Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-05 14:59:21.879 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45570 10 6452 1 2025-08-05 15:00:22.247 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40890 10 6452 1 2025-08-05 14:56:08.062 00:06:00.101 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 15:01:22.660 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45130 10 6452 1 2025-08-05 15:02:23.064 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:56580 10 6452 1 2025-08-05 15:03:23.488 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42720 10 6452 1 2025-08-05 15:03:41.967 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 15:03:41.887 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 15:03:41.962 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 15:03:42.056 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 15:03:42.043 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 14:59:08.066 00:06:00.095 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 15:04:23.895 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:52344 12 6556 1 2025-08-05 15:05:24.312 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60072 10 6452 1 2025-08-05 15:06:24.716 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:39868 10 6452 1 2025-08-05 15:07:25.136 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54608 10 6452 1 2025-08-05 15:03:08.066 00:06:00.098 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 15:08:25.543 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:44220 10 6452 1 2025-08-05 15:08:41.971 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 15:08:41.893 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 15:08:42.054 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 15:08:41.964 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 15:08:42.137 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 15:09:25.910 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37130 10 6452 1 2025-08-05 15:10:26.317 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47656 10 6452 1 2025-08-05 15:06:08.070 00:06:00.094 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 15:11:26.722 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:45792 10 6452 1 2025-08-05 15:12:27.128 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:32782 10 6452 1 2025-08-05 15:13:27.493 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53594 10 6452 1 2025-08-05 15:13:42.409 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 15:13:42.325 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 15:13:42.199 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 15:13:42.327 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 15:13:42.323 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 15:14:27.897 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52898 10 6452 1 2025-08-05 15:10:08.068 00:06:00.101 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 15:15:28.303 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36596 10 6452 1 2025-08-05 15:16:28.716 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:46098 10 6452 1 2025-08-05 15:17:29.138 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44094 10 6452 1 2025-08-05 15:13:08.072 00:06:00.096 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 15:18:29.546 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:32864 10 6452 1 2025-08-05 15:18:42.221 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 15:18:42.259 00:00:00.031 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 15:18:41.994 00:00:00.040 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 15:18:42.277 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 15:18:42.076 00:00:00.041 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 15:19:29.976 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:47004 10 6452 1 2025-08-05 15:20:30.406 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58224 10 6452 1 2025-08-05 15:21:30.812 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56026 10 6452 1 2025-08-05 15:17:08.070 00:06:00.102 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 15:22:31.218 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52498 10 6452 1 2025-08-05 15:23:42.248 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 15:23:42.191 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 15:23:42.363 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 15:23:42.247 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 15:23:31.617 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47006 10 6452 1 2025-08-05 15:23:42.447 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 15:24:32.022 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41932 10 6452 1 2025-08-05 15:20:08.072 00:06:00.100 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 15:25:32.427 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:49262 12 6556 1 2025-08-05 15:26:32.886 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:35600 12 6556 1 2025-08-05 15:27:33.319 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47270 10 6452 1 2025-08-05 15:28:42.510 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 15:28:42.449 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 15:28:33.723 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:43594 10 6452 1 2025-08-05 15:28:42.507 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 15:28:42.567 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 15:28:42.591 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 15:24:08.072 00:06:00.104 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 15:29:34.103 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58886 10 6452 1 2025-08-05 15:30:34.514 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:35878 10 6452 1 2025-08-05 15:31:34.884 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46220 10 6452 1 2025-08-05 15:27:08.074 00:06:00.101 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 15:32:35.294 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57928 10 6452 1 2025-08-05 15:33:42.630 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 15:33:42.543 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 15:33:42.457 00:00:00.007 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 15:33:42.547 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 15:33:42.532 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 15:33:35.702 00:00:10.484 TCP 1.101.0.1:3000 -> 23.104.0.1:35504 10 6452 1 2025-08-05 15:34:36.230 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:34494 10 6452 1 2025-08-05 15:35:36.585 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54136 10 6452 1 2025-08-05 15:31:08.073 00:06:00.105 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 15:36:36.985 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52088 10 6452 1 2025-08-05 15:37:37.390 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38806 10 6452 1 2025-08-05 15:38:42.781 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 15:38:42.560 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 15:38:42.542 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 15:38:42.632 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 15:38:42.625 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 15:38:37.790 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42924 10 6452 1 2025-08-05 15:34:08.075 00:06:00.101 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 15:39:38.151 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:58404 10 6452 1 2025-08-05 15:40:38.516 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36098 10 6452 1 2025-08-05 15:41:38.923 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:49246 10 6452 1 2025-08-05 15:42:39.351 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40708 10 6452 1 2025-08-05 15:38:08.075 00:06:00.106 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 15:43:42.808 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 15:43:42.707 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 15:43:42.807 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 15:43:42.689 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 15:43:42.891 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 15:43:39.750 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35762 10 6452 1 2025-08-05 15:44:40.113 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54016 10 6452 1 2025-08-05 15:45:40.511 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:44682 10 6452 1 2025-08-05 15:41:08.076 00:06:00.103 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 15:46:40.870 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:59586 10 6452 1 2025-08-05 15:47:41.236 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:45352 10 6452 1 2025-08-05 15:48:42.742 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 15:48:42.950 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 15:48:42.732 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 15:48:42.892 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 15:48:42.815 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 15:48:41.629 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47978 10 6452 1 2025-08-05 15:49:42.037 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42350 10 6452 1 2025-08-05 15:45:08.074 00:06:00.110 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 15:50:42.437 00:00:10.404 TCP 1.101.0.1:3000 -> 23.104.0.1:60946 10 6452 1 2025-08-05 15:51:42.893 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42914 10 6452 1 2025-08-05 15:52:43.304 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42700 10 6452 1 2025-08-05 15:48:08.078 00:06:00.105 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-05 15:53:42.956 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 15:53:42.782 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 15:53:43.228 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 15:53:42.756 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 15:53:43.310 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 15:53:43.663 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35420 10 6452 1 2025-08-05 15:54:44.110 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59194 10 6452 1 2025-08-05 15:55:44.525 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38472 10 6452 1 2025-08-05 15:56:44.923 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45050 10 6452 1 2025-08-05 15:52:08.075 00:06:00.110 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-05 15:57:45.324 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53214 10 6452 1 2025-08-05 15:58:43.180 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 15:58:43.204 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 15:58:43.223 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 15:58:42.935 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 15:58:43.263 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 136, total bytes: 410737, total packets: 1014, avg bps: 875, avg pps: 0, avg bpp: 405 Time window: 2025-08-05 14:56:08 - 2025-08-05 15:58:43 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0031s User: 0.0000s Wall: 0.0015s flows/second: 89661.3 Runtime: 0.0015s