Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-05 15:54:25.100 00:06:00.143 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 15:59:30.688 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56226 10 6452 1 2025-09-05 16:00:31.112 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:42068 10 6452 1 2025-09-05 16:01:31.477 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58064 10 6452 1 2025-09-05 15:57:25.099 00:06:00.146 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-05 16:02:31.902 00:00:10.704 TCP 1.101.0.1:3000 -> 23.104.0.1:33256 10 6452 1 2025-09-05 16:03:38.741 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 16:03:38.515 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 16:03:38.739 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 16:03:38.676 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 16:03:38.821 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 16:03:32.651 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37484 10 6452 1 2025-09-05 16:04:33.013 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:57702 10 6452 1 2025-09-05 16:05:33.414 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40124 10 6452 1 2025-09-05 16:01:25.102 00:06:00.143 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 16:06:33.817 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52706 10 6452 1 2025-09-05 16:07:34.225 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41968 10 6452 1 2025-09-05 16:08:38.810 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 16:08:38.652 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 16:08:38.757 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 16:08:38.745 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 16:08:38.829 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 16:08:34.626 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:45092 10 6452 1 2025-09-05 16:04:25.101 00:06:00.148 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-05 16:09:35.033 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54456 10 6452 1 2025-09-05 16:10:35.435 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35126 10 6452 1 2025-09-05 16:11:35.840 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:53812 10 6452 1 2025-09-05 16:12:36.225 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:34554 10 6452 1 2025-09-05 16:08:25.105 00:06:00.144 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 16:13:39.208 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 16:13:39.109 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 16:13:39.107 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 16:13:38.970 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 16:13:39.126 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 16:13:36.657 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41244 10 6452 1 2025-09-05 16:14:37.064 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40300 10 6452 1 2025-09-05 16:15:37.468 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:41330 10 6452 1 2025-09-05 16:11:25.101 00:06:00.151 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-05 16:16:37.829 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56958 10 6452 1 2025-09-05 16:17:38.192 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51412 10 6452 1 2025-09-05 16:18:38.993 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 16:18:38.986 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 16:18:38.987 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 16:18:38.948 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 16:18:38.910 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 16:18:38.597 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39116 10 6452 1 2025-09-05 16:19:39.001 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:47984 10 6452 1 2025-09-05 16:15:25.106 00:06:00.146 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 16:20:39.376 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37484 10 6452 1 2025-09-05 16:21:39.740 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53402 10 6452 1 2025-09-05 16:22:40.147 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57962 10 6452 1 2025-09-05 16:18:25.104 00:06:00.150 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-05 16:23:39.623 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 16:23:39.389 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 16:23:39.388 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 16:23:39.627 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 16:23:39.540 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 16:23:40.552 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41068 10 6452 1 2025-09-05 16:24:40.953 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:39354 10 6452 1 2025-09-05 16:25:41.369 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52472 10 6452 1 2025-09-05 16:26:41.792 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38616 10 6452 1 2025-09-05 16:22:25.107 00:06:00.146 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 16:27:42.197 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40776 10 6452 1 2025-09-05 16:28:39.322 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 16:28:39.234 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 16:28:39.243 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 16:28:39.111 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 16:28:39.242 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 16:28:42.560 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46054 10 6452 1 2025-09-05 16:29:42.963 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55504 10 6452 1 2025-09-05 16:25:25.104 00:06:00.152 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-05 16:30:43.379 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42866 10 6452 1 2025-09-05 16:31:43.785 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45988 10 6452 1 2025-09-05 16:32:44.195 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53486 10 6452 1 2025-09-05 16:33:39.243 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 16:33:39.225 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 16:33:39.338 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 16:33:39.400 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 16:33:39.482 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 16:33:44.602 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:56960 10 6452 1 2025-09-05 16:29:25.108 00:06:00.148 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 16:34:45.019 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39294 10 6452 1 2025-09-05 16:35:45.423 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45318 10 6452 1 2025-09-05 16:36:45.831 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:42308 10 6452 1 2025-09-05 16:32:25.106 00:06:00.153 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-05 16:37:46.246 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35984 10 6452 1 2025-09-05 16:38:39.434 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 16:38:39.360 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 16:38:39.361 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 16:38:39.287 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 16:38:39.351 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 16:38:46.647 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:53630 10 6452 1 2025-09-05 16:39:47.066 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:57536 10 6452 1 2025-09-05 16:40:47.469 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36706 10 6452 1 2025-09-05 16:36:25.111 00:06:00.146 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 16:41:47.875 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38534 10 6452 1 2025-09-05 16:42:48.282 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57264 10 6452 1 2025-09-05 16:43:39.607 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 16:43:39.212 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 16:43:39.400 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 16:43:39.352 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 16:43:39.524 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 16:43:48.693 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59594 10 6452 1 2025-09-05 16:39:25.109 00:06:00.152 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-05 16:44:49.119 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43112 10 6452 1 2025-09-05 16:45:49.521 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35178 10 6452 1 2025-09-05 16:46:49.888 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:45368 10 6452 1 2025-09-05 16:47:50.305 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59846 10 6452 1 2025-09-05 16:43:25.113 00:06:00.146 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 16:48:39.559 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 16:48:39.368 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 16:48:39.585 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 16:48:39.470 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 16:48:39.554 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 16:48:50.706 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:50154 10 6452 1 2025-09-05 16:49:51.102 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40668 10 6452 1 2025-09-05 16:50:51.503 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60224 10 6452 1 2025-09-05 16:46:25.109 00:06:00.153 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-05 16:51:51.867 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40828 10 6452 1 2025-09-05 16:52:52.280 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58054 10 6452 1 2025-09-05 16:53:39.842 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-05 16:53:39.757 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 16:53:39.702 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 16:53:39.759 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 16:53:39.764 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 16:53:52.681 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53154 10 6452 1 2025-09-05 16:54:53.109 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:49772 10 6452 1 2025-09-05 16:50:25.113 00:06:00.147 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-05 16:55:53.463 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:39724 10 6452 1 2025-09-05 16:56:53.889 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:55330 10 6452 1 2025-09-05 16:57:54.270 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47100 10 6452 1 2025-09-05 16:53:25.110 00:06:00.153 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-05 16:58:39.952 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-05 16:58:39.804 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-05 16:58:39.416 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 16:58:39.962 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-05 16:58:40.045 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 137, total bytes: 411286, total packets: 1022, avg bps: 843, avg pps: 0, avg bpp: 402 Time window: 2025-09-05 15:54:25 - 2025-09-05 16:59:25 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0044s User: 0.0000s Wall: 0.0020s flows/second: 69575.0 Runtime: 0.0020s