Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-13 14:58:46.091 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:59784 10 6452 1 2025-08-13 14:59:46.451 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38236 10 6452 1 2025-08-13 15:00:46.861 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49778 10 6452 1 2025-08-13 15:01:47.271 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43582 10 6452 1 2025-08-13 14:58:12.518 00:05:00.815 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 14:58:12.515 00:05:00.820 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 15:02:32.807 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 15:02:32.810 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 15:02:32.933 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 15:02:32.629 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 15:02:32.889 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 15:02:47.677 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:58922 10 6452 1 2025-08-13 15:03:48.114 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:58010 10 6452 1 2025-08-13 15:04:48.480 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49810 10 6452 1 2025-08-13 15:05:48.845 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:57356 10 6452 1 2025-08-13 15:06:49.275 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:42574 10 6452 1 2025-08-13 15:07:33.091 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 15:07:33.009 00:00:00.038 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 15:07:33.082 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 15:07:32.894 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 15:07:33.008 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 15:07:49.645 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:48954 10 6452 1 2025-08-13 15:04:12.521 00:05:00.814 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 15:04:12.519 00:05:00.819 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 15:08:50.038 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51646 10 6452 1 2025-08-13 15:09:50.449 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55878 10 6452 1 2025-08-13 15:10:50.855 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:57292 10 6452 1 2025-08-13 15:11:51.291 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:51100 10 6452 1 2025-08-13 15:12:33.006 00:00:00.043 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 15:12:33.004 00:00:00.050 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 15:12:32.954 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 15:12:32.922 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 15:12:33.006 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 15:12:51.706 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:48344 10 6452 1 2025-08-13 15:13:52.109 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60528 10 6452 1 2025-08-13 15:10:12.518 00:05:00.823 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 15:10:12.520 00:05:00.818 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 15:14:52.514 00:00:10.446 TCP 1.101.0.1:3000 -> 23.104.0.1:57070 12 10365 1 2025-08-13 15:15:53.001 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39630 10 6452 1 2025-08-13 15:16:53.405 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49806 10 6452 1 2025-08-13 15:17:33.322 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 15:17:33.236 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 15:17:32.893 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 15:17:33.266 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 15:17:33.239 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 15:17:53.767 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:34896 10 6452 1 2025-08-13 15:18:54.148 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46440 10 6452 1 2025-08-13 15:19:54.551 00:00:10.446 TCP 1.101.0.1:3000 -> 23.104.0.1:42060 14 10471 1 2025-08-13 15:16:12.519 00:05:00.824 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 15:16:12.521 00:05:00.819 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 15:20:55.035 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42532 10 6452 1 2025-08-13 15:21:55.438 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43866 10 6452 1 2025-08-13 15:22:33.283 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 15:22:33.156 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 15:22:33.048 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 15:22:33.157 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 15:22:33.240 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 15:22:55.839 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:60624 10 6452 1 2025-08-13 15:23:56.242 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55174 10 6452 1 2025-08-13 15:24:56.655 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36730 10 6452 1 2025-08-13 15:25:57.106 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48768 10 6452 1 2025-08-13 15:22:12.523 00:05:00.822 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 15:22:12.524 00:05:00.817 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 15:26:57.530 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54082 10 6452 1 2025-08-13 15:27:33.731 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 15:27:33.732 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 15:27:33.277 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 15:27:33.738 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 15:27:33.821 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 15:27:57.937 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:60858 10 6452 1 2025-08-13 15:28:58.371 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57382 10 6452 1 2025-08-13 15:29:58.775 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:59312 10 6452 1 2025-08-13 15:30:59.145 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33628 10 6452 1 2025-08-13 15:31:59.556 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55302 10 6452 1 2025-08-13 15:28:12.523 00:05:00.821 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 15:28:12.526 00:05:00.816 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 15:32:33.618 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 15:32:33.460 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 15:32:33.540 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 15:32:33.304 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 15:32:33.536 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 15:32:59.963 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46736 10 6452 1 2025-08-13 15:34:00.374 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36968 10 6452 1 2025-08-13 15:35:00.772 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47462 10 6452 1 2025-08-13 15:36:01.184 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:33738 10 6452 1 2025-08-13 15:37:01.586 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58852 10 6452 1 2025-08-13 15:37:33.520 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 15:37:33.518 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 15:37:33.541 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 15:37:33.701 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 15:37:33.783 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 15:34:12.525 00:05:00.820 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 15:34:12.524 00:05:00.826 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 15:38:02.021 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43474 10 6452 1 2025-08-13 15:39:02.429 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57212 10 6452 1 2025-08-13 15:40:02.791 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37696 10 6452 1 2025-08-13 15:41:03.200 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33730 10 6452 1 2025-08-13 15:42:03.606 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53692 10 6452 1 2025-08-13 15:42:33.778 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 15:42:33.657 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 15:42:33.665 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 15:42:33.486 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 15:42:33.860 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 15:43:04.012 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34988 10 6452 1 2025-08-13 15:40:12.530 00:05:00.817 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 15:40:12.528 00:05:00.822 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 15:44:04.411 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34706 10 6452 1 2025-08-13 15:45:04.821 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42134 10 6452 1 2025-08-13 15:46:05.221 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57600 10 6452 1 2025-08-13 15:47:05.624 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55644 10 6452 1 2025-08-13 15:47:33.875 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 15:47:33.839 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 15:47:33.882 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 15:47:33.589 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 15:47:33.793 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 15:48:06.029 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41520 10 6452 1 2025-08-13 15:49:06.391 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49400 10 6452 1 2025-08-13 15:46:12.533 00:05:00.817 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 15:46:12.531 00:05:00.822 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 15:50:06.756 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:59776 10 6452 1 2025-08-13 15:51:07.135 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42862 10 6452 1 2025-08-13 15:52:34.281 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 15:52:07.541 00:00:22.267 TCP 1.101.0.1:3000 -> 23.104.0.1:60306 10 6452 1 2025-08-13 15:52:34.192 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 15:52:34.113 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 15:52:34.235 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 15:52:34.200 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 15:53:19.875 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60296 10 6452 1 2025-08-13 15:54:20.294 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38510 10 6452 1 2025-08-13 15:55:20.696 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43124 10 6452 1 2025-08-13 15:52:12.532 00:05:00.818 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 15:52:12.530 00:05:00.823 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 15:56:21.109 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54808 10 6452 1 2025-08-13 15:57:34.020 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 15:57:33.870 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 15:57:33.938 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 15:57:33.809 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 15:57:33.936 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 15:57:21.514 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54108 10 6452 1 2025-08-13 15:58:21.923 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36550 10 6452 1 Summary: total flows: 140, total bytes: 424932, total packets: 1026, avg bps: 939, avg pps: 0, avg bpp: 414 Time window: 2025-08-13 14:58:12 - 2025-08-13 15:58:32 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0023s User: 0.0023s Wall: 0.0027s flows/second: 52791.7 Runtime: 0.0027s