Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-13 17:58:39.723 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:46566 10 6452 1 2025-08-13 17:59:40.137 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34034 10 6452 1 2025-08-13 18:00:40.541 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:41324 10 6452 1 2025-08-13 18:01:40.917 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56272 10 6452 1 2025-08-13 17:58:12.570 00:05:00.814 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 17:58:12.568 00:05:00.819 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 18:02:36.707 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 18:02:36.639 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 18:02:36.459 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 18:02:36.627 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 18:02:36.624 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 18:02:41.324 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41106 10 6452 1 2025-08-13 18:03:41.726 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60270 10 6452 1 2025-08-13 18:04:42.130 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49380 10 6452 1 2025-08-13 18:05:42.532 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51634 10 6452 1 2025-08-13 18:06:42.935 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:45992 10 6452 1 2025-08-13 18:07:36.567 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 18:07:36.698 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 18:07:36.492 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 18:07:36.379 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 18:07:36.461 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 18:07:43.376 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33648 10 6452 1 2025-08-13 18:04:12.572 00:05:00.825 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 18:04:12.569 00:05:00.831 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 18:08:43.781 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50256 10 6452 1 2025-08-13 18:09:44.198 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51630 10 6452 1 2025-08-13 18:10:44.613 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43968 10 6452 1 2025-08-13 18:11:44.976 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:36658 10 6452 1 2025-08-13 18:12:36.497 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 18:12:36.495 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 18:12:36.773 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 18:12:36.608 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 18:12:36.691 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 18:12:45.392 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47750 10 6452 1 2025-08-13 18:13:45.751 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41548 10 6452 1 2025-08-13 18:10:12.573 00:05:00.825 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 18:10:12.570 00:05:00.830 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 18:14:46.156 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41252 10 6452 1 2025-08-13 18:15:46.561 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:53740 12 10367 1 2025-08-13 18:16:47.039 00:00:10.777 TCP 1.101.0.1:3000 -> 23.104.0.1:36304 10 6452 1 2025-08-13 18:17:36.921 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 18:17:36.897 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 18:17:36.675 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 18:17:36.904 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 18:17:36.839 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 18:17:47.863 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59240 10 6452 1 2025-08-13 18:18:48.274 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57334 10 6452 1 2025-08-13 18:19:48.686 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:34932 10 6452 1 2025-08-13 18:16:12.574 00:05:00.825 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 18:16:12.573 00:05:00.830 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 18:20:49.070 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36212 10 6452 1 2025-08-13 18:21:49.473 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34576 10 6452 1 2025-08-13 18:22:37.194 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 18:22:36.895 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 18:22:37.069 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 18:22:37.083 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 18:22:37.110 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 18:22:49.878 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41118 10 6452 1 2025-08-13 18:23:50.278 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39806 10 6452 1 2025-08-13 18:24:50.677 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:44096 10 6452 1 2025-08-13 18:25:51.069 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35216 10 6452 1 2025-08-13 18:22:12.576 00:05:00.825 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 18:22:12.574 00:05:00.829 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 18:26:51.477 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56056 10 6452 1 2025-08-13 18:27:37.319 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 18:27:37.456 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 18:27:36.886 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 18:27:37.219 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 18:27:37.303 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 18:27:51.879 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56654 10 6452 1 2025-08-13 18:28:52.280 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33924 10 6452 1 2025-08-13 18:29:52.682 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50210 10 6452 1 2025-08-13 18:30:53.116 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46298 10 6452 1 2025-08-13 18:31:53.481 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41906 10 6452 1 2025-08-13 18:28:12.584 00:05:00.820 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 18:28:12.582 00:05:00.825 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 18:32:37.125 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 18:32:36.935 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 18:32:37.050 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 18:32:36.916 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 18:32:36.999 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 18:32:53.889 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:50868 10 6452 1 2025-08-13 18:33:54.302 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47814 10 6452 1 2025-08-13 18:34:54.707 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40390 10 6452 1 2025-08-13 18:35:55.118 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42216 10 6452 1 2025-08-13 18:36:55.477 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42020 10 6452 1 2025-08-13 18:37:37.361 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 18:37:37.202 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 18:37:37.277 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 18:37:37.109 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 18:37:37.278 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 18:37:55.892 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:60438 12 6556 1 2025-08-13 18:34:12.579 00:05:00.830 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 18:34:12.582 00:05:00.825 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 18:38:56.316 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:53470 10 6452 1 2025-08-13 18:39:56.681 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59696 10 6452 1 2025-08-13 18:40:57.112 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43394 10 6452 1 2025-08-13 18:41:57.473 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59896 10 6452 1 2025-08-13 18:42:37.447 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 18:42:37.310 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 18:42:37.238 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 18:42:37.320 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 18:42:37.365 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 18:42:57.894 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:44700 12 6556 1 2025-08-13 18:40:12.582 00:05:00.824 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 18:43:58.316 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59736 10 6452 1 2025-08-13 18:40:12.579 00:05:00.829 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 18:44:58.736 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:54572 10 6452 1 2025-08-13 18:45:59.119 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42692 10 6452 1 2025-08-13 18:46:59.520 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45192 10 6452 1 2025-08-13 18:47:37.322 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 18:47:37.323 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 18:47:37.177 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 18:47:37.224 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 18:47:37.306 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 18:47:59.882 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38528 10 6452 1 2025-08-13 18:49:00.285 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:55774 10 6452 1 2025-08-13 18:46:12.587 00:05:00.824 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 18:50:00.648 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35186 10 6452 1 2025-08-13 18:46:12.589 00:05:00.819 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 18:51:01.067 00:00:10.448 TCP 1.101.0.1:3000 -> 23.104.0.1:48108 12 10367 1 2025-08-13 18:52:01.541 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52484 10 6452 1 2025-08-13 18:52:37.665 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 18:52:37.214 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 18:52:37.321 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 18:52:37.318 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 18:52:37.583 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 18:53:01.942 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:38090 10 6452 1 2025-08-13 18:54:02.375 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:57582 10 6452 1 2025-08-13 18:55:02.774 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:55628 10 6452 1 2025-08-13 18:52:12.590 00:05:00.820 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 18:52:12.587 00:05:00.825 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 18:56:03.146 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55050 10 6452 1 2025-08-13 18:57:03.553 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41210 10 6452 1 2025-08-13 18:57:37.741 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 18:57:37.423 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 18:57:37.199 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 18:57:37.742 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 18:57:37.826 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 18:58:03.958 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37546 10 6452 1 Summary: total flows: 140, total bytes: 425038, total packets: 1028, avg bps: 944, avg pps: 0, avg bpp: 413 Time window: 2025-08-13 17:58:12 - 2025-08-13 18:58:14 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0046s User: 0.0000s Wall: 0.0025s flows/second: 57098.7 Runtime: 0.0025s