Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-03 05:54:38.437 00:06:00.263 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 05:59:34.152 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40820 10 6452 1 2025-10-03 06:00:34.513 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:46070 10 6452 1 2025-10-03 06:01:34.881 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60968 10 6452 1 2025-10-03 06:02:02.742 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 06:02:02.750 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 06:02:02.421 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 06:02:02.742 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 06:02:02.827 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 05:57:38.442 00:06:00.258 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 06:02:35.284 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37922 10 6452 1 2025-10-03 06:03:35.689 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53404 10 6452 1 2025-10-03 06:04:36.114 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48764 10 6452 1 2025-10-03 06:05:36.521 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:43892 10 6452 1 2025-10-03 06:01:38.440 00:06:00.262 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 06:06:36.882 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:54986 12 6556 1 2025-10-03 06:07:02.692 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 06:07:02.524 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 06:07:02.682 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 06:07:02.684 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 06:07:02.765 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 06:07:37.307 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44260 10 6452 1 2025-10-03 06:08:37.670 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55834 10 6452 1 2025-10-03 06:04:38.444 00:06:00.259 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 06:09:38.104 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41438 10 6452 1 2025-10-03 06:10:38.504 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41516 10 6452 1 2025-10-03 06:11:38.909 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57598 10 6452 1 2025-10-03 06:12:02.812 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 06:12:02.786 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 06:12:02.704 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 06:12:02.752 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 06:12:02.730 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 06:12:39.319 00:00:10.798 TCP 1.101.0.1:3000 -> 23.104.0.1:48304 10 6452 1 2025-10-03 06:08:38.444 00:06:00.262 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 06:13:40.152 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60490 10 6452 1 2025-10-03 06:14:40.559 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39936 10 6452 1 2025-10-03 06:15:40.954 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35304 10 6452 1 2025-10-03 06:11:38.448 00:06:00.257 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 06:16:41.356 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47434 10 6452 1 2025-10-03 06:17:02.984 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 06:17:02.811 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 06:17:02.640 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 06:17:02.788 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 06:17:02.900 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 06:17:41.716 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42782 10 6452 1 2025-10-03 06:18:42.117 00:00:10.666 TCP 1.101.0.1:3000 -> 23.104.0.1:37602 10 6452 1 2025-10-03 06:19:42.820 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34250 10 6452 1 2025-10-03 06:15:38.448 00:06:00.261 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 06:20:43.224 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58394 10 6452 1 2025-10-03 06:21:43.630 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59620 10 6452 1 2025-10-03 06:22:03.105 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 06:22:02.914 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 06:22:02.858 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 06:22:02.907 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 06:22:02.991 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 06:22:44.035 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52914 10 6452 1 2025-10-03 06:18:38.449 00:06:00.256 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 06:23:44.440 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:52890 10 6452 1 2025-10-03 06:24:44.843 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:41828 10 6452 1 2025-10-03 06:25:45.270 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40568 10 6452 1 2025-10-03 06:26:45.673 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43116 10 6452 1 2025-10-03 06:27:03.073 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 06:27:03.064 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 06:27:02.888 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 06:27:02.749 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 06:27:03.157 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 06:22:38.447 00:06:00.261 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 06:27:46.102 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:48978 10 6452 1 2025-10-03 06:28:46.513 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54582 10 6452 1 2025-10-03 06:29:46.875 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36660 10 6452 1 2025-10-03 06:25:38.451 00:06:00.255 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 06:30:47.280 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45954 10 6452 1 2025-10-03 06:31:47.684 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33506 10 6452 1 2025-10-03 06:32:03.062 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 06:32:03.134 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 06:32:03.127 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 06:32:03.129 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 06:32:03.220 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 06:32:48.115 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52354 12 6556 1 2025-10-03 06:33:48.523 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46072 10 6452 1 2025-10-03 06:29:38.453 00:06:00.259 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 06:34:48.932 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34044 10 6452 1 2025-10-03 06:35:49.344 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:36982 10 6452 1 2025-10-03 06:37:03.193 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 06:36:49.720 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:33340 10 6452 1 2025-10-03 06:37:03.110 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 06:37:03.201 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 06:37:03.108 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 06:37:02.963 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 06:32:38.457 00:06:00.251 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 06:37:50.136 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49926 10 6452 1 2025-10-03 06:38:50.539 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36824 10 6452 1 2025-10-03 06:39:50.944 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:48954 10 6452 1 2025-10-03 06:40:51.355 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:47568 10 6452 1 2025-10-03 06:36:38.457 00:06:00.254 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 06:41:51.768 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:56742 10 6452 1 2025-10-03 06:42:03.431 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 06:42:03.429 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 06:42:03.552 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 06:42:03.404 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 06:42:03.514 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 06:42:52.187 00:00:10.402 TCP 1.101.0.1:3000 -> 23.104.0.1:52790 12 10375 1 2025-10-03 06:43:52.630 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:34190 10 6452 1 2025-10-03 06:39:38.460 00:06:00.252 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 06:44:53.032 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:55260 10 6452 1 2025-10-03 06:45:53.395 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44478 10 6452 1 2025-10-03 06:47:03.724 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 06:47:03.531 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 06:47:03.206 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 06:47:03.723 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 06:46:53.800 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34814 10 6452 1 2025-10-03 06:47:03.807 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 06:47:54.206 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59706 10 6452 1 2025-10-03 06:43:38.458 00:06:00.257 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 06:48:54.566 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47394 10 6452 1 2025-10-03 06:49:54.931 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:47818 10 6452 1 2025-10-03 06:50:55.356 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45520 10 6452 1 2025-10-03 06:46:38.462 00:06:00.252 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-03 06:52:03.332 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 06:52:03.406 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 06:52:03.492 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 06:52:03.492 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 06:52:03.490 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 06:51:55.760 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:54768 10 6452 1 2025-10-03 06:52:56.134 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35890 10 6452 1 2025-10-03 06:53:56.544 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:43486 10 6452 1 2025-10-03 06:54:56.907 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35536 10 6452 1 2025-10-03 06:50:38.460 00:06:00.256 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-03 06:55:57.315 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33678 10 6452 1 2025-10-03 06:57:03.706 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-03 06:57:03.651 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-03 06:57:03.457 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 06:57:03.652 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-03 06:57:03.735 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-03 06:56:57.682 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:54230 10 6452 1 2025-10-03 06:57:58.132 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:57908 10 6452 1 2025-10-03 06:53:38.463 00:06:00.251 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 Summary: total flows: 137, total bytes: 415417, total packets: 1028, avg bps: 852, avg pps: 0, avg bpp: 404 Time window: 2025-10-03 05:54:38 - 2025-10-03 06:59:38 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0028s User: 0.0009s Wall: 0.0050s flows/second: 27455.7 Runtime: 0.0050s