Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-15 01:59:06.367 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58746 10 6452 1 2025-08-15 01:55:13.333 00:06:00.630 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-15 01:55:13.336 00:06:00.625 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-15 02:00:06.776 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39918 10 6452 1 2025-08-15 02:01:07.186 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57944 10 6452 1 2025-08-15 02:02:07.552 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:44416 10 6452 1 2025-08-15 02:03:14.986 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 02:03:14.950 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 02:03:15.093 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 02:03:14.812 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 02:03:15.175 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 02:03:07.939 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:58252 10 6452 1 2025-08-15 02:04:08.358 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42220 10 6452 1 2025-08-15 02:05:08.761 00:00:10.463 TCP 1.101.0.1:3000 -> 23.104.0.1:53098 12 10367 1 2025-08-15 02:06:09.262 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52912 10 6452 1 2025-08-15 02:02:13.337 00:06:00.629 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-15 02:02:13.339 00:06:00.624 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-15 02:07:09.665 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:41590 10 6452 1 2025-08-15 02:08:15.398 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 02:08:15.284 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 02:08:15.404 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 02:08:15.457 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 02:08:15.486 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 02:08:10.114 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39812 12 6556 1 2025-08-15 02:09:10.526 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40184 10 6452 1 2025-08-15 02:10:10.924 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:34602 10 6452 1 2025-08-15 02:11:11.354 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33966 10 6452 1 2025-08-15 02:12:11.761 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:38648 10 6452 1 2025-08-15 02:13:15.303 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 02:13:15.354 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 02:13:15.116 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 02:13:15.220 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 02:13:15.269 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 02:13:12.173 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47120 10 6452 1 2025-08-15 02:09:13.341 00:06:00.626 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-15 02:09:13.344 00:06:00.620 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-15 02:14:12.572 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59862 10 6452 1 2025-08-15 02:15:12.973 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:43110 10 6452 1 2025-08-15 02:16:13.392 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:56474 10 6452 1 2025-08-15 02:17:13.800 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:50894 10 6452 1 2025-08-15 02:18:15.220 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 02:18:15.276 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 02:18:15.308 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 02:18:15.418 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 02:18:15.392 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 02:18:14.182 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46300 10 6452 1 2025-08-15 02:19:14.582 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37002 10 6452 1 2025-08-15 02:20:14.994 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41366 10 6452 1 2025-08-15 02:16:13.345 00:06:00.620 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-15 02:16:13.342 00:06:00.625 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-15 02:21:15.398 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44908 10 6452 1 2025-08-15 02:22:15.803 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:54328 10 6452 1 2025-08-15 02:23:15.551 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 02:23:15.466 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 02:23:15.597 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 02:23:15.469 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 02:23:15.593 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 02:23:16.213 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:58440 10 6452 1 2025-08-15 02:24:16.623 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54002 10 6452 1 2025-08-15 02:25:17.031 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59940 10 6452 1 2025-08-15 02:26:17.433 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:48120 10 6452 1 2025-08-15 02:27:17.795 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54984 10 6452 1 2025-08-15 02:23:13.347 00:06:00.620 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-15 02:28:15.683 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 02:28:15.469 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 02:28:15.406 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 02:28:15.600 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 02:28:15.456 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 02:23:13.343 00:06:00.626 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-15 02:28:18.207 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:60908 10 6452 1 2025-08-15 02:29:18.580 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:60154 10 6452 1 2025-08-15 02:30:19.005 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33224 10 6452 1 2025-08-15 02:31:19.365 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51032 10 6452 1 2025-08-15 02:32:19.771 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:56964 10 6452 1 2025-08-15 02:33:15.580 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 02:33:15.649 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 02:33:15.460 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 02:33:15.499 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 02:33:15.643 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 02:33:20.189 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:57834 10 6452 1 2025-08-15 02:34:20.556 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51522 10 6452 1 2025-08-15 02:30:13.351 00:06:00.618 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-15 02:30:13.349 00:06:00.623 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-15 02:35:20.964 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55252 10 6452 1 2025-08-15 02:36:21.370 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39864 10 6452 1 2025-08-15 02:37:21.778 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41406 10 6452 1 2025-08-15 02:38:15.856 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 02:38:15.723 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 02:38:15.537 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 02:38:15.774 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 02:38:15.638 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 02:38:22.194 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:38028 10 6452 1 2025-08-15 02:39:22.569 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:49404 10 6452 1 2025-08-15 02:40:22.982 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:35770 12 10367 1 2025-08-15 02:41:23.463 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39776 10 6452 1 2025-08-15 02:37:13.349 00:06:00.623 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-15 02:37:13.351 00:06:00.619 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-15 02:42:23.870 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:32892 10 6452 1 2025-08-15 02:43:15.866 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 02:43:15.715 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 02:43:15.661 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 02:43:15.784 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 02:43:15.718 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 02:43:24.278 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57904 10 6452 1 2025-08-15 02:44:24.679 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:50850 10 6452 1 2025-08-15 02:45:25.046 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46482 10 6452 1 2025-08-15 02:46:25.448 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45600 10 6452 1 2025-08-15 02:47:25.853 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:48056 10 6452 1 2025-08-15 02:48:15.855 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 02:48:15.910 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 02:48:15.794 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 02:48:15.772 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 02:48:15.782 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 02:48:26.280 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34140 10 6452 1 2025-08-15 02:44:13.354 00:06:00.620 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-15 02:44:13.350 00:06:00.625 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-15 02:49:26.681 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54398 10 6452 1 2025-08-15 02:50:27.112 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49740 10 6452 1 2025-08-15 02:51:27.514 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:52632 10 6452 1 2025-08-15 02:52:27.931 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:46698 10 6452 1 2025-08-15 02:53:16.230 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 02:53:16.058 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 02:53:16.160 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 02:53:16.229 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 02:53:16.310 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 02:53:28.361 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33578 10 6452 1 2025-08-15 02:54:28.762 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:33194 10 6452 1 2025-08-15 02:55:29.179 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39458 10 6452 1 2025-08-15 02:51:13.352 00:06:00.628 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-15 02:51:13.356 00:06:00.622 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-15 02:56:29.589 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54324 10 6452 1 2025-08-15 02:57:29.992 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36330 10 6452 1 2025-08-15 02:58:15.940 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 02:58:16.176 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 02:58:16.234 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 02:58:16.176 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 02:58:16.316 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 02:58:30.398 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:49740 10 6452 1 Summary: total flows: 138, total bytes: 425672, total packets: 1038, avg bps: 894, avg pps: 0, avg bpp: 410 Time window: 2025-08-15 01:55:13 - 2025-08-15 02:58:40 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0022s User: 0.0022s Wall: 0.0020s flows/second: 68890.0 Runtime: 0.0020s