Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-13 19:55:29.185 00:04:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 5 355 1 2025-09-13 19:59:39.556 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48132 10 6452 1 2025-09-13 20:00:39.961 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59366 10 6452 1 2025-09-13 20:01:40.368 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58386 10 6452 1 2025-09-13 20:02:41.903 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 20:02:41.827 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 20:02:41.935 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 20:02:41.573 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 20:02:41.821 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 20:02:40.774 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42592 10 6452 1 2025-09-13 19:59:29.163 00:04:00.027 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-13 20:03:41.188 00:00:10.477 TCP 1.101.0.1:3000 -> 23.104.0.1:52642 10 6452 1 2025-09-13 20:00:29.186 00:04:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 5 355 1 2025-09-13 20:04:41.702 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33116 10 6452 1 2025-09-13 20:05:42.113 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57648 10 6452 1 2025-09-13 20:06:42.485 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48898 10 6452 1 2025-09-13 20:07:41.980 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 20:07:41.983 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 20:07:41.719 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 20:07:41.985 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 20:07:42.068 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 20:07:42.893 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:45012 10 6452 1 2025-09-13 20:04:29.165 00:04:00.026 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-13 20:08:43.264 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35930 10 6452 1 2025-09-13 20:09:43.669 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54550 10 6452 1 2025-09-13 20:05:29.187 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-09-13 20:10:44.088 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35082 10 6452 1 2025-09-13 20:11:44.453 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43986 10 6452 1 2025-09-13 20:12:42.481 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 20:12:42.325 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 20:12:42.258 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 20:12:41.919 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 20:12:42.398 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 20:12:44.861 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57114 10 6452 1 2025-09-13 20:09:29.165 00:04:00.027 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-13 20:13:45.268 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53192 10 6452 1 2025-09-13 20:14:45.672 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40402 10 6452 1 2025-09-13 20:15:46.119 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49308 11 6492 1 2025-09-13 20:12:29.190 00:04:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 5 355 1 2025-09-13 20:16:46.529 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44706 10 6452 1 2025-09-13 20:17:42.181 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 20:17:42.099 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 20:17:42.437 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 20:17:42.331 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 20:17:42.396 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 20:17:46.940 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:60192 10 6452 1 2025-09-13 20:14:29.168 00:04:00.028 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-13 20:18:47.376 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:55044 10 6452 1 2025-09-13 20:19:47.739 00:00:10.505 TCP 1.101.0.1:3000 -> 23.104.0.1:56280 10 6452 1 2025-09-13 20:20:48.288 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44950 10 6452 1 2025-09-13 20:17:29.191 00:04:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 5 355 1 2025-09-13 20:21:48.686 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55262 10 6452 1 2025-09-13 20:22:42.316 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 20:22:42.366 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 20:22:42.136 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 20:22:42.196 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 20:22:42.234 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 20:22:49.107 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49568 10 6452 1 2025-09-13 20:23:49.511 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:48606 10 6452 1 2025-09-13 20:19:29.166 00:06:00.029 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-13 20:24:49.939 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:47940 10 6452 1 2025-09-13 20:25:50.361 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36752 10 6452 1 2025-09-13 20:22:29.192 00:04:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 5 355 1 2025-09-13 20:26:50.766 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:44458 10 6452 1 2025-09-13 20:27:42.484 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 20:27:42.397 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 20:27:42.517 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 20:27:42.502 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 20:27:42.402 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 20:27:51.184 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49956 10 6452 1 2025-09-13 20:28:51.583 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52478 10 6452 1 2025-09-13 20:29:51.983 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:55374 10 6452 1 2025-09-13 20:26:29.167 00:04:00.030 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-13 20:30:52.344 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58372 10 6452 1 2025-09-13 20:27:29.193 00:04:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 5 355 1 2025-09-13 20:31:52.753 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:48780 10 6452 1 2025-09-13 20:32:42.667 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 20:32:42.577 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 20:32:42.658 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 20:32:42.238 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 20:32:42.584 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 20:32:53.152 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57322 10 6452 1 2025-09-13 20:33:53.557 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34002 10 6452 1 2025-09-13 20:34:53.960 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39586 10 6452 1 2025-09-13 20:31:29.169 00:04:00.030 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-13 20:35:54.370 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54240 10 6452 1 2025-09-13 20:32:29.195 00:04:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 5 355 1 2025-09-13 20:36:54.767 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:46236 10 6452 1 2025-09-13 20:37:42.569 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 20:37:42.582 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 20:37:42.490 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 20:37:42.387 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 20:37:42.478 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 20:37:55.152 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40286 10 6452 1 2025-09-13 20:38:55.556 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37072 10 6452 1 2025-09-13 20:39:55.961 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:35708 10 6452 1 2025-09-13 20:36:29.168 00:04:00.031 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-13 20:40:56.371 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51060 10 6452 1 2025-09-13 20:37:29.197 00:04:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 5 355 1 2025-09-13 20:41:56.769 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50278 10 6452 1 2025-09-13 20:42:42.703 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 20:42:42.618 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 20:42:42.808 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 20:42:42.547 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 20:42:42.621 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 20:42:57.183 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52618 10 6452 1 2025-09-13 20:42:29.198 00:01:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 2 142 1 2025-09-13 20:43:57.586 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:50988 10 6452 1 2025-09-13 20:44:57.977 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:38054 10 6452 1 2025-09-13 20:41:29.169 00:04:00.031 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-13 20:45:58.348 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36790 10 6452 1 2025-09-13 20:46:58.753 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48284 10 6452 1 2025-09-13 20:47:42.733 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 20:47:42.812 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 20:47:42.511 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 20:47:42.851 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 20:47:42.932 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 20:47:59.167 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:40302 10 6452 1 2025-09-13 20:44:29.198 00:04:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 5 355 1 2025-09-13 20:48:59.571 00:00:11.051 TCP 1.101.0.1:3000 -> 23.104.0.1:48774 10 6452 1 2025-09-13 20:50:00.662 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49864 10 6452 1 2025-09-13 20:46:29.171 00:04:00.031 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-09-13 20:51:01.094 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60322 10 6452 1 2025-09-13 20:52:01.495 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55802 10 6452 1 2025-09-13 20:52:42.900 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 20:52:42.827 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 20:52:42.923 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 20:52:42.473 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 20:52:42.818 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 20:53:01.908 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:55878 10 6452 1 2025-09-13 20:49:29.198 00:04:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 5 355 1 2025-09-13 20:54:02.314 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:53720 10 6452 1 2025-09-13 20:55:02.684 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58650 10 6452 1 2025-09-13 20:56:03.120 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:53346 10 6452 1 2025-09-13 20:51:29.172 00:06:00.031 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-13 20:57:03.499 00:00:10.408 TCP 1.101.0.1:3000 -> 23.104.0.1:53652 10 6452 1 2025-09-13 20:57:43.146 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-13 20:57:42.905 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-13 20:57:42.771 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 20:57:42.919 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-13 20:57:43.003 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-13 20:58:03.947 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:48848 10 6452 1 2025-09-13 20:54:29.200 00:04:00.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 5 355 1 Summary: total flows: 143, total bytes: 407629, total packets: 953, avg bps: 862, avg pps: 0, avg bpp: 427 Time window: 2025-09-13 19:55:29 - 2025-09-13 20:58:29 Total flows processed: 143, passed: 143, Blocks skipped: 0, Bytes read: 14936 Sys: 0.0027s User: 0.0018s Wall: 0.0022s flows/second: 65990.3 Runtime: 0.0022s