Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-18 17:59:02.818 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:42104 10 6452 1 2025-08-18 18:00:00.900 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-18 18:00:00.931 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-18 18:00:00.877 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-18 18:00:00.818 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 18:00:00.817 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 18:00:03.188 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53668 10 6452 1 2025-08-18 18:01:03.592 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:52864 10 6452 1 2025-08-18 18:02:03.995 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60052 10 6452 1 2025-08-18 18:03:04.406 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48114 10 6452 1 2025-08-18 17:58:15.370 00:06:00.355 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-18 17:59:15.367 00:06:00.362 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-18 18:04:04.810 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57026 10 6452 1 2025-08-18 18:05:00.978 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-18 18:05:01.096 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-18 18:05:01.119 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 18:05:01.006 00:00:00.046 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 18:05:01.088 00:00:00.047 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-18 18:05:05.178 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43556 10 6452 1 2025-08-18 18:06:05.544 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47258 10 6452 1 2025-08-18 18:07:05.949 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50494 10 6452 1 2025-08-18 18:08:06.353 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48380 10 6452 1 2025-08-18 18:09:06.723 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:35458 10 6452 1 2025-08-18 18:10:01.236 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-18 18:10:01.187 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-18 18:10:00.986 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-18 18:10:00.820 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 18:10:01.146 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 18:05:15.372 00:06:00.354 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-18 18:10:07.140 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41980 10 6452 1 2025-08-18 18:06:15.372 00:06:00.359 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-18 18:11:07.545 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60042 10 6452 1 2025-08-18 18:12:07.945 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:47818 10 6452 1 2025-08-18 18:13:08.319 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:35508 10 6452 1 2025-08-18 18:14:08.717 00:00:10.986 TCP 1.101.0.1:3000 -> 23.104.0.1:39014 10 6452 1 2025-08-18 18:15:01.409 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-18 18:15:01.245 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-18 18:15:01.260 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 18:15:01.367 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 18:15:01.450 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-18 18:15:09.740 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49816 10 6452 1 2025-08-18 18:16:10.147 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51920 10 6452 1 2025-08-18 18:12:15.376 00:06:00.354 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-18 18:17:10.550 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44582 10 6452 1 2025-08-18 18:13:15.373 00:06:00.358 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-18 18:18:10.911 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60728 10 6452 1 2025-08-18 18:19:11.320 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39778 10 6452 1 2025-08-18 18:20:01.297 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-18 18:20:01.241 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-18 18:20:01.178 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 18:20:01.238 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 18:20:01.322 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-18 18:20:11.725 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42726 10 6452 1 2025-08-18 18:21:12.114 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:58142 10 6452 1 2025-08-18 18:22:12.561 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33146 10 6452 1 2025-08-18 18:23:12.960 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44680 10 6452 1 2025-08-18 18:19:15.377 00:06:00.358 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-18 18:24:13.365 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56576 10 6452 1 2025-08-18 18:25:01.395 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-18 18:25:01.524 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-18 18:25:01.278 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 18:25:01.464 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 18:25:01.547 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-18 18:20:15.374 00:06:00.364 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-18 18:25:13.771 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:58328 10 6452 1 2025-08-18 18:26:14.191 00:00:10.747 TCP 1.101.0.1:3000 -> 23.104.0.1:41674 10 6452 1 2025-08-18 18:27:14.981 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42248 10 6452 1 2025-08-18 18:28:15.385 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49712 10 6452 1 2025-08-18 18:29:15.798 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56584 10 6452 1 2025-08-18 18:30:01.733 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-18 18:30:01.618 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-18 18:30:01.455 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-18 18:30:01.155 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 18:30:01.651 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 18:30:16.200 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:59620 10 6452 1 2025-08-18 18:26:15.378 00:06:00.357 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-18 18:31:16.560 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45688 10 6452 1 2025-08-18 18:27:15.377 00:06:00.361 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-18 18:32:16.963 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59162 10 6452 1 2025-08-18 18:33:17.375 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:33960 10 6452 1 2025-08-18 18:34:17.737 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:58628 10 6452 1 2025-08-18 18:35:01.559 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-18 18:35:01.683 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-18 18:35:01.462 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-18 18:35:01.517 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 18:35:01.478 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 18:35:18.111 00:00:10.621 TCP 1.101.0.1:3000 -> 23.104.0.1:35524 12 10367 1 2025-08-18 18:36:18.770 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:45860 10 6452 1 2025-08-18 18:37:19.184 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39148 10 6452 1 2025-08-18 18:33:15.381 00:06:00.355 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-18 18:38:19.587 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50540 10 6452 1 2025-08-18 18:34:15.379 00:06:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-18 18:39:19.990 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34670 10 6452 1 2025-08-18 18:40:01.803 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-18 18:40:01.813 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-18 18:40:01.715 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-18 18:40:01.484 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 18:40:01.720 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 18:40:20.404 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37002 10 6452 1 2025-08-18 18:41:20.807 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51636 10 6452 1 2025-08-18 18:42:21.213 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37778 10 6452 1 2025-08-18 18:43:21.620 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39098 10 6452 1 2025-08-18 18:44:22.023 00:00:10.741 TCP 1.101.0.1:3000 -> 23.104.0.1:54068 10 6452 1 2025-08-18 18:45:01.651 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-18 18:45:01.905 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-18 18:45:01.907 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-18 18:45:01.539 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 18:45:01.570 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 18:40:15.385 00:06:00.354 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-18 18:45:22.801 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37094 10 6452 1 2025-08-18 18:41:15.383 00:06:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-18 18:46:23.214 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52628 10 6452 1 2025-08-18 18:47:23.617 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43198 10 6452 1 2025-08-18 18:48:24.022 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56464 10 6452 1 2025-08-18 18:49:24.426 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35398 10 6452 1 2025-08-18 18:50:01.941 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-18 18:50:02.071 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-18 18:50:01.589 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-18 18:50:01.716 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 18:50:01.857 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 18:50:24.826 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35002 10 6452 1 2025-08-18 18:51:25.238 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57774 10 6452 1 2025-08-18 18:47:15.385 00:06:00.356 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-18 18:52:25.642 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:42948 10 6452 1 2025-08-18 18:48:15.386 00:06:00.358 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-18 18:53:26.019 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:51220 10 6452 1 2025-08-18 18:54:26.421 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53140 10 6452 1 2025-08-18 18:55:02.154 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-18 18:55:02.117 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-18 18:55:02.156 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-18 18:55:01.978 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 18:55:02.071 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 18:55:26.826 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:43142 10 6452 1 2025-08-18 18:56:27.188 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:54444 10 6452 1 2025-08-18 18:57:27.601 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46286 10 6452 1 2025-08-18 18:58:28.003 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57806 10 6452 1 Summary: total flows: 136, total bytes: 419931, total packets: 1006, avg bps: 927, avg pps: 0, avg bpp: 417 Time window: 2025-08-18 17:58:15 - 2025-08-18 18:58:38 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0041s User: 0.0000s Wall: 0.0022s flows/second: 61204.4 Runtime: 0.0022s