Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-14 17:58:48.111 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34678 10 6452 1 2025-08-14 17:59:48.518 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39132 10 6452 1 2025-08-14 18:00:48.924 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:38436 10 6452 1 2025-08-14 17:56:13.149 00:06:00.672 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-14 18:01:49.340 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47334 10 6452 1 2025-08-14 17:57:13.152 00:06:00.667 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-14 18:02:49.751 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56060 10 6452 1 2025-08-14 18:03:05.492 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 18:03:05.511 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 18:03:05.409 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 18:03:05.261 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 18:03:05.409 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 18:03:50.170 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35750 10 6452 1 2025-08-14 18:04:50.583 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:58546 10 6452 1 2025-08-14 18:05:51.055 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41384 10 6452 1 2025-08-14 18:06:51.453 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53814 12 6556 1 2025-08-14 18:08:05.565 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 18:07:51.863 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40010 10 6452 1 2025-08-14 18:08:05.402 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 18:08:05.491 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 18:08:05.290 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 18:08:05.479 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 18:03:13.150 00:06:00.673 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-14 18:08:52.278 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50016 10 6452 1 2025-08-14 18:04:13.152 00:06:00.668 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-14 18:09:52.687 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38634 10 6452 1 2025-08-14 18:10:53.109 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52504 10 6452 1 2025-08-14 18:11:53.521 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:32802 10 6452 1 2025-08-14 18:12:53.926 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:60452 10 6452 1 2025-08-14 18:13:05.664 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 18:13:05.528 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 18:13:05.529 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 18:13:05.325 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 18:13:05.581 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 18:13:54.386 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52298 10 6452 1 2025-08-14 18:14:54.787 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34476 10 6452 1 2025-08-14 18:10:13.151 00:06:00.672 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-14 18:15:55.193 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52388 10 6452 1 2025-08-14 18:11:13.154 00:06:00.667 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-14 18:16:55.600 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58022 10 6452 1 2025-08-14 18:18:05.971 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 18:18:05.932 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 18:18:05.320 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 18:17:56.003 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58258 10 6452 1 2025-08-14 18:18:05.854 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 18:18:05.938 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 18:18:56.408 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42418 10 6452 1 2025-08-14 18:19:56.813 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47848 10 6452 1 2025-08-14 18:20:57.213 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45682 10 6452 1 2025-08-14 18:21:57.612 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48388 10 6452 1 2025-08-14 18:17:13.152 00:06:00.673 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-14 18:23:05.875 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 18:22:58.016 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:57588 10 6452 1 2025-08-14 18:23:05.750 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 18:23:05.822 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 18:23:05.754 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 18:23:05.957 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 18:18:13.155 00:06:00.667 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-14 18:23:58.372 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46074 10 6452 1 2025-08-14 18:24:58.777 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47288 10 6452 1 2025-08-14 18:25:59.181 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:33460 12 10367 1 2025-08-14 18:26:59.668 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51136 10 6452 1 2025-08-14 18:28:05.965 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 18:28:05.886 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 18:28:05.921 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 18:28:05.707 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 18:28:05.881 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 18:28:00.091 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51414 10 6452 1 2025-08-14 18:24:13.160 00:06:00.669 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-14 18:29:00.494 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45598 10 6452 1 2025-08-14 18:30:00.902 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34280 10 6452 1 2025-08-14 18:25:13.161 00:06:00.662 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-14 18:31:01.266 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60156 10 6452 1 2025-08-14 18:32:01.670 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38364 10 6452 1 2025-08-14 18:33:05.983 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 18:33:05.788 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 18:33:06.151 00:00:00.033 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 18:33:05.841 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 18:33:05.900 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 18:33:02.105 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52596 10 6452 1 2025-08-14 18:34:02.516 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46848 10 6452 1 2025-08-14 18:35:02.917 00:00:10.411 TCP 1.101.0.1:3000 -> 23.104.0.1:47208 10 6452 1 2025-08-14 18:31:13.162 00:06:00.666 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-14 18:36:03.380 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49450 10 6452 1 2025-08-14 18:32:13.167 00:06:00.659 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-14 18:37:03.743 00:00:10.777 TCP 1.101.0.1:3000 -> 23.104.0.1:33610 10 6452 1 2025-08-14 18:38:06.158 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 18:38:06.352 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 18:38:06.526 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 18:38:05.950 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 18:38:06.076 00:00:00.029 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 18:38:04.560 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38326 10 6452 1 2025-08-14 18:39:04.970 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:35116 10 6452 1 2025-08-14 18:40:05.387 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:57746 10 6452 1 2025-08-14 18:41:05.813 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34268 10 6452 1 2025-08-14 18:42:06.217 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45780 10 6452 1 2025-08-14 18:43:06.253 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 18:43:06.210 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 18:43:06.072 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 18:43:06.328 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 18:43:06.411 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 18:38:13.164 00:06:00.665 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-14 18:43:06.622 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38414 10 6452 1 2025-08-14 18:39:13.167 00:06:00.659 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-14 18:44:07.025 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56920 10 6452 1 2025-08-14 18:45:07.426 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46388 10 6452 1 2025-08-14 18:46:07.830 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50836 10 6452 1 2025-08-14 18:47:08.237 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46386 10 6452 1 2025-08-14 18:48:06.393 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 18:48:06.376 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 18:48:06.322 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 18:48:06.089 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 18:48:06.310 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 18:48:08.650 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57726 10 6452 1 2025-08-14 18:49:09.066 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49280 10 6452 1 2025-08-14 18:45:13.167 00:06:00.667 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-14 18:50:09.469 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34064 10 6452 1 2025-08-14 18:46:13.167 00:06:00.663 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-14 18:51:09.881 00:00:10.787 TCP 1.101.0.1:3000 -> 23.104.0.1:51816 10 6452 1 2025-08-14 18:52:10.707 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37436 10 6452 1 2025-08-14 18:53:06.559 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 18:53:06.555 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 18:53:06.345 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 18:53:06.452 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 18:53:06.534 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 18:53:11.096 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54088 10 6452 1 2025-08-14 18:54:11.502 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38318 10 6452 1 2025-08-14 18:55:11.902 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:50558 10 6452 1 2025-08-14 18:56:12.306 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:52390 10 6452 1 2025-08-14 18:52:13.166 00:06:00.668 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-14 18:57:12.715 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35000 10 6452 1 2025-08-14 18:58:06.591 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-14 18:58:06.426 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-14 18:58:06.312 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-14 18:58:06.093 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 18:58:06.510 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-14 18:53:13.168 00:06:00.664 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-14 18:58:13.122 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:56618 10 6452 1 Summary: total flows: 138, total bytes: 421757, total packets: 1036, avg bps: 892, avg pps: 0, avg bpp: 407 Time window: 2025-08-14 17:56:13 - 2025-08-14 18:59:13 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0034s User: 0.0008s Wall: 0.0028s flows/second: 49039.6 Runtime: 0.0028s