Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-13 05:58:56.040 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34224 10 6452 1 2025-08-13 05:59:56.454 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:51344 12 10367 1 2025-08-13 06:00:56.889 00:00:11.031 TCP 1.101.0.1:3000 -> 23.104.0.1:57186 12 6556 1 2025-08-13 06:01:57.955 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51696 10 6452 1 2025-08-13 05:58:12.343 00:05:00.756 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 05:58:12.341 00:05:00.762 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 06:02:22.011 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 06:02:22.110 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 06:02:21.997 00:00:00.045 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 06:02:22.051 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 06:02:21.927 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 06:02:58.370 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44342 10 6452 1 2025-08-13 06:03:58.776 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:37472 10 6452 1 2025-08-13 06:04:59.228 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48994 10 6452 1 2025-08-13 06:05:59.629 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46554 10 6452 1 2025-08-13 06:06:59.995 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:50258 10 6452 1 2025-08-13 06:07:22.172 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 06:07:22.123 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 06:07:22.144 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 06:07:22.113 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 06:07:22.195 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 06:04:12.351 00:05:00.750 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 06:04:12.349 00:05:00.755 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 06:08:00.361 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55942 10 6452 1 2025-08-13 06:09:00.769 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:42318 10 6452 1 2025-08-13 06:10:01.197 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37662 10 6452 1 2025-08-13 06:11:01.602 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33362 10 6452 1 2025-08-13 06:12:02.003 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45558 10 6452 1 2025-08-13 06:12:22.243 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 06:12:22.121 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 06:12:22.064 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 06:12:22.119 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 06:12:22.202 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 06:13:02.365 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42440 10 6452 1 2025-08-13 06:10:12.350 00:05:00.755 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 06:14:02.771 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:52022 10 6452 1 2025-08-13 06:10:12.352 00:05:00.750 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 06:15:03.189 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49528 10 6452 1 2025-08-13 06:16:03.592 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33402 10 6452 1 2025-08-13 06:17:03.955 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51434 10 6452 1 2025-08-13 06:17:22.232 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 06:17:22.303 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 06:17:22.411 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 06:17:22.184 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 06:17:22.149 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 06:18:04.355 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:55248 10 6452 1 2025-08-13 06:19:04.716 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:56694 10 6452 1 2025-08-13 06:16:12.353 00:05:00.753 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 06:16:12.356 00:05:00.748 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 06:20:05.145 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38438 10 6452 1 2025-08-13 06:21:05.547 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39470 10 6452 1 2025-08-13 06:22:05.908 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51608 10 6452 1 2025-08-13 06:22:22.471 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 06:22:22.502 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 06:22:22.389 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 06:22:22.451 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 06:22:22.389 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 06:23:06.319 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:52830 10 6452 1 2025-08-13 06:24:06.696 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:33690 10 6452 1 2025-08-13 06:25:07.130 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:34910 14 10469 1 2025-08-13 06:22:12.358 00:05:00.749 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 06:22:12.355 00:05:00.754 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 06:26:07.606 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34786 10 6452 1 2025-08-13 06:27:22.555 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 06:27:08.016 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37982 10 6452 1 2025-08-13 06:27:22.697 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 06:27:22.466 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 06:27:22.415 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 06:27:22.472 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 06:28:08.424 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47780 10 6452 1 2025-08-13 06:29:08.831 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47326 10 6452 1 2025-08-13 06:30:09.232 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60510 10 6452 1 2025-08-13 06:31:09.630 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41152 10 6452 1 2025-08-13 06:28:12.361 00:05:00.750 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 06:28:12.359 00:05:00.755 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 06:32:22.554 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 06:32:22.555 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 06:32:22.598 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 06:32:10.033 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40938 10 6452 1 2025-08-13 06:32:22.618 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 06:32:22.700 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 06:33:10.433 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43722 10 6452 1 2025-08-13 06:34:10.834 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:50312 10 6452 1 2025-08-13 06:35:11.211 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43864 10 6452 1 2025-08-13 06:36:11.627 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46574 10 6452 1 2025-08-13 06:37:22.912 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 06:37:22.909 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 06:37:22.724 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 06:37:23.095 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 06:37:12.033 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:58722 10 6452 1 2025-08-13 06:37:23.179 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 06:34:12.362 00:05:00.750 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 06:34:12.360 00:05:00.756 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 06:38:12.393 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:58254 10 6452 1 2025-08-13 06:39:12.761 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:44340 10 6452 1 2025-08-13 06:40:13.187 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46758 10 6452 1 2025-08-13 06:41:13.583 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57578 10 6452 1 2025-08-13 06:42:22.822 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 06:42:22.901 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 06:42:22.777 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 06:42:22.674 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 06:42:13.995 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48578 10 6452 1 2025-08-13 06:42:22.740 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 06:43:14.405 00:00:10.919 TCP 1.101.0.1:3000 -> 23.104.0.1:45050 10 6452 1 2025-08-13 06:40:12.365 00:05:00.750 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 06:40:12.361 00:05:00.755 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 06:44:15.363 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45188 10 6452 1 2025-08-13 06:45:15.734 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:33582 10 6452 1 2025-08-13 06:46:16.147 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53572 10 6452 1 2025-08-13 06:47:23.008 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 06:47:22.772 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 06:47:22.920 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 06:47:22.951 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 06:47:22.926 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 06:47:16.546 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40500 10 6452 1 2025-08-13 06:48:16.950 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:56364 10 6452 1 2025-08-13 06:49:17.364 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56694 10 6452 1 2025-08-13 06:46:12.365 00:05:00.752 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 06:46:12.363 00:05:00.757 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 06:50:17.770 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:35262 10 6452 1 2025-08-13 06:51:18.185 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:46918 10 6452 1 2025-08-13 06:52:23.216 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 06:52:22.986 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 06:52:22.911 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 06:52:22.640 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 06:52:23.134 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 06:52:18.584 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59558 10 6452 1 2025-08-13 06:53:18.950 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44440 10 6452 1 2025-08-13 06:54:19.362 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49932 10 6452 1 2025-08-13 06:55:19.770 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:54130 10 6452 1 2025-08-13 06:52:12.364 00:05:00.765 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 06:52:12.367 00:05:00.761 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 06:56:20.138 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39174 10 6452 1 2025-08-13 06:57:23.701 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 06:57:23.067 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 06:57:23.729 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 06:57:23.329 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 06:57:23.619 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 06:57:20.546 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54690 10 6452 1 2025-08-13 06:58:20.950 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:51134 10 6452 1 Summary: total flows: 140, total bytes: 425036, total packets: 1028, avg bps: 939, avg pps: 0, avg bpp: 413 Time window: 2025-08-13 05:58:12 - 2025-08-13 06:58:31 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0040s User: 0.0008s Wall: 0.0021s flows/second: 66508.4 Runtime: 0.0021s