Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-03 12:55:23.996 00:05:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-09-03 12:59:19.932 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:53646 10 6452 1 2025-09-03 13:00:20.317 00:00:10.740 TCP 1.101.0.1:3000 -> 23.104.0.1:33986 10 6452 1 2025-09-03 13:01:21.105 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36364 10 6452 1 2025-09-03 13:02:37.618 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 13:02:21.508 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:47494 10 6452 1 2025-09-03 13:02:37.391 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 13:02:37.495 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 13:02:37.063 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 13:02:37.535 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 13:03:21.929 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:34608 10 6452 1 2025-09-03 12:59:24.000 00:06:00.274 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-03 13:04:22.317 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39108 10 6452 1 2025-09-03 13:01:23.997 00:05:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 11 686 1 2025-09-03 13:05:22.726 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:47414 10 6452 1 2025-09-03 13:06:23.142 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:51758 10 6452 1 2025-09-03 13:07:37.539 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 13:07:23.545 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:38764 10 6452 1 2025-09-03 13:07:37.584 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 13:07:37.507 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 13:07:37.409 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 13:07:37.457 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 13:08:23.907 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:46540 12 10365 1 2025-09-03 13:09:24.356 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34516 10 6452 1 2025-09-03 13:10:24.763 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:43838 10 6452 1 2025-09-03 13:06:24.277 00:06:00.005 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-09-03 13:06:24.003 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 790 1 2025-09-03 13:11:25.188 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49442 10 6452 1 2025-09-03 13:12:37.588 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 13:12:25.590 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43416 10 6452 1 2025-09-03 13:12:37.798 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 13:12:37.679 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 13:12:37.595 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 13:12:37.677 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 13:13:25.949 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36024 10 6452 1 2025-09-03 13:14:26.359 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34308 10 6452 1 2025-09-03 13:15:26.730 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58366 10 6452 1 2025-09-03 13:16:27.110 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37346 10 6452 1 2025-09-03 13:12:24.280 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-09-03 13:17:37.877 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 13:17:37.742 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 13:17:27.511 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:47992 10 6452 1 2025-09-03 13:17:37.849 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 13:17:37.678 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 13:17:37.795 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 13:13:24.008 00:06:00.276 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-03 13:18:27.930 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:41880 10 6452 1 2025-09-03 13:19:28.355 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44818 10 6452 1 2025-09-03 13:20:28.761 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:41766 10 6452 1 2025-09-03 13:21:29.188 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35718 10 6452 1 2025-09-03 13:22:37.851 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 13:22:37.817 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 13:22:37.773 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 13:22:37.520 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 13:22:37.768 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 13:22:29.593 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51672 10 6452 1 2025-09-03 13:23:30.001 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:43082 10 6452 1 2025-09-03 13:19:24.037 00:06:00.246 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-03 13:24:30.398 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58450 10 6452 1 2025-09-03 13:20:24.035 00:06:00.250 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-03 13:25:30.801 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39450 10 6452 1 2025-09-03 13:26:31.207 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51802 10 6452 1 2025-09-03 13:27:37.894 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 13:27:37.944 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 13:27:37.715 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 13:27:37.753 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 13:27:37.813 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 13:27:31.610 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54688 10 6452 1 2025-09-03 13:28:32.017 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34416 12 6556 1 2025-09-03 13:29:32.421 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:50234 10 6452 1 2025-09-03 13:26:24.040 00:04:00.244 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-09-03 13:30:32.791 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36116 10 6452 1 2025-09-03 13:31:33.206 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:37118 10 6452 1 2025-09-03 13:27:24.038 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 809 1 2025-09-03 13:32:38.057 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 13:32:38.219 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 13:32:38.235 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 13:32:38.055 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 13:32:37.974 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 13:32:33.592 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38656 10 6452 1 2025-09-03 13:33:33.995 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55700 10 6452 1 2025-09-03 13:34:34.399 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45748 10 6452 1 2025-09-03 13:31:24.041 00:04:00.245 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-09-03 13:35:34.811 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56244 10 6452 1 2025-09-03 13:36:35.210 00:00:10.404 TCP 1.101.0.1:3000 -> 23.104.0.1:40096 10 6452 1 2025-09-03 13:37:38.256 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 13:37:38.117 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 13:37:38.125 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 13:37:38.197 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 13:37:38.173 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 13:37:35.654 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40864 10 6452 1 2025-09-03 13:33:24.286 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 13 790 1 2025-09-03 13:38:36.060 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45550 10 6452 1 2025-09-03 13:39:36.465 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35056 10 6452 1 2025-09-03 13:36:24.042 00:04:00.245 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-09-03 13:40:36.869 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:51282 10 6452 1 2025-09-03 13:41:37.285 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42154 10 6452 1 2025-09-03 13:42:38.055 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 13:42:38.229 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 13:42:38.247 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 13:42:38.191 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 13:42:37.971 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 13:42:37.695 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55640 10 6452 1 2025-09-03 13:43:38.109 00:00:10.475 TCP 1.101.0.1:3000 -> 23.104.0.1:35806 12 10365 1 2025-09-03 13:40:24.041 00:04:00.250 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-03 13:44:38.620 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41206 10 6452 1 2025-09-03 13:45:39.031 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:37348 10 6452 1 2025-09-03 13:41:24.044 00:06:00.248 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-03 13:46:39.395 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40004 10 6452 1 2025-09-03 13:47:38.316 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 13:47:38.303 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 13:47:38.233 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 13:47:37.939 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 13:47:38.234 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 13:47:39.797 00:00:10.811 TCP 1.101.0.1:3000 -> 23.104.0.1:52304 10 6452 1 2025-09-03 13:48:40.646 00:00:10.456 TCP 1.101.0.1:3000 -> 23.104.0.1:57100 12 10367 1 2025-09-03 13:49:41.142 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48562 10 6452 1 2025-09-03 13:45:24.042 00:06:00.253 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-03 13:50:41.543 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55474 10 6452 1 2025-09-03 13:51:41.945 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55150 10 6452 1 2025-09-03 13:52:38.649 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 13:52:38.581 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 13:52:38.538 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 13:52:38.580 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 13:52:38.662 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 13:52:42.356 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43538 10 6452 1 2025-09-03 13:48:24.049 00:06:00.244 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-03 13:53:42.756 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:35544 10 6452 1 2025-09-03 13:54:43.130 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44360 10 6452 1 2025-09-03 13:55:43.532 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:51736 10 6452 1 2025-09-03 13:56:43.891 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:57274 10 6452 1 2025-09-03 13:52:24.051 00:06:00.247 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-03 13:57:38.616 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-03 13:57:38.451 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-03 13:57:38.526 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-03 13:57:38.378 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 13:57:38.534 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-03 13:57:44.267 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:50736 10 6452 1 Summary: total flows: 138, total bytes: 422393, total packets: 1018, avg bps: 893, avg pps: 0, avg bpp: 414 Time window: 2025-09-03 12:55:23 - 2025-09-03 13:58:24 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0039s User: 0.0019s Wall: 0.0027s flows/second: 50344.8 Runtime: 0.0028s