Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-13 03:59:07.291 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43474 10 6452 1 2025-08-13 04:00:07.697 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:44690 12 10365 1 2025-08-13 04:01:08.179 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:48132 10 6452 1 2025-08-13 03:58:12.304 00:05:00.753 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 03:58:12.301 00:05:00.759 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 04:02:19.511 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 04:02:19.724 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 04:02:19.660 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 04:02:19.602 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 04:02:08.598 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39934 10 6452 1 2025-08-13 04:02:19.684 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 04:03:08.963 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39022 10 6452 1 2025-08-13 04:04:09.324 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34342 10 6452 1 2025-08-13 04:05:09.727 00:00:10.405 TCP 1.101.0.1:3000 -> 23.104.0.1:34840 12 10367 1 2025-08-13 04:06:10.172 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43948 10 6452 1 2025-08-13 04:07:19.648 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 04:07:19.797 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 04:07:19.732 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 04:07:19.579 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 04:07:19.567 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 04:07:10.535 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47914 10 6452 1 2025-08-13 04:04:12.306 00:05:00.753 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 04:04:12.303 00:05:00.758 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 04:08:10.940 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:46766 10 6452 1 2025-08-13 04:09:11.322 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37782 10 6452 1 2025-08-13 04:10:11.727 00:00:10.426 TCP 1.101.0.1:3000 -> 23.104.0.1:53776 11 6504 1 2025-08-13 04:11:12.193 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55224 10 6452 1 2025-08-13 04:12:19.871 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 04:12:19.835 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 04:12:19.958 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 04:12:12.594 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49620 10 6452 1 2025-08-13 04:12:20.084 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 04:12:20.041 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 04:13:12.956 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38268 10 6452 1 2025-08-13 04:10:12.306 00:05:00.753 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 04:10:12.305 00:05:00.757 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 04:14:13.366 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50218 10 6452 1 2025-08-13 04:15:13.773 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54460 10 6452 1 2025-08-13 04:16:14.187 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60038 10 6452 1 2025-08-13 04:17:19.955 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 04:17:19.876 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 04:17:19.812 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 04:17:19.900 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 04:17:19.873 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 04:17:14.550 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37062 10 6452 1 2025-08-13 04:18:14.948 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:32954 10 6452 1 2025-08-13 04:19:15.374 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34486 10 6452 1 2025-08-13 04:16:12.310 00:05:00.756 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 04:16:12.307 00:05:00.762 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 04:20:15.784 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:54410 10 6452 1 2025-08-13 04:21:16.196 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42086 10 6452 1 2025-08-13 04:22:20.237 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 04:22:20.289 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 04:22:20.316 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 04:22:20.405 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 04:22:20.488 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 04:22:16.602 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34592 10 6452 1 2025-08-13 04:23:16.966 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:39808 10 6452 1 2025-08-13 04:24:17.344 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57798 10 6452 1 2025-08-13 04:25:17.707 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59094 10 6452 1 2025-08-13 04:22:12.313 00:05:00.756 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 04:22:12.310 00:05:00.762 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 04:26:18.117 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35768 10 6452 1 2025-08-13 04:27:19.939 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 04:27:20.153 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 04:27:20.075 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 04:27:20.189 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 04:27:20.071 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 04:27:18.517 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54234 10 6452 1 2025-08-13 04:28:18.921 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:33186 10 6452 1 2025-08-13 04:29:19.316 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57842 10 6452 1 2025-08-13 04:30:19.716 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:34820 12 10367 1 2025-08-13 04:31:20.152 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:32968 10 6452 1 2025-08-13 04:28:12.312 00:05:00.762 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 04:28:12.315 00:05:00.757 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 04:32:20.247 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 04:32:20.353 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 04:32:20.229 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 04:32:20.096 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 04:32:20.165 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 04:32:20.555 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38834 10 6452 1 2025-08-13 04:33:20.958 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53980 10 6452 1 2025-08-13 04:34:21.363 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39886 10 6452 1 2025-08-13 04:35:21.766 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55640 10 6452 1 2025-08-13 04:36:22.174 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:44770 10 6452 1 2025-08-13 04:37:20.242 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 04:37:20.239 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 04:37:20.204 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 04:37:20.454 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 04:37:20.537 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 04:37:22.533 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:41362 10 6452 1 2025-08-13 04:34:12.318 00:05:00.757 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 04:34:12.315 00:05:00.762 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 04:38:22.897 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:52540 12 6556 1 2025-08-13 04:39:23.313 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46022 10 6452 1 2025-08-13 04:40:23.678 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:35506 12 10365 1 2025-08-13 04:41:24.170 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33770 10 6452 1 2025-08-13 04:42:20.567 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 04:42:20.420 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 04:42:20.604 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 04:42:20.171 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 04:42:20.485 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 04:42:24.575 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60486 10 6452 1 2025-08-13 04:43:24.983 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:60792 10 6452 1 2025-08-13 04:40:12.317 00:05:00.761 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 04:40:12.320 00:05:00.756 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 04:44:25.397 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47396 10 6452 1 2025-08-13 04:45:25.804 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55206 10 6452 1 2025-08-13 04:46:26.204 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53788 10 6452 1 2025-08-13 04:47:20.451 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 04:47:20.538 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 04:47:20.451 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 04:47:20.456 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 04:47:20.534 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 04:47:26.610 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48996 10 6452 1 2025-08-13 04:48:27.015 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36492 10 6452 1 2025-08-13 04:49:27.423 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53082 10 6452 1 2025-08-13 04:46:12.319 00:05:00.761 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 04:46:12.321 00:05:00.756 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 04:50:27.826 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53996 10 6452 1 2025-08-13 04:51:28.225 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:59312 10 6452 1 2025-08-13 04:52:20.804 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 04:52:20.471 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 04:52:20.469 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 04:52:20.509 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 04:52:20.886 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 04:52:28.584 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:60420 10 6452 1 2025-08-13 04:53:28.967 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41094 10 6452 1 2025-08-13 04:54:29.370 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:42444 10 6452 1 2025-08-13 04:55:29.769 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:59908 10 6452 1 2025-08-13 04:52:12.320 00:05:00.761 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 04:52:12.322 00:05:00.756 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 04:56:30.202 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43238 10 6452 1 2025-08-13 04:57:20.812 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 04:57:20.816 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 04:57:20.494 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 04:57:20.848 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 04:57:20.931 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 04:57:30.570 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:44592 10 6452 1 2025-08-13 04:58:30.941 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:45556 10 6452 1 Summary: total flows: 140, total bytes: 432812, total packets: 1031, avg bps: 954, avg pps: 0, avg bpp: 419 Time window: 2025-08-13 03:58:12 - 2025-08-13 04:58:41 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0052s User: 0.0009s Wall: 0.0100s flows/second: 13972.0 Runtime: 0.0101s