Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-09 00:58:57.778 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:42790 12 10367 1 2025-08-09 00:55:09.991 00:05:00.117 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-09 00:59:58.259 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45660 10 6452 1 2025-08-09 01:00:20.500 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 01:00:20.420 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 01:00:20.524 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 01:00:20.420 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 01:00:20.503 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 01:00:58.670 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45446 10 6452 1 2025-08-09 01:01:59.030 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:49170 10 6452 1 2025-08-09 01:02:59.455 00:00:10.743 TCP 1.101.0.1:3000 -> 23.104.0.1:48348 10 6452 1 2025-08-09 01:00:09.994 00:05:00.112 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-09 01:04:00.240 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46234 10 6452 1 2025-08-09 01:05:00.642 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39972 10 6452 1 2025-08-09 01:01:09.992 00:05:00.118 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-09 01:05:21.618 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 01:05:21.662 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 01:05:21.700 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 01:05:21.154 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 01:05:21.537 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 01:06:01.009 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55686 10 6452 1 2025-08-09 01:07:01.415 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39700 10 6452 1 2025-08-09 01:08:01.828 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49246 10 6452 1 2025-08-09 01:09:02.228 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44506 10 6452 1 2025-08-09 01:06:09.997 00:05:00.111 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-09 01:10:02.629 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46866 10 6452 1 2025-08-09 01:10:20.570 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 01:10:20.800 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 01:10:20.529 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 01:10:20.571 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 01:10:20.655 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 01:07:09.995 00:05:00.116 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-09 01:11:03.038 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34496 10 6452 1 2025-08-09 01:12:03.441 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38496 10 6452 1 2025-08-09 01:13:03.842 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:38712 10 6452 1 2025-08-09 01:14:04.268 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:45252 12 10365 1 2025-08-09 01:15:04.703 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35864 10 6452 1 2025-08-09 01:15:20.842 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 01:15:21.118 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 01:15:20.661 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 01:15:20.983 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 01:15:21.065 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 01:12:09.999 00:05:00.112 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-09 01:16:05.113 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50072 10 6452 1 2025-08-09 01:13:09.995 00:05:00.118 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-09 01:17:05.519 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38864 10 6452 1 2025-08-09 01:18:05.926 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:43228 10 6452 1 2025-08-09 01:19:06.338 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:32824 10 6452 1 2025-08-09 01:20:06.746 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:54586 10 6452 1 2025-08-09 01:20:21.148 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 01:20:20.963 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 01:20:21.065 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 01:20:20.866 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 01:20:21.064 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 01:21:07.177 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38304 10 6452 1 2025-08-09 01:22:07.587 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53848 10 6452 1 2025-08-09 01:18:10.004 00:06:00.110 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 01:23:07.988 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55588 10 6452 1 2025-08-09 01:19:10.003 00:06:00.114 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 01:24:08.395 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:38780 10 6452 1 2025-08-09 01:25:08.754 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:43478 10 6452 1 2025-08-09 01:25:20.934 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 01:25:21.011 00:00:00.037 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 01:25:20.787 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 01:25:20.934 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 01:25:21.017 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 01:26:09.171 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60830 10 6452 1 2025-08-09 01:27:09.542 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38682 10 6452 1 2025-08-09 01:28:09.947 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34268 10 6452 1 2025-08-09 01:29:10.363 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33622 10 6452 1 2025-08-09 01:25:10.015 00:06:00.100 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 01:30:21.149 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 01:30:10.793 00:00:10.354 TCP 1.101.0.1:3000 -> 23.104.0.1:45570 10 6452 1 2025-08-09 01:30:21.153 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 01:30:21.106 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 01:30:21.144 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 01:30:21.226 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 01:26:10.012 00:06:00.105 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 01:31:11.188 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58560 10 6452 1 2025-08-09 01:32:11.585 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60174 10 6452 1 2025-08-09 01:33:11.983 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:56936 11 6504 1 2025-08-09 01:34:12.402 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35862 10 6452 1 2025-08-09 01:35:21.653 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 01:35:21.520 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 01:35:21.099 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 01:35:21.405 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 01:35:12.811 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45164 10 6452 1 2025-08-09 01:35:21.489 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 01:36:13.211 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49180 10 6452 1 2025-08-09 01:32:10.036 00:06:00.081 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 01:37:13.612 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44360 10 6452 1 2025-08-09 01:33:10.036 00:06:00.084 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 01:38:14.020 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35926 10 6452 1 2025-08-09 01:39:14.425 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:44946 10 6452 1 2025-08-09 01:40:21.373 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 01:40:21.351 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 01:40:21.100 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 01:40:21.307 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 01:40:21.291 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 01:40:14.791 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50824 10 6452 1 2025-08-09 01:41:15.196 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37378 10 6452 1 2025-08-09 01:42:15.598 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:39840 10 6452 1 2025-08-09 01:43:15.993 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49832 10 6452 1 2025-08-09 01:39:10.043 00:06:00.077 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 01:44:16.354 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46256 10 6452 1 2025-08-09 01:40:10.039 00:06:00.082 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 01:45:21.526 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 01:45:21.525 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 01:45:21.407 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 01:45:21.463 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 01:45:21.546 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 01:45:16.712 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60146 10 6452 1 2025-08-09 01:46:17.117 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:59198 10 6452 1 2025-08-09 01:47:17.478 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55430 10 6452 1 2025-08-09 01:48:17.876 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38818 10 6452 1 2025-08-09 01:49:18.282 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57676 10 6452 1 2025-08-09 01:50:21.500 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 01:50:21.579 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 01:50:21.511 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 01:50:21.334 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 01:50:21.417 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 01:50:18.687 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:48240 10 6452 1 2025-08-09 01:46:10.046 00:06:00.076 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 01:51:19.053 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44104 10 6452 1 2025-08-09 01:47:10.043 00:06:00.082 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 01:52:19.452 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57986 10 6452 1 2025-08-09 01:53:19.861 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:49504 10 6452 1 2025-08-09 01:54:20.280 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:50240 12 10367 1 2025-08-09 01:55:21.717 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 01:55:21.631 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 01:55:21.675 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 01:55:21.521 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 01:55:21.605 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 01:55:20.759 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:36336 10 6452 1 2025-08-09 01:56:21.181 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55978 10 6452 1 2025-08-09 01:57:21.584 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36984 10 6452 1 2025-08-09 01:53:10.046 00:06:00.078 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 01:58:21.992 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58470 10 6452 1 Summary: total flows: 138, total bytes: 428672, total packets: 1025, avg bps: 893, avg pps: 0, avg bpp: 418 Time window: 2025-08-09 00:55:09 - 2025-08-09 01:59:10 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0025s User: 0.0012s Wall: 0.0016s flows/second: 88693.5 Runtime: 0.0016s