Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-03 10:55:23.953 00:05:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-03 10:59:30.714 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57986 10 6452 1 2025-09-03 10:56:23.956 00:05:00.274 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-03 11:00:31.125 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41576 10 6452 1 2025-09-03 11:01:31.530 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50024 10 6452 1 2025-09-03 11:02:34.966 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 11:02:34.839 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 11:02:34.710 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 11:02:34.993 00:00:00.029 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 11:02:35.078 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 11:02:31.933 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:43498 10 6452 1 2025-09-03 11:03:32.365 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60236 10 6452 1 2025-09-03 11:04:32.767 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50246 11 6492 1 2025-09-03 11:01:23.955 00:05:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-03 11:05:33.182 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:43410 10 6452 1 2025-09-03 11:02:23.958 00:05:00.274 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-03 11:06:33.542 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:49964 10 6452 1 2025-09-03 11:07:35.276 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 11:07:34.916 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 11:07:35.185 00:00:00.015 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 11:07:35.120 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 11:07:35.193 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 11:07:33.901 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47796 10 6452 1 2025-09-03 11:08:34.307 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40498 10 6452 1 2025-09-03 11:09:34.709 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46758 10 6452 1 2025-09-03 11:10:35.096 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42026 10 6452 1 2025-09-03 11:07:23.956 00:05:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-03 11:11:35.497 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42606 10 6452 1 2025-09-03 11:08:23.960 00:05:00.274 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-03 11:12:34.928 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 11:12:35.300 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 11:12:35.264 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 11:12:35.303 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 11:12:35.387 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 11:12:35.900 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38594 12 6556 1 2025-09-03 11:13:36.310 00:00:10.435 TCP 1.101.0.1:3000 -> 23.104.0.1:36962 12 10365 1 2025-09-03 11:14:36.784 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40482 10 6452 1 2025-09-03 11:15:37.187 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36214 10 6452 1 2025-09-03 11:16:37.591 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43110 10 6452 1 2025-09-03 11:13:23.959 00:05:00.277 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-03 11:17:35.346 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 11:17:35.262 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 11:17:35.197 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 11:17:34.999 00:00:00.032 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 11:17:35.265 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 11:17:37.992 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:48216 10 6452 1 2025-09-03 11:14:23.961 00:05:00.273 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-03 11:18:38.407 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:60264 12 10367 1 2025-09-03 11:19:38.885 00:00:10.690 TCP 1.101.0.1:3000 -> 23.104.0.1:55784 12 6556 1 2025-09-03 11:20:39.621 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40492 10 6452 1 2025-09-03 11:21:40.027 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60406 10 6452 1 2025-09-03 11:22:35.595 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 11:22:35.429 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 11:22:35.470 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 11:22:35.479 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 11:22:35.511 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 11:22:40.428 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44598 10 6452 1 2025-09-03 11:19:23.960 00:05:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-03 11:23:40.828 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44660 10 6452 1 2025-09-03 11:20:23.964 00:05:00.282 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-03 11:24:41.248 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38436 10 6452 1 2025-09-03 11:25:41.658 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53756 10 6452 1 2025-09-03 11:26:42.086 00:00:10.482 TCP 1.101.0.1:3000 -> 23.104.0.1:60180 10 6452 1 2025-09-03 11:27:35.923 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 11:27:35.950 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 11:27:35.901 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 11:27:35.466 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 11:27:35.840 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 11:27:42.607 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:58666 10 6452 1 2025-09-03 11:28:42.965 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37398 10 6452 1 2025-09-03 11:25:23.962 00:05:00.288 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-03 11:29:43.369 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49106 10 6452 1 2025-09-03 11:26:23.963 00:05:00.283 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-03 11:30:43.774 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57608 10 6452 1 2025-09-03 11:31:44.181 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50624 10 6452 1 2025-09-03 11:32:35.519 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 11:32:35.614 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 11:32:35.600 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 11:32:35.344 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 11:32:35.438 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 11:32:44.585 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53180 10 6452 1 2025-09-03 11:33:44.987 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51840 10 6452 1 2025-09-03 11:34:45.397 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48128 10 6452 1 2025-09-03 11:31:23.962 00:05:00.288 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-03 11:35:45.795 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60404 10 6452 1 2025-09-03 11:32:23.965 00:05:00.282 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-03 11:36:46.203 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:47660 10 6452 1 2025-09-03 11:37:35.662 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 11:37:35.598 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 11:37:35.624 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 11:37:35.670 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 11:37:35.752 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 11:37:46.569 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33528 10 6452 1 2025-09-03 11:38:46.973 00:00:10.405 TCP 1.101.0.1:3000 -> 23.104.0.1:52788 10 6452 1 2025-09-03 11:39:47.422 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58106 10 6452 1 2025-09-03 11:40:47.822 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49264 10 6452 1 2025-09-03 11:37:23.963 00:05:00.288 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-03 11:41:48.231 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56390 10 6452 1 2025-09-03 11:38:23.973 00:05:00.276 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-03 11:42:35.912 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 11:42:35.781 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 11:42:35.771 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 11:42:35.764 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 11:42:35.831 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 11:42:48.632 00:00:10.785 TCP 1.101.0.1:3000 -> 23.104.0.1:52878 10 6452 1 2025-09-03 11:43:49.456 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48930 10 6452 1 2025-09-03 11:44:49.863 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:54708 10 6452 1 2025-09-03 11:45:50.298 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48396 10 6452 1 2025-09-03 11:46:50.664 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39868 10 6452 1 2025-09-03 11:43:23.973 00:05:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-03 11:47:36.391 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 11:47:36.146 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 11:47:36.196 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 11:47:36.319 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 11:47:36.402 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 11:47:51.092 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37200 10 6452 1 2025-09-03 11:44:23.975 00:05:00.276 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-03 11:48:51.498 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53112 10 6452 1 2025-09-03 11:49:51.903 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46806 12 6556 1 2025-09-03 11:50:52.308 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54764 10 6452 1 2025-09-03 11:51:52.710 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44496 10 6452 1 2025-09-03 11:52:35.969 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 11:52:35.945 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 11:52:36.177 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 11:52:35.824 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 11:52:35.887 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 11:52:53.116 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:48616 10 6452 1 2025-09-03 11:49:23.972 00:05:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-03 11:53:53.513 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:54884 10 6452 1 2025-09-03 11:50:23.975 00:05:00.278 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-09-03 11:54:53.878 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50808 10 6452 1 2025-09-03 11:55:54.282 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:55518 10 6452 1 2025-09-03 11:56:54.637 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:44676 10 6452 1 2025-09-03 11:57:35.856 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 11:57:36.061 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 11:57:35.972 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 11:57:36.223 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 11:57:36.306 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 11:57:55.036 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48350 10 6452 1 2025-09-03 11:55:23.975 00:03:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 8 492 1 Summary: total flows: 140, total bytes: 419220, total packets: 1029, avg bps: 887, avg pps: 0, avg bpp: 407 Time window: 2025-09-03 10:55:23 - 2025-09-03 11:58:24 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0032s User: 0.0011s Wall: 0.0030s flows/second: 47297.8 Runtime: 0.0030s