Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-09 07:58:53.718 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:41900 10 6452 1 2025-08-09 07:59:54.149 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47034 10 6452 1 2025-08-09 08:00:28.977 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 08:00:28.967 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:00:29.073 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:00:28.987 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 08:00:29.156 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 08:00:54.509 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51068 10 6452 1 2025-08-09 08:01:54.914 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46212 10 6452 1 2025-08-09 07:58:10.163 00:04:00.198 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-09 08:02:55.317 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52992 10 6452 1 2025-08-09 07:59:10.161 00:04:00.203 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-09 08:03:55.730 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58156 10 6452 1 2025-08-09 08:04:56.139 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53656 10 6452 1 2025-08-09 08:05:29.411 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 08:05:29.232 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:05:29.207 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:05:29.048 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 08:05:29.290 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 08:05:56.545 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33010 10 6452 1 2025-08-09 08:03:10.165 00:04:00.198 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-09 08:06:56.951 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53890 10 6452 1 2025-08-09 08:07:57.312 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57096 10 6452 1 2025-08-09 08:04:10.164 00:04:00.202 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-09 08:08:57.708 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:48238 12 10367 1 2025-08-09 08:09:58.149 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57994 10 6452 1 2025-08-09 08:10:29.119 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 08:10:29.053 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:10:29.105 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:10:29.298 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 08:10:29.189 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 08:10:58.517 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45100 10 6452 1 2025-08-09 08:11:58.878 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40650 10 6452 1 2025-08-09 08:08:10.169 00:04:00.194 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-09 08:12:59.237 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57118 10 6452 1 2025-08-09 08:13:59.646 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:34174 10 6452 1 2025-08-09 08:09:10.166 00:06:00.200 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 08:15:00.036 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:47138 10 6452 1 2025-08-09 08:15:29.464 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 08:15:29.491 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:15:29.371 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:15:29.248 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 08:15:29.453 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 08:16:00.406 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:38992 10 6452 1 2025-08-09 08:13:10.172 00:04:00.192 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-09 08:17:00.800 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45238 10 6452 1 2025-08-09 08:18:01.202 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:57098 10 6452 1 2025-08-09 08:19:01.618 00:00:10.672 TCP 1.101.0.1:3000 -> 23.104.0.1:34524 10 6452 1 2025-08-09 08:16:10.169 00:04:00.198 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-09 08:20:02.328 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53752 10 6452 1 2025-08-09 08:20:29.459 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 08:20:29.387 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:20:29.382 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:20:29.468 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 08:20:29.465 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 08:21:02.730 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:39400 10 6452 1 2025-08-09 08:18:10.173 00:04:00.193 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-09 08:22:03.143 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46122 10 6452 1 2025-08-09 08:23:03.550 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:47100 10 6452 1 2025-08-09 08:24:03.913 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54878 10 6452 1 2025-08-09 08:21:10.171 00:04:00.198 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-09 08:25:04.322 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60050 10 6452 1 2025-08-09 08:25:29.532 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 08:25:29.503 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:25:29.544 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:25:29.547 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 08:25:29.626 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 08:26:04.734 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53762 10 6452 1 2025-08-09 08:27:05.144 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:32966 10 6452 1 2025-08-09 08:23:10.172 00:06:00.193 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 08:28:05.548 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37222 10 6452 1 2025-08-09 08:29:05.947 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:54862 10 6452 1 2025-08-09 08:26:10.171 00:04:00.197 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-09 08:30:06.365 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58364 10 6452 1 2025-08-09 08:30:29.457 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 08:30:29.669 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:30:29.708 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:30:29.841 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 08:30:29.791 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 08:31:06.763 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:46874 10 6452 1 2025-08-09 08:32:07.132 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35496 10 6452 1 2025-08-09 08:33:07.539 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35382 10 6452 1 2025-08-09 08:30:10.175 00:04:00.192 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-09 08:34:07.942 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34936 10 6452 1 2025-08-09 08:31:10.173 00:04:00.196 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-09 08:35:08.353 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60034 12 6556 1 2025-08-09 08:35:29.899 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 08:35:29.821 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 08:35:29.742 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:35:29.816 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:35:30.095 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 08:36:08.777 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47358 10 6452 1 2025-08-09 08:37:09.138 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36690 10 6452 1 2025-08-09 08:38:09.543 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48126 10 6452 1 2025-08-09 08:35:10.179 00:04:00.190 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-09 08:39:09.949 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:37824 10 6452 1 2025-08-09 08:36:10.173 00:04:00.198 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-09 08:40:10.364 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:48312 11 6492 1 2025-08-09 08:40:30.200 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 08:40:30.040 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 08:40:30.129 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:40:30.116 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:40:30.017 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 08:41:10.759 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:37128 10 6452 1 2025-08-09 08:42:11.191 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53150 10 6452 1 2025-08-09 08:43:11.597 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:38076 10 6452 1 2025-08-09 08:40:10.176 00:04:00.193 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-09 08:44:11.960 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39950 10 6452 1 2025-08-09 08:45:12.325 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51166 10 6452 1 2025-08-09 08:45:29.835 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 08:45:29.670 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:45:29.858 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:45:29.974 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 08:45:29.941 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 08:41:10.173 00:06:00.201 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 08:46:12.721 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:35234 12 6556 1 2025-08-09 08:47:13.142 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40482 10 6452 1 2025-08-09 08:48:13.544 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:55110 10 6452 1 2025-08-09 08:49:13.946 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:55670 10 6452 1 2025-08-09 08:45:10.177 00:06:00.197 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 08:50:14.358 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51168 10 6452 1 2025-08-09 08:50:30.148 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 08:50:29.990 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:50:30.084 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:50:30.298 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 08:50:30.166 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 08:51:14.764 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46328 10 6452 1 2025-08-09 08:48:10.182 00:04:00.195 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-09 08:52:15.176 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34140 10 6452 1 2025-08-09 08:53:15.582 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:44736 10 6452 1 2025-08-09 08:54:15.997 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50120 10 6452 1 2025-08-09 08:55:30.266 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 08:55:30.042 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:55:16.396 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47616 10 6452 1 2025-08-09 08:55:30.274 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 08:55:30.108 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 08:55:30.356 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 08:52:10.185 00:04:00.190 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-09 08:56:16.802 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60258 10 6452 1 2025-08-09 08:53:10.182 00:04:00.195 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-09 08:57:17.225 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60580 10 6452 1 2025-08-09 08:58:17.628 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58190 10 6452 1 Summary: total flows: 142, total bytes: 420917, total packets: 1023, avg bps: 930, avg pps: 0, avg bpp: 411 Time window: 2025-08-09 07:58:10 - 2025-08-09 08:58:27 Total flows processed: 142, passed: 142, Blocks skipped: 0, Bytes read: 14832 Sys: 0.0043s User: 0.0000s Wall: 0.0018s flows/second: 78719.4 Runtime: 0.0018s