Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-02 03:59:10.582 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53772 10 6452 1 2025-08-02 04:00:10.981 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39570 10 6452 1 2025-08-02 04:01:11.383 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45120 10 6452 1 2025-08-02 04:02:01.960 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 04:02:02.164 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:02:01.969 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:02:01.970 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 04:02:02.052 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 04:02:11.794 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:39908 10 6452 1 2025-08-02 03:58:06.259 00:06:00.203 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 04:03:12.177 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58878 10 6452 1 2025-08-02 03:59:06.261 00:06:00.198 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 04:04:12.588 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:51860 10 6452 1 2025-08-02 04:05:12.943 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:56510 10 6452 1 2025-08-02 04:06:13.366 00:00:10.452 TCP 1.101.0.1:3000 -> 23.104.0.1:55674 10 6452 1 2025-08-02 04:07:02.318 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 04:07:02.150 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 04:07:02.005 00:00:00.045 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:07:02.235 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:07:02.268 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 04:07:13.854 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:37334 10 6452 1 2025-08-02 04:08:14.273 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55894 10 6452 1 2025-08-02 04:09:14.675 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54950 10 6452 1 2025-08-02 04:05:06.259 00:06:00.203 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 04:10:15.039 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40668 10 6452 1 2025-08-02 04:06:06.262 00:06:00.198 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 04:11:15.442 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51582 10 6452 1 2025-08-02 04:12:02.406 00:00:00.014 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 04:12:01.972 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 04:12:02.126 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:12:02.324 00:00:00.014 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:12:02.121 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 04:12:15.848 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:43456 10 6452 1 2025-08-02 04:13:16.276 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52782 10 6452 1 2025-08-02 04:14:16.683 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:35170 10 6452 1 2025-08-02 04:15:17.106 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45636 10 6452 1 2025-08-02 04:16:17.509 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45266 10 6452 1 2025-08-02 04:17:02.393 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 04:17:02.190 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:17:02.402 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:17:02.239 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 04:17:02.486 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 04:12:06.262 00:06:00.202 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 04:17:17.913 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37384 10 6452 1 2025-08-02 04:13:06.264 00:06:00.197 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 04:18:18.322 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40450 10 6452 1 2025-08-02 04:19:18.733 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47498 10 6452 1 2025-08-02 04:20:19.132 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39732 10 6452 1 2025-08-02 04:21:19.534 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44594 10 6452 1 2025-08-02 04:22:02.495 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 04:22:02.395 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:22:02.273 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:22:02.364 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 04:22:02.356 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 04:22:19.940 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56106 10 6452 1 2025-08-02 04:23:20.354 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53634 10 6452 1 2025-08-02 04:19:06.261 00:06:00.203 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 04:24:20.764 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40146 10 6452 1 2025-08-02 04:20:06.264 00:06:00.200 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 04:25:21.174 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38570 10 6452 1 2025-08-02 04:26:21.576 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60188 10 6452 1 2025-08-02 04:27:02.919 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 04:27:02.538 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:27:02.926 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:27:02.648 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 04:27:03.009 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 04:27:21.979 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51420 10 6452 1 2025-08-02 04:28:22.385 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50574 10 6452 1 2025-08-02 04:29:22.788 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43286 10 6452 1 2025-08-02 04:30:23.195 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36996 10 6452 1 2025-08-02 04:26:06.264 00:06:00.204 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 04:31:23.599 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47142 10 6452 1 2025-08-02 04:32:02.459 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 04:32:02.493 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:32:02.609 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:32:02.456 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 04:32:02.691 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 04:27:06.266 00:06:00.200 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 04:32:24.015 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41746 10 6452 1 2025-08-02 04:33:24.425 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60518 10 6452 1 2025-08-02 04:34:24.830 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52984 10 6452 1 2025-08-02 04:35:25.228 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33872 10 6452 1 2025-08-02 04:36:25.638 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:54006 10 6452 1 2025-08-02 04:37:02.839 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 04:37:02.509 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:37:02.670 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:37:02.670 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 04:37:02.753 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 04:37:26.008 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59538 10 6452 1 2025-08-02 04:33:06.266 00:06:00.203 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 04:38:26.416 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44292 10 6452 1 2025-08-02 04:34:06.269 00:06:00.198 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 04:39:26.830 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58838 10 6452 1 2025-08-02 04:40:27.238 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46204 10 6452 1 2025-08-02 04:41:27.596 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50412 10 6452 1 2025-08-02 04:42:03.201 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 04:42:03.069 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:42:03.237 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:42:02.984 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 04:42:03.320 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 04:42:27.994 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:49944 10 6452 1 2025-08-02 04:43:28.361 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42846 10 6452 1 2025-08-02 04:44:28.764 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:46144 10 6452 1 2025-08-02 04:40:06.268 00:06:00.204 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 04:45:29.141 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34318 10 6452 1 2025-08-02 04:41:06.270 00:06:00.199 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 04:46:29.550 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40148 10 6452 1 2025-08-02 04:47:03.174 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 04:47:03.179 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:47:02.965 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:47:03.105 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 04:47:03.048 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 04:47:29.952 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58328 10 6452 1 2025-08-02 04:48:30.368 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:39512 12 10367 1 2025-08-02 04:49:30.847 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:34312 10 6452 1 2025-08-02 04:50:31.276 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51658 10 6452 1 2025-08-02 04:51:31.680 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42408 10 6452 1 2025-08-02 04:52:03.036 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 04:52:02.856 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:52:03.138 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:52:03.050 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 04:52:03.221 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 04:47:06.269 00:06:00.203 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 04:52:32.113 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37404 10 6452 1 2025-08-02 04:48:06.272 00:06:00.198 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 04:53:32.476 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54964 10 6452 1 2025-08-02 04:54:32.880 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:55510 10 6452 1 2025-08-02 04:55:33.241 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:49404 10 6452 1 2025-08-02 04:56:33.613 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58632 10 6452 1 2025-08-02 04:57:02.793 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 04:57:02.729 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:57:03.099 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:57:03.101 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 04:57:03.182 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 04:57:34.015 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34720 10 6452 1 2025-08-02 04:58:34.382 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58836 10 6452 1 Summary: total flows: 136, total bytes: 419931, total packets: 1006, avg bps: 923, avg pps: 0, avg bpp: 417 Time window: 2025-08-02 03:58:06 - 2025-08-02 04:58:44 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0011s User: 0.0023s Wall: 0.0014s flows/second: 96193.1 Runtime: 0.0014s