Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-18 18:54:15.389 00:06:00.355 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-18 18:59:28.409 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35502 10 6452 1 2025-08-18 19:00:02.649 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-18 19:00:02.215 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-18 19:00:02.518 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-18 19:00:02.294 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 19:00:02.566 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 18:55:15.387 00:06:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-18 19:00:28.772 00:00:10.445 TCP 1.101.0.1:3000 -> 23.104.0.1:59770 12 10367 1 2025-08-18 19:01:29.258 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44986 10 6452 1 2025-08-18 19:02:29.666 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39962 10 6452 1 2025-08-18 19:03:30.095 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34664 10 6452 1 2025-08-18 19:04:30.506 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56532 10 6452 1 2025-08-18 19:05:02.343 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-18 19:05:02.213 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-18 19:05:01.962 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 19:05:02.196 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 19:05:02.280 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-18 19:05:30.911 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38050 10 6452 1 2025-08-18 19:01:15.390 00:06:00.356 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-18 19:06:31.319 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57804 10 6452 1 2025-08-18 19:02:15.388 00:06:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-18 19:07:31.686 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46956 10 6452 1 2025-08-18 19:08:32.119 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45406 10 6452 1 2025-08-18 19:09:32.519 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34944 10 6452 1 2025-08-18 19:10:02.208 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-18 19:10:02.313 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-18 19:10:02.159 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 19:10:02.303 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 19:10:02.387 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-18 19:10:32.928 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:52242 10 6452 1 2025-08-18 19:11:33.357 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:37472 10 6452 1 2025-08-18 19:12:33.716 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:48552 10 6452 1 2025-08-18 19:08:15.393 00:06:00.355 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-18 19:13:34.102 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55982 10 6452 1 2025-08-18 19:09:15.390 00:06:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-18 19:14:34.501 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51666 10 6452 1 2025-08-18 19:15:02.447 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-18 19:15:02.247 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-18 19:15:02.365 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-18 19:15:02.379 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 19:15:02.364 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 19:15:34.907 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44578 10 6452 1 2025-08-18 19:16:35.313 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:49766 10 6452 1 2025-08-18 19:17:35.675 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49080 10 6452 1 2025-08-18 19:18:36.107 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:51178 10 6452 1 2025-08-18 19:19:36.481 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52172 10 6452 1 2025-08-18 19:20:02.415 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-18 19:20:02.235 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-18 19:20:02.621 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-18 19:20:02.573 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 19:20:02.333 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 19:15:15.393 00:06:00.358 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-18 19:20:36.889 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:57346 10 6452 1 2025-08-18 19:16:15.391 00:06:00.362 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-18 19:21:37.316 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53108 10 6452 1 2025-08-18 19:22:37.675 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33382 10 6452 1 2025-08-18 19:23:38.106 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:59900 10 6452 1 2025-08-18 19:24:38.470 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39794 10 6452 1 2025-08-18 19:25:02.796 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-18 19:25:02.566 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-18 19:25:02.810 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-18 19:25:02.584 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 19:25:02.713 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 19:25:38.872 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52384 10 6452 1 2025-08-18 19:26:39.280 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57270 10 6452 1 2025-08-18 19:22:15.395 00:06:00.360 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-18 19:27:39.684 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33736 10 6452 1 2025-08-18 19:23:15.392 00:06:00.365 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-18 19:28:40.106 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:37664 10 6452 1 2025-08-18 19:29:40.467 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:51250 10 6452 1 2025-08-18 19:30:02.758 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-18 19:30:02.685 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-18 19:30:02.528 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-18 19:30:02.739 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 19:30:02.674 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 19:30:40.880 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34232 10 6452 1 2025-08-18 19:31:41.292 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49634 10 6452 1 2025-08-18 19:32:41.672 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46882 10 6452 1 2025-08-18 19:33:42.108 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:47166 10 6452 1 2025-08-18 19:29:15.397 00:06:00.363 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-18 19:34:42.511 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51660 10 6452 1 2025-08-18 19:35:02.719 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-18 19:35:02.600 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-18 19:35:02.664 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 19:35:02.786 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 19:35:02.869 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-18 19:30:15.394 00:06:00.368 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-18 19:35:42.913 00:00:10.435 TCP 1.101.0.1:3000 -> 23.104.0.1:50940 14 10471 1 2025-08-18 19:36:43.387 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:35502 10 6452 1 2025-08-18 19:37:43.761 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:58852 10 6452 1 2025-08-18 19:38:44.181 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44502 10 6452 1 2025-08-18 19:39:44.587 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54966 10 6452 1 2025-08-18 19:40:02.949 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-18 19:40:02.964 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-18 19:40:02.965 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 19:40:02.967 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 19:40:03.050 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-18 19:40:44.993 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53490 10 6452 1 2025-08-18 19:36:15.398 00:06:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-18 19:41:45.402 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50426 10 6452 1 2025-08-18 19:37:15.395 00:06:00.370 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-18 19:42:45.802 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50248 10 6452 1 2025-08-18 19:43:46.209 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48720 10 6452 1 2025-08-18 19:45:03.190 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-18 19:44:46.616 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41164 10 6452 1 2025-08-18 19:45:02.954 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-18 19:45:02.945 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-18 19:45:02.677 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 19:45:03.107 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 19:45:47.026 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38624 10 6452 1 2025-08-18 19:46:47.426 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37146 10 6452 1 2025-08-18 19:47:47.795 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38522 10 6452 1 2025-08-18 19:43:15.399 00:06:00.364 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-18 19:48:48.198 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50358 10 6452 1 2025-08-18 19:44:15.397 00:06:00.369 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-18 19:49:48.602 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51532 10 6452 1 2025-08-18 19:50:03.181 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-18 19:50:02.938 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-18 19:50:03.263 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-18 19:50:03.202 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 19:50:03.098 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 19:50:49.006 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:50672 12 10367 1 2025-08-18 19:51:49.487 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41164 10 6452 1 2025-08-18 19:52:49.893 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:34884 10 6452 1 2025-08-18 19:53:50.274 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:37078 10 6452 1 2025-08-18 19:55:03.305 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-18 19:55:03.364 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-18 19:55:03.242 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 19:54:50.634 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58718 10 6452 1 2025-08-18 19:55:02.991 00:00:00.049 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-18 19:55:03.074 00:00:00.049 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-18 19:50:15.401 00:06:00.364 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-18 19:55:51.034 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54620 10 6452 1 2025-08-18 19:51:15.398 00:06:00.370 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-18 19:56:51.439 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47766 10 6452 1 2025-08-18 19:57:51.849 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:34414 10 6452 1 Summary: total flows: 137, total bytes: 423135, total packets: 1030, avg bps: 884, avg pps: 0, avg bpp: 410 Time window: 2025-08-18 18:54:15 - 2025-08-18 19:58:02 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0034s User: 0.0011s Wall: 0.0021s flows/second: 64138.8 Runtime: 0.0022s