Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-13 04:59:31.362 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37136 10 6452 1 2025-08-13 05:00:31.766 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:37170 10 6452 1 2025-08-13 05:01:32.189 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44814 10 6452 1 2025-08-13 04:58:12.322 00:05:00.760 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 04:58:12.324 00:05:00.755 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 05:02:21.109 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 05:02:20.949 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 05:02:20.791 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 05:02:21.108 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 05:02:21.191 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 05:02:32.555 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44764 10 6452 1 2025-08-13 05:03:32.956 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50548 10 6452 1 2025-08-13 05:04:33.358 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58720 10 6452 1 2025-08-13 05:05:33.758 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:54476 10 6452 1 2025-08-13 05:06:34.179 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50890 10 6452 1 2025-08-13 05:07:21.194 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 05:07:21.339 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 05:07:21.300 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 05:07:20.699 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 05:07:21.113 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 05:07:34.583 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37790 10 6452 1 2025-08-13 05:04:12.327 00:05:00.754 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 05:04:12.325 00:05:00.759 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 05:08:34.985 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36898 10 6452 1 2025-08-13 05:09:35.392 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:33642 10 6452 1 2025-08-13 05:10:35.755 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:46164 10 6452 1 2025-08-13 05:11:36.179 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39622 10 6452 1 2025-08-13 05:12:21.149 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 05:12:21.067 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 05:12:20.887 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 05:12:21.037 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 05:12:20.924 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 05:12:36.583 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33096 10 6452 1 2025-08-13 05:13:36.985 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49170 10 6452 1 2025-08-13 05:10:12.330 00:05:00.752 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 05:10:12.327 00:05:00.758 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 05:14:37.395 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36442 10 6452 1 2025-08-13 05:15:37.809 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:45116 10 6452 1 2025-08-13 05:16:38.195 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:37516 10 6452 1 2025-08-13 05:17:20.907 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 05:17:20.787 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 05:17:21.079 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 05:17:20.907 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 05:17:20.991 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 05:17:38.560 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:43976 10 6452 1 2025-08-13 05:18:38.920 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:55740 10 6452 1 2025-08-13 05:19:39.350 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42034 10 6452 1 2025-08-13 05:16:12.331 00:05:00.752 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 05:16:12.329 00:05:00.757 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 05:20:39.759 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:57434 10 6452 1 2025-08-13 05:21:40.211 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38598 10 6452 1 2025-08-13 05:22:21.244 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 05:22:21.246 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 05:22:21.201 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 05:22:21.062 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 05:22:21.145 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 05:22:40.612 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55146 10 6452 1 2025-08-13 05:23:41.017 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53060 10 6452 1 2025-08-13 05:24:41.428 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51644 10 6452 1 2025-08-13 05:25:41.835 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:59884 10 6452 1 2025-08-13 05:22:12.330 00:05:00.760 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 05:22:12.334 00:05:00.755 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 05:26:42.220 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36454 10 6452 1 2025-08-13 05:27:21.704 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 05:27:21.423 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 05:27:21.497 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 05:27:21.453 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 05:27:21.622 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 05:27:42.624 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:58244 10 6452 1 2025-08-13 05:28:43.031 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44862 10 6452 1 2025-08-13 05:29:43.434 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60252 10 6452 1 2025-08-13 05:30:43.850 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:37154 10 6452 1 2025-08-13 05:31:44.237 00:00:11.303 TCP 1.101.0.1:3000 -> 23.104.0.1:52086 10 6452 1 2025-08-13 05:28:12.333 00:05:00.755 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 05:28:12.330 00:05:00.761 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 05:32:21.290 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 05:32:21.503 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 05:32:21.383 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 05:32:21.440 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 05:32:21.466 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 05:32:45.574 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36062 10 6452 1 2025-08-13 05:33:45.976 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46326 10 6452 1 2025-08-13 05:34:46.382 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45636 10 6452 1 2025-08-13 05:35:46.748 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41626 10 6452 1 2025-08-13 05:36:47.154 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60520 10 6452 1 2025-08-13 05:37:21.371 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 05:37:21.565 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 05:37:21.396 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 05:37:21.473 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 05:37:21.555 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 05:37:47.571 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:59506 10 6452 1 2025-08-13 05:34:12.333 00:05:00.762 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 05:34:12.337 00:05:00.757 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 05:38:47.976 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:52580 10 6452 1 2025-08-13 05:39:48.402 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56818 10 6452 1 2025-08-13 05:40:48.822 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60342 10 6452 1 2025-08-13 05:41:49.239 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:54248 10 6452 1 2025-08-13 05:42:22.258 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 05:42:22.000 00:00:00.029 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 05:42:22.276 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 05:42:22.035 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 05:42:22.175 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 05:42:49.620 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57530 10 6452 1 2025-08-13 05:43:50.024 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39438 10 6452 1 2025-08-13 05:40:12.332 00:05:00.763 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 05:40:12.335 00:05:00.758 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 05:44:50.424 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33652 10 6452 1 2025-08-13 05:45:50.827 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33074 10 6452 1 2025-08-13 05:46:51.233 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34320 10 6452 1 2025-08-13 05:47:21.800 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 05:47:21.606 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 05:47:21.834 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 05:47:21.470 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 05:47:21.717 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 05:47:51.640 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:47732 10 6452 1 2025-08-13 05:48:52.004 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:50270 10 6452 1 2025-08-13 05:49:52.370 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41850 10 6452 1 2025-08-13 05:46:12.337 00:05:00.762 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 05:46:12.339 00:05:00.756 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 05:50:52.773 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:58472 10 6452 1 2025-08-13 05:51:53.187 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:57170 10 6452 1 2025-08-13 05:52:21.908 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 05:52:21.855 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 05:52:21.807 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 05:52:21.913 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 05:52:21.995 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 05:52:53.597 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56166 10 6452 1 2025-08-13 05:53:54.005 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42090 10 6452 1 2025-08-13 05:54:54.414 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:45962 10 6452 1 2025-08-13 05:55:54.826 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50990 10 6452 1 2025-08-13 05:52:12.340 00:05:00.759 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 05:52:12.342 00:05:00.754 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 05:56:55.230 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33628 10 6452 1 2025-08-13 05:57:22.108 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 05:57:21.926 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 05:57:21.935 00:00:00.018 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 05:57:22.002 00:00:00.037 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 05:57:22.084 00:00:00.037 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 05:57:55.634 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57640 10 6452 1 Summary: total flows: 139, total bytes: 410548, total packets: 1010, avg bps: 913, avg pps: 0, avg bpp: 406 Time window: 2025-08-13 04:58:12 - 2025-08-13 05:58:05 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0021s User: 0.0021s Wall: 0.0026s flows/second: 52551.7 Runtime: 0.0027s