Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-23 06:54:17.821 00:06:00.055 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-23 06:59:22.406 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:32868 10 6452 1 2025-08-23 07:00:22.770 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:34678 10 6452 1 2025-08-23 07:01:23.187 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53134 10 6452 1 2025-08-23 07:02:12.214 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-23 07:02:12.104 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-23 07:02:12.085 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-23 07:02:12.162 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 07:02:12.132 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 07:02:23.551 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43178 10 6452 1 2025-08-23 07:03:23.958 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:40312 10 6452 1 2025-08-23 06:59:17.819 00:06:00.060 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-23 07:04:24.325 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57316 10 6452 1 2025-08-23 07:05:24.734 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54932 10 6452 1 2025-08-23 07:01:17.823 00:06:00.055 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-23 07:06:25.146 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:36422 12 10367 1 2025-08-23 07:07:12.592 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-23 07:07:12.369 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-23 07:07:12.232 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 07:07:12.219 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 07:07:12.300 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-23 07:07:25.618 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46690 10 6452 1 2025-08-23 07:08:26.029 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34284 10 6452 1 2025-08-23 07:09:26.391 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41934 10 6452 1 2025-08-23 07:10:26.790 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51080 10 6452 1 2025-08-23 07:06:17.823 00:06:00.059 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-23 07:11:27.203 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56674 10 6452 1 2025-08-23 07:12:12.005 00:00:00.049 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-23 07:12:12.005 00:00:00.042 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-23 07:12:12.505 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 07:12:12.005 00:00:00.033 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 07:12:12.088 00:00:00.033 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-23 07:12:27.610 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54822 10 6452 1 2025-08-23 07:08:17.825 00:06:00.058 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-23 07:13:27.969 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:42750 10 6452 1 2025-08-23 07:14:28.337 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42528 10 6452 1 2025-08-23 07:15:28.746 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43182 10 6452 1 2025-08-23 07:16:29.152 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:55346 10 6452 1 2025-08-23 07:17:12.180 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-23 07:17:12.539 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-23 07:17:12.235 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 07:17:12.181 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 07:17:12.264 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-23 07:17:29.512 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42056 10 6452 1 2025-08-23 07:13:17.829 00:06:00.055 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-23 07:18:29.915 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55848 10 6452 1 2025-08-23 07:19:30.324 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59986 10 6452 1 2025-08-23 07:15:17.833 00:06:00.049 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-23 07:20:30.733 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:55150 10 6452 1 2025-08-23 07:21:31.144 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33454 10 6452 1 2025-08-23 07:22:12.517 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-23 07:22:12.571 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-23 07:22:12.551 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 07:22:12.570 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 07:22:12.652 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-23 07:22:31.548 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:32972 10 6452 1 2025-08-23 07:23:31.913 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:48808 10 6452 1 2025-08-23 07:24:32.289 00:00:10.556 TCP 1.101.0.1:3000 -> 23.104.0.1:51628 10 6452 1 2025-08-23 07:20:17.833 00:06:00.052 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-23 07:25:32.887 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:60922 10 6452 1 2025-08-23 07:26:33.281 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40340 10 6452 1 2025-08-23 07:27:12.716 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-23 07:27:12.644 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-23 07:27:12.604 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 07:27:12.764 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 07:27:12.848 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-23 07:22:17.835 00:06:00.048 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-23 07:27:33.702 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45270 10 6452 1 2025-08-23 07:28:34.113 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36988 10 6452 1 2025-08-23 07:29:34.522 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:47492 10 6452 1 2025-08-23 07:30:34.932 00:00:10.850 TCP 1.101.0.1:3000 -> 23.104.0.1:49010 10 6452 1 2025-08-23 07:31:35.821 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:55476 12 10365 1 2025-08-23 07:32:13.328 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-23 07:32:13.317 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-23 07:32:12.712 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 07:32:13.328 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 07:32:13.411 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-23 07:27:17.835 00:06:00.053 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-23 07:32:36.302 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:48006 10 6452 1 2025-08-23 07:33:36.699 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58878 10 6452 1 2025-08-23 07:29:17.838 00:06:00.048 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-23 07:34:37.094 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42666 10 6452 1 2025-08-23 07:35:37.496 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55044 10 6452 1 2025-08-23 07:36:37.904 00:00:10.704 TCP 1.101.0.1:3000 -> 23.104.0.1:37460 10 6452 1 2025-08-23 07:37:12.897 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-23 07:37:12.587 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-23 07:37:12.611 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 07:37:12.935 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 07:37:13.019 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-23 07:37:38.650 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55320 10 6452 1 2025-08-23 07:38:39.060 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53626 10 6452 1 2025-08-23 07:34:17.835 00:06:00.054 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-23 07:39:39.426 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:59202 11 6504 1 2025-08-23 07:40:39.878 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44738 10 6452 1 2025-08-23 07:36:17.839 00:06:00.051 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-23 07:41:40.285 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55642 10 6452 1 2025-08-23 07:42:12.947 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-23 07:42:12.853 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-23 07:42:12.988 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 07:42:12.865 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 07:42:13.034 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-23 07:42:40.688 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:41368 10 6452 1 2025-08-23 07:43:41.054 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:42304 10 6452 1 2025-08-23 07:44:41.425 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44316 10 6452 1 2025-08-23 07:45:41.837 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:40232 10 6452 1 2025-08-23 07:41:17.837 00:06:00.055 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-23 07:46:42.258 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37492 10 6452 1 2025-08-23 07:47:13.075 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-23 07:47:13.115 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 07:47:13.088 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 07:47:13.154 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-23 07:47:13.171 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-23 07:47:42.655 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50160 10 6452 1 2025-08-23 07:43:17.841 00:06:00.049 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-23 07:48:43.070 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39584 10 6452 1 2025-08-23 07:49:43.473 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53150 10 6452 1 2025-08-23 07:50:43.834 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:55250 10 6452 1 2025-08-23 07:51:44.264 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53006 10 6452 1 2025-08-23 07:52:13.164 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-23 07:52:13.160 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-23 07:52:12.832 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 07:52:13.143 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 07:52:13.226 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-23 07:52:44.621 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46308 10 6452 1 2025-08-23 07:48:17.839 00:06:00.060 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-23 07:53:45.035 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36154 10 6452 1 2025-08-23 07:54:45.439 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60762 10 6452 1 2025-08-23 07:50:17.846 00:06:00.049 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-23 07:55:45.851 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:55456 10 6452 1 2025-08-23 07:56:46.268 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41240 10 6452 1 2025-08-23 07:57:13.055 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-23 07:57:13.346 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-23 07:57:13.417 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 07:57:12.974 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-23 07:57:13.166 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-23 07:57:46.675 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:41770 10 6452 1 Summary: total flows: 136, total bytes: 418305, total packets: 1013, avg bps: 876, avg pps: 0, avg bpp: 412 Time window: 2025-08-23 06:54:17 - 2025-08-23 07:57:56 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0035s User: 0.0012s Wall: 0.0030s flows/second: 45776.9 Runtime: 0.0030s