Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-17 22:59:07.546 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47788 10 6452 1 2025-08-17 22:59:38.356 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-17 22:59:38.339 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-17 22:59:38.005 00:00:00.059 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 22:59:38.368 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 22:59:38.450 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-17 23:00:07.957 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:37086 10 6452 1 2025-08-17 22:57:14.934 00:05:00.396 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-17 23:01:08.386 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34934 10 6452 1 2025-08-17 23:02:08.756 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33130 10 6452 1 2025-08-17 22:59:14.934 00:05:00.399 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-17 23:03:09.121 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55110 10 6452 1 2025-08-17 23:04:09.523 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:44766 10 6452 1 2025-08-17 23:04:38.284 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-17 23:04:38.153 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-17 23:04:38.154 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-17 23:04:37.990 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 23:04:38.201 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 23:05:09.915 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:48272 12 10367 1 2025-08-17 23:06:10.405 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42926 10 6452 1 2025-08-17 23:03:14.942 00:05:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-17 23:07:10.807 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45544 10 6452 1 2025-08-17 23:08:11.208 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51602 10 6452 1 2025-08-17 23:05:14.938 00:05:00.396 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-17 23:09:11.610 00:00:10.511 TCP 1.101.0.1:3000 -> 23.104.0.1:48074 10 6452 1 2025-08-17 23:09:38.064 00:00:00.034 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-17 23:09:38.240 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-17 23:09:38.100 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 23:09:38.251 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 23:09:38.334 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-17 23:10:12.157 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49248 10 6452 1 2025-08-17 23:11:12.564 00:00:10.413 TCP 1.101.0.1:3000 -> 23.104.0.1:59978 11 6504 1 2025-08-17 23:12:13.019 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:44308 10 6452 1 2025-08-17 23:09:14.943 00:05:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-17 23:13:13.436 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40486 10 6452 1 2025-08-17 23:14:13.840 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:48118 10 6452 1 2025-08-17 23:14:38.378 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-17 23:14:38.454 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-17 23:14:38.282 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 23:14:38.258 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 23:14:38.340 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-17 23:11:14.941 00:05:00.395 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-17 23:15:14.270 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47188 10 6452 1 2025-08-17 23:16:14.672 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:46432 10 6452 1 2025-08-17 23:17:15.032 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34054 10 6452 1 2025-08-17 23:18:15.433 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:56158 10 6452 1 2025-08-17 23:15:14.944 00:05:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-17 23:19:15.792 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58334 10 6452 1 2025-08-17 23:19:38.801 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-17 23:19:38.840 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-17 23:19:38.556 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-17 23:19:38.080 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 23:19:38.718 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 23:20:16.191 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39860 10 6452 1 2025-08-17 23:17:14.942 00:05:00.396 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-17 23:21:16.590 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36736 10 6452 1 2025-08-17 23:22:16.995 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42072 10 6452 1 2025-08-17 23:23:17.398 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33820 10 6452 1 2025-08-17 23:24:17.804 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60026 10 6452 1 2025-08-17 23:24:38.599 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-17 23:24:38.405 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-17 23:24:38.594 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-17 23:24:38.659 00:00:00.036 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 23:24:38.516 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 23:21:14.945 00:05:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-17 23:25:18.209 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36758 10 6452 1 2025-08-17 23:26:18.587 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55572 10 6452 1 2025-08-17 23:23:14.945 00:05:00.392 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-17 23:27:19.003 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:39708 10 6452 1 2025-08-17 23:28:19.428 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42552 10 6452 1 2025-08-17 23:29:19.835 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:54880 10 6452 1 2025-08-17 23:29:38.660 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-17 23:29:38.521 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-17 23:29:38.657 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 23:29:38.657 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 23:29:38.741 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-17 23:30:20.249 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43206 10 6452 1 2025-08-17 23:27:14.949 00:05:00.386 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-17 23:31:20.658 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51640 10 6452 1 2025-08-17 23:32:21.068 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35460 10 6452 1 2025-08-17 23:29:14.946 00:05:00.392 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-17 23:33:21.477 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55790 10 6452 1 2025-08-17 23:34:38.800 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-17 23:34:21.901 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46644 10 6452 1 2025-08-17 23:34:38.779 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-17 23:34:38.649 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-17 23:34:38.573 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 23:34:38.719 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 23:35:22.308 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49412 10 6452 1 2025-08-17 23:36:22.722 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50090 10 6452 1 2025-08-17 23:33:14.949 00:05:00.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-17 23:37:23.133 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54426 10 6452 1 2025-08-17 23:38:23.544 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57558 10 6452 1 2025-08-17 23:35:14.947 00:05:00.392 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-17 23:39:38.941 00:00:00.030 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-17 23:39:23.946 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49136 10 6452 1 2025-08-17 23:39:38.853 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-17 23:39:38.861 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-17 23:39:38.611 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 23:39:38.859 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 23:40:24.358 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41270 10 6452 1 2025-08-17 23:41:24.772 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:39198 10 6452 1 2025-08-17 23:42:25.187 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60078 10 6452 1 2025-08-17 23:39:14.950 00:05:00.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-17 23:43:25.590 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38972 10 6452 1 2025-08-17 23:44:38.818 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-17 23:44:38.880 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-17 23:44:25.993 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43960 10 6452 1 2025-08-17 23:44:38.736 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-17 23:44:38.938 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 23:44:38.735 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 23:41:14.949 00:05:00.393 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-17 23:45:26.406 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:40032 12 10367 1 2025-08-17 23:46:26.847 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:33228 10 6452 1 2025-08-17 23:47:27.273 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53812 10 6452 1 2025-08-17 23:48:27.674 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55034 10 6452 1 2025-08-17 23:45:14.955 00:05:00.384 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-17 23:49:39.009 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-17 23:49:38.931 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-17 23:49:38.843 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-17 23:49:28.039 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40234 10 6452 1 2025-08-17 23:49:38.888 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 23:49:38.925 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 23:50:28.442 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50356 10 6452 1 2025-08-17 23:47:14.952 00:05:00.389 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-17 23:51:28.846 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33988 10 6452 1 2025-08-17 23:52:29.242 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60152 10 6452 1 2025-08-17 23:53:29.644 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43488 10 6452 1 2025-08-17 23:54:39.280 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-17 23:54:39.328 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-17 23:54:39.207 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 23:54:39.224 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-17 23:54:39.307 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-17 23:54:30.067 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55124 10 6452 1 2025-08-17 23:51:14.955 00:05:00.385 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-17 23:55:30.467 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39912 10 6452 1 2025-08-17 23:56:30.868 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:43714 10 6452 1 2025-08-17 23:53:14.954 00:05:00.390 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-17 23:57:31.281 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41780 10 6452 1 2025-08-17 23:58:31.702 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:46152 10 6452 1 Summary: total flows: 140, total bytes: 424882, total packets: 1025, avg bps: 921, avg pps: 0, avg bpp: 414 Time window: 2025-08-17 22:57:14 - 2025-08-17 23:58:42 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0032s User: 0.0011s Wall: 0.0021s flows/second: 67116.5 Runtime: 0.0021s