Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-15 14:59:22.622 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37832 10 6452 1 2025-08-15 15:00:23.027 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48274 10 6452 1 2025-08-15 14:57:13.668 00:05:00.599 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 15:01:23.434 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33352 10 6452 1 2025-08-15 14:58:13.671 00:05:00.594 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 15:02:23.832 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:41760 10 6452 1 2025-08-15 15:03:30.834 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 15:03:30.616 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 15:03:30.638 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 15:03:30.798 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 15:03:30.722 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 15:03:24.188 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46430 10 6452 1 2025-08-15 15:04:24.590 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49326 10 6452 1 2025-08-15 15:05:25.000 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:36750 12 10365 1 2025-08-15 15:06:25.480 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52690 10 6452 1 2025-08-15 15:03:13.668 00:05:00.600 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 15:07:25.887 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:34664 10 6452 1 2025-08-15 15:04:13.671 00:05:00.595 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 15:08:30.737 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 15:08:30.754 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 15:08:30.582 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 15:08:30.655 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 15:08:30.752 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 15:08:26.276 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35148 10 6452 1 2025-08-15 15:09:26.682 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38672 10 6452 1 2025-08-15 15:10:27.105 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:59430 10 6452 1 2025-08-15 15:11:27.524 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51320 10 6452 1 2025-08-15 15:12:27.928 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:44234 10 6452 1 2025-08-15 15:09:13.671 00:05:00.599 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 15:13:30.943 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 15:13:30.787 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 15:13:30.975 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 15:13:30.956 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 15:13:31.056 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 15:13:28.349 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40018 10 6452 1 2025-08-15 15:10:13.675 00:05:00.594 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 15:14:28.757 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42366 10 6452 1 2025-08-15 15:15:29.151 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:56076 10 6452 1 2025-08-15 15:16:29.509 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36412 10 6452 1 2025-08-15 15:17:29.912 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:45528 10 6452 1 2025-08-15 15:18:30.917 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 15:18:30.835 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 15:18:31.082 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 15:18:30.989 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 15:18:31.165 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 15:18:30.274 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57806 12 6556 1 2025-08-15 15:15:13.672 00:05:00.600 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 15:19:30.677 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43728 10 6452 1 2025-08-15 15:16:13.675 00:05:00.595 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 15:20:31.102 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:40366 10 6452 1 2025-08-15 15:21:31.477 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42684 10 6452 1 2025-08-15 15:22:31.883 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:44442 12 6556 1 2025-08-15 15:23:31.293 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 15:23:31.376 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 15:23:31.295 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 15:23:31.412 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 15:23:31.377 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 15:23:32.310 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40948 10 6452 1 2025-08-15 15:24:32.712 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:35828 10 6452 1 2025-08-15 15:21:13.675 00:05:00.598 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 15:25:33.101 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:38928 10 6452 1 2025-08-15 15:22:13.676 00:05:00.595 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 15:26:33.471 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38198 10 6452 1 2025-08-15 15:27:33.877 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38788 10 6452 1 2025-08-15 15:28:31.136 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 15:28:31.162 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 15:28:31.312 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 15:28:31.231 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 15:28:31.395 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 15:28:34.277 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59854 10 6452 1 2025-08-15 15:29:34.636 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54178 10 6452 1 2025-08-15 15:30:35.035 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56264 10 6452 1 2025-08-15 15:27:13.674 00:05:00.602 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 15:31:35.435 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:40974 10 6452 1 2025-08-15 15:28:13.678 00:05:00.599 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 15:32:35.797 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:38514 10 6452 1 2025-08-15 15:33:30.917 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 15:33:31.313 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 15:33:31.302 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 15:33:31.474 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 15:33:31.383 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 15:33:36.178 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46072 10 6452 1 2025-08-15 15:34:36.578 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41214 10 6452 1 2025-08-15 15:35:36.978 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57530 10 6452 1 2025-08-15 15:36:37.385 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:42520 10 6452 1 2025-08-15 15:33:13.676 00:05:00.601 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 15:37:37.813 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:56302 10 6452 1 2025-08-15 15:34:13.679 00:05:00.596 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 15:38:31.666 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 15:38:31.448 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 15:38:31.584 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 15:38:31.579 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 15:38:31.654 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 15:38:38.194 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54106 10 6452 1 2025-08-15 15:39:38.595 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56384 10 6452 1 2025-08-15 15:40:39.001 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43614 10 6452 1 2025-08-15 15:41:39.402 00:00:10.926 TCP 1.101.0.1:3000 -> 23.104.0.1:35018 10 6452 1 2025-08-15 15:42:40.367 00:00:10.464 TCP 1.101.0.1:3000 -> 23.104.0.1:56916 10 6452 1 2025-08-15 15:39:13.683 00:05:00.594 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 15:43:31.645 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 15:43:31.562 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 15:43:31.559 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 15:43:31.560 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 15:43:31.638 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 15:43:40.867 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33988 10 6452 1 2025-08-15 15:40:13.686 00:05:00.589 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 15:44:41.232 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:57688 10 6452 1 2025-08-15 15:45:41.589 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53642 10 6452 1 2025-08-15 15:46:41.955 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:42956 10 6452 1 2025-08-15 15:47:42.319 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36778 10 6452 1 2025-08-15 15:48:31.568 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 15:48:31.568 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 15:48:31.691 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 15:48:31.654 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 15:48:31.650 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 15:48:42.730 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60016 10 6452 1 2025-08-15 15:45:13.688 00:05:00.591 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 15:49:43.137 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43226 10 6452 1 2025-08-15 15:46:13.691 00:05:00.587 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 15:50:43.546 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:50526 12 10367 1 2025-08-15 15:51:44.024 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52940 10 6452 1 2025-08-15 15:52:44.426 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41356 10 6452 1 2025-08-15 15:53:31.916 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 15:53:31.618 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 15:53:31.669 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 15:53:31.833 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 15:53:31.675 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 15:53:44.838 00:00:10.404 TCP 1.101.0.1:3000 -> 23.104.0.1:52290 10 6452 1 2025-08-15 15:54:45.278 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45448 10 6452 1 2025-08-15 15:51:13.689 00:05:00.593 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 15:55:45.684 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42878 10 6452 1 2025-08-15 15:52:13.692 00:05:00.587 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 15:56:46.065 00:00:10.646 TCP 1.101.0.1:3000 -> 23.104.0.1:47454 10 6452 1 2025-08-15 15:57:46.750 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56866 10 6452 1 2025-08-15 15:58:31.967 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 15:58:31.903 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 15:58:31.740 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 15:58:31.884 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 15:58:31.896 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 Summary: total flows: 139, total bytes: 418584, total packets: 1018, avg bps: 910, avg pps: 0, avg bpp: 411 Time window: 2025-08-15 14:57:13 - 2025-08-15 15:58:31 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0027s User: 0.0018s Wall: 0.0027s flows/second: 52273.7 Runtime: 0.0027s