Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-07 14:59:10.508 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60296 10 6452 1 2025-08-07 14:59:39.699 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-07 14:59:39.697 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-07 14:59:39.709 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 14:59:39.617 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 14:59:39.700 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-07 14:55:09.091 00:06:00.091 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-07 14:56:09.088 00:04:00.096 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-07 15:00:10.872 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56284 10 6452 1 2025-08-07 15:01:11.270 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38418 10 6452 1 2025-08-07 15:02:09.093 00:00:00.090 TCP 179.21.23.21:38570 -> 179.21.23.23:179 2 123 1 2025-08-07 15:02:11.675 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34416 10 6452 1 2025-08-07 15:03:12.102 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54240 10 6452 1 2025-08-07 15:04:12.503 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49334 10 6452 1 2025-08-07 15:04:39.928 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 15:04:40.118 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-07 15:04:40.168 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-07 15:04:40.225 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 15:04:40.310 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-07 15:05:12.907 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33928 10 6452 1 2025-08-07 15:01:09.089 00:06:00.097 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-07 15:06:13.271 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59902 10 6452 1 2025-08-07 15:03:09.092 00:04:00.092 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-07 15:07:13.681 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43074 10 6452 1 2025-08-07 15:08:14.107 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:33138 10 6452 1 2025-08-07 15:09:14.481 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54016 10 6452 1 2025-08-07 15:09:39.896 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-07 15:09:39.951 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-07 15:09:39.911 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 15:09:39.903 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 15:09:39.985 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-07 15:10:14.893 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:42160 10 6452 1 2025-08-07 15:11:15.266 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33002 10 6452 1 2025-08-07 15:08:09.094 00:04:00.091 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-07 15:12:15.670 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45244 10 6452 1 2025-08-07 15:08:09.091 00:06:00.097 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-07 15:13:16.034 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36772 10 6452 1 2025-08-07 15:14:16.432 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39418 10 6452 1 2025-08-07 15:14:39.976 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-07 15:14:39.894 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 15:14:39.895 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-07 15:14:39.896 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 15:14:40.113 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-07 15:15:16.835 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41454 10 6452 1 2025-08-07 15:16:17.233 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40182 10 6452 1 2025-08-07 15:13:09.095 00:04:00.092 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-07 15:17:17.635 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33936 10 6452 1 2025-08-07 15:18:18.035 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:58378 10 6452 1 2025-08-07 15:19:18.395 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36820 10 6452 1 2025-08-07 15:19:39.876 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-07 15:19:40.201 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-07 15:19:40.126 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-07 15:19:40.077 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 15:19:40.120 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 15:15:09.092 00:06:00.099 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-07 15:20:18.756 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51384 10 6452 1 2025-08-07 15:21:19.118 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42622 10 6452 1 2025-08-07 15:22:09.094 00:00:00.103 TCP 179.21.23.23:179 -> 179.21.23.21:38570 2 123 1 2025-08-07 15:22:19.529 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48540 10 6452 1 2025-08-07 15:18:09.097 00:06:00.100 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-07 15:23:19.942 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:47502 10 6452 1 2025-08-07 15:24:20.371 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34994 10 6452 1 2025-08-07 15:24:40.210 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-07 15:24:40.147 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-07 15:24:40.215 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 15:24:40.266 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 15:24:40.350 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-07 15:25:20.774 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:51458 10 6452 1 2025-08-07 15:26:21.146 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33526 10 6452 1 2025-08-07 15:23:09.095 00:04:00.106 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-07 15:27:21.558 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36712 10 6452 1 2025-08-07 15:28:21.967 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37204 10 6452 1 2025-08-07 15:29:22.373 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53488 10 6452 1 2025-08-07 15:29:40.445 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-07 15:29:40.360 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-07 15:29:40.496 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-07 15:29:40.046 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 15:29:40.362 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 15:25:09.098 00:06:00.099 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-07 15:30:22.808 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37920 10 6452 1 2025-08-07 15:31:23.212 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38512 10 6452 1 2025-08-07 15:28:09.095 00:04:00.104 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-07 15:32:23.610 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:50886 10 6452 1 2025-08-07 15:33:23.974 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:55954 10 6452 1 2025-08-07 15:32:09.098 00:02:00.099 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-08-07 15:34:24.339 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54650 10 6452 1 2025-08-07 15:34:40.260 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-07 15:34:40.341 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-07 15:34:40.281 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 15:34:40.429 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 15:34:40.511 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-07 15:35:24.739 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48108 10 6452 1 2025-08-07 15:36:25.143 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:40892 10 6452 1 2025-08-07 15:33:09.097 00:04:00.104 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-07 15:37:25.519 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38416 10 6452 1 2025-08-07 15:38:25.927 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:59194 10 6452 1 2025-08-07 15:35:09.099 00:04:00.099 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-07 15:39:40.695 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-07 15:39:26.350 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:57606 10 6452 1 2025-08-07 15:39:40.614 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-07 15:39:40.372 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-07 15:39:40.172 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 15:39:40.613 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 15:40:26.711 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:38674 10 6452 1 2025-08-07 15:41:27.095 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51078 10 6452 1 2025-08-07 15:42:27.458 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53980 10 6452 1 2025-08-07 15:38:09.097 00:06:00.107 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-07 15:43:27.825 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:35418 10 6452 1 2025-08-07 15:40:09.099 00:04:00.102 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-07 15:44:28.190 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44654 10 6452 1 2025-08-07 15:44:40.657 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-07 15:44:40.625 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-07 15:44:40.471 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-07 15:44:40.513 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 15:44:40.574 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 15:45:28.602 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40132 10 6452 1 2025-08-07 15:46:29.011 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51462 10 6452 1 2025-08-07 15:47:29.418 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38448 10 6452 1 2025-08-07 15:48:29.826 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49572 10 6452 1 2025-08-07 15:45:09.102 00:04:00.101 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-07 15:49:40.828 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-07 15:49:40.564 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-07 15:49:40.630 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-07 15:49:40.649 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 15:49:30.230 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55448 10 6452 1 2025-08-07 15:49:40.747 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 15:45:09.099 00:06:00.106 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-07 15:50:30.634 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33978 10 6452 1 2025-08-07 15:51:31.038 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39970 10 6452 1 2025-08-07 15:52:31.407 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:56714 10 6452 1 2025-08-07 15:53:31.769 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:46536 10 6452 1 2025-08-07 15:52:09.100 00:02:00.107 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-08-07 15:54:40.892 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-07 15:54:40.766 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-07 15:54:40.755 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-07 15:54:40.631 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 15:54:32.148 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38820 10 6452 1 2025-08-07 15:54:40.810 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 15:50:09.103 00:06:00.102 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-07 15:55:32.558 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:35686 10 6452 1 2025-08-07 15:56:32.922 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:57234 12 6556 1 2025-08-07 15:57:33.386 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54536 10 6452 1 2025-08-07 15:58:33.785 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57490 10 6452 1 Summary: total flows: 143, total bytes: 417227, total packets: 1024, avg bps: 874, avg pps: 0, avg bpp: 407 Time window: 2025-08-07 14:55:09 - 2025-08-07 15:58:44 Total flows processed: 143, passed: 143, Blocks skipped: 0, Bytes read: 14936 Sys: 0.0013s User: 0.0027s Wall: 0.0019s flows/second: 76846.3 Runtime: 0.0019s