Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-04 04:59:10.306 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40116 10 6452 1 2025-08-04 05:00:10.713 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53272 10 6452 1 2025-08-04 05:01:11.118 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47770 10 6452 1 2025-08-04 04:57:07.365 00:06:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-08-04 05:02:11.525 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42244 10 6452 1 2025-08-04 05:03:00.897 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-04 05:03:00.930 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 05:03:00.966 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 05:03:01.144 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-04 05:03:01.049 00:00:00.045 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-04 05:03:11.934 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:33086 10 6452 1 2025-08-04 04:59:07.347 00:06:00.021 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-04 05:04:12.376 00:00:10.491 TCP 1.101.0.1:3000 -> 23.104.0.1:41178 13 10419 1 2025-08-04 05:05:12.907 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49900 10 6452 1 2025-08-04 05:06:13.314 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42292 10 6452 1 2025-08-04 05:07:13.720 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47572 10 6452 1 2025-08-04 05:08:01.312 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-04 05:08:01.231 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 05:08:01.180 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-04 05:08:01.116 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-04 05:08:01.192 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 05:08:14.104 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57988 10 6452 1 2025-08-04 05:04:07.366 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-08-04 05:09:14.509 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35210 10 6452 1 2025-08-04 05:10:14.910 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34298 10 6452 1 2025-08-04 05:06:07.349 00:06:00.024 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-04 05:11:15.322 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38994 10 6452 1 2025-08-04 05:12:15.731 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:58186 10 6452 1 2025-08-04 05:13:01.251 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-04 05:13:01.140 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 05:13:01.123 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 05:13:01.121 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-04 05:13:01.205 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-04 05:13:16.156 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53120 10 6452 1 2025-08-04 05:14:16.567 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46308 10 6452 1 2025-08-04 05:15:16.967 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48880 10 6452 1 2025-08-04 05:11:07.368 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-08-04 05:16:17.378 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34154 10 6452 1 2025-08-04 05:17:17.781 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38896 10 6452 1 2025-08-04 05:18:01.442 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-04 05:18:01.269 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-04 05:18:01.270 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 05:18:01.359 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 05:18:01.356 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-04 05:13:07.349 00:06:00.025 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-04 05:18:18.184 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53082 10 6452 1 2025-08-04 05:19:18.585 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:50928 12 10367 1 2025-08-04 05:20:19.091 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37426 10 6452 1 2025-08-04 05:21:19.495 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43996 10 6452 1 2025-08-04 05:22:19.913 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41726 10 6452 1 2025-08-04 05:23:01.696 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-04 05:23:01.625 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-04 05:23:01.402 00:00:00.047 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 05:23:01.614 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 05:23:01.885 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-04 05:18:07.372 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-08-04 05:23:20.317 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51184 10 6452 1 2025-08-04 05:24:20.722 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:58136 10 6452 1 2025-08-04 05:20:07.350 00:06:00.025 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-04 05:25:21.144 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36408 10 6452 1 2025-08-04 05:26:21.549 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34842 10 6452 1 2025-08-04 05:27:21.954 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49452 10 6452 1 2025-08-04 05:28:01.693 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-04 05:28:01.483 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-04 05:28:01.410 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 05:28:01.611 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 05:28:01.485 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-04 05:28:22.360 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48572 10 6452 1 2025-08-04 05:29:22.765 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:51220 10 6452 1 2025-08-04 05:25:07.372 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-08-04 05:30:23.187 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:43186 10 6452 1 2025-08-04 05:31:23.547 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53588 10 6452 1 2025-08-04 05:27:07.353 00:06:00.026 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-04 05:32:23.910 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41268 10 6452 1 2025-08-04 05:33:01.677 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-04 05:33:01.410 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-04 05:33:01.640 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 05:33:01.594 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 05:33:01.504 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-04 05:33:24.321 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:48826 10 6452 1 2025-08-04 05:34:24.707 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41208 10 6452 1 2025-08-04 05:35:25.116 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47016 10 6452 1 2025-08-04 05:36:25.518 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47758 10 6452 1 2025-08-04 05:32:07.376 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-08-04 05:37:25.922 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:39122 10 6452 1 2025-08-04 05:38:01.828 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-04 05:38:01.689 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 05:38:01.835 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 05:38:01.912 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-04 05:38:01.918 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-04 05:38:26.340 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48768 10 6452 1 2025-08-04 05:34:07.356 00:06:00.023 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-04 05:39:26.709 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33244 10 6452 1 2025-08-04 05:40:27.118 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53234 10 6452 1 2025-08-04 05:41:27.483 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:58694 10 6452 1 2025-08-04 05:42:27.850 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:57028 10 6452 1 2025-08-04 05:43:02.125 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-04 05:43:01.967 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-04 05:43:02.056 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 05:43:02.044 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 05:43:01.972 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-04 05:43:28.272 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:43118 10 6452 1 2025-08-04 05:39:07.377 00:06:00.004 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-08-04 05:44:28.672 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:41296 10 6452 1 2025-08-04 05:45:29.034 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:54072 10 6452 1 2025-08-04 05:41:07.358 00:06:00.025 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-04 05:46:29.410 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51564 10 6452 1 2025-08-04 05:47:29.812 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52846 10 6452 1 2025-08-04 05:48:01.876 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-04 05:48:01.718 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 05:48:02.005 00:00:00.042 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 05:48:01.883 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-04 05:48:02.087 00:00:00.043 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-04 05:48:30.218 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58746 10 6452 1 2025-08-04 05:49:30.622 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37622 10 6452 1 2025-08-04 05:50:31.027 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47962 10 6452 1 2025-08-04 05:46:07.382 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-08-04 05:51:31.447 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60512 10 6452 1 2025-08-04 05:52:31.861 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36432 10 6452 1 2025-08-04 05:53:01.949 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-04 05:53:01.754 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 05:53:02.022 00:00:00.033 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 05:53:01.728 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-04 05:53:02.103 00:00:00.034 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-04 05:48:07.362 00:06:00.023 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-04 05:53:32.279 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35974 10 6452 1 2025-08-04 05:54:32.682 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57900 10 6452 1 2025-08-04 05:55:33.106 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36904 10 6452 1 2025-08-04 05:56:33.467 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53164 10 6452 1 2025-08-04 05:57:33.875 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49666 10 6452 1 2025-08-04 05:58:02.011 00:00:00.029 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-04 05:58:01.787 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 05:58:02.056 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-04 05:58:02.126 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-04 05:58:02.139 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-04 05:53:07.383 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-08-04 05:58:34.237 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44470 10 6452 1 Summary: total flows: 137, total bytes: 421483, total packets: 960, avg bps: 906, avg pps: 0, avg bpp: 439 Time window: 2025-08-04 04:57:07 - 2025-08-04 05:59:07 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0011s User: 0.0032s Wall: 0.0020s flows/second: 70186.8 Runtime: 0.0020s