Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-20 03:54:16.153 00:06:00.238 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 03:59:30.268 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55642 10 6452 1 2025-08-20 03:55:16.155 00:06:00.233 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 04:00:41.954 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 04:00:41.960 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 04:00:41.564 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 04:00:30.629 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35342 10 6452 1 2025-08-20 04:00:41.771 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 04:00:41.854 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 04:01:30.992 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58758 10 6452 1 2025-08-20 04:02:31.395 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:37486 10 6452 1 2025-08-20 04:03:31.756 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:53954 10 6452 1 2025-08-20 04:04:32.176 00:00:10.665 TCP 1.101.0.1:3000 -> 23.104.0.1:34364 10 6452 1 2025-08-20 04:05:41.597 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 04:05:41.746 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 04:05:41.870 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 04:05:41.916 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 04:05:32.880 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57482 10 6452 1 2025-08-20 04:05:42.000 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 04:01:16.158 00:06:00.233 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 04:06:33.282 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38054 10 6452 1 2025-08-20 04:02:16.163 00:06:00.227 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 04:07:33.684 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:55470 10 6452 1 2025-08-20 04:08:34.061 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38096 10 6452 1 2025-08-20 04:09:34.464 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:51284 10 6452 1 2025-08-20 04:10:41.937 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 04:10:41.948 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 04:10:41.841 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 04:10:41.916 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 04:10:41.854 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 04:10:34.827 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42206 10 6452 1 2025-08-20 04:11:35.227 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34674 10 6452 1 2025-08-20 04:12:35.593 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58042 10 6452 1 2025-08-20 04:08:16.162 00:06:00.232 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 04:13:36.004 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39580 10 6452 1 2025-08-20 04:09:16.164 00:06:00.227 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 04:14:36.403 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:58086 10 6452 1 2025-08-20 04:15:42.348 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 04:15:42.344 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 04:15:42.249 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 04:15:41.984 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 04:15:42.266 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 04:15:36.768 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:46662 10 6452 1 2025-08-20 04:16:37.185 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59138 10 6452 1 2025-08-20 04:17:37.587 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38036 10 6452 1 2025-08-20 04:18:37.984 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43630 10 6452 1 2025-08-20 04:19:38.394 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50112 10 6452 1 2025-08-20 04:15:16.162 00:06:00.233 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 04:20:42.277 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 04:20:42.388 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 04:20:42.348 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 04:20:42.332 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 04:20:42.416 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 04:20:38.800 00:00:10.585 TCP 1.101.0.1:3000 -> 23.104.0.1:38874 10 6452 1 2025-08-20 04:16:16.165 00:06:00.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 04:21:39.427 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42406 10 6452 1 2025-08-20 04:22:39.830 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:60246 10 6452 1 2025-08-20 04:23:40.261 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33158 10 6452 1 2025-08-20 04:24:40.658 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43070 10 6452 1 2025-08-20 04:25:42.620 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 04:25:42.681 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 04:25:42.607 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 04:25:42.236 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 04:25:42.539 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 04:25:41.090 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45106 10 6452 1 2025-08-20 04:26:41.497 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48314 10 6452 1 2025-08-20 04:22:16.165 00:06:00.233 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 04:27:41.898 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51986 10 6452 1 2025-08-20 04:23:16.167 00:06:00.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 04:28:42.303 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:37580 10 6452 1 2025-08-20 04:29:42.677 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45884 10 6452 1 2025-08-20 04:30:42.497 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 04:30:42.369 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 04:30:42.289 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 04:30:42.369 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 04:30:42.451 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 04:30:43.111 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35358 10 6452 1 2025-08-20 04:31:43.527 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:37422 10 6452 1 2025-08-20 04:32:43.893 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:60800 12 6556 1 2025-08-20 04:33:44.315 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39136 10 6452 1 2025-08-20 04:29:16.167 00:06:00.236 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 04:34:44.721 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:58700 10 6452 1 2025-08-20 04:30:16.170 00:06:00.239 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 04:35:42.673 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 04:35:42.714 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 04:35:42.641 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 04:35:42.534 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 04:35:42.616 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 04:35:45.136 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49940 10 6452 1 2025-08-20 04:36:45.541 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:57214 10 6452 1 2025-08-20 04:37:45.905 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35694 12 6556 1 2025-08-20 04:38:46.313 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:50292 10 6452 1 2025-08-20 04:39:46.709 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:32848 10 6452 1 2025-08-20 04:40:43.459 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 04:40:42.969 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 04:40:43.377 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 04:40:43.411 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 04:40:43.104 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 04:40:47.116 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52836 10 6452 1 2025-08-20 04:36:16.171 00:06:00.240 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 04:41:47.523 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56510 10 6452 1 2025-08-20 04:37:16.174 00:06:00.237 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 04:42:47.928 00:00:10.580 TCP 1.101.0.1:3000 -> 23.104.0.1:44380 10 6452 1 2025-08-20 04:43:48.564 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37388 10 6452 1 2025-08-20 04:44:48.965 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:53554 10 6452 1 2025-08-20 04:45:42.834 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 04:45:42.575 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 04:45:42.671 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 04:45:42.728 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 04:45:42.811 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 04:45:49.383 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51992 10 6452 1 2025-08-20 04:46:49.792 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:38354 10 6452 1 2025-08-20 04:47:50.223 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38166 10 6452 1 2025-08-20 04:43:16.172 00:06:00.242 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 04:48:50.631 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40856 10 6452 1 2025-08-20 04:44:16.174 00:06:00.237 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 04:49:51.031 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40626 10 6452 1 2025-08-20 04:50:42.894 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 04:50:42.840 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 04:50:42.599 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 04:50:42.772 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 04:50:42.855 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 04:50:51.440 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58316 10 6452 1 2025-08-20 04:51:51.847 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:58990 10 6452 1 2025-08-20 04:52:52.273 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54946 10 6452 1 2025-08-20 04:53:52.677 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60842 10 6452 1 2025-08-20 04:54:53.112 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33522 10 6452 1 2025-08-20 04:50:16.173 00:06:00.243 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 04:55:42.960 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 04:55:42.969 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 04:55:42.802 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 04:55:42.857 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 04:55:42.876 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 04:55:53.507 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45500 10 6452 1 2025-08-20 04:51:16.177 00:06:00.237 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 04:56:53.914 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:32834 10 6452 1 2025-08-20 04:57:54.315 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:40054 10 6452 1 Summary: total flows: 137, total bytes: 411494, total packets: 1026, avg bps: 859, avg pps: 0, avg bpp: 401 Time window: 2025-08-20 03:54:16 - 2025-08-20 04:58:04 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0047s User: 0.0031s Wall: 0.0040s flows/second: 34019.3 Runtime: 0.0040s