Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-09 07:58:53.719 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:41900 10 6452 1 2025-08-09 07:59:54.148 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47034 10 6452 1 2025-08-09 08:00:29.155 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 08:00:28.987 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 08:00:28.966 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:00:29.072 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:00:28.976 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 08:00:54.510 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51068 10 6452 1 2025-08-09 08:01:54.913 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46212 10 6452 1 2025-08-09 07:57:10.163 00:06:00.198 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 08:02:55.318 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52992 10 6452 1 2025-08-09 07:58:10.161 00:06:00.203 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 08:03:55.731 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58156 10 6452 1 2025-08-09 08:04:56.139 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53656 10 6452 1 2025-08-09 08:05:29.411 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 08:05:29.048 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 08:05:29.232 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:05:29.208 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:05:29.290 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 08:05:56.544 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33010 10 6452 1 2025-08-09 08:06:56.952 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53890 10 6452 1 2025-08-09 08:07:57.311 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57096 10 6452 1 2025-08-09 08:08:57.708 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:48238 12 10367 1 2025-08-09 08:04:10.165 00:06:00.198 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 08:09:58.148 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57994 10 6452 1 2025-08-09 08:05:10.164 00:06:00.201 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 08:10:29.119 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 08:10:29.297 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 08:10:29.052 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:10:29.104 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:10:29.188 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 08:10:58.516 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45100 10 6452 1 2025-08-09 08:11:58.879 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:40650 10 6452 1 2025-08-09 08:12:59.238 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57118 10 6452 1 2025-08-09 08:13:59.646 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:34174 10 6452 1 2025-08-09 08:15:00.034 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:47138 10 6452 1 2025-08-09 08:15:29.453 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 08:15:29.463 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 08:15:29.248 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 08:15:29.490 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:15:29.370 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:11:10.171 00:06:00.194 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 08:16:00.407 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:38992 10 6452 1 2025-08-09 08:12:10.168 00:06:00.199 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 08:17:00.800 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45238 10 6452 1 2025-08-09 08:18:01.201 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57098 10 6452 1 2025-08-09 08:19:01.617 00:00:10.672 TCP 1.101.0.1:3000 -> 23.104.0.1:34524 10 6452 1 2025-08-09 08:20:02.327 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53752 10 6452 1 2025-08-09 08:20:29.466 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 08:20:29.461 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 08:20:29.470 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 08:20:29.389 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:20:29.384 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:21:02.730 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:39400 10 6452 1 2025-08-09 08:22:03.142 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46122 10 6452 1 2025-08-09 08:18:10.171 00:06:00.193 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 08:23:03.550 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:47100 10 6452 1 2025-08-09 08:24:03.914 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54878 10 6452 1 2025-08-09 08:19:10.169 00:06:00.199 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 08:25:04.322 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60050 10 6452 1 2025-08-09 08:25:29.626 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 08:25:29.532 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 08:25:29.547 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 08:25:29.502 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:25:29.544 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:26:04.734 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53762 10 6452 1 2025-08-09 08:27:05.143 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:32966 10 6452 1 2025-08-09 08:28:05.548 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37222 10 6452 1 2025-08-09 08:29:05.947 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:54862 10 6452 1 2025-08-09 08:25:10.174 00:06:00.192 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 08:30:06.365 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58364 10 6452 1 2025-08-09 08:30:29.790 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 08:30:29.458 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 08:30:29.841 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 08:30:29.670 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:30:29.709 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:26:10.171 00:06:00.197 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 08:31:06.762 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:46874 10 6452 1 2025-08-09 08:32:07.131 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35496 10 6452 1 2025-08-09 08:33:07.539 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35382 10 6452 1 2025-08-09 08:34:07.943 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34936 10 6452 1 2025-08-09 08:35:08.354 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60034 12 6556 1 2025-08-09 08:35:29.898 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 08:35:29.815 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:35:29.820 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 08:35:29.741 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:35:30.094 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 08:36:08.777 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47358 10 6452 1 2025-08-09 08:32:10.174 00:06:00.195 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 08:37:09.139 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36690 10 6452 1 2025-08-09 08:33:10.172 00:06:00.199 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 08:38:09.544 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48126 10 6452 1 2025-08-09 08:39:09.948 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:37824 10 6452 1 2025-08-09 08:40:10.364 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:48312 11 6492 1 2025-08-09 08:40:30.040 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 08:40:30.017 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 08:40:30.129 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:40:30.116 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:40:30.199 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 08:41:10.759 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:37128 10 6452 1 2025-08-09 08:42:11.190 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53150 10 6452 1 2025-08-09 08:43:11.596 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:38076 10 6452 1 2025-08-09 08:39:10.177 00:06:00.193 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 08:44:11.962 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39950 10 6452 1 2025-08-09 08:40:10.174 00:06:00.201 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 08:45:12.325 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51166 10 6452 1 2025-08-09 08:45:29.942 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 08:45:29.835 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 08:45:29.670 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:45:29.858 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:45:29.975 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 08:46:12.721 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:35234 12 6556 1 2025-08-09 08:47:13.140 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40482 10 6452 1 2025-08-09 08:48:13.543 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:55110 10 6452 1 2025-08-09 08:49:13.947 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:55670 10 6452 1 2025-08-09 08:50:14.359 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51168 10 6452 1 2025-08-09 08:50:30.149 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 08:50:30.299 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 08:50:29.991 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:50:30.085 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:50:30.166 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 08:46:10.184 00:06:00.190 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 08:51:14.764 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46328 10 6452 1 2025-08-09 08:47:10.183 00:06:00.195 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 08:52:15.176 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34140 10 6452 1 2025-08-09 08:53:15.582 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:44736 10 6452 1 2025-08-09 08:54:15.997 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50120 10 6452 1 2025-08-09 08:55:16.396 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47616 10 6452 1 2025-08-09 08:55:30.356 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 08:55:30.266 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 08:55:30.109 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 08:55:30.042 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:55:30.274 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:56:16.802 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60258 10 6452 1 2025-08-09 08:57:17.223 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60580 10 6452 1 2025-08-09 08:53:10.185 00:06:00.191 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 08:58:17.629 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58190 10 6452 1 Summary: total flows: 137, total bytes: 421040, total packets: 1025, avg bps: 905, avg pps: 0, avg bpp: 410 Time window: 2025-08-09 07:57:10 - 2025-08-09 08:59:10 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0034s User: 0.0011s Wall: 0.0024s flows/second: 56707.8 Runtime: 0.0024s