Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-09 04:59:36.498 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53822 10 6452 1 2025-08-09 04:55:10.098 00:06:00.147 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 05:00:25.641 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 05:00:25.559 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 05:00:25.388 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 05:00:25.288 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 05:00:25.008 00:00:00.051 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 05:00:36.862 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:35190 10 6452 1 2025-08-09 04:56:10.097 00:06:00.151 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 05:01:37.275 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50170 10 6452 1 2025-08-09 05:02:37.678 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48980 10 6452 1 2025-08-09 05:03:38.110 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:50762 12 10367 1 2025-08-09 05:04:38.584 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34986 10 6452 1 2025-08-09 05:05:25.626 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 05:05:25.356 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 05:05:25.555 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 05:05:25.149 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 05:05:25.543 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 05:05:38.996 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56138 10 6452 1 2025-08-09 05:06:39.403 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49364 10 6452 1 2025-08-09 05:02:10.099 00:06:00.146 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 05:07:39.766 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42808 10 6452 1 2025-08-09 05:03:10.097 00:06:00.152 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 05:08:40.173 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:32834 10 6452 1 2025-08-09 05:09:40.579 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:43070 10 6452 1 2025-08-09 05:10:25.680 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 05:10:25.597 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 05:10:25.523 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 05:10:25.264 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 05:10:25.596 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 05:10:40.968 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47738 10 6452 1 2025-08-09 05:11:41.388 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38230 10 6452 1 2025-08-09 05:12:41.788 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39380 10 6452 1 2025-08-09 05:13:42.190 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43204 10 6452 1 2025-08-09 05:09:10.100 00:06:00.146 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 05:14:42.598 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43998 10 6452 1 2025-08-09 05:10:10.098 00:06:00.152 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 05:15:25.850 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 05:15:25.465 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 05:15:25.714 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 05:15:25.753 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 05:15:25.835 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 05:15:43.002 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34660 10 6452 1 2025-08-09 05:16:43.368 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:32976 10 6452 1 2025-08-09 05:17:43.772 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39860 10 6452 1 2025-08-09 05:18:44.183 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34106 10 6452 1 2025-08-09 05:19:44.590 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:50562 10 6452 1 2025-08-09 05:20:26.207 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 05:20:26.206 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 05:20:25.717 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 05:20:26.209 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 05:20:26.293 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 05:20:44.960 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50092 10 6452 1 2025-08-09 05:16:10.101 00:06:00.150 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 05:21:45.362 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43752 10 6452 1 2025-08-09 05:17:10.099 00:06:00.159 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 05:22:45.722 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:41146 10 6452 1 2025-08-09 05:23:46.109 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53280 10 6452 1 2025-08-09 05:24:46.511 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41876 10 6452 1 2025-08-09 05:25:25.948 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 05:25:25.954 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 05:25:25.871 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 05:25:25.702 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 05:25:25.865 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 05:25:46.916 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40564 10 6452 1 2025-08-09 05:26:47.322 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48688 10 6452 1 2025-08-09 05:27:47.731 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:40288 10 6452 1 2025-08-09 05:23:10.105 00:06:00.174 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 05:28:48.156 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35338 10 6452 1 2025-08-09 05:24:10.103 00:06:00.179 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 05:29:48.564 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47958 10 6452 1 2025-08-09 05:30:26.275 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 05:30:26.071 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 05:30:26.095 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 05:30:26.219 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 05:30:26.302 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 05:30:48.922 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43516 10 6452 1 2025-08-09 05:31:49.282 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51012 10 6452 1 2025-08-09 05:32:49.695 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33066 10 6452 1 2025-08-09 05:33:50.117 00:00:10.434 TCP 1.101.0.1:3000 -> 23.104.0.1:57864 12 10367 1 2025-08-09 05:34:50.587 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54142 10 6452 1 2025-08-09 05:30:10.105 00:06:00.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 05:35:26.189 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 05:35:26.163 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 05:35:26.104 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 05:35:25.968 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 05:35:26.106 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 05:35:51.001 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:53192 10 6452 1 2025-08-09 05:31:10.103 00:06:00.180 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 05:36:51.355 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55210 10 6452 1 2025-08-09 05:37:51.759 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:45732 10 6452 1 2025-08-09 05:38:52.178 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:56240 10 6452 1 2025-08-09 05:39:52.532 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36128 10 6452 1 2025-08-09 05:40:26.512 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 05:40:26.461 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 05:40:26.276 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 05:40:26.187 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 05:40:26.430 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 05:40:52.897 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:39702 10 6452 1 2025-08-09 05:41:53.314 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43550 10 6452 1 2025-08-09 05:37:10.109 00:06:00.180 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 05:42:53.721 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:60418 10 6452 1 2025-08-09 05:38:10.106 00:06:00.185 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 05:43:54.111 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49640 10 6452 1 2025-08-09 05:44:54.513 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33176 10 6452 1 2025-08-09 05:45:26.358 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 05:45:26.273 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 05:45:26.380 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 05:45:26.194 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 05:45:26.275 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 05:45:54.912 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39012 10 6452 1 2025-08-09 05:46:55.315 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59614 10 6452 1 2025-08-09 05:47:55.721 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49080 10 6452 1 2025-08-09 05:48:56.105 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48550 10 6452 1 2025-08-09 05:44:10.117 00:06:00.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 05:49:56.507 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41540 10 6452 1 2025-08-09 05:45:10.115 00:06:00.180 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 05:50:26.505 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 05:50:26.260 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 05:50:26.157 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 05:50:26.130 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 05:50:26.220 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 05:50:56.922 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:35810 10 6452 1 2025-08-09 05:51:57.339 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:40776 10 6452 1 2025-08-09 05:52:57.709 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52892 10 6452 1 2025-08-09 05:53:58.112 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49662 10 6452 1 2025-08-09 05:54:58.520 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42358 10 6452 1 2025-08-09 05:55:27.210 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 05:55:26.809 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 05:55:26.841 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 05:55:26.605 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 05:55:26.689 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 05:55:58.929 00:00:10.352 TCP 1.101.0.1:3000 -> 23.104.0.1:53816 10 6452 1 2025-08-09 05:51:10.121 00:06:00.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 05:56:59.331 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:43534 10 6452 1 2025-08-09 05:52:10.117 00:06:00.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 05:57:59.738 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50230 10 6452 1 Summary: total flows: 137, total bytes: 419116, total packets: 1026, avg bps: 886, avg pps: 0, avg bpp: 408 Time window: 2025-08-09 04:55:10 - 2025-08-09 05:58:10 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0020s User: 0.0020s Wall: 0.0020s flows/second: 70007.3 Runtime: 0.0020s