Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-13 02:58:43.339 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37014 10 6452 1 2025-08-13 02:59:43.746 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59948 10 6452 1 2025-08-13 02:55:12.284 00:06:00.711 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-13 03:00:44.168 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42862 10 6452 1 2025-08-13 03:01:44.566 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50214 10 6452 1 2025-08-13 02:58:12.283 00:05:00.719 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 03:02:18.772 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 03:02:18.637 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 03:02:18.492 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 03:02:18.814 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 03:02:18.897 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 03:02:44.971 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51664 10 6452 1 2025-08-13 03:03:45.385 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58894 10 6452 1 2025-08-13 03:04:45.788 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:48698 10 6452 1 2025-08-13 03:05:46.167 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57508 10 6452 1 2025-08-13 03:06:46.578 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54814 10 6452 1 2025-08-13 03:02:12.285 00:06:00.711 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-13 03:07:18.824 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 03:07:18.412 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 03:07:18.423 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 03:07:18.340 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 03:07:18.741 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 03:07:46.978 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54394 10 6452 1 2025-08-13 03:04:12.283 00:05:00.717 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 03:08:47.384 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47032 10 6452 1 2025-08-13 03:09:47.784 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50892 10 6452 1 2025-08-13 03:10:48.189 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53074 10 6452 1 2025-08-13 03:11:48.594 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58810 10 6452 1 2025-08-13 03:12:18.814 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 03:12:18.402 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 03:12:18.539 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 03:12:18.732 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 03:12:18.499 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 03:12:48.964 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:47356 10 6452 1 2025-08-13 03:13:49.344 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38338 10 6452 1 2025-08-13 03:10:12.286 00:05:00.716 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 03:09:12.289 00:06:00.710 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-13 03:14:49.746 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58304 10 6452 1 2025-08-13 03:15:50.154 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43038 10 6452 1 2025-08-13 03:16:50.552 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48854 10 6452 1 2025-08-13 03:17:18.824 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 03:17:18.739 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 03:17:18.841 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 03:17:18.823 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 03:17:18.906 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 03:17:50.956 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39250 10 6452 1 2025-08-13 03:18:51.360 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:39418 10 6452 1 2025-08-13 03:19:51.760 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:48024 10 6452 1 2025-08-13 03:16:12.291 00:05:00.709 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 03:16:12.289 00:05:00.714 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 03:20:52.189 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40640 10 6452 1 2025-08-13 03:21:52.599 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:34450 10 6452 1 2025-08-13 03:22:19.072 00:00:00.051 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 03:22:18.914 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 03:22:18.788 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 03:22:18.940 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 03:22:18.988 00:00:00.051 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 03:22:52.997 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58940 10 6452 1 2025-08-13 03:23:53.403 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54552 10 6452 1 2025-08-13 03:24:53.769 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:40428 10 6452 1 2025-08-13 03:25:54.136 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:33464 10 6452 1 2025-08-13 03:22:12.293 00:05:00.708 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 03:22:12.291 00:05:00.713 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 03:26:54.500 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34168 10 6452 1 2025-08-13 03:27:19.218 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 03:27:19.270 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 03:27:18.727 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 03:27:19.314 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 03:27:19.396 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 03:27:54.902 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:58170 10 6452 1 2025-08-13 03:28:55.271 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58384 10 6452 1 2025-08-13 03:29:55.680 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44478 10 6452 1 2025-08-13 03:30:56.111 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34274 10 6452 1 2025-08-13 03:28:12.295 00:05:00.708 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 03:32:19.178 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 03:31:56.517 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:49282 10 6452 1 2025-08-13 03:28:12.292 00:05:00.713 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 03:32:19.089 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 03:32:18.866 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 03:32:19.099 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 03:32:19.096 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 03:32:56.879 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:36142 10 6452 1 2025-08-13 03:33:57.244 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:33078 10 6452 1 2025-08-13 03:34:57.662 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:38346 11 6504 1 2025-08-13 03:35:58.135 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:47540 10 6452 1 2025-08-13 03:36:58.523 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:37058 10 6452 1 2025-08-13 03:37:19.159 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 03:37:19.158 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 03:37:19.114 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 03:37:18.953 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 03:37:19.036 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 03:37:58.880 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34336 10 6452 1 2025-08-13 03:34:12.292 00:05:00.742 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 03:34:12.296 00:05:00.736 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 03:38:59.289 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:48586 10 6452 1 2025-08-13 03:39:59.653 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58596 10 6452 1 2025-08-13 03:41:00.061 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57442 10 6452 1 2025-08-13 03:42:00.466 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58984 10 6452 1 2025-08-13 03:42:19.290 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 03:42:19.367 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 03:42:19.164 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 03:42:19.327 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 03:42:19.410 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 03:43:00.826 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59074 10 6452 1 2025-08-13 03:40:12.300 00:05:00.735 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 03:40:12.297 00:05:00.741 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 03:44:01.230 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52780 10 6452 1 2025-08-13 03:45:01.632 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41374 10 6452 1 2025-08-13 03:46:02.038 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40310 10 6452 1 2025-08-13 03:47:02.441 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55754 10 6452 1 2025-08-13 03:47:19.464 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 03:47:19.280 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 03:47:19.115 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 03:47:19.196 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 03:47:19.279 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 03:48:02.847 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:58054 10 6452 1 2025-08-13 03:49:03.276 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59730 10 6452 1 2025-08-13 03:46:12.301 00:05:00.755 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 03:46:12.298 00:05:00.768 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 03:50:03.685 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:47142 10 6452 1 2025-08-13 03:51:04.109 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:32874 10 6452 1 2025-08-13 03:52:04.516 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38156 10 6452 1 2025-08-13 03:52:19.682 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 03:52:19.599 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 03:52:19.583 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 03:52:19.601 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 03:52:19.531 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 03:53:04.915 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36368 10 6452 1 2025-08-13 03:54:05.321 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59352 10 6452 1 2025-08-13 03:55:05.722 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:40370 10 6452 1 2025-08-13 03:52:12.301 00:05:00.755 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 03:52:12.299 00:05:00.760 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 03:56:06.142 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:57282 10 6452 1 2025-08-13 03:57:19.588 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 03:57:19.633 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 03:57:19.633 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 03:57:19.443 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 03:57:06.509 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:43082 10 6452 1 2025-08-13 03:57:19.505 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 03:58:06.877 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58028 10 6452 1 Summary: total flows: 140, total bytes: 417421, total packets: 1027, avg bps: 882, avg pps: 0, avg bpp: 406 Time window: 2025-08-13 02:55:12 - 2025-08-13 03:58:17 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0010s User: 0.0029s Wall: 0.0019s flows/second: 74188.6 Runtime: 0.0019s