Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-10 13:59:35.015 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:60580 11 6492 1 2025-08-10 14:00:35.425 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55910 10 6452 1 2025-08-10 14:01:04.957 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-10 14:01:04.965 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-10 14:01:04.875 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-10 14:01:05.126 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-10 14:01:05.090 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-10 14:01:35.826 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58864 10 6452 1 2025-08-10 14:02:36.191 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54622 10 6452 1 2025-08-10 13:59:10.877 00:05:00.516 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-10 13:59:10.875 00:05:00.522 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-10 14:03:36.594 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56532 10 6452 1 2025-08-10 14:04:36.958 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57110 10 6452 1 2025-08-10 14:05:37.324 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:42248 10 6452 1 2025-08-10 14:06:04.934 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-10 14:06:05.214 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-10 14:06:05.266 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-10 14:06:05.132 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-10 14:06:05.193 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-10 14:06:37.688 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43142 10 6452 1 2025-08-10 14:07:38.113 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:47694 10 6452 1 2025-08-10 14:08:38.532 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:46390 10 6452 1 2025-08-10 14:05:10.882 00:05:00.515 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-10 14:05:10.885 00:05:00.509 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-10 14:09:38.890 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:36230 10 6452 1 2025-08-10 14:10:39.275 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:35518 10 6452 1 2025-08-10 14:11:05.230 00:00:00.018 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-10 14:11:05.142 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-10 14:11:05.373 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-10 14:11:05.311 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-10 14:11:05.395 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-10 14:11:39.638 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:50008 10 6452 1 2025-08-10 14:12:40.010 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43428 10 6452 1 2025-08-10 14:13:40.414 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:39804 10 6452 1 2025-08-10 14:14:40.784 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48886 10 6452 1 2025-08-10 14:11:10.884 00:05:00.514 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-10 14:11:10.887 00:05:00.508 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-10 14:15:41.147 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41260 10 6452 1 2025-08-10 14:16:05.427 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-10 14:16:05.410 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-10 14:16:05.282 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-10 14:16:05.345 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-10 14:16:05.412 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-10 14:16:41.555 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40620 10 6452 1 2025-08-10 14:17:41.963 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38064 10 6452 1 2025-08-10 14:18:42.370 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:53970 10 6452 1 2025-08-10 14:19:42.730 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:50830 12 10367 1 2025-08-10 14:20:43.209 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37084 10 6452 1 2025-08-10 14:21:05.906 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-10 14:21:05.962 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-10 14:21:05.444 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-10 14:21:05.852 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-10 14:21:05.934 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-10 14:17:10.891 00:05:00.506 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-10 14:17:10.888 00:05:00.511 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-10 14:21:43.613 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38704 10 6452 1 2025-08-10 14:22:44.018 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59196 10 6452 1 2025-08-10 14:23:44.419 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57034 10 6452 1 2025-08-10 14:24:44.822 00:00:10.529 TCP 1.101.0.1:3000 -> 23.104.0.1:54324 12 10367 1 2025-08-10 14:25:45.389 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42458 10 6452 1 2025-08-10 14:26:05.494 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-10 14:26:05.491 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-10 14:26:05.372 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-10 14:26:05.635 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-10 14:26:05.718 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-10 14:26:45.758 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:58418 10 6452 1 2025-08-10 14:23:10.892 00:05:00.510 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-10 14:23:10.894 00:05:00.506 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-10 14:27:46.187 00:00:10.512 TCP 1.101.0.1:3000 -> 23.104.0.1:47568 10 6452 1 2025-08-10 14:28:46.745 00:00:10.410 TCP 1.101.0.1:3000 -> 23.104.0.1:45888 10 6452 1 2025-08-10 14:29:47.189 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58858 10 6452 1 2025-08-10 14:30:47.598 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:41622 10 6452 1 2025-08-10 14:31:05.736 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-10 14:31:05.660 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-10 14:31:05.669 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-10 14:31:05.473 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-10 14:31:05.652 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-10 14:31:48.008 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37904 10 6452 1 2025-08-10 14:32:48.417 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39032 10 6452 1 2025-08-10 14:29:10.897 00:05:00.505 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-10 14:29:10.894 00:05:00.511 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-10 14:33:48.820 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57488 10 6452 1 2025-08-10 14:34:49.226 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:60934 10 6452 1 2025-08-10 14:35:49.587 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60012 10 6452 1 2025-08-10 14:36:05.984 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-10 14:36:05.778 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-10 14:36:05.853 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-10 14:36:05.443 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-10 14:36:05.902 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-10 14:36:49.996 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:47312 10 6452 1 2025-08-10 14:37:50.403 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:44100 10 6452 1 2025-08-10 14:38:50.771 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33270 10 6452 1 2025-08-10 14:35:10.902 00:05:00.501 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-10 14:35:10.899 00:05:00.507 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-10 14:39:51.186 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:55658 10 6452 1 2025-08-10 14:40:51.549 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55390 10 6452 1 2025-08-10 14:41:05.818 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-10 14:41:05.866 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-10 14:41:05.634 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-10 14:41:05.867 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-10 14:41:05.951 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-10 14:41:51.960 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:36444 10 6452 1 2025-08-10 14:42:52.325 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36554 10 6452 1 2025-08-10 14:43:52.726 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43956 10 6452 1 2025-08-10 14:44:53.136 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46334 10 6452 1 2025-08-10 14:41:10.904 00:05:00.501 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-10 14:41:10.901 00:05:00.506 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-10 14:45:53.542 00:00:10.455 TCP 1.101.0.1:3000 -> 23.104.0.1:53338 10 6452 1 2025-08-10 14:46:06.260 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-10 14:46:05.921 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-10 14:46:06.302 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-10 14:46:05.823 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-10 14:46:06.178 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-10 14:46:54.040 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53002 10 6452 1 2025-08-10 14:47:54.409 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:57776 10 6452 1 2025-08-10 14:48:54.767 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:47966 10 6452 1 2025-08-10 14:49:55.139 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:55494 10 6452 1 2025-08-10 14:51:05.972 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-10 14:51:06.123 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-10 14:51:06.010 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-10 14:51:06.112 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-10 14:50:55.564 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:44388 10 6452 1 2025-08-10 14:51:06.195 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-10 14:47:10.905 00:05:00.501 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-10 14:47:10.903 00:05:00.506 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-10 14:51:55.963 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:53674 10 6452 1 2025-08-10 14:52:56.326 00:00:10.422 TCP 1.101.0.1:3000 -> 23.104.0.1:57356 11 6504 1 2025-08-10 14:53:56.791 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:60946 10 6452 1 2025-08-10 14:54:57.214 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34630 10 6452 1 2025-08-10 14:56:06.214 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-10 14:56:06.043 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-10 14:56:06.252 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-10 14:56:05.937 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-10 14:56:06.132 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-10 14:55:57.618 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54244 10 6452 1 2025-08-10 14:56:58.024 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40200 10 6452 1 2025-08-10 14:53:10.906 00:05:00.503 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-10 14:53:10.903 00:05:00.508 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-10 14:57:58.425 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40978 10 6452 1 Summary: total flows: 139, total bytes: 418470, total packets: 1016, avg bps: 945, avg pps: 0, avg bpp: 411 Time window: 2025-08-10 13:59:10 - 2025-08-10 14:58:11 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0034s User: 0.0011s Wall: 0.0016s flows/second: 89569.6 Runtime: 0.0016s