Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-20 19:54:16.481 00:06:00.245 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 19:59:05.229 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34238 10 6452 1 2025-08-20 20:00:05.634 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55396 10 6452 1 2025-08-20 20:01:01.208 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 20:01:00.983 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 20:01:00.989 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:01:01.127 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:01:01.135 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 20:01:06.035 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:55606 10 6452 1 2025-08-20 20:02:06.398 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56338 10 6452 1 2025-08-20 20:03:06.798 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49752 10 6452 1 2025-08-20 20:04:07.199 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57536 10 6452 1 2025-08-20 20:00:16.481 00:06:00.250 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 20:05:07.618 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35902 10 6452 1 2025-08-20 20:06:01.231 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 20:06:01.144 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 20:06:01.244 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 20:06:01.120 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:06:01.147 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:01:16.484 00:06:00.245 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 20:06:08.037 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:46100 10 6452 1 2025-08-20 20:07:08.404 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:55400 10 6452 1 2025-08-20 20:08:08.771 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:37816 10 6452 1 2025-08-20 20:09:09.139 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:36118 10 6452 1 2025-08-20 20:10:09.496 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51036 10 6452 1 2025-08-20 20:11:01.515 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 20:11:01.280 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:11:01.249 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:11:01.250 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 20:11:01.333 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 20:11:09.855 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:57864 10 6452 1 2025-08-20 20:07:16.483 00:06:00.251 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 20:12:10.276 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52038 10 6452 1 2025-08-20 20:08:16.486 00:06:00.246 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 20:13:10.637 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49334 10 6452 1 2025-08-20 20:14:11.063 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39644 10 6452 1 2025-08-20 20:15:11.466 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:40850 10 6452 1 2025-08-20 20:16:01.446 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 20:16:01.267 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 20:16:01.213 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:16:01.491 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:16:01.574 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 20:16:11.861 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:60378 10 6452 1 2025-08-20 20:17:12.235 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:34942 10 6452 1 2025-08-20 20:18:12.603 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52196 10 6452 1 2025-08-20 20:14:16.485 00:06:00.251 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 20:19:13.010 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:51414 10 6452 1 2025-08-20 20:15:16.488 00:06:00.245 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 20:20:13.371 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60514 10 6452 1 2025-08-20 20:21:01.339 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 20:21:01.644 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 20:21:01.202 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:21:01.428 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:21:01.511 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 20:21:13.777 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:39616 10 6452 1 2025-08-20 20:22:14.207 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55392 10 6452 1 2025-08-20 20:23:14.608 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:42518 10 6452 1 2025-08-20 20:24:14.974 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:53478 10 6452 1 2025-08-20 20:25:15.419 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:42896 10 6452 1 2025-08-20 20:26:01.679 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 20:26:01.611 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 20:26:01.626 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 20:26:01.430 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:26:01.596 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:21:16.490 00:06:00.248 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 20:26:15.821 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36462 10 6452 1 2025-08-20 20:22:16.493 00:06:00.242 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 20:27:16.226 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54304 10 6452 1 2025-08-20 20:28:16.627 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56178 10 6452 1 2025-08-20 20:29:17.031 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:56208 10 6452 1 2025-08-20 20:30:17.444 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44036 10 6452 1 2025-08-20 20:31:01.785 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 20:31:01.850 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 20:31:01.789 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 20:31:01.840 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:31:01.701 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:31:17.840 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:59828 10 6452 1 2025-08-20 20:32:18.270 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59134 10 6452 1 2025-08-20 20:28:16.493 00:06:00.245 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 20:33:18.673 00:00:10.316 TCP 1.101.0.1:3000 -> 23.104.0.1:43598 10 6452 1 2025-08-20 20:29:16.496 00:06:00.241 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 20:34:19.030 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57746 10 6452 1 2025-08-20 20:35:19.395 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53832 10 6452 1 2025-08-20 20:36:01.728 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 20:36:01.726 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 20:36:01.645 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:36:01.745 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:36:01.828 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 20:36:19.796 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54252 10 6452 1 2025-08-20 20:37:20.204 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:32992 10 6452 1 2025-08-20 20:38:20.606 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:60282 10 6452 1 2025-08-20 20:39:20.965 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41952 10 6452 1 2025-08-20 20:35:16.498 00:06:00.245 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 20:40:21.372 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45424 10 6452 1 2025-08-20 20:41:02.074 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:41:01.911 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 20:41:01.977 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 20:41:01.997 00:00:00.046 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:41:02.157 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 20:36:16.499 00:06:00.240 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 20:41:21.768 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:59378 10 6452 1 2025-08-20 20:42:22.184 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47914 10 6452 1 2025-08-20 20:43:22.587 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60166 10 6452 1 2025-08-20 20:44:22.990 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:55200 10 6452 1 2025-08-20 20:45:23.391 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60046 10 6452 1 2025-08-20 20:46:01.843 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 20:46:01.992 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 20:46:01.859 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:46:01.749 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:46:01.832 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 20:46:23.800 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52760 10 6452 1 2025-08-20 20:42:16.498 00:06:00.248 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 20:47:24.207 00:00:10.973 TCP 1.101.0.1:3000 -> 23.104.0.1:37794 10 6452 1 2025-08-20 20:43:16.500 00:06:00.242 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 20:48:25.221 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38492 10 6452 1 2025-08-20 20:49:25.619 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59806 10 6452 1 2025-08-20 20:50:26.026 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:36680 10 6452 1 2025-08-20 20:51:02.152 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 20:51:02.069 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 20:51:01.897 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:51:02.074 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:51:02.165 00:00:00.019 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 20:51:26.446 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:44792 10 6452 1 2025-08-20 20:52:26.809 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42958 10 6452 1 2025-08-20 20:53:27.225 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42382 10 6452 1 2025-08-20 20:49:16.506 00:06:00.243 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-20 20:54:27.582 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44906 10 6452 1 2025-08-20 20:50:16.506 00:06:00.239 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-20 20:55:27.988 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59386 10 6452 1 2025-08-20 20:56:02.221 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-20 20:56:02.328 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-20 20:56:02.070 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:56:02.228 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-20 20:56:02.311 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-20 20:56:28.405 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40156 10 6452 1 2025-08-20 20:57:28.819 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:38406 10 6452 1 2025-08-20 20:58:29.198 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38244 10 6452 1 Summary: total flows: 137, total bytes: 416877, total packets: 1018, avg bps: 863, avg pps: 0, avg bpp: 409 Time window: 2025-08-20 19:54:16 - 2025-08-20 20:58:39 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0036s User: 0.0009s Wall: 0.0024s flows/second: 58001.4 Runtime: 0.0024s