Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-13 21:59:21.772 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:47304 10 6452 1 2025-08-13 22:00:22.146 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40182 10 6452 1 2025-08-13 22:01:22.557 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:43164 10 6452 1 2025-08-13 21:58:12.652 00:05:00.815 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 21:58:12.651 00:05:00.819 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 22:02:22.952 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59844 10 6452 1 2025-08-13 22:02:41.358 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 22:02:41.308 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 22:02:41.076 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 22:02:41.414 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 22:02:41.497 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 22:03:23.355 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45942 10 6452 1 2025-08-13 22:04:23.721 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:37678 10 6452 1 2025-08-13 22:05:24.137 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59488 10 6452 1 2025-08-13 22:06:24.541 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55244 10 6452 1 2025-08-13 22:07:24.946 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:58720 10 6452 1 2025-08-13 22:07:41.323 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 22:07:41.487 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 22:07:41.528 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 22:07:41.391 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 22:07:41.241 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 22:04:12.654 00:05:00.813 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 22:04:12.652 00:05:00.819 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 22:08:25.365 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38126 10 6452 1 2025-08-13 22:09:25.775 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49426 10 6452 1 2025-08-13 22:10:26.176 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59940 10 6452 1 2025-08-13 22:11:26.578 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:57534 10 6452 1 2025-08-13 22:12:41.522 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 22:12:26.946 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:53004 10 6452 1 2025-08-13 22:12:41.515 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 22:12:41.428 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 22:12:41.524 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 22:12:41.440 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 22:13:27.315 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35254 10 6452 1 2025-08-13 22:10:12.653 00:05:00.820 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 22:10:12.655 00:05:00.814 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 22:14:27.714 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45852 10 6452 1 2025-08-13 22:15:28.105 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42544 10 6452 1 2025-08-13 22:16:28.509 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53022 10 6452 1 2025-08-13 22:17:28.873 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49578 10 6452 1 2025-08-13 22:17:41.816 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 22:17:41.579 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 22:17:41.700 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 22:17:41.465 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 22:17:41.734 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 22:18:29.277 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50042 10 6452 1 2025-08-13 22:19:29.680 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47272 10 6452 1 2025-08-13 22:16:12.656 00:05:00.818 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 22:16:12.658 00:05:00.813 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 22:20:30.106 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58250 10 6452 1 2025-08-13 22:21:30.507 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47032 10 6452 1 2025-08-13 22:22:30.906 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:50332 10 6452 1 2025-08-13 22:22:41.808 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 22:22:41.664 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 22:22:41.711 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 22:22:41.528 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 22:22:41.795 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 22:23:31.274 00:00:10.426 TCP 1.101.0.1:3000 -> 23.104.0.1:39276 10 6452 1 2025-08-13 22:24:31.736 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49554 10 6452 1 2025-08-13 22:25:32.136 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43256 12 6556 1 2025-08-13 22:22:12.655 00:05:00.820 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 22:22:12.657 00:05:00.816 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 22:26:32.540 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41406 10 6452 1 2025-08-13 22:27:41.996 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 22:27:41.912 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 22:27:41.764 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 22:27:41.574 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 22:27:41.914 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 22:27:32.942 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:50196 10 6452 1 2025-08-13 22:28:33.362 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42400 10 6452 1 2025-08-13 22:29:33.768 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:40582 10 6452 1 2025-08-13 22:30:34.184 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:38796 12 10367 1 2025-08-13 22:31:34.672 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:55206 10 6452 1 2025-08-13 22:28:12.657 00:05:00.818 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 22:28:12.655 00:05:00.823 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 22:32:42.070 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 22:32:41.859 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 22:32:41.858 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 22:32:41.798 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 22:32:41.986 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 22:32:35.106 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60646 10 6452 1 2025-08-13 22:33:35.515 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35172 10 6452 1 2025-08-13 22:34:35.881 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56394 10 6452 1 2025-08-13 22:35:36.289 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59932 10 6452 1 2025-08-13 22:36:36.699 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41850 10 6452 1 2025-08-13 22:37:42.246 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 22:37:41.860 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 22:37:42.163 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 22:37:42.012 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 22:37:42.036 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 22:37:37.114 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54266 10 6452 1 2025-08-13 22:34:12.657 00:05:00.822 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 22:34:12.660 00:05:00.816 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 22:38:37.524 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:59188 10 6452 1 2025-08-13 22:39:37.895 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:35324 10 6452 1 2025-08-13 22:40:38.319 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42334 10 6452 1 2025-08-13 22:41:38.724 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56192 10 6452 1 2025-08-13 22:42:42.434 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 22:42:42.253 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 22:42:42.255 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 22:42:41.995 00:00:00.036 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 22:42:42.077 00:00:00.035 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 22:42:39.134 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39620 10 6452 1 2025-08-13 22:43:39.540 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34554 10 6452 1 2025-08-13 22:40:12.661 00:05:00.815 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 22:40:12.660 00:05:00.820 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 22:44:39.946 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56676 10 6452 1 2025-08-13 22:45:40.349 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52970 10 6452 1 2025-08-13 22:46:40.759 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46204 10 6452 1 2025-08-13 22:47:41.994 00:00:00.047 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 22:47:42.133 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 22:47:42.074 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 22:47:42.291 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 22:47:42.375 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 22:47:41.152 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50650 10 6452 1 2025-08-13 22:48:41.561 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36018 10 6452 1 2025-08-13 22:49:41.962 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33090 10 6452 1 2025-08-13 22:46:12.662 00:05:00.822 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 22:46:12.663 00:05:00.817 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 22:50:42.368 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:53050 12 10367 1 2025-08-13 22:51:42.844 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:45336 10 6452 1 2025-08-13 22:52:42.312 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 22:52:42.220 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 22:52:42.374 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 22:52:42.167 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 22:52:42.231 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 22:52:43.274 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51324 10 6452 1 2025-08-13 22:53:43.679 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47138 10 6452 1 2025-08-13 22:54:44.111 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:43216 10 6452 1 2025-08-13 22:55:44.477 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57786 10 6452 1 2025-08-13 22:52:12.661 00:05:00.823 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-13 22:52:12.665 00:05:00.817 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-13 22:56:44.885 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:37488 10 6452 1 2025-08-13 22:57:42.438 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-13 22:57:42.357 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-13 22:57:42.582 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-13 22:57:42.586 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 22:57:42.355 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-13 22:57:45.328 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57732 10 6452 1 Summary: total flows: 139, total bytes: 418482, total packets: 1016, avg bps: 934, avg pps: 0, avg bpp: 411 Time window: 2025-08-13 21:58:12 - 2025-08-13 22:57:55 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0019s User: 0.0019s Wall: 0.0018s flows/second: 76160.5 Runtime: 0.0018s