Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-07 18:58:46.594 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49324 10 6452 1 2025-08-07 18:55:09.176 00:04:00.092 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-07 18:59:44.580 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-07 18:59:44.337 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-07 18:59:44.554 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 18:59:44.528 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 18:59:44.610 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-07 18:59:46.997 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49492 10 6452 1 2025-08-07 19:00:47.403 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33442 10 6452 1 2025-08-07 18:57:09.179 00:04:00.088 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-07 19:01:47.801 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:40254 10 6452 1 2025-08-07 19:02:48.179 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40158 10 6452 1 2025-08-07 19:03:48.585 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:43408 12 10367 1 2025-08-07 19:04:44.559 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-07 19:04:44.626 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-07 19:04:44.453 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 19:04:44.724 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 19:04:44.807 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-07 19:04:49.078 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:55512 10 6452 1 2025-08-07 19:00:09.176 00:06:00.093 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-07 19:05:49.491 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53264 10 6452 1 2025-08-07 19:02:09.181 00:04:00.088 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-07 19:06:49.896 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:47738 10 6452 1 2025-08-07 19:07:50.269 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:43856 10 6452 1 2025-08-07 19:08:50.639 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46378 10 6452 1 2025-08-07 19:09:44.520 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-07 19:09:44.688 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-07 19:09:44.478 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 19:09:44.519 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 19:09:44.602 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-07 19:09:51.074 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33110 10 6452 1 2025-08-07 19:10:51.475 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:48284 10 6452 1 2025-08-07 19:07:09.191 00:04:00.078 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-07 19:07:09.188 00:04:00.083 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-07 19:11:51.841 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:45302 10 6452 1 2025-08-07 19:12:52.278 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42276 10 6452 1 2025-08-07 19:13:52.683 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33728 10 6452 1 2025-08-07 19:14:44.562 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-07 19:14:44.724 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-07 19:14:44.599 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 19:14:44.564 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 19:14:44.647 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-07 19:14:53.104 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:34662 10 6452 1 2025-08-07 19:15:53.466 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47606 10 6452 1 2025-08-07 19:12:09.189 00:04:00.084 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-07 19:16:53.867 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35870 10 6452 1 2025-08-07 19:12:09.191 00:06:00.080 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-07 19:17:54.276 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37102 10 6452 1 2025-08-07 19:18:54.685 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55586 10 6452 1 2025-08-07 19:19:44.782 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-07 19:19:44.894 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-07 19:19:44.697 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-07 19:19:44.804 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 19:19:44.699 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 19:19:55.102 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:54328 10 6452 1 2025-08-07 19:17:09.189 00:04:00.103 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-07 19:20:55.521 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50636 10 6452 1 2025-08-07 19:21:55.922 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:54600 10 6452 1 2025-08-07 19:19:09.192 00:04:00.079 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-07 19:22:56.337 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58494 10 6452 1 2025-08-07 19:23:56.756 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:44380 10 6452 1 2025-08-07 19:24:45.291 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-07 19:24:45.519 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-07 19:24:45.167 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 19:24:45.392 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 19:24:45.475 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-07 19:24:57.184 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48062 10 6452 1 2025-08-07 19:22:09.200 00:04:00.076 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-07 19:25:57.587 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55372 10 6452 1 2025-08-07 19:26:57.949 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:48892 10 6452 1 2025-08-07 19:24:09.204 00:04:00.071 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-07 19:27:58.316 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:57508 10 6452 1 2025-08-07 19:28:58.722 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51106 10 6452 1 2025-08-07 19:29:44.912 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 19:29:44.964 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 19:29:45.215 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-07 19:29:45.028 00:00:00.032 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-07 19:29:45.047 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-07 19:29:59.133 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34398 10 6452 1 2025-08-07 19:27:09.201 00:04:00.076 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-07 19:30:59.496 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51260 10 6452 1 2025-08-07 19:31:59.900 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37028 10 6452 1 2025-08-07 19:29:09.205 00:04:00.069 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-07 19:33:00.307 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41750 10 6452 1 2025-08-07 19:34:00.713 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:34708 10 6452 1 2025-08-07 19:34:45.460 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-07 19:34:45.366 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-07 19:34:45.297 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-07 19:34:45.260 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 19:34:45.377 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 19:35:01.112 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46422 10 6452 1 2025-08-07 19:32:09.202 00:04:00.076 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-07 19:36:01.479 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43286 10 6452 1 2025-08-07 19:37:01.878 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41474 10 6452 1 2025-08-07 19:37:09.205 00:01:00.074 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-08-07 19:34:09.205 00:04:00.070 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-07 19:38:02.282 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:45278 10 6452 1 2025-08-07 19:39:02.650 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38272 10 6452 1 2025-08-07 19:39:45.379 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-07 19:39:45.332 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-07 19:39:45.298 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 19:39:45.193 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 19:39:45.277 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-07 19:40:03.071 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50062 10 6452 1 2025-08-07 19:41:03.477 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41596 10 6452 1 2025-08-07 19:42:03.877 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43136 10 6452 1 2025-08-07 19:39:09.208 00:04:00.073 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-07 19:39:09.209 00:04:00.069 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-07 19:43:04.282 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:60296 10 6452 1 2025-08-07 19:44:04.640 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43946 10 6452 1 2025-08-07 19:44:44.939 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 19:44:45.250 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-07 19:44:45.158 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-07 19:44:45.262 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 19:44:45.344 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-07 19:45:05.051 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49396 10 6452 1 2025-08-07 19:46:05.458 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58352 10 6452 1 2025-08-07 19:47:05.815 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34448 10 6452 1 2025-08-07 19:44:09.212 00:04:00.073 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-07 19:44:09.212 00:04:00.077 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-07 19:48:06.222 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53664 10 6452 1 2025-08-07 19:49:06.627 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59574 10 6452 1 2025-08-07 19:49:45.239 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-07 19:49:45.159 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-07 19:49:45.445 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-07 19:49:45.392 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 19:49:45.157 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 19:49:09.214 00:01:00.074 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-08-07 19:50:07.028 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:42384 10 6452 1 2025-08-07 19:51:07.425 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33328 10 6452 1 2025-08-07 19:52:07.834 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:60984 10 6452 1 2025-08-07 19:49:09.211 00:04:00.083 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-07 19:53:08.260 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34480 10 6452 1 2025-08-07 19:54:08.665 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36956 10 6452 1 2025-08-07 19:54:45.607 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-07 19:54:45.463 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-07 19:54:45.614 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 19:54:45.558 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-07 19:54:45.640 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-07 19:51:09.217 00:04:00.073 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-07 19:55:09.094 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41126 10 6452 1 2025-08-07 19:56:09.500 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48702 10 6452 1 2025-08-07 19:57:09.907 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:43104 10 6452 1 2025-08-07 19:54:09.215 00:04:00.087 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-07 19:58:10.310 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:57612 11 6504 1 Summary: total flows: 145, total bytes: 421336, total packets: 1029, avg bps: 888, avg pps: 0, avg bpp: 409 Time window: 2025-08-07 18:55:09 - 2025-08-07 19:58:20 Total flows processed: 145, passed: 145, Blocks skipped: 0, Bytes read: 15144 Sys: 0.0029s User: 0.0014s Wall: 0.0023s flows/second: 62153.7 Runtime: 0.0024s