Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-16 13:58:43.815 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55262 10 6452 1 2025-08-16 13:58:58.379 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-16 13:58:58.127 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-16 13:58:58.296 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-16 13:58:58.158 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-16 13:58:58.296 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-16 13:59:44.222 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54022 10 6452 1 2025-08-16 14:00:44.627 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52800 10 6452 1 2025-08-16 14:01:44.989 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53502 10 6452 1 2025-08-16 13:58:14.179 00:04:00.538 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-16 14:02:45.357 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55438 10 6452 1 2025-08-16 13:58:14.713 00:05:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 11 686 1 2025-08-16 14:03:58.465 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-16 14:03:58.417 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-16 14:03:58.385 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-16 14:03:58.354 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-16 14:03:45.765 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:58878 10 6452 1 2025-08-16 14:03:58.439 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-16 14:04:46.153 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:44462 10 6452 1 2025-08-16 14:05:46.588 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57108 10 6452 1 2025-08-16 14:06:46.997 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49638 10 6452 1 2025-08-16 14:03:14.181 00:04:00.540 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-16 14:07:47.400 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:59940 10 6452 1 2025-08-16 14:04:14.185 00:04:00.532 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-16 14:08:58.602 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-16 14:08:58.469 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-16 14:08:58.540 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-16 14:08:47.768 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35552 10 6452 1 2025-08-16 14:08:58.666 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-16 14:08:58.750 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-16 14:09:48.172 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:49898 10 6452 1 2025-08-16 14:10:48.534 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51406 10 6452 1 2025-08-16 14:11:48.944 00:00:10.353 TCP 1.101.0.1:3000 -> 23.104.0.1:54712 10 6452 1 2025-08-16 14:08:14.183 00:04:00.537 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-16 14:12:49.332 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53546 10 6452 1 2025-08-16 14:09:14.186 00:04:00.532 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-16 14:13:58.711 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-16 14:13:58.630 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-16 14:13:58.634 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-16 14:13:58.754 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-16 14:13:58.565 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-16 14:13:49.736 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34776 10 6452 1 2025-08-16 14:14:50.141 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45274 10 6452 1 2025-08-16 14:15:50.547 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:46978 10 6452 1 2025-08-16 14:16:50.942 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51260 10 6452 1 2025-08-16 14:17:51.351 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39232 10 6452 1 2025-08-16 14:13:14.185 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-08-16 14:14:14.188 00:04:00.530 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-16 14:18:58.557 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-16 14:18:58.680 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-16 14:18:58.643 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-16 14:18:58.560 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-16 14:18:58.644 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-16 14:18:51.720 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:43072 10 6452 1 2025-08-16 14:19:14.723 00:00:00.000 TCP 179.21.23.21:38570 -> 179.21.23.23:179 1 52 1 2025-08-16 14:19:52.132 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59002 10 6452 1 2025-08-16 14:20:52.535 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:47420 10 6452 1 2025-08-16 14:21:52.895 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50118 12 6556 1 2025-08-16 14:22:53.303 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50126 10 6452 1 2025-08-16 14:19:14.190 00:04:00.531 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-16 14:23:58.822 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-16 14:23:58.736 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-16 14:23:58.731 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-16 14:23:58.817 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-16 14:23:58.740 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-16 14:23:53.715 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:37372 10 6452 1 2025-08-16 14:20:14.186 00:04:00.539 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-16 14:24:54.101 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60012 10 6452 1 2025-08-16 14:25:54.502 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33706 10 6452 1 2025-08-16 14:26:54.905 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:56428 10 6452 1 2025-08-16 14:27:55.315 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35360 10 6452 1 2025-08-16 14:24:14.203 00:04:00.520 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-16 14:28:58.761 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-16 14:28:58.679 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-16 14:28:58.844 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-16 14:28:58.880 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-16 14:28:58.963 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-16 14:28:55.717 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:35338 10 6452 1 2025-08-16 14:25:14.201 00:04:00.524 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-16 14:29:56.142 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37844 10 6452 1 2025-08-16 14:30:56.545 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39252 10 6452 1 2025-08-16 14:31:56.909 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36860 10 6452 1 2025-08-16 14:32:57.323 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45496 10 6452 1 2025-08-16 14:33:59.401 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-16 14:33:59.361 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-16 14:33:59.245 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-16 14:33:59.192 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-16 14:33:59.318 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-16 14:33:57.724 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:39292 10 6452 1 2025-08-16 14:30:14.202 00:04:00.525 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-16 14:29:14.204 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 790 1 2025-08-16 14:34:58.112 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50394 10 6452 1 2025-08-16 14:35:14.725 00:00:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 1 71 1 2025-08-16 14:35:58.529 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42338 10 6452 1 2025-08-16 14:36:58.931 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:40702 10 6452 1 2025-08-16 14:37:59.358 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39240 10 6452 1 2025-08-16 14:38:59.429 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-16 14:38:59.256 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-16 14:38:59.430 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-16 14:38:58.842 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-16 14:38:59.347 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-16 14:35:14.205 00:04:00.523 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-16 14:38:59.771 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57294 10 6452 1 2025-08-16 14:36:14.207 00:04:00.519 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-16 14:40:00.190 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:52164 10 6452 1 2025-08-16 14:41:00.599 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:32876 10 6452 1 2025-08-16 14:42:01.002 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38930 10 6452 1 2025-08-16 14:43:01.406 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:50600 10 6452 1 2025-08-16 14:43:59.165 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-16 14:43:59.231 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-16 14:43:59.003 00:00:00.040 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-16 14:43:59.318 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-16 14:43:59.400 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-16 14:40:14.206 00:04:00.524 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-16 14:44:01.816 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52886 10 6452 1 2025-08-16 14:45:02.218 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39440 10 6452 1 2025-08-16 14:41:14.210 00:04:00.518 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-16 14:45:14.206 00:01:00.525 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-08-16 14:46:02.632 00:00:10.786 TCP 1.101.0.1:3000 -> 23.104.0.1:46164 10 6452 1 2025-08-16 14:47:03.456 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49174 10 6452 1 2025-08-16 14:48:03.859 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46524 10 6452 1 2025-08-16 14:48:59.347 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-16 14:48:59.372 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-16 14:48:59.263 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-16 14:48:59.186 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-16 14:48:59.265 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-16 14:49:04.267 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:57848 10 6452 1 2025-08-16 14:46:14.209 00:04:00.524 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-16 14:50:04.629 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:50550 10 6452 1 2025-08-16 14:47:14.207 00:04:00.528 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-16 14:51:04.987 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:44722 10 6452 1 2025-08-16 14:52:05.368 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40402 10 6452 1 2025-08-16 14:53:05.774 00:00:10.843 TCP 1.101.0.1:3000 -> 23.104.0.1:33740 10 6452 1 2025-08-16 14:53:59.465 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-16 14:53:59.325 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-16 14:53:59.318 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-16 14:53:59.393 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-16 14:53:59.381 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-16 14:54:06.656 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:45772 10 6452 1 2025-08-16 14:51:14.209 00:04:00.523 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-16 14:55:07.014 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37018 10 6452 1 2025-08-16 14:52:14.207 00:04:00.528 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-16 14:56:07.412 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47756 10 6452 1 2025-08-16 14:57:07.772 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:38628 10 6452 1 2025-08-16 14:58:08.187 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:36052 10 6452 1 Summary: total flows: 145, total bytes: 416683, total packets: 1015, avg bps: 924, avg pps: 0, avg bpp: 410 Time window: 2025-08-16 13:58:14 - 2025-08-16 14:58:18 Total flows processed: 145, passed: 145, Blocks skipped: 0, Bytes read: 15144 Sys: 0.0047s User: 0.0000s Wall: 0.0021s flows/second: 69150.0 Runtime: 0.0021s