Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-04 02:58:24.281 00:01:00.273 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-09-04 02:59:15.270 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:36984 10 6452 1 2025-09-04 02:56:24.279 00:04:00.273 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-09-04 03:00:15.641 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52200 10 6452 1 2025-09-04 03:01:16.064 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48146 10 6452 1 2025-09-04 03:00:24.282 00:02:00.273 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-09-04 03:02:16.470 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58912 10 6452 1 2025-09-04 03:02:54.125 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 03:02:54.234 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 03:02:54.158 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 03:02:54.234 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 03:02:54.042 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 03:03:16.873 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43740 10 6452 1 2025-09-04 03:03:24.283 00:01:00.271 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-09-04 03:04:17.285 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46482 10 6452 1 2025-09-04 03:01:24.283 00:04:00.269 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-09-04 03:05:17.690 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35900 10 6452 1 2025-09-04 03:06:18.113 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59308 10 6452 1 2025-09-04 03:05:24.283 00:02:00.271 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-09-04 03:07:18.519 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:43082 10 6452 1 2025-09-04 03:07:54.424 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 03:07:54.342 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 03:07:54.340 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 03:07:54.251 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 03:07:54.342 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 03:08:18.937 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:40456 10 6452 1 2025-09-04 03:08:24.283 00:01:00.272 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-09-04 03:09:19.370 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60086 10 6452 1 2025-09-04 03:06:24.286 00:04:00.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-09-04 03:10:19.779 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59954 10 6452 1 2025-09-04 03:11:20.188 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:54398 10 6452 1 2025-09-04 03:12:20.611 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52510 10 6452 1 2025-09-04 03:12:54.520 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 03:12:54.438 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 03:12:54.488 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 03:12:54.375 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 03:12:54.101 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 03:13:21.011 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41906 10 6452 1 2025-09-04 03:10:24.285 00:04:00.273 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-04 03:14:21.424 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:49166 10 6452 1 2025-09-04 03:11:24.289 00:04:00.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-09-04 03:15:21.791 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49936 10 6452 1 2025-09-04 03:16:22.188 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50294 10 6452 1 2025-09-04 03:16:24.289 00:01:00.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-09-04 03:17:22.585 00:00:10.698 TCP 1.101.0.1:3000 -> 23.104.0.1:33294 10 6452 1 2025-09-04 03:17:54.718 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 03:17:54.503 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 03:17:54.613 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 03:17:54.536 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 03:17:54.801 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 03:18:23.314 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:45744 10 6452 1 2025-09-04 03:15:24.286 00:04:00.272 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-04 03:19:23.720 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52708 10 6452 1 2025-09-04 03:18:24.288 00:02:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-09-04 03:20:24.131 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60636 10 6452 1 2025-09-04 03:21:24.531 00:00:10.898 TCP 1.101.0.1:3000 -> 23.104.0.1:51164 10 6452 1 2025-09-04 03:21:24.290 00:01:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-09-04 03:22:25.465 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:42954 10 6452 1 2025-09-04 03:22:54.725 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 03:22:54.869 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 03:22:54.860 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 03:22:54.351 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 03:22:54.644 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 03:23:25.820 00:00:10.412 TCP 1.101.0.1:3000 -> 23.104.0.1:48902 12 10365 1 2025-09-04 03:20:24.287 00:04:00.273 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-04 03:24:26.272 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40452 10 6452 1 2025-09-04 03:23:24.289 00:02:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-09-04 03:25:26.692 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:55062 10 6452 1 2025-09-04 03:25:24.288 00:01:00.272 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-09-04 03:26:27.110 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57060 10 6452 1 2025-09-04 03:26:24.291 00:01:00.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-09-04 03:27:27.513 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52454 10 6452 1 2025-09-04 03:27:54.778 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 03:27:54.697 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 03:27:54.693 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 03:27:54.695 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 03:27:54.861 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 03:28:27.917 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56162 10 6452 1 2025-09-04 03:27:24.288 00:02:00.273 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-09-04 03:29:28.326 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40280 10 6452 1 2025-09-04 03:30:28.732 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47876 10 6452 1 2025-09-04 03:30:24.288 00:01:00.274 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-09-04 03:31:29.139 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56988 10 6452 1 2025-09-04 03:28:24.291 00:04:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-09-04 03:32:29.548 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46582 10 6452 1 2025-09-04 03:32:54.914 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 03:32:54.829 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 03:32:54.828 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 03:32:54.785 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 03:32:54.834 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 03:33:29.958 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:49124 10 6452 1 2025-09-04 03:32:24.290 00:02:00.273 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-09-04 03:34:30.327 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36214 10 6452 1 2025-09-04 03:35:30.735 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34940 10 6452 1 2025-09-04 03:35:24.292 00:01:00.272 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-09-04 03:36:31.141 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38808 10 6452 1 2025-09-04 03:33:24.291 00:04:00.269 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-09-04 03:37:31.548 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:35624 10 6452 1 2025-09-04 03:37:54.825 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 03:37:54.918 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 03:37:54.913 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 03:37:54.908 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 03:37:54.991 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 03:38:31.906 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41982 10 6452 1 2025-09-04 03:37:24.295 00:02:00.271 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-09-04 03:39:32.310 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56270 10 6452 1 2025-09-04 03:40:32.718 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49586 10 6452 1 2025-09-04 03:40:24.293 00:01:00.273 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-09-04 03:41:33.106 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50926 10 6452 1 2025-09-04 03:38:24.297 00:04:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-09-04 03:42:33.517 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58718 10 6452 1 2025-09-04 03:42:54.835 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 03:42:55.154 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 03:42:55.143 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 03:42:55.146 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 03:42:55.071 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 03:43:33.879 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:42340 10 6452 1 2025-09-04 03:43:24.296 00:01:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-09-04 03:42:24.293 00:02:00.273 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-09-04 03:44:34.252 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56232 10 6452 1 2025-09-04 03:45:34.659 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40198 10 6452 1 2025-09-04 03:45:24.297 00:01:00.270 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-09-04 03:46:35.095 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35266 10 6452 1 2025-09-04 03:45:24.299 00:02:00.266 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-09-04 03:47:35.504 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50086 10 6452 1 2025-09-04 03:47:54.890 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 03:47:55.287 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 03:47:55.200 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 03:47:55.385 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 03:47:55.203 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 03:48:35.914 00:00:10.866 TCP 1.101.0.1:3000 -> 23.104.0.1:52256 10 6452 1 2025-09-04 03:48:24.299 00:01:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-09-04 03:49:36.818 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:34926 10 6452 1 2025-09-04 03:50:37.187 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52028 10 6452 1 2025-09-04 03:47:24.298 00:04:00.271 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-04 03:51:37.589 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34280 10 6452 1 2025-09-04 03:50:24.302 00:02:00.264 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-09-04 03:52:37.950 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53554 10 6452 1 2025-09-04 03:52:55.350 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 03:52:55.134 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 03:52:55.264 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 03:52:55.073 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 03:52:55.268 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 03:53:38.356 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:48844 10 6452 1 2025-09-04 03:53:24.303 00:01:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-09-04 03:54:38.780 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58990 10 6452 1 2025-09-04 03:55:39.191 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38040 10 6452 1 2025-09-04 03:52:24.299 00:04:00.269 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-04 03:56:39.600 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42826 10 6452 1 2025-09-04 03:55:24.303 00:02:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-09-04 03:57:40.014 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46590 10 6452 1 2025-09-04 03:57:55.581 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-04 03:57:55.547 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-04 03:57:55.550 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-04 03:57:55.376 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 03:57:55.497 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-04 03:57:24.301 00:01:00.268 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 Summary: total flows: 157, total bytes: 414830, total packets: 1018, avg bps: 892, avg pps: 0, avg bpp: 407 Time window: 2025-09-04 02:56:24 - 2025-09-04 03:58:24 Total flows processed: 157, passed: 157, Blocks skipped: 0, Bytes read: 16392 Sys: 0.0046s User: 0.0000s Wall: 0.0024s flows/second: 66248.1 Runtime: 0.0024s