Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-25 13:54:19.076 00:06:00.073 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-25 13:59:28.769 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34910 10 6661 1 2025-08-25 14:00:29.180 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50252 10 6661 1 2025-08-25 13:56:19.075 00:06:00.078 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-25 14:01:29.539 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:34324 10 6661 1 2025-08-25 14:02:29.896 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:44804 10 6661 1 2025-08-25 14:03:18.488 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 14:03:18.359 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 14:03:18.287 00:00:00.051 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 14:03:18.407 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 14:03:18.358 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 14:03:30.308 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:54860 10 6661 1 2025-08-25 14:04:30.671 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:49102 10 6661 1 2025-08-25 14:05:31.039 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48276 10 6661 1 2025-08-25 14:01:19.076 00:06:00.074 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-25 14:06:31.442 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48698 10 6661 1 2025-08-25 14:07:31.842 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:47548 10 6661 1 2025-08-25 14:08:18.381 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 14:08:19.079 00:00:00.072 TCP 179.21.23.21:38570 -> 179.21.23.23:179 2 123 1 2025-08-25 14:08:18.449 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 14:08:18.489 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 14:08:18.284 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 14:08:18.367 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 14:03:19.074 00:06:00.079 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-25 14:08:32.266 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44060 10 6661 1 2025-08-25 14:09:32.672 00:00:10.673 TCP 1.101.0.1:3000 -> 23.104.0.1:38322 10 6661 1 2025-08-25 14:10:19.077 00:00:00.077 TCP 179.21.23.23:179 -> 179.21.23.21:38570 2 123 1 2025-08-25 14:10:33.386 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45002 10 6661 1 2025-08-25 14:11:33.788 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47002 10 6661 1 2025-08-25 14:12:34.194 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49106 10 6661 1 2025-08-25 14:13:18.778 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 14:09:19.078 00:04:00.074 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-25 14:13:18.602 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 14:13:18.653 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 14:13:18.774 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 14:13:18.857 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 14:13:34.591 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53076 10 6661 1 2025-08-25 14:14:34.995 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37470 10 6661 1 2025-08-25 14:11:19.079 00:04:00.078 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-25 14:15:35.400 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50752 10 6661 1 2025-08-25 14:16:35.807 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:55932 10 6661 1 2025-08-25 14:17:36.174 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60496 10 6661 1 2025-08-25 14:18:18.597 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 14:14:19.079 00:04:00.074 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-25 14:18:18.384 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 14:18:18.744 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 14:18:18.610 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 14:18:18.693 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 14:18:36.590 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38774 10 6661 1 2025-08-25 14:19:37.015 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35006 10 6661 1 2025-08-25 14:16:19.078 00:04:00.078 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-25 14:20:37.415 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35572 10 6661 1 2025-08-25 14:21:37.815 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:49650 10 6661 1 2025-08-25 14:22:38.189 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55446 10 6661 1 2025-08-25 14:23:18.655 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 14:19:19.081 00:04:00.073 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-25 14:23:18.441 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 14:23:18.739 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 14:23:18.728 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 14:23:18.812 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 14:23:38.597 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47364 10 6661 1 2025-08-25 14:24:39.006 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43672 10 6661 1 2025-08-25 14:25:39.412 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44412 10 6661 1 2025-08-25 14:21:19.078 00:06:00.080 TCP 179.21.23.23:179 -> 179.21.23.21:38570 15 913 1 2025-08-25 14:26:39.820 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:33394 10 6661 1 2025-08-25 14:27:34.789 00:00:10.864 TCP 1.101.0.1:3000 -> 27.104.0.1:40984 10 6661 1 2025-08-25 14:27:49.944 00:00:10.998 TCP 1.101.0.1:3000 -> 32.102.0.1:51278 10 6661 1 2025-08-25 14:28:18.781 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 14:28:18.700 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 14:28:18.899 00:00:00.024 ICMP 1.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 14:28:18.838 00:00:00.023 ICMP 1.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 14:28:18.919 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 14:28:18.907 00:00:00.042 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 14:28:18.750 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 14:28:35.692 00:00:11.431 TCP 1.101.0.1:3000 -> 27.104.0.1:52928 11 6713 1 2025-08-25 14:27:40.192 00:01:25.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40460 17 7241 1 2025-08-25 14:24:19.081 00:06:00.075 TCP 179.21.23.21:38570 -> 179.21.23.23:179 15 974 1 2025-08-25 14:29:37.162 00:00:10.867 TCP 1.101.0.1:3000 -> 27.104.0.1:39476 10 6661 1 2025-08-25 14:29:58.409 00:00:00.879 TCP 1.101.0.1:3000 -> 32.102.0.1:56732 5 5093 1 2025-08-25 14:30:50.973 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43062 10 6661 1 2025-08-25 14:31:51.377 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36560 10 6661 1 2025-08-25 14:32:51.777 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:35028 10 6661 1 2025-08-25 14:33:19.141 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 14:28:19.080 00:06:00.080 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-25 14:33:19.059 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 14:33:19.085 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 14:33:18.868 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 14:33:18.735 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 14:33:52.139 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53110 10 6661 1 2025-08-25 14:34:52.537 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52254 10 6661 1 2025-08-25 14:35:52.940 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:51978 10 6661 1 2025-08-25 14:31:19.083 00:06:00.077 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-25 14:36:53.358 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35134 10 6661 1 2025-08-25 14:37:53.763 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50406 10 6661 1 2025-08-25 14:38:19.075 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 14:38:19.191 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 14:38:19.089 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 14:38:19.005 00:00:00.040 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 14:38:18.992 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 14:38:54.170 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:46026 10 6661 1 2025-08-25 14:39:54.573 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34410 10 6661 1 2025-08-25 14:35:19.080 00:06:00.083 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-25 14:40:54.993 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:37592 10 6661 1 2025-08-25 14:41:55.367 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39692 10 6661 1 2025-08-25 14:42:19.083 00:00:00.081 TCP 179.21.23.23:179 -> 179.21.23.21:38570 2 123 1 2025-08-25 14:42:55.769 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35064 10 6661 1 2025-08-25 14:43:19.098 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 14:38:19.083 00:06:00.079 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-25 14:43:19.238 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 14:43:19.066 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 14:43:18.959 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 14:43:19.042 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 14:43:56.174 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53148 10 6661 1 2025-08-25 14:44:56.577 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39016 10 6661 1 2025-08-25 14:45:19.094 00:00:00.072 TCP 179.21.23.21:38570 -> 179.21.23.23:179 2 123 1 2025-08-25 14:45:56.978 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50288 10 6661 1 2025-08-25 14:46:57.388 00:00:10.433 TCP 1.101.0.1:3000 -> 23.104.0.1:42464 12 10576 1 2025-08-25 14:43:19.083 00:04:00.082 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-25 14:47:57.862 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:44336 10 6661 1 2025-08-25 14:48:19.091 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 14:48:19.092 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 14:48:19.192 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 14:48:19.091 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 14:48:19.173 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 14:48:58.273 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:51668 10 6661 1 2025-08-25 14:49:58.630 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41206 10 6661 1 2025-08-25 14:46:19.093 00:04:00.070 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-25 14:50:58.994 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60574 10 6661 1 2025-08-25 14:51:59.396 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52484 10 6661 1 2025-08-25 14:48:19.090 00:04:00.075 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-25 14:52:59.759 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:49374 10 6661 1 2025-08-25 14:53:19.615 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 14:53:19.687 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 14:53:19.483 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 14:53:19.691 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 14:53:19.774 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 14:54:00.185 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46722 10 6661 1 2025-08-25 14:55:00.590 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35986 10 6661 1 2025-08-25 14:51:19.094 00:04:00.070 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-25 14:56:00.954 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:46680 10 6661 1 2025-08-25 14:57:01.366 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43854 10 6661 1 2025-08-25 14:53:19.091 00:04:00.076 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-25 14:58:01.778 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:44068 10 6661 1 2025-08-25 14:58:19.877 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 14:58:19.874 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 14:58:19.352 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 14:58:19.625 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 14:58:19.709 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 148, total bytes: 447002, total packets: 1061, avg bps: 931, avg pps: 0, avg bpp: 421 Time window: 2025-08-25 13:54:19 - 2025-08-25 14:58:19 Total flows processed: 148, passed: 148, Blocks skipped: 0, Bytes read: 15456 Sys: 0.0029s User: 0.0020s Wall: 0.0019s flows/second: 76017.3 Runtime: 0.0020s