Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-02 01:54:06.203 00:06:00.222 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 01:59:22.726 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52242 10 6452 1 2025-08-02 01:55:06.202 00:06:00.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 02:00:23.137 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33514 10 6452 1 2025-08-02 02:01:23.535 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47680 10 6452 1 2025-08-02 02:01:59.656 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 02:01:59.512 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 02:01:59.468 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 02:01:59.572 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 02:01:59.578 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 02:02:23.952 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:36800 10 6452 1 2025-08-02 02:03:24.317 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:58326 10 6452 1 2025-08-02 02:04:24.683 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60460 10 6452 1 2025-08-02 02:05:25.111 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34034 10 6452 1 2025-08-02 02:01:06.206 00:06:00.221 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 02:06:25.520 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37426 10 6452 1 2025-08-02 02:06:59.563 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 02:06:59.797 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 02:06:59.668 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 02:06:59.671 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 02:06:59.481 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 02:02:06.204 00:06:00.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 02:07:25.928 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:43694 10 6452 1 2025-08-02 02:08:26.305 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45372 10 6452 1 2025-08-02 02:09:26.704 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40306 10 6452 1 2025-08-02 02:10:27.116 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59464 10 6452 1 2025-08-02 02:11:27.520 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:45278 10 6452 1 2025-08-02 02:11:59.797 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 02:11:59.887 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 02:12:00.175 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 02:11:59.988 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 02:12:00.091 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 02:12:27.903 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:37052 10 6452 1 2025-08-02 02:08:06.209 00:06:00.218 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 02:13:28.335 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46858 10 6452 1 2025-08-02 02:09:06.208 00:06:00.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 02:14:28.737 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46506 10 6452 1 2025-08-02 02:15:29.116 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60328 10 6452 1 2025-08-02 02:16:29.521 00:00:10.423 TCP 1.101.0.1:3000 -> 23.104.0.1:51846 11 6504 1 2025-08-02 02:16:59.760 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 02:16:59.554 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 02:16:59.582 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 02:16:59.824 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 02:16:59.906 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 02:17:29.983 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38588 10 6452 1 2025-08-02 02:18:30.394 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:58684 12 10367 1 2025-08-02 02:19:30.876 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35988 10 6452 1 2025-08-02 02:15:06.211 00:06:00.220 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 02:20:31.280 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58376 10 6452 1 2025-08-02 02:16:06.208 00:06:00.225 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 02:21:31.641 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:36030 10 6452 1 2025-08-02 02:22:00.194 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 02:22:00.189 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 02:22:00.141 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 02:22:00.340 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 02:22:00.433 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 02:22:32.002 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:33176 10 6452 1 2025-08-02 02:23:32.406 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47292 10 6452 1 2025-08-02 02:24:32.810 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:48268 10 6452 1 2025-08-02 02:25:33.193 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56022 10 6452 1 2025-08-02 02:26:33.595 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57992 10 6452 1 2025-08-02 02:27:01.499 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 02:27:01.439 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 02:27:01.390 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 02:27:01.500 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 02:27:01.473 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 02:22:06.215 00:06:00.217 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 02:27:33.959 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50408 10 6452 1 2025-08-02 02:23:06.213 00:06:00.221 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 02:28:34.367 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:59768 10 6452 1 2025-08-02 02:29:34.786 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38790 10 6452 1 2025-08-02 02:30:35.190 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57452 10 6452 1 2025-08-02 02:31:35.593 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36448 10 6452 1 2025-08-02 02:32:00.486 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 02:32:00.397 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 02:32:00.218 00:00:00.013 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 02:32:00.225 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 02:32:00.403 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 02:32:35.993 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36380 10 6452 1 2025-08-02 02:33:36.399 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43142 10 6452 1 2025-08-02 02:29:06.218 00:06:00.215 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 02:34:36.800 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43168 10 6452 1 2025-08-02 02:30:06.216 00:06:00.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 02:35:37.198 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45418 10 6452 1 2025-08-02 02:36:37.600 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52526 10 6452 1 2025-08-02 02:37:00.337 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 02:37:00.265 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 02:37:00.155 00:00:00.029 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 02:37:00.397 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 02:37:00.255 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 02:37:38.008 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40904 10 6452 1 2025-08-02 02:38:38.409 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39716 10 6452 1 2025-08-02 02:39:38.775 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36202 10 6452 1 2025-08-02 02:40:39.184 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48674 10 6452 1 2025-08-02 02:36:06.221 00:06:00.213 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 02:41:39.585 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59362 10 6452 1 2025-08-02 02:42:00.637 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 02:42:00.495 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 02:42:00.444 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 02:42:00.273 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 02:42:00.555 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 02:37:06.219 00:06:00.219 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 02:42:39.990 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:49866 10 6452 1 2025-08-02 02:43:40.363 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55160 10 6452 1 2025-08-02 02:44:40.764 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39534 10 6452 1 2025-08-02 02:45:41.169 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33906 10 6452 1 2025-08-02 02:46:41.575 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:59190 10 6452 1 2025-08-02 02:47:00.646 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 02:47:00.496 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 02:47:00.629 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 02:47:00.527 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 02:47:00.562 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 02:47:41.935 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:40648 10 6452 1 2025-08-02 02:43:06.229 00:06:00.207 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 02:48:42.356 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:43356 12 10367 1 2025-08-02 02:44:06.226 00:06:00.213 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 02:49:42.837 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:40602 10 6452 1 2025-08-02 02:50:43.228 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57852 10 6452 1 2025-08-02 02:51:43.590 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57580 10 6452 1 2025-08-02 02:52:00.716 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 02:52:00.679 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 02:52:00.681 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 02:52:00.454 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 02:52:00.634 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 02:52:44.001 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45670 10 6452 1 2025-08-02 02:53:44.406 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47184 10 6452 1 2025-08-02 02:54:44.810 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42260 10 6452 1 2025-08-02 02:50:06.230 00:06:00.213 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 02:55:45.215 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59764 10 6452 1 2025-08-02 02:51:06.229 00:06:00.225 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 02:56:45.624 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:39194 10 6452 1 2025-08-02 02:57:00.915 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 02:57:00.835 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 02:57:00.832 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 02:57:00.837 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 02:57:00.832 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 02:57:46.059 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34652 10 6452 1 Summary: total flows: 137, total bytes: 419168, total packets: 1027, avg bps: 875, avg pps: 0, avg bpp: 408 Time window: 2025-08-02 01:54:06 - 2025-08-02 02:57:56 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0055s User: 0.0000s Wall: 0.0024s flows/second: 56401.6 Runtime: 0.0025s