Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-20 11:58:50.408 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58006 10 6452 1 2025-08-20 11:59:50.813 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59218 10 6452 1 2025-08-20 12:00:51.553 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 12:00:51.317 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 12:00:51.476 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 12:00:51.415 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 12:00:51.470 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 12:00:51.220 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33460 10 6452 1 2025-08-20 12:01:51.626 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38798 10 6452 1 2025-08-20 11:57:16.314 00:06:00.241 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 12:02:52.038 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:49302 10 6452 1 2025-08-20 11:58:16.316 00:06:00.237 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 12:03:52.400 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49550 10 6452 1 2025-08-20 12:04:52.802 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33744 10 6452 1 2025-08-20 12:05:51.349 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 12:05:51.509 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 12:05:51.481 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 12:05:51.518 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 12:05:51.600 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 12:05:53.210 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:37170 10 6452 1 2025-08-20 12:06:53.621 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:53838 11 6504 1 2025-08-20 12:07:54.100 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:41594 10 6452 1 2025-08-20 12:08:54.461 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:56258 10 6452 1 2025-08-20 12:04:16.315 00:06:00.242 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 12:09:54.822 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53930 10 6452 1 2025-08-20 12:05:16.319 00:06:00.237 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 12:10:51.516 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 12:10:51.596 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 12:10:51.688 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 12:10:51.651 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 12:10:51.735 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 12:10:55.218 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:57306 10 6452 1 2025-08-20 12:11:55.584 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42346 10 6452 1 2025-08-20 12:12:55.986 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48438 10 6452 1 2025-08-20 12:13:56.388 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:59170 10 6452 1 2025-08-20 12:14:56.751 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42396 10 6452 1 2025-08-20 12:15:51.967 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 12:15:51.874 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 12:15:52.085 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 12:15:51.828 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 12:15:51.884 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 12:15:57.149 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38714 10 6452 1 2025-08-20 12:11:16.317 00:06:00.241 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 12:16:57.555 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57518 10 6452 1 2025-08-20 12:12:16.320 00:06:00.235 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 12:17:57.958 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:38954 10 6452 1 2025-08-20 12:18:58.323 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51032 10 6452 1 2025-08-20 12:19:58.683 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41078 10 6452 1 2025-08-20 12:20:51.782 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 12:20:51.962 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 12:20:51.877 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 12:20:51.782 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 12:20:51.864 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 12:20:59.113 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56414 10 6452 1 2025-08-20 12:21:59.521 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41408 10 6452 1 2025-08-20 12:22:59.927 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:36576 10 6452 1 2025-08-20 12:18:16.317 00:06:00.241 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 12:24:00.318 00:00:10.743 TCP 1.101.0.1:3000 -> 23.104.0.1:48856 10 6452 1 2025-08-20 12:19:16.321 00:06:00.236 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 12:25:01.120 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33238 10 6452 1 2025-08-20 12:25:52.035 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 12:25:51.828 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 12:25:51.906 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 12:25:51.916 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 12:25:51.951 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 12:26:01.523 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54758 10 6452 1 2025-08-20 12:27:01.926 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:55772 10 6452 1 2025-08-20 12:28:02.364 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:43280 10 6452 1 2025-08-20 12:29:02.728 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:51094 10 6452 1 2025-08-20 12:30:03.114 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44282 10 6452 1 2025-08-20 12:25:16.321 00:06:00.245 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 12:30:52.132 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 12:30:51.963 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 12:30:51.888 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 12:30:52.122 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 12:30:52.205 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 12:31:03.515 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45190 10 6452 1 2025-08-20 12:26:16.322 00:06:00.241 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 12:32:03.916 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53386 10 6452 1 2025-08-20 12:33:04.315 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56020 10 6452 1 2025-08-20 12:34:04.718 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:57230 10 6452 1 2025-08-20 12:35:05.101 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55718 10 6452 1 2025-08-20 12:35:51.971 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 12:35:52.132 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 12:35:52.013 00:00:00.037 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 12:35:51.981 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 12:35:52.064 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 12:36:05.468 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:58554 10 6452 1 2025-08-20 12:37:05.870 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53672 10 6452 1 2025-08-20 12:32:16.322 00:06:00.246 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 12:33:16.324 00:06:00.242 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 12:38:06.230 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:44834 10 6452 1 2025-08-20 12:39:06.644 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60008 10 6452 1 2025-08-20 12:40:07.061 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37970 10 6452 1 2025-08-20 12:40:52.608 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 12:40:52.460 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 12:40:52.300 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 12:40:52.459 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 12:40:52.542 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 12:41:07.466 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52882 10 6452 1 2025-08-20 12:42:07.870 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:53204 10 6452 1 2025-08-20 12:43:08.236 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39338 10 6452 1 2025-08-20 12:39:16.324 00:06:00.249 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 12:44:08.641 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:43716 10 6452 1 2025-08-20 12:40:16.326 00:06:00.244 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 12:45:08.996 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:42454 10 6452 1 2025-08-20 12:45:52.417 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 12:45:52.381 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 12:45:52.275 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 12:45:52.344 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 12:45:52.333 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 12:46:09.358 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:40436 10 6452 1 2025-08-20 12:47:09.718 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52674 10 6452 1 2025-08-20 12:48:10.128 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:55042 10 6452 1 2025-08-20 12:49:10.527 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:51440 10 6452 1 2025-08-20 12:50:10.890 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:44820 10 6452 1 2025-08-20 12:50:52.569 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 12:50:52.492 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 12:50:52.443 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 12:50:52.120 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 12:50:52.487 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 12:46:16.325 00:06:00.249 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 12:51:11.309 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44274 10 6452 1 2025-08-20 12:47:16.328 00:06:00.244 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 12:52:11.673 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:48780 10 6452 1 2025-08-20 12:53:12.103 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:37114 10 6452 1 2025-08-20 12:54:12.537 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50258 10 6452 1 2025-08-20 12:55:12.939 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:47494 10 6452 1 2025-08-20 12:55:52.557 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 12:55:52.559 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 12:55:52.375 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 12:55:52.591 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 12:55:52.672 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 12:56:13.367 00:00:10.450 TCP 1.101.0.1:3000 -> 23.104.0.1:36546 12 10367 1 2025-08-20 12:57:13.868 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:37246 10 6452 1 2025-08-20 12:53:16.326 00:06:00.250 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 12:58:14.287 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54296 10 6452 1 Summary: total flows: 137, total bytes: 420844, total packets: 1021, avg bps: 904, avg pps: 0, avg bpp: 412 Time window: 2025-08-20 11:57:16 - 2025-08-20 12:59:16 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0010s User: 0.0031s Wall: 0.0021s flows/second: 66284.4 Runtime: 0.0021s