Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-02 15:54:06.499 00:06:00.180 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 15:58:59.760 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:35500 10 6452 1 2025-08-02 15:55:06.496 00:06:00.186 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 16:00:00.185 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59332 10 6452 1 2025-08-02 16:01:00.593 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58304 10 6452 1 2025-08-02 16:02:16.592 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 16:02:01.001 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:42482 10 6452 1 2025-08-02 16:02:16.422 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 16:02:16.620 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 16:02:16.296 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 16:02:16.511 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 16:03:01.376 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33026 10 6452 1 2025-08-02 16:04:01.788 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41812 10 6452 1 2025-08-02 16:05:02.195 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:56124 10 6452 1 2025-08-02 16:01:06.500 00:06:00.179 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 16:06:02.566 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:49008 10 6452 1 2025-08-02 16:02:06.500 00:06:00.183 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 16:07:02.929 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:55622 10 6452 1 2025-08-02 16:07:16.545 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 16:07:16.453 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 16:07:16.385 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 16:07:16.544 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 16:07:16.626 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 16:08:03.351 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55964 10 6452 1 2025-08-02 16:09:03.759 00:00:10.680 TCP 1.101.0.1:3000 -> 23.104.0.1:42582 10 6452 1 2025-08-02 16:10:04.476 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58618 10 6452 1 2025-08-02 16:11:04.833 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:48240 10 6452 1 2025-08-02 16:12:17.184 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 16:12:17.094 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 16:12:16.516 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 16:12:16.999 00:00:00.042 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 16:12:05.292 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54248 10 6452 1 2025-08-02 16:12:17.081 00:00:00.043 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 16:08:06.505 00:06:00.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 16:13:05.691 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41694 10 6452 1 2025-08-02 16:09:06.502 00:06:00.182 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 16:14:06.115 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:52678 10 6452 1 2025-08-02 16:15:06.477 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57332 10 6452 1 2025-08-02 16:16:06.887 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:55522 10 6452 1 2025-08-02 16:17:16.871 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 16:17:16.869 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 16:17:16.960 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 16:17:16.998 00:00:00.042 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 16:17:07.313 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57980 10 6452 1 2025-08-02 16:17:17.081 00:00:00.042 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 16:18:07.677 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:41878 10 6452 1 2025-08-02 16:19:08.041 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43296 10 6452 1 2025-08-02 16:15:06.508 00:06:00.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 16:20:08.449 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:33786 10 6452 1 2025-08-02 16:16:06.504 00:06:00.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 16:21:08.853 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:48030 10 6452 1 2025-08-02 16:22:16.813 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 16:22:16.917 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 16:22:09.287 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38658 10 6452 1 2025-08-02 16:22:16.837 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 16:22:16.829 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 16:22:16.731 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 16:23:09.695 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44554 10 6452 1 2025-08-02 16:24:10.102 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53090 10 6452 1 2025-08-02 16:25:10.507 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:44452 10 6452 1 2025-08-02 16:26:10.867 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40494 10 6452 1 2025-08-02 16:22:06.509 00:06:00.175 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 16:27:17.305 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 16:27:16.782 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 16:27:17.110 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 16:27:16.996 00:00:00.047 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 16:27:17.223 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 16:27:11.236 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42084 10 6452 1 2025-08-02 16:23:06.509 00:06:00.180 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 16:28:11.601 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55184 10 6452 1 2025-08-02 16:29:12.010 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57208 10 6452 1 2025-08-02 16:30:12.422 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50340 10 6452 1 2025-08-02 16:31:12.827 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45878 10 6452 1 2025-08-02 16:32:17.273 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 16:32:17.133 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 16:32:17.272 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 16:32:16.946 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 16:32:17.191 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 16:32:13.237 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58416 10 6452 1 2025-08-02 16:33:13.598 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59388 10 6452 1 2025-08-02 16:29:06.513 00:06:00.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 16:34:14.000 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:35624 10 6452 1 2025-08-02 16:30:06.510 00:06:00.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 16:35:14.414 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:38556 10 6452 1 2025-08-02 16:36:14.804 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41098 10 6452 1 2025-08-02 16:37:17.718 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 16:37:17.520 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 16:37:17.554 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 16:37:17.516 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 16:37:17.599 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 16:37:15.208 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34392 10 6452 1 2025-08-02 16:38:15.612 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:36482 10 6452 1 2025-08-02 16:39:15.978 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55940 10 6452 1 2025-08-02 16:40:16.382 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56046 10 6452 1 2025-08-02 16:36:06.513 00:06:00.176 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 16:41:16.785 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:40774 12 6556 1 2025-08-02 16:37:06.510 00:06:00.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 16:42:18.202 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 16:42:18.200 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 16:42:17.876 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 16:42:18.148 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 16:42:18.232 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 16:42:17.209 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51126 10 6452 1 2025-08-02 16:43:17.616 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45648 10 6452 1 2025-08-02 16:44:18.028 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59820 10 6452 1 2025-08-02 16:45:18.431 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55512 10 6452 1 2025-08-02 16:46:18.834 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:56562 10 6452 1 2025-08-02 16:47:17.644 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 16:47:17.684 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 16:47:17.453 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 16:47:17.446 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 16:47:17.561 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 16:47:19.260 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36894 10 6452 1 2025-08-02 16:43:06.515 00:06:00.182 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 16:48:19.668 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36424 10 6452 1 2025-08-02 16:44:06.512 00:06:00.187 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 16:49:20.098 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58120 10 6452 1 2025-08-02 16:50:20.502 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44598 10 6452 1 2025-08-02 16:51:20.905 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55026 10 6452 1 2025-08-02 16:52:17.547 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 16:52:17.608 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 16:52:17.494 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 16:52:17.490 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 16:52:17.573 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 16:52:21.320 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34330 10 6452 1 2025-08-02 16:53:21.729 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:50322 10 6452 1 2025-08-02 16:54:22.107 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50386 10 6452 1 2025-08-02 16:50:06.515 00:06:00.185 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-02 16:55:22.511 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:42638 10 6452 1 2025-08-02 16:51:06.512 00:06:00.188 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-02 16:56:22.869 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39402 10 6452 1 2025-08-02 16:57:18.144 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-02 16:57:17.959 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-02 16:57:17.956 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-02 16:57:17.889 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 16:57:18.062 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-02 16:57:23.273 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:53896 10 6452 1 2025-08-02 16:58:23.648 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43284 10 6452 1 Summary: total flows: 138, total bytes: 417842, total packets: 1034, avg bps: 864, avg pps: 0, avg bpp: 404 Time window: 2025-08-02 15:54:06 - 2025-08-02 16:58:34 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0018s User: 0.0027s Wall: 0.0030s flows/second: 46558.4 Runtime: 0.0030s