Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-14 01:58:57.567 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45876 10 6452 1 2025-08-14 01:59:57.977 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45092 10 6452 1 2025-08-14 02:00:58.379 00:00:10.435 TCP 1.101.0.1:3000 -> 23.104.0.1:49902 13 13937 1 2025-08-14 02:01:58.851 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:54288 10 6452 1 2025-08-14 01:58:12.725 00:05:00.812 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-14 01:58:12.728 00:05:00.807 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-14 02:02:46.008 00:00:00.049 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 02:02:45.803 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 02:02:46.070 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 02:02:46.170 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 02:02:46.254 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 02:02:59.281 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:33566 10 6452 1 2025-08-14 02:03:59.639 00:00:10.511 TCP 1.101.0.1:3000 -> 23.104.0.1:45646 10 6452 1 2025-08-14 02:05:00.188 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59902 10 6452 1 2025-08-14 02:06:00.584 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46380 10 6452 1 2025-08-14 02:07:00.989 00:00:10.352 TCP 1.101.0.1:3000 -> 23.104.0.1:38882 10 6452 1 2025-08-14 02:07:46.459 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 02:07:46.274 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 02:07:46.382 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 02:07:46.286 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 02:07:46.377 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 02:04:12.730 00:05:00.809 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-14 02:08:01.381 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52256 10 6452 1 2025-08-14 02:04:12.732 00:05:00.804 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-14 02:09:01.785 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49026 10 6452 1 2025-08-14 02:10:02.143 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59902 10 6452 1 2025-08-14 02:11:02.555 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:32864 10 6452 1 2025-08-14 02:12:02.925 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:34764 10 6452 1 2025-08-14 02:12:46.371 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 02:12:46.493 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 02:12:46.462 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 02:12:46.371 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 02:12:46.454 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 02:13:03.342 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:38332 10 6452 1 2025-08-14 02:10:12.732 00:05:00.808 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-14 02:14:03.705 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33024 10 6452 1 2025-08-14 02:10:12.734 00:05:00.803 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-14 02:15:04.109 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41022 10 6452 1 2025-08-14 02:16:04.514 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39346 10 6452 1 2025-08-14 02:17:04.926 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:49242 10 6452 1 2025-08-14 02:17:46.430 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 02:17:46.394 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 02:17:46.410 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 02:17:46.315 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 02:17:46.398 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 02:18:05.343 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59168 10 6452 1 2025-08-14 02:19:05.754 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52980 10 6452 1 2025-08-14 02:16:12.733 00:05:00.807 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-14 02:16:12.735 00:05:00.802 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-14 02:20:06.115 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:53592 10 6452 1 2025-08-14 02:21:06.480 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43974 10 6452 1 2025-08-14 02:22:06.881 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36508 10 6452 1 2025-08-14 02:22:46.573 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 02:22:46.397 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 02:22:46.644 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 02:22:46.407 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 02:22:46.491 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 02:23:07.285 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46872 10 6452 1 2025-08-14 02:24:07.693 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46802 10 6452 1 2025-08-14 02:25:08.068 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42504 10 6452 1 2025-08-14 02:22:12.739 00:05:00.803 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-14 02:22:12.742 00:05:00.798 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-14 02:26:08.473 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41838 10 6452 1 2025-08-14 02:27:08.888 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:37856 12 6556 1 2025-08-14 02:27:46.441 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 02:27:46.708 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 02:27:46.497 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 02:27:46.303 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 02:27:46.358 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 02:28:09.314 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49798 10 6452 1 2025-08-14 02:29:09.712 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:47798 10 6452 1 2025-08-14 02:30:10.138 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40854 10 6452 1 2025-08-14 02:31:10.540 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44362 10 6452 1 2025-08-14 02:28:12.740 00:05:00.803 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-14 02:28:12.742 00:05:00.798 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-14 02:32:10.949 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:40870 10 6452 1 2025-08-14 02:32:46.762 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 02:32:46.677 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 02:32:46.577 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 02:32:46.757 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 02:32:46.840 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 02:33:11.321 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41924 10 6452 1 2025-08-14 02:34:11.728 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42456 10 6452 1 2025-08-14 02:35:12.137 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36592 10 6452 1 2025-08-14 02:36:12.542 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:52276 10 6452 1 2025-08-14 02:37:13.001 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55386 10 6452 1 2025-08-14 02:37:47.220 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 02:37:47.229 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 02:37:47.108 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 02:37:47.157 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 02:37:47.240 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 02:34:12.745 00:05:00.798 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-14 02:34:12.742 00:05:00.803 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-14 02:38:13.414 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50876 10 6452 1 2025-08-14 02:39:13.811 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:56760 10 6452 1 2025-08-14 02:40:14.181 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35440 10 6452 1 2025-08-14 02:41:14.583 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53004 10 6452 1 2025-08-14 02:42:14.990 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40914 10 6452 1 2025-08-14 02:42:46.900 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 02:42:46.736 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 02:42:46.762 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 02:42:46.810 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 02:42:46.893 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 02:43:15.407 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60712 10 6452 1 2025-08-14 02:40:12.748 00:05:00.798 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-14 02:40:12.751 00:05:00.793 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-14 02:44:15.814 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60798 10 6452 1 2025-08-14 02:45:16.218 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44188 10 6452 1 2025-08-14 02:46:16.621 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33800 10 6452 1 2025-08-14 02:47:17.024 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:59446 10 6452 1 2025-08-14 02:47:46.998 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 02:47:46.915 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 02:47:47.149 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 02:47:46.850 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 02:47:46.914 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 02:48:17.384 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51828 10 6452 1 2025-08-14 02:49:17.742 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45724 10 6452 1 2025-08-14 02:46:12.753 00:05:00.790 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-14 02:46:12.753 00:05:00.795 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-14 02:50:18.143 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:33258 10 6452 1 2025-08-14 02:51:18.510 00:00:10.413 TCP 1.101.0.1:3000 -> 23.104.0.1:56330 11 6504 1 2025-08-14 02:52:18.971 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:36302 10 6452 1 2025-08-14 02:52:47.016 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 02:52:47.124 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 02:52:47.048 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 02:52:46.851 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 02:52:46.934 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 02:53:19.335 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57638 10 6452 1 2025-08-14 02:54:19.736 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:38398 10 6452 1 2025-08-14 02:55:20.114 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:36284 10 6452 1 2025-08-14 02:52:12.756 00:05:00.788 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-14 02:52:12.753 00:05:00.794 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-14 02:56:20.475 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49624 10 6452 1 2025-08-14 02:57:20.881 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:59592 10 6452 1 2025-08-14 02:57:47.527 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 02:57:47.399 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 02:57:47.397 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 02:57:47.455 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 02:57:47.444 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 02:58:21.247 00:00:14.298 TCP 1.101.0.1:3000 -> 23.104.0.1:50862 10 6452 1 Summary: total flows: 140, total bytes: 424641, total packets: 1026, avg bps: 937, avg pps: 0, avg bpp: 413 Time window: 2025-08-14 01:58:12 - 2025-08-14 02:58:35 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0042s User: 0.0000s Wall: 0.0020s flows/second: 69797.0 Runtime: 0.0020s