Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-22 03:54:33.225 00:06:00.068 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-22 03:59:29.737 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55950 10 6452 1 2025-09-22 04:00:30.143 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56320 10 6452 1 2025-09-22 04:01:30.546 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33920 10 6452 1 2025-09-22 04:01:42.754 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 04:01:42.628 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 04:01:42.687 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 04:01:42.753 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 04:01:42.770 00:00:00.058 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 04:02:30.947 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52484 10 6452 1 2025-09-22 04:03:31.359 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53674 12 6556 1 2025-09-22 03:59:33.224 00:06:00.084 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-22 04:04:31.759 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:37028 10 6452 1 2025-09-22 04:05:32.182 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55800 10 6452 1 2025-09-22 04:01:33.228 00:06:00.078 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-22 04:06:42.702 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 04:06:32.588 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:32970 10 6452 1 2025-09-22 04:06:42.663 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 04:06:42.645 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 04:06:42.619 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 04:06:42.534 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 04:07:32.993 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:39754 10 6452 1 2025-09-22 04:08:33.421 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39014 10 6452 1 2025-09-22 04:09:33.825 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45082 10 6452 1 2025-09-22 04:10:34.228 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:33498 10 6452 1 2025-09-22 04:06:33.228 00:06:00.082 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-22 04:11:42.594 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 04:11:42.804 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 04:11:42.713 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 04:11:42.837 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 04:11:34.626 00:00:10.432 TCP 1.101.0.1:3000 -> 23.104.0.1:59286 12 10367 1 2025-09-22 04:11:42.795 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 04:12:35.115 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53664 10 6452 1 2025-09-22 04:08:33.229 00:06:00.077 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-22 04:13:35.515 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:58318 10 6452 1 2025-09-22 04:14:35.912 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53348 10 6452 1 2025-09-22 04:15:36.316 00:00:10.566 TCP 1.101.0.1:3000 -> 23.104.0.1:57696 10 6452 1 2025-09-22 04:16:42.795 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 04:16:42.646 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 04:16:42.796 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 04:16:42.862 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 04:16:42.879 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 04:16:36.921 00:00:10.434 TCP 1.101.0.1:3000 -> 23.104.0.1:45970 12 10576 1 2025-09-22 04:17:37.397 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:33150 10 6661 1 2025-09-22 04:13:33.230 00:06:00.080 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-22 04:18:37.764 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:58232 10 6661 1 2025-09-22 04:19:38.177 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33246 10 6661 1 2025-09-22 04:15:33.232 00:06:00.076 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-22 04:20:38.579 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59180 10 6661 1 2025-09-22 04:21:42.889 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 04:21:42.840 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 04:21:42.879 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 04:21:42.872 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 04:21:42.962 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 04:21:38.999 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49604 10 6661 1 2025-09-22 04:22:39.402 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53392 10 6661 1 2025-09-22 04:23:39.817 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35362 10 6661 1 2025-09-22 04:24:40.223 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33088 10 6661 1 2025-09-22 04:20:33.232 00:06:00.081 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-22 04:25:40.586 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54120 10 6661 1 2025-09-22 04:26:43.071 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 04:26:42.861 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 04:26:42.689 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 04:26:42.990 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 04:26:43.080 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 04:26:40.988 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46788 10 6661 1 2025-09-22 04:22:33.235 00:06:00.078 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-22 04:27:41.393 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57062 10 6661 1 2025-09-22 04:28:41.794 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49950 10 6661 1 2025-09-22 04:29:42.193 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40406 10 6661 1 2025-09-22 04:30:42.594 00:00:10.657 TCP 1.101.0.1:3000 -> 23.104.0.1:34186 10 6661 1 2025-09-22 04:31:43.272 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 04:31:43.211 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 04:31:43.445 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 04:31:43.197 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 04:31:43.535 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 04:31:43.291 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:36504 10 6661 1 2025-09-22 04:27:33.233 00:06:00.082 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-22 04:32:43.663 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38222 10 6661 1 2025-09-22 04:33:44.090 00:00:10.458 TCP 1.101.0.1:3000 -> 23.104.0.1:53628 10 6661 1 2025-09-22 04:29:33.236 00:06:00.077 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-22 04:34:44.588 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45200 12 6765 1 2025-09-22 04:35:44.991 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:40452 10 6661 1 2025-09-22 04:36:43.256 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 04:36:43.166 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 04:36:42.966 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 04:36:43.175 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 04:36:43.163 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 04:36:45.355 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45120 10 6661 1 2025-09-22 04:37:45.756 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:37708 10 6661 1 2025-09-22 04:38:46.166 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35634 10 6661 1 2025-09-22 04:34:33.234 00:06:00.085 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-22 04:39:46.575 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52418 10 6661 1 2025-09-22 04:40:46.978 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48812 10 6661 1 2025-09-22 04:36:33.236 00:06:00.080 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-22 04:41:43.453 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 04:41:43.257 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 04:41:43.257 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 04:41:43.371 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 04:41:43.320 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 04:41:47.374 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41036 10 6661 1 2025-09-22 04:42:47.775 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56604 10 6661 1 2025-09-22 04:43:48.192 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43674 10 6661 1 2025-09-22 04:44:48.595 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59688 10 6661 1 2025-09-22 04:45:48.996 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60606 10 6661 1 2025-09-22 04:41:33.235 00:06:00.085 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-22 04:46:43.446 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 04:46:43.445 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 04:46:43.305 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 04:46:43.530 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 04:46:43.387 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 04:46:49.392 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49522 10 6661 1 2025-09-22 04:47:49.755 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49276 10 6661 1 2025-09-22 04:43:33.240 00:06:00.078 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-22 04:48:50.154 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:60606 10 6661 1 2025-09-22 04:49:50.516 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55298 10 6661 1 2025-09-22 04:50:50.917 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53580 10 6661 1 2025-09-22 04:51:43.586 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 04:51:43.502 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 04:51:43.329 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 04:51:43.505 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 04:51:43.692 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 04:51:51.321 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37614 10 6661 1 2025-09-22 04:52:51.729 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:56064 10 6661 1 2025-09-22 04:48:33.239 00:06:00.082 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-22 04:53:52.141 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53792 10 6661 1 2025-09-22 04:54:52.542 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42668 10 6661 1 2025-09-22 04:50:33.243 00:06:00.077 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-22 04:55:52.953 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:43828 10 6661 1 2025-09-22 04:56:43.488 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-22 04:56:43.516 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 04:56:43.549 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-22 04:56:43.553 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-22 04:56:43.633 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-22 04:56:53.367 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48864 10 6661 1 2025-09-22 04:57:53.771 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40734 10 6661 1 Summary: total flows: 136, total bytes: 427241, total packets: 1016, avg bps: 896, avg pps: 0, avg bpp: 420 Time window: 2025-09-22 03:54:33 - 2025-09-22 04:58:04 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0021s User: 0.0031s Wall: 0.0023s flows/second: 58873.5 Runtime: 0.0023s