Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-02 03:54:06.259 00:06:00.204 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 03:59:10.582 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53772 10 6452 1 2025-08-02 04:00:10.979 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39570 10 6452 1 2025-08-02 04:01:11.384 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45120 10 6452 1 2025-08-02 04:02:01.960 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 04:02:01.970 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 04:02:02.164 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:02:01.969 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:02:02.052 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 04:02:11.793 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:39908 10 6452 1 2025-08-02 04:03:12.178 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58878 10 6452 1 2025-08-02 04:04:12.588 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:51860 10 6452 1 2025-08-02 04:00:06.261 00:06:00.199 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 04:05:12.944 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:56510 10 6452 1 2025-08-02 04:01:06.259 00:06:00.203 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 04:06:13.365 00:00:10.452 TCP 1.101.0.1:3000 -> 23.104.0.1:55674 10 6452 1 2025-08-02 04:07:02.318 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 04:07:02.152 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 04:07:02.270 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 04:07:02.006 00:00:00.045 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:07:02.236 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:07:13.853 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:37334 10 6452 1 2025-08-02 04:08:14.273 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55894 10 6452 1 2025-08-02 04:09:14.675 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54950 10 6452 1 2025-08-02 04:10:15.039 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40668 10 6452 1 2025-08-02 04:11:15.444 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51582 10 6452 1 2025-08-02 04:12:02.407 00:00:00.014 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 04:12:02.323 00:00:00.014 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:12:01.971 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 04:12:02.120 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 04:12:02.125 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:07:06.262 00:06:00.198 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 04:12:15.848 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:43456 10 6452 1 2025-08-02 04:08:06.260 00:06:00.203 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 04:13:16.276 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52782 10 6452 1 2025-08-02 04:14:16.683 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:35170 10 6452 1 2025-08-02 04:15:17.106 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45636 10 6452 1 2025-08-02 04:16:17.510 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45266 10 6452 1 2025-08-02 04:17:02.394 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 04:17:02.239 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 04:17:02.191 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:17:02.403 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:17:02.485 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 04:17:17.913 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37384 10 6452 1 2025-08-02 04:18:18.320 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40450 10 6452 1 2025-08-02 04:14:06.263 00:06:00.198 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 04:19:18.731 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47498 10 6452 1 2025-08-02 04:15:06.261 00:06:00.203 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 04:20:19.132 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39732 10 6452 1 2025-08-02 04:21:19.534 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44594 10 6452 1 2025-08-02 04:22:02.355 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 04:22:02.496 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 04:22:02.365 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 04:22:02.395 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:22:02.274 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:22:19.940 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56106 10 6452 1 2025-08-02 04:23:20.354 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53634 10 6452 1 2025-08-02 04:24:20.764 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40146 10 6452 1 2025-08-02 04:25:21.173 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38570 10 6452 1 2025-08-02 04:21:06.265 00:06:00.200 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 04:26:21.576 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60188 10 6452 1 2025-08-02 04:27:03.010 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 04:27:02.919 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 04:27:02.647 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 04:27:02.537 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:27:02.925 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:22:06.262 00:06:00.205 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 04:27:21.980 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51420 10 6452 1 2025-08-02 04:28:22.387 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50574 10 6452 1 2025-08-02 04:29:22.787 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43286 10 6452 1 2025-08-02 04:30:23.195 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36996 10 6452 1 2025-08-02 04:31:23.599 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47142 10 6452 1 2025-08-02 04:32:02.455 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 04:32:02.492 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:32:02.608 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:32:02.458 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 04:32:02.692 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 04:32:24.015 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41746 10 6452 1 2025-08-02 04:28:06.267 00:06:00.199 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 04:33:24.427 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60518 10 6452 1 2025-08-02 04:29:06.265 00:06:00.204 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 04:34:24.829 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52984 10 6452 1 2025-08-02 04:35:25.229 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33872 10 6452 1 2025-08-02 04:36:25.638 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:54006 10 6452 1 2025-08-02 04:37:02.753 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 04:37:02.840 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 04:37:02.671 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 04:37:02.510 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:37:02.671 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:37:26.009 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59538 10 6452 1 2025-08-02 04:38:26.416 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44292 10 6452 1 2025-08-02 04:39:26.829 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58838 10 6452 1 2025-08-02 04:35:06.268 00:06:00.198 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 04:40:27.237 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46204 10 6452 1 2025-08-02 04:36:06.265 00:06:00.204 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 04:41:27.597 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50412 10 6452 1 2025-08-02 04:42:03.320 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 04:42:03.202 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 04:42:02.985 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 04:42:03.070 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:42:03.238 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:42:27.994 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:49944 10 6452 1 2025-08-02 04:43:28.360 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42846 10 6452 1 2025-08-02 04:44:28.764 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:46144 10 6452 1 2025-08-02 04:45:29.141 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34318 10 6452 1 2025-08-02 04:46:29.551 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40148 10 6452 1 2025-08-02 04:47:03.174 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 04:47:03.104 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 04:47:03.178 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:47:02.965 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:47:03.048 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 04:42:06.270 00:06:00.199 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 04:47:29.952 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58328 10 6452 1 2025-08-02 04:43:06.268 00:06:00.204 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 04:48:30.368 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:39512 12 10367 1 2025-08-02 04:49:30.847 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:34312 10 6452 1 2025-08-02 04:50:31.275 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51658 10 6452 1 2025-08-02 04:51:31.680 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42408 10 6452 1 2025-08-02 04:52:03.221 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 04:52:03.038 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 04:52:03.052 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 04:52:02.858 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:52:03.140 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:52:32.112 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37404 10 6452 1 2025-08-02 04:53:32.477 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54964 10 6452 1 2025-08-02 04:49:06.272 00:06:00.197 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 04:54:32.880 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:55510 10 6452 1 2025-08-02 04:50:06.269 00:06:00.203 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 04:55:33.242 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:49404 10 6452 1 2025-08-02 04:56:33.613 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58632 10 6452 1 2025-08-02 04:57:03.182 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 04:57:02.792 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 04:57:03.101 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 04:57:02.728 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:57:03.099 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 04:57:34.014 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34720 10 6452 1 2025-08-02 04:58:34.383 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58836 10 6452 1 Summary: total flows: 137, total bytes: 420792, total packets: 1020, avg bps: 867, avg pps: 0, avg bpp: 412 Time window: 2025-08-02 03:54:06 - 2025-08-02 04:58:44 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0026s User: 0.0017s Wall: 0.0021s flows/second: 66476.1 Runtime: 0.0021s