 1 2025-08-05 20:08:48.075 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 20:08:47.966 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 20:08:47.828 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 20:08:48.075 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 20:08:48.159 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 20:04:08.174 00:06:00.098 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 20:09:28.489 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46302 10 6452 1 2025-08-05 20:10:28.918 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50008 10 6452 1 2025-08-05 20:11:29.322 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:44786 10 6452 1 2025-08-05 20:12:29.684 00:00:10.634 TCP 1.101.0.1:3000 -> 23.104.0.1:34174 10 6452 1 2025-08-05 20:13:30.357 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34156 10 6452 1 2025-08-05 20:13:48.254 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 20:13:48.142 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 20:13:47.884 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 20:13:48.204 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 20:13:48.286 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 20:14:30.763 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:35726 12 6556 1 2025-08-05 20:10:08.180 00:06:00.091 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 20:15:31.185 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59450 10 6452 1 2025-08-05 20:11:08.177 00:06:00.098 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 20:16:31.588 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35630 10 6452 1 2025-08-05 20:17:31.994 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39060 10 6452 1 2025-08-05 20:18:48.350 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 20:18:32.399 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:58318 10 6452 1 2025-08-05 20:18:48.266 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 20:18:48.206 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 20:18:48.177 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 20:18:48.267 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 20:19:32.826 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:57586 10 6452 1 2025-08-05 20:20:33.224 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44090 10 6452 1 2025-08-05 20:21:33.630 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43702 10 6452 1 2025-08-05 20:17:08.181 00:06:00.091 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 20:22:33.994 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51882 10 6452 1 2025-08-05 20:18:08.179 00:06:00.097 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 20:23:34.402 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44300 10 6452 1 2025-08-05 20:23:48.649 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 20:23:48.568 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 20:23:48.897 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 20:23:48.279 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 20:23:48.567 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 20:24:34.805 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:38384 10 6452 1 2025-08-05 20:25:35.181 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:34980 10 6452 1 2025-08-05 20:26:35.591 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:35676 10 6452 1 2025-08-05 20:27:35.952 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53660 10 6452 1 2025-08-05 20:28:48.490 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 20:28:48.559 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 20:28:48.473 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 20:28:48.498 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 20:28:48.407 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 20:28:36.359 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33984 10 6452 1 2025-08-05 20:24:08.183 00:06:00.097 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 20:29:36.760 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:52580 10 6452 1 2025-08-05 20:25:08.180 00:06:00.102 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 20:30:37.183 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36506 10 6452 1 2025-08-05 20:31:37.592 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56484 10 6452 1 2025-08-05 20:32:37.996 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56932 10 6452 1 2025-08-05 20:33:48.682 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 20:33:48.513 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 20:33:48.598 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 20:33:48.536 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 20:33:38.407 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:49182 10 6452 1 2025-08-05 20:33:48.600 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 20:34:38.771 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43760 10 6452 1 2025-08-05 20:35:39.188 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49398 10 6452 1 2025-08-05 20:31:08.184 00:06:00.096 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 20:36:39.587 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49066 10 6452 1 2025-08-05 20:32:08.181 00:06:00.101 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 20:37:39.995 00:00:10.524 TCP 1.101.0.1:3000 -> 23.104.0.1:49674 10 6452 1 2025-08-05 20:38:48.888 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 20:38:48.717 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 20:38:48.718 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 20:38:48.576 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 20:38:48.806 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 20:38:40.558 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33952 10 6452 1 2025-08-05 20:39:40.966 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:43702 10 6452 1 2025-08-05 20:40:41.327 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:48026 10 6452 1 2025-08-05 20:41:41.748 00:00:10.426 TCP 1.101.0.1:3000 -> 23.104.0.1:53202 11 6504 1 2025-08-05 20:42:42.214 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:41202 10 6452 1 2025-08-05 20:38:08.184 00:06:00.096 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 20:43:48.588 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 20:43:48.754 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 20:43:48.681 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 20:43:48.754 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 20:43:48.836 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 20:43:42.599 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:38492 10 6452 1 2025-08-05 20:39:08.182 00:06:00.101 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 20:44:42.998 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56894 10 6452 1 2025-08-05 20:45:43.399 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33024 10 6452 1 2025-08-05 20:46:43.802 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39334 10 6452 1 2025-08-05 20:47:44.212 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44674 10 6452 1 2025-08-05 20:48:48.841 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 20:48:48.759 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 20:48:48.837 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 20:48:48.709 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 20:48:48.759 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 20:48:44.609 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:37272 12 10365 1 2025-08-05 20:49:45.048 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56612 10 6452 1 2025-08-05 20:45:08.187 00:06:00.095 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 20:50:45.451 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:37818 10 6452 1 2025-08-05 20:46:08.184 00:06:00.100 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 20:51:45.862 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48374 10 6452 1 2025-08-05 20:52:46.275 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54406 10 6452 1 2025-08-05 20:53:48.881 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 20:53:49.004 00:00:00.037 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 20:53:48.870 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 20:53:48.963 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 20:53:48.963 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 20:53:46.678 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58250 10 6452 1 2025-08-05 20:54:47.103 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52510 10 6452 1 2025-08-05 20:55:47.504 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50388 10 6452 1 2025-08-05 20:56:47.906 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55444 10 6452 1 2025-08-05 20:52:08.188 00:06:00.095 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 20:57:48.310 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57152 10 6452 1 2025-08-05 20:53:08.185 00:06:00.101 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 20:58:49.224 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 20:58:48.974 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 20:58:48.610 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 20:58:49.155 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 20:58:49.238 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 137, total bytes: 415459, total packets: 1029, avg bps: 879, avg pps: 0, avg bpp: 403 Time window: 2025-08-05 19:56:08 - 2025-08-05 20:59:08 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0037s User: 0.0007s Wall: 0.0016s flows/second: 86214.5 Runtime: 0.0016s