Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-13 11:59:28.394 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34042 10 6452 1 2025-08-13 12:00:28.798 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45574 10 6452 1 2025-08-13 12:01:29.198 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55172 10 6452 1 2025-08-13 11:58:12.455 00:05:00.807 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 11:58:12.459 00:05:00.802 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 12:02:29.390 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 12:02:29.343 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 12:02:29.057 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 12:02:29.211 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 12:02:29.294 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 12:02:29.602 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:50592 10 6452 1 2025-08-13 12:03:30.000 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58746 10 6452 1 2025-08-13 12:04:30.404 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36902 10 6452 1 2025-08-13 12:05:30.818 00:00:10.423 TCP 1.101.0.1:3000 -> 23.104.0.1:53286 10 6452 1 2025-08-13 12:06:31.315 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56058 10 6452 1 2025-08-13 12:07:29.482 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 12:07:29.413 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 12:07:29.340 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 12:07:29.305 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 12:07:29.566 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 12:07:31.726 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41542 12 6556 1 2025-08-13 12:04:12.458 00:05:00.802 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 12:04:12.457 00:05:00.807 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 12:08:32.136 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35534 10 6452 1 2025-08-13 12:09:32.531 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47668 10 6452 1 2025-08-13 12:10:32.936 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:34614 10 6452 1 2025-08-13 12:11:33.356 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40274 10 6452 1 2025-08-13 12:12:29.583 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 12:12:29.502 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 12:12:29.234 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 12:12:29.434 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 12:12:29.352 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 12:12:33.757 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45134 10 6452 1 2025-08-13 12:13:34.163 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41952 10 6452 1 2025-08-13 12:10:12.462 00:05:00.801 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 12:10:12.464 00:05:00.797 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 12:14:34.562 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50462 10 6452 1 2025-08-13 12:15:34.966 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43350 10 6452 1 2025-08-13 12:16:35.366 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57774 10 6452 1 2025-08-13 12:17:29.617 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 12:17:29.661 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 12:17:29.658 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 12:17:29.480 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 12:17:29.535 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 12:17:35.769 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56138 10 6452 1 2025-08-13 12:18:36.175 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38012 10 6452 1 2025-08-13 12:19:36.580 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45754 10 6452 1 2025-08-13 12:16:12.468 00:05:00.793 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 12:16:12.465 00:05:00.799 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 12:20:36.981 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33810 10 6452 1 2025-08-13 12:21:37.388 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:49514 10 6452 1 2025-08-13 12:22:29.758 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 12:22:29.676 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 12:22:29.668 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 12:22:29.625 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 12:22:29.674 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 12:22:37.773 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38544 10 6452 1 2025-08-13 12:23:38.189 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48014 10 6452 1 2025-08-13 12:24:38.595 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35920 10 6452 1 2025-08-13 12:25:39.006 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:43634 10 6452 1 2025-08-13 12:22:12.466 00:05:00.802 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 12:22:12.463 00:05:00.806 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 12:26:39.413 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47104 10 6452 1 2025-08-13 12:27:29.913 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 12:27:29.690 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 12:27:29.783 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 12:27:29.696 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 12:27:29.831 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 12:27:39.776 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:44310 10 6452 1 2025-08-13 12:28:40.175 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54012 10 6452 1 2025-08-13 12:29:40.586 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40256 10 6452 1 2025-08-13 12:30:40.989 00:00:15.586 TCP 1.101.0.1:3000 -> 23.104.0.1:47982 10 6452 1 2025-08-13 12:31:46.634 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:46232 10 6452 1 2025-08-13 12:28:12.471 00:05:00.798 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 12:28:12.468 00:05:00.803 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 12:32:29.843 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 12:32:29.735 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 12:32:29.712 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 12:32:29.966 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 12:32:30.048 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 12:32:46.998 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44430 10 6452 1 2025-08-13 12:33:47.404 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:59302 10 6452 1 2025-08-13 12:34:47.761 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:39568 10 6452 1 2025-08-13 12:35:48.190 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37426 10 6452 1 2025-08-13 12:36:48.556 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56346 10 6452 1 2025-08-13 12:37:30.399 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 12:37:29.930 00:00:00.032 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 12:37:30.548 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 12:37:30.541 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 12:37:30.317 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 12:37:48.955 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:34498 10 6452 1 2025-08-13 12:34:12.469 00:05:00.805 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 12:34:12.472 00:05:00.799 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 12:38:49.318 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41460 10 6452 1 2025-08-13 12:39:49.718 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60172 10 6452 1 2025-08-13 12:40:50.134 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54724 10 6452 1 2025-08-13 12:41:50.538 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44744 10 6452 1 2025-08-13 12:42:30.293 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 12:42:30.172 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 12:42:30.035 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 12:42:30.072 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 12:42:30.207 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 12:42:50.937 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:33820 10 6452 1 2025-08-13 12:43:51.357 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47946 10 6452 1 2025-08-13 12:40:12.471 00:05:00.804 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 12:40:12.473 00:05:00.799 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 12:44:51.761 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:48958 10 6452 1 2025-08-13 12:45:52.202 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:36442 10 6452 1 2025-08-13 12:46:52.565 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55430 10 6452 1 2025-08-13 12:47:30.232 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 12:47:30.275 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 12:47:30.212 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 12:47:30.201 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 12:47:30.148 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 12:47:52.967 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48780 10 6452 1 2025-08-13 12:48:53.336 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53054 10 6452 1 2025-08-13 12:49:53.702 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:53254 12 10367 1 2025-08-13 12:46:12.474 00:05:00.799 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 12:46:12.473 00:05:00.805 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 12:50:54.185 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42586 10 6452 1 2025-08-13 12:51:54.582 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49802 10 6452 1 2025-08-13 12:52:30.117 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 12:52:30.207 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 12:52:30.130 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 12:52:30.112 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 12:52:30.194 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 12:52:54.985 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:36474 10 6452 1 2025-08-13 12:53:55.405 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53324 10 6452 1 2025-08-13 12:54:55.778 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49284 10 6452 1 2025-08-13 12:55:56.184 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51116 10 6452 1 2025-08-13 12:52:12.477 00:05:00.800 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 12:52:12.475 00:05:00.806 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 12:56:56.586 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51832 10 6452 1 2025-08-13 12:57:30.554 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 12:57:30.626 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 12:57:30.585 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 12:57:30.603 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 12:57:30.471 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 12:57:56.984 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:56698 10 6452 1 Summary: total flows: 139, total bytes: 414567, total packets: 1014, avg bps: 922, avg pps: 0, avg bpp: 408 Time window: 2025-08-13 11:58:12 - 2025-08-13 12:58:07 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0051s User: 0.0000s Wall: 0.0020s flows/second: 68775.3 Runtime: 0.0020s