Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-09 15:54:10.357 00:06:00.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 15:59:06.804 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39696 10 6452 1 2025-08-09 16:00:07.211 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37096 10 6452 1 2025-08-09 16:00:39.181 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 16:00:39.142 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 16:00:38.887 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 16:00:38.940 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 16:00:39.098 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 16:01:07.619 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:39028 10 6452 1 2025-08-09 16:02:08.040 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:56464 10 6452 1 2025-08-09 16:03:08.438 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:55352 10 6452 1 2025-08-09 16:04:08.831 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:38916 10 6452 1 2025-08-09 16:00:10.361 00:06:00.233 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 16:05:09.196 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48660 10 6452 1 2025-08-09 16:05:38.890 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 16:05:38.718 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 16:05:38.798 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 16:05:38.667 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 16:05:38.808 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 16:01:10.359 00:06:00.238 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 16:06:09.597 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48018 10 6452 1 2025-08-09 16:07:10.007 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37122 10 6452 1 2025-08-09 16:08:10.406 00:00:11.068 TCP 1.101.0.1:3000 -> 23.104.0.1:44442 10 6452 1 2025-08-09 16:09:11.517 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56110 10 6452 1 2025-08-09 16:10:11.919 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33344 10 6452 1 2025-08-09 16:10:39.181 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 16:10:39.099 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 16:10:38.929 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 16:10:38.808 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 16:10:38.748 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 16:11:12.335 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53940 10 6452 1 2025-08-09 16:07:10.362 00:06:00.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 16:12:12.738 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:54654 10 6452 1 2025-08-09 16:08:10.361 00:06:00.239 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 16:13:13.107 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57198 10 6452 1 2025-08-09 16:14:13.512 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:41514 10 6452 1 2025-08-09 16:15:13.871 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39866 10 6452 1 2025-08-09 16:15:39.169 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 16:15:38.966 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 16:15:38.963 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 16:15:38.907 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 16:15:39.087 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 16:16:14.277 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57168 10 6452 1 2025-08-09 16:17:14.680 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48064 10 6452 1 2025-08-09 16:18:15.136 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52038 10 6452 1 2025-08-09 16:14:10.366 00:06:00.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 16:19:15.538 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59008 10 6452 1 2025-08-09 16:15:10.363 00:06:00.238 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 16:20:15.949 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43950 10 6452 1 2025-08-09 16:20:39.711 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 16:20:39.341 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 16:20:38.910 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 16:20:39.576 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 16:20:39.659 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 16:21:16.359 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52212 10 6452 1 2025-08-09 16:22:16.765 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:60198 10 6452 1 2025-08-09 16:23:17.192 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:48062 10 6452 1 2025-08-09 16:24:17.558 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:34554 12 10367 1 2025-08-09 16:25:18.038 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58510 10 6452 1 2025-08-09 16:25:38.969 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 16:25:39.175 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 16:25:39.229 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 16:25:39.178 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 16:25:39.262 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 16:21:10.366 00:06:00.257 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 16:26:18.443 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34762 10 6452 1 2025-08-09 16:22:10.364 00:06:00.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 16:27:18.858 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:34716 10 6452 1 2025-08-09 16:28:19.272 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38340 10 6452 1 2025-08-09 16:29:19.680 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38430 10 6452 1 2025-08-09 16:30:20.129 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59672 10 6452 1 2025-08-09 16:30:39.378 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 16:30:39.262 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 16:30:39.201 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 16:30:39.206 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 16:30:39.295 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 16:31:20.540 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35590 10 6452 1 2025-08-09 16:32:20.957 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:38322 10 6452 1 2025-08-09 16:28:10.368 00:06:00.257 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 16:33:21.336 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48810 10 6452 1 2025-08-09 16:29:10.368 00:06:00.261 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 16:34:21.748 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:40902 12 10367 1 2025-08-09 16:35:22.188 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45152 10 6452 1 2025-08-09 16:35:39.390 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 16:35:39.435 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 16:35:39.307 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 16:35:39.240 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 16:35:39.308 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 16:36:22.553 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52936 10 6452 1 2025-08-09 16:37:22.917 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:32906 10 6452 1 2025-08-09 16:38:23.281 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41110 10 6452 1 2025-08-09 16:39:23.684 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34036 10 6452 1 2025-08-09 16:35:10.371 00:06:00.256 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 16:40:39.394 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 16:40:24.109 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51612 10 6452 1 2025-08-09 16:40:39.308 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 16:40:39.484 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 16:40:39.241 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 16:40:39.312 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 16:36:10.369 00:06:00.263 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 16:41:24.515 00:00:10.579 TCP 1.101.0.1:3000 -> 23.104.0.1:43024 10 6452 1 2025-08-09 16:42:25.132 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38022 10 6452 1 2025-08-09 16:43:25.533 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:53380 11 6504 1 2025-08-09 16:44:25.951 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:54376 12 10367 1 2025-08-09 16:45:39.337 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 16:45:39.380 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 16:45:39.261 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 16:45:39.198 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 16:45:26.432 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46666 10 6452 1 2025-08-09 16:45:39.254 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 16:46:26.833 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:58638 10 6452 1 2025-08-09 16:42:10.374 00:06:00.259 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 16:47:27.262 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37348 10 6452 1 2025-08-09 16:43:10.372 00:06:00.264 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 16:48:27.661 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54718 10 6452 1 2025-08-09 16:49:28.088 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42754 10 6452 1 2025-08-09 16:50:39.697 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 16:50:39.431 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 16:50:39.545 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 16:50:39.481 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 16:50:28.494 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43068 10 6452 1 2025-08-09 16:50:39.608 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 16:51:28.902 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59150 10 6452 1 2025-08-09 16:52:29.309 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40916 10 6452 1 2025-08-09 16:53:29.713 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58338 10 6452 1 2025-08-09 16:49:10.376 00:06:00.259 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 16:54:30.099 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34548 10 6452 1 2025-08-09 16:50:10.373 00:06:00.265 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 16:55:39.755 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 16:55:39.466 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 16:55:39.745 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 16:55:39.821 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 16:55:39.673 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 16:55:30.515 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43642 10 6452 1 2025-08-09 16:56:30.918 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35252 10 6452 1 2025-08-09 16:57:31.320 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:42510 10 6452 1 2025-08-09 16:58:31.689 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48870 10 6452 1 Summary: total flows: 137, total bytes: 428674, total packets: 1025, avg bps: 885, avg pps: 0, avg bpp: 418 Time window: 2025-08-09 15:54:10 - 2025-08-09 16:58:42 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0031s User: 0.0010s Wall: 0.0018s flows/second: 76831.1 Runtime: 0.0018s