Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-15 21:55:13.824 00:05:00.574 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 21:59:14.990 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:50440 10 6452 1 2025-08-15 21:56:13.827 00:05:00.568 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 22:00:15.408 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:32840 10 6452 1 2025-08-15 22:01:15.766 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:59166 10 6452 1 2025-08-15 22:02:16.187 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53146 10 6452 1 2025-08-15 22:03:16.547 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60200 10 6452 1 2025-08-15 22:03:39.287 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 22:03:39.312 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 22:03:39.396 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 22:03:38.967 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 22:03:39.204 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 22:04:16.946 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:52908 10 6452 1 2025-08-15 22:01:13.828 00:05:00.573 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 22:05:17.313 00:00:10.411 TCP 1.101.0.1:3000 -> 23.104.0.1:56208 12 10365 1 2025-08-15 22:02:13.831 00:05:00.569 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 22:06:17.769 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:45318 10 6452 1 2025-08-15 22:07:18.182 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:43502 10 6452 1 2025-08-15 22:08:18.567 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36150 10 6452 1 2025-08-15 22:08:39.471 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 22:08:39.269 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 22:08:39.261 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 22:08:38.992 00:00:00.049 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 22:08:39.388 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 22:09:18.972 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34670 10 6452 1 2025-08-15 22:10:19.338 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58158 10 6452 1 2025-08-15 22:07:13.832 00:05:00.570 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 22:11:19.697 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39744 10 6452 1 2025-08-15 22:08:13.835 00:05:00.565 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 22:12:20.112 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36946 10 6452 1 2025-08-15 22:13:20.515 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36062 10 6452 1 2025-08-15 22:13:39.549 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 22:13:39.144 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 22:13:39.396 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 22:13:39.361 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 22:13:39.466 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 22:14:20.918 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:33904 10 6452 1 2025-08-15 22:15:21.298 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:58930 10 6452 1 2025-08-15 22:16:21.660 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33356 10 6452 1 2025-08-15 22:13:13.835 00:05:00.571 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 22:17:22.027 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51952 10 6452 1 2025-08-15 22:14:13.837 00:05:00.567 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 22:18:22.427 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47528 10 6452 1 2025-08-15 22:18:39.476 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 22:18:39.420 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 22:18:38.953 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 22:18:39.476 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 22:18:39.560 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 22:19:22.828 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58086 10 6452 1 2025-08-15 22:20:23.191 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36474 10 6452 1 2025-08-15 22:21:23.552 00:00:10.860 TCP 1.101.0.1:3000 -> 23.104.0.1:52926 10 6452 1 2025-08-15 22:22:24.447 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40686 10 6452 1 2025-08-15 22:19:13.837 00:05:00.571 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 22:23:39.567 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 22:23:39.541 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 22:23:39.574 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 22:23:24.812 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48556 10 6452 1 2025-08-15 22:23:39.442 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 22:23:39.485 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 22:20:13.839 00:05:00.566 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 22:24:25.213 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44892 10 6452 1 2025-08-15 22:25:25.614 00:00:10.452 TCP 1.101.0.1:3000 -> 23.104.0.1:35152 12 10367 1 2025-08-15 22:26:26.114 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47530 10 6452 1 2025-08-15 22:27:26.517 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:48328 10 6452 1 2025-08-15 22:28:39.523 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 22:28:39.711 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 22:28:39.663 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 22:28:39.572 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 22:28:26.938 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:47788 10 6452 1 2025-08-15 22:28:39.442 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 22:25:13.837 00:05:00.572 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 22:29:27.358 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45320 10 6452 1 2025-08-15 22:26:13.842 00:05:00.566 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 22:30:27.768 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:50308 10 6452 1 2025-08-15 22:31:28.182 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52184 10 6452 1 2025-08-15 22:32:28.588 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43006 10 6452 1 2025-08-15 22:33:39.644 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 22:33:39.772 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 22:33:39.653 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 22:33:39.689 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 22:33:39.562 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 22:33:28.990 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:41164 11 6504 1 2025-08-15 22:34:29.403 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42006 10 6452 1 2025-08-15 22:31:13.839 00:05:00.574 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 22:35:29.808 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:34254 10 6452 1 2025-08-15 22:32:13.842 00:05:00.570 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 22:36:30.183 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44254 10 6452 1 2025-08-15 22:37:30.621 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41826 10 6452 1 2025-08-15 22:38:39.795 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 22:38:39.723 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 22:38:39.791 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 22:38:39.574 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 22:38:39.712 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 22:38:31.028 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48338 10 6452 1 2025-08-15 22:39:31.389 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33358 10 6452 1 2025-08-15 22:40:31.784 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:34576 10 6452 1 2025-08-15 22:37:13.841 00:05:00.575 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 22:41:32.155 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36334 10 6452 1 2025-08-15 22:38:13.844 00:05:00.570 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 22:42:32.556 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:52226 10 6452 1 2025-08-15 22:43:40.289 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 22:43:39.598 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 22:43:40.199 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 22:43:40.222 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 22:43:40.205 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 22:43:32.932 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:41822 10 6452 1 2025-08-15 22:44:33.362 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:60058 10 6452 1 2025-08-15 22:45:33.727 00:00:10.454 TCP 1.101.0.1:3000 -> 23.104.0.1:55184 12 10365 1 2025-08-15 22:46:34.220 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35274 10 6452 1 2025-08-15 22:43:13.845 00:05:00.575 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 22:47:34.624 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36088 10 6452 1 2025-08-15 22:44:13.847 00:05:00.571 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 22:48:39.974 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 22:48:39.924 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 22:48:40.089 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 22:48:39.997 00:00:00.042 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 22:48:40.007 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 22:48:35.025 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41216 10 6452 1 2025-08-15 22:49:35.429 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:48298 10 6452 1 2025-08-15 22:50:35.788 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45948 10 6452 1 2025-08-15 22:51:36.190 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47768 10 6452 1 2025-08-15 22:52:36.593 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44550 10 6452 1 2025-08-15 22:49:13.846 00:05:00.581 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 22:53:39.950 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 22:53:40.281 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 22:53:40.068 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 22:53:40.098 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 22:53:40.032 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 22:53:36.996 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44376 10 6452 1 2025-08-15 22:50:13.848 00:05:00.575 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 22:54:37.406 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:53828 10 6452 1 2025-08-15 22:55:37.768 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:52750 10 6452 1 2025-08-15 22:56:38.136 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57744 10 6452 1 2025-08-15 22:57:38.535 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53368 10 6452 1 2025-08-15 22:58:40.321 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 22:58:40.245 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 22:58:40.132 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 22:58:40.177 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 22:58:40.239 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 22:58:38.937 00:00:10.504 TCP 1.101.0.1:3000 -> 23.104.0.1:34962 10 6452 1 Summary: total flows: 140, total bytes: 428793, total packets: 1027, avg bps: 899, avg pps: 0, avg bpp: 417 Time window: 2025-08-15 21:55:13 - 2025-08-15 22:58:49 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0026s User: 0.0018s Wall: 0.0031s flows/second: 44715.4 Runtime: 0.0032s