Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-09 22:54:10.556 00:06:00.275 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 22:59:00.356 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38474 10 6452 1 2025-08-09 23:00:00.758 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:49384 10 6452 1 2025-08-09 23:00:47.226 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 23:00:47.124 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 23:00:47.180 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 23:00:46.949 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 23:00:47.144 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 23:01:01.131 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54128 10 6452 1 2025-08-09 23:02:01.535 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48138 10 6452 1 2025-08-09 23:03:01.939 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42960 10 6452 1 2025-08-09 23:04:02.351 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36606 10 6452 1 2025-08-09 23:05:02.759 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34478 10 6452 1 2025-08-09 23:00:10.562 00:06:00.271 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 23:05:47.336 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 23:05:47.134 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 23:05:47.155 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 23:05:47.248 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 23:05:47.332 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 23:01:10.559 00:06:00.275 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 23:06:03.169 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:52684 10 6452 1 2025-08-09 23:07:03.527 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:51214 10 6452 1 2025-08-09 23:08:03.927 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:59404 10 6452 1 2025-08-09 23:09:04.358 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42408 10 6452 1 2025-08-09 23:10:04.762 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:43458 10 6452 1 2025-08-09 23:10:47.341 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 23:10:47.264 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 23:10:47.333 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 23:10:47.433 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 23:10:47.516 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 23:11:05.159 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59024 10 6452 1 2025-08-09 23:07:10.564 00:06:00.271 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 23:12:05.576 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53404 10 6452 1 2025-08-09 23:08:10.562 00:06:00.276 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 23:13:05.987 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36530 10 6452 1 2025-08-09 23:14:06.394 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34018 10 6452 1 2025-08-09 23:15:06.797 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59306 10 6452 1 2025-08-09 23:15:47.323 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 23:15:47.316 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 23:15:47.443 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 23:15:47.249 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 23:15:47.240 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 23:16:07.205 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46378 10 6452 1 2025-08-09 23:17:07.618 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35024 10 6452 1 2025-08-09 23:18:08.026 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50286 10 6452 1 2025-08-09 23:14:10.567 00:06:00.271 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 23:19:08.427 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53810 10 6452 1 2025-08-09 23:15:10.564 00:06:00.275 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 23:20:08.828 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:54184 10 6452 1 2025-08-09 23:20:47.542 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 23:20:47.542 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 23:20:47.315 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 23:20:47.631 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 23:20:47.714 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 23:21:09.248 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:43216 10 6452 1 2025-08-09 23:22:09.630 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45986 10 6452 1 2025-08-09 23:23:10.039 00:00:10.423 TCP 1.101.0.1:3000 -> 23.104.0.1:35954 11 6504 1 2025-08-09 23:24:10.502 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:36616 11 6504 1 2025-08-09 23:25:10.962 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:54388 10 6452 1 2025-08-09 23:25:47.775 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 23:25:47.503 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 23:25:47.497 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 23:25:47.758 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 23:25:47.692 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 23:21:10.569 00:06:00.278 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 23:26:11.332 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35920 12 6556 1 2025-08-09 23:22:10.567 00:06:00.282 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 23:27:11.727 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46188 10 6452 1 2025-08-09 23:28:12.136 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:58410 10 6452 1 2025-08-09 23:29:12.504 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:43884 10 6452 1 2025-08-09 23:30:12.866 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60526 10 6452 1 2025-08-09 23:30:47.750 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 23:30:47.677 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 23:30:47.768 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 23:30:47.731 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 23:30:47.668 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 23:31:13.275 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:46602 10 6452 1 2025-08-09 23:32:13.669 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36488 10 6452 1 2025-08-09 23:28:10.569 00:06:00.278 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 23:33:14.100 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47770 10 6452 1 2025-08-09 23:29:10.568 00:06:00.282 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 23:34:14.501 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47990 10 6452 1 2025-08-09 23:35:14.865 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:56910 10 6452 1 2025-08-09 23:35:47.859 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 23:35:47.777 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 23:35:47.834 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 23:35:47.609 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 23:35:47.777 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 23:36:15.238 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39016 10 6452 1 2025-08-09 23:37:15.641 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:40642 10 6452 1 2025-08-09 23:38:16.095 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52468 10 6452 1 2025-08-09 23:39:16.500 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34946 10 6452 1 2025-08-09 23:35:10.571 00:06:00.277 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 23:40:16.909 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:57950 10 6452 1 2025-08-09 23:40:48.600 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 23:40:48.529 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 23:40:48.723 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 23:40:48.162 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 23:40:48.518 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 23:36:10.568 00:06:00.287 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 23:41:17.324 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:33924 10 6452 1 2025-08-09 23:42:17.751 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:60362 10 6452 1 2025-08-09 23:43:18.184 00:00:14.186 TCP 1.101.0.1:3000 -> 23.104.0.1:45190 10 6452 1 2025-08-09 23:44:22.442 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:51442 10 6452 1 2025-08-09 23:45:22.806 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36412 10 6452 1 2025-08-09 23:45:48.266 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 23:45:48.188 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 23:45:48.195 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 23:45:48.271 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 23:45:48.184 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 23:46:23.215 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:54786 10 6452 1 2025-08-09 23:42:10.572 00:06:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 23:47:23.639 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:37728 10 6452 1 2025-08-09 23:43:10.569 00:06:00.290 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 23:48:24.006 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58498 10 6452 1 2025-08-09 23:49:24.406 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:45922 12 10365 1 2025-08-09 23:50:24.891 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:49902 10 6452 1 2025-08-09 23:50:48.045 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 23:50:47.986 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 23:50:47.747 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 23:50:47.795 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 23:50:47.961 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 23:51:25.310 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46026 10 6452 1 2025-08-09 23:52:25.682 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60024 10 6452 1 2025-08-09 23:53:26.110 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46816 10 6452 1 2025-08-09 23:49:10.575 00:06:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-09 23:54:26.513 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:39734 10 6452 1 2025-08-09 23:50:10.573 00:06:00.290 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-09 23:55:26.877 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53692 10 6452 1 2025-08-09 23:55:48.157 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-09 23:55:48.076 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-09 23:55:48.072 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-09 23:55:47.986 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 23:55:48.073 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-09 23:56:27.238 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57988 10 6452 1 2025-08-09 23:57:27.641 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54796 10 6452 1 2025-08-09 23:58:28.063 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:45748 10 6452 1 Summary: total flows: 137, total bytes: 420998, total packets: 1024, avg bps: 870, avg pps: 0, avg bpp: 411 Time window: 2025-08-09 22:54:10 - 2025-08-09 23:58:38 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0034s User: 0.0009s Wall: 0.0019s flows/second: 73302.7 Runtime: 0.0019s