Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-15 18:55:13.766 00:05:00.571 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 18:59:01.942 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55952 10 6452 1 2025-08-15 18:56:13.769 00:05:00.566 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 19:00:02.361 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41420 10 6452 1 2025-08-15 19:01:02.771 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33792 10 6452 1 2025-08-15 19:02:03.186 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47692 10 6452 1 2025-08-15 19:03:03.593 00:00:10.814 TCP 1.101.0.1:3000 -> 23.104.0.1:60288 10 6452 1 2025-08-15 19:03:35.600 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 19:03:35.369 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 19:03:35.370 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 19:03:35.460 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 19:03:35.515 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 19:04:04.444 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:40972 10 6452 1 2025-08-15 19:01:13.767 00:05:00.571 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 19:05:04.850 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:37462 10 6452 1 2025-08-15 19:06:05.282 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50562 10 6452 1 2025-08-15 19:02:13.771 00:05:00.566 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 19:07:05.685 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42888 10 6452 1 2025-08-15 19:08:06.061 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:53098 10 6452 1 2025-08-15 19:08:35.829 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 19:08:35.615 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 19:08:35.498 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 19:08:35.529 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 19:08:35.747 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 19:09:06.434 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40204 10 6452 1 2025-08-15 19:10:06.859 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37986 10 6452 1 2025-08-15 19:07:13.770 00:05:00.570 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 19:11:07.268 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43434 10 6452 1 2025-08-15 19:08:13.775 00:05:00.563 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 19:12:07.672 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:55220 10 6452 1 2025-08-15 19:13:08.033 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36796 10 6452 1 2025-08-15 19:13:35.930 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 19:13:35.677 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 19:13:35.668 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 19:13:35.775 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 19:13:35.847 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 19:14:08.444 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:58380 10 6452 1 2025-08-15 19:15:08.844 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:49178 10 6452 1 2025-08-15 19:16:09.230 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54342 10 6452 1 2025-08-15 19:17:09.593 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:52052 10 6452 1 2025-08-15 19:13:13.774 00:05:00.568 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 19:14:13.776 00:05:00.563 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 19:18:09.960 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40064 10 6452 1 2025-08-15 19:18:35.569 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 19:18:35.789 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 19:18:35.874 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 19:18:35.969 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 19:18:36.051 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 19:19:10.365 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56000 10 6452 1 2025-08-15 19:20:10.769 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59252 10 6452 1 2025-08-15 19:21:11.182 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:42086 10 6452 1 2025-08-15 19:22:11.545 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54616 10 6452 1 2025-08-15 19:19:13.776 00:05:00.567 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 19:23:11.904 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36436 10 6452 1 2025-08-15 19:23:36.367 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 19:23:36.384 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 19:23:36.427 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 19:23:36.590 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 19:23:36.674 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 19:20:13.777 00:05:00.564 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 19:24:12.312 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:56328 10 6452 1 2025-08-15 19:25:12.681 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:51176 10 6452 1 2025-08-15 19:26:13.056 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45506 10 6452 1 2025-08-15 19:27:13.463 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:51250 10 6452 1 2025-08-15 19:28:13.872 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40504 10 6452 1 2025-08-15 19:28:36.221 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 19:28:36.067 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 19:28:36.072 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 19:28:36.088 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 19:28:36.137 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 19:25:13.775 00:05:00.572 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 19:29:14.292 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47578 10 6452 1 2025-08-15 19:26:13.779 00:05:00.566 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 19:30:14.719 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:34650 10 6452 1 2025-08-15 19:31:15.112 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:48692 10 6452 1 2025-08-15 19:32:15.544 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45370 10 6452 1 2025-08-15 19:33:15.942 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:33848 10 6452 1 2025-08-15 19:33:35.932 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 19:33:36.134 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 19:33:36.168 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 19:33:36.143 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 19:33:36.226 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 19:34:16.363 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:38600 10 6452 1 2025-08-15 19:31:13.780 00:05:00.566 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 19:35:16.721 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:37390 10 6452 1 2025-08-15 19:32:13.785 00:05:00.562 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 19:36:17.141 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47402 10 6452 1 2025-08-15 19:37:17.550 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56516 10 6452 1 2025-08-15 19:38:17.911 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44220 10 6452 1 2025-08-15 19:38:36.340 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 19:38:36.329 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 19:38:36.257 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 19:38:36.196 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 19:38:36.258 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 19:39:18.318 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:41746 10 6452 1 2025-08-15 19:40:18.682 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:44890 10 6452 1 2025-08-15 19:37:13.781 00:05:00.568 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 19:41:19.067 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:47422 10 6452 1 2025-08-15 19:38:13.785 00:05:00.562 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 19:42:19.436 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46872 10 6452 1 2025-08-15 19:43:19.837 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:46628 10 6452 1 2025-08-15 19:43:36.518 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 19:43:36.438 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 19:43:36.437 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 19:43:36.439 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 19:43:36.435 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 19:44:20.226 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39108 10 6452 1 2025-08-15 19:45:20.630 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42798 10 6452 1 2025-08-15 19:46:21.032 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41520 10 6452 1 2025-08-15 19:43:13.782 00:05:00.576 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 19:47:21.431 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55910 10 6452 1 2025-08-15 19:44:13.786 00:05:00.561 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 19:48:21.796 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50280 10 6452 1 2025-08-15 19:48:36.461 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 19:48:36.233 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 19:48:36.378 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 19:48:36.537 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 19:48:36.542 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 19:49:22.204 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54720 10 6452 1 2025-08-15 19:50:22.609 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47522 10 6452 1 2025-08-15 19:51:22.976 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39282 10 6452 1 2025-08-15 19:52:23.377 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:44768 10 6452 1 2025-08-15 19:49:13.788 00:05:00.564 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 19:53:23.741 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38106 10 6452 1 2025-08-15 19:53:36.407 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 19:53:36.489 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 19:53:36.458 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 19:53:36.547 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 19:53:36.628 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 19:50:13.790 00:05:00.560 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 19:54:24.145 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:33666 10 6452 1 2025-08-15 19:55:24.505 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41688 10 6452 1 2025-08-15 19:56:24.914 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42888 10 6452 1 2025-08-15 19:57:25.323 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39574 10 6452 1 2025-08-15 19:58:36.713 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 19:58:36.566 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 19:58:36.442 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 19:58:36.375 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 19:58:36.629 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 19:58:25.722 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40434 10 6452 1 Summary: total flows: 140, total bytes: 417000, total packets: 1020, avg bps: 877, avg pps: 0, avg bpp: 408 Time window: 2025-08-15 18:55:13 - 2025-08-15 19:58:36 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0026s User: 0.0013s Wall: 0.0024s flows/second: 59074.7 Runtime: 0.0024s