Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-25 20:55:19.186 00:04:00.091 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-25 20:59:27.683 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:42018 10 6452 1 2025-08-25 21:00:28.051 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57792 10 6452 1 2025-08-25 21:01:28.452 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:46572 10 6452 1 2025-08-25 20:58:19.188 00:04:00.087 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-25 21:02:28.810 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42098 10 6452 1 2025-08-25 21:03:26.891 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 21:03:26.809 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 21:03:26.740 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 21:03:26.727 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 21:03:26.661 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 21:03:29.217 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48348 10 6452 1 2025-08-25 21:00:19.187 00:04:00.092 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-25 21:03:19.189 00:01:00.086 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-08-25 21:04:29.629 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40668 10 6452 1 2025-08-25 21:05:30.030 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53202 10 6452 1 2025-08-25 21:05:19.187 00:01:00.091 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-08-25 21:06:30.431 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:46268 10 6452 1 2025-08-25 21:07:30.908 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:34398 10 6452 1 2025-08-25 21:08:27.059 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 21:08:26.760 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 21:08:26.862 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 21:08:26.923 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 21:08:27.006 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 21:08:31.273 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47470 10 6452 1 2025-08-25 21:05:19.190 00:04:00.087 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-25 21:09:31.678 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47694 10 6452 1 2025-08-25 21:10:32.112 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34424 10 6452 1 2025-08-25 21:07:19.186 00:04:00.097 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-25 21:11:32.479 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50792 10 6452 1 2025-08-25 21:12:32.876 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37248 10 6452 1 2025-08-25 21:13:27.049 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 21:13:26.965 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 21:13:26.894 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 21:13:27.105 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 21:13:26.850 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 21:13:33.283 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38228 10 6452 1 2025-08-25 21:10:19.190 00:04:00.089 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-25 21:14:33.690 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:38150 11 6504 1 2025-08-25 21:15:34.147 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60680 10 6452 1 2025-08-25 21:12:19.188 00:04:00.096 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-25 21:16:34.576 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57860 10 6452 1 2025-08-25 21:17:34.977 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59402 10 6452 1 2025-08-25 21:18:27.546 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 21:18:27.326 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 21:18:27.259 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 21:18:27.175 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 21:18:27.462 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 21:18:35.386 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59722 10 6452 1 2025-08-25 21:15:19.191 00:04:00.091 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-25 21:19:35.794 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:38890 10 6452 1 2025-08-25 21:20:36.148 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40668 10 6452 1 2025-08-25 21:17:19.190 00:04:00.094 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-25 21:21:36.560 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45896 10 6452 1 2025-08-25 21:22:36.918 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54202 10 6452 1 2025-08-25 21:23:27.294 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 21:23:27.235 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 21:23:27.202 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 21:23:27.235 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 21:23:27.317 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 21:23:37.319 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34832 10 6452 1 2025-08-25 21:20:19.193 00:04:00.091 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-25 21:24:37.721 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:46790 10 6452 1 2025-08-25 21:25:38.135 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34840 10 6452 1 2025-08-25 21:22:19.190 00:04:00.096 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-25 21:26:38.534 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:35894 12 10367 1 2025-08-25 21:27:39.020 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:48564 10 6452 1 2025-08-25 21:28:27.423 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 21:28:27.340 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 21:28:27.508 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 21:28:27.457 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 21:28:27.189 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 21:28:39.417 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57736 10 6452 1 2025-08-25 21:25:19.197 00:04:00.092 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-25 21:29:39.820 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:49404 10 6452 1 2025-08-25 21:30:40.190 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36482 10 6452 1 2025-08-25 21:27:19.195 00:04:00.095 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-25 21:31:40.589 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58192 10 6452 1 2025-08-25 21:32:40.987 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45598 10 6452 1 2025-08-25 21:33:27.307 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 21:33:27.315 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 21:33:27.291 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 21:33:27.387 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 21:33:27.470 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 21:33:41.397 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:42026 10 6452 1 2025-08-25 21:30:19.198 00:04:00.090 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-25 21:34:41.814 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:36492 10 6452 1 2025-08-25 21:35:42.193 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49010 10 6452 1 2025-08-25 21:35:19.201 00:01:00.091 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-08-25 21:32:19.197 00:04:00.098 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-25 21:36:42.594 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58764 10 6452 1 2025-08-25 21:37:43.002 00:00:10.723 TCP 1.101.0.1:3000 -> 23.104.0.1:48638 10 6452 1 2025-08-25 21:37:19.199 00:01:00.095 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-08-25 21:38:27.780 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 21:38:27.698 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 21:38:27.861 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 21:38:27.858 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 21:38:27.712 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 21:38:43.762 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:48782 10 6452 1 2025-08-25 21:39:44.185 00:00:10.886 TCP 1.101.0.1:3000 -> 23.104.0.1:51570 10 6452 1 2025-08-25 21:40:45.117 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51480 10 6452 1 2025-08-25 21:37:19.200 00:04:00.092 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-25 21:41:45.524 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38556 10 6452 1 2025-08-25 21:42:45.930 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:59306 10 6452 1 2025-08-25 21:39:19.199 00:04:00.098 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-25 21:43:27.611 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 21:43:27.554 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 21:43:27.393 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 21:43:27.614 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 21:43:27.696 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 21:43:46.317 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48664 10 6452 1 2025-08-25 21:44:46.713 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48962 10 6452 1 2025-08-25 21:45:47.118 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44664 10 6452 1 2025-08-25 21:42:19.202 00:04:00.093 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-25 21:46:47.536 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:52114 10 6452 1 2025-08-25 21:47:47.955 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38242 10 6452 1 2025-08-25 21:44:19.200 00:04:00.098 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-25 21:48:27.553 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 21:48:27.660 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 21:48:27.657 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 21:48:27.424 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 21:48:27.469 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 21:48:48.361 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47756 10 6452 1 2025-08-25 21:49:48.766 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:35506 10 6452 1 2025-08-25 21:49:19.205 00:01:00.093 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-08-25 21:50:49.174 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40244 10 6452 1 2025-08-25 21:47:19.203 00:04:00.093 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-25 21:51:49.583 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50680 10 6452 1 2025-08-25 21:52:49.987 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:36858 10 6452 1 2025-08-25 21:53:28.219 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 21:53:28.030 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 21:53:28.039 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 21:53:28.003 00:00:00.042 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 21:53:28.137 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 21:53:50.405 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55466 10 6452 1 2025-08-25 21:54:50.816 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54418 10 6452 1 2025-08-25 21:51:19.204 00:04:00.097 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-08-25 21:55:51.228 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37444 10 6452 1 2025-08-25 21:52:19.207 00:04:00.089 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-08-25 21:56:51.632 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:49214 10 6452 1 2025-08-25 21:57:52.021 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35340 10 6452 1 2025-08-25 21:58:27.887 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 21:58:27.975 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 21:58:27.957 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 21:58:27.932 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 21:58:28.015 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 146, total bytes: 414515, total packets: 1013, avg bps: 875, avg pps: 0, avg bpp: 409 Time window: 2025-08-25 20:55:19 - 2025-08-25 21:58:28 Total flows processed: 146, passed: 146, Blocks skipped: 0, Bytes read: 15248 Sys: 0.0038s User: 0.0010s Wall: 0.0020s flows/second: 71388.2 Runtime: 0.0021s