Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-19 08:55:15.694 00:05:00.352 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-19 08:55:15.697 00:05:00.347 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-19 08:59:27.361 00:00:10.628 TCP 1.101.0.1:3000 -> 23.104.0.1:50254 10 6452 1 2025-08-19 09:00:18.869 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-19 09:00:19.010 00:00:00.042 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-19 09:00:18.709 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 09:00:18.995 00:00:00.047 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 09:00:19.079 00:00:00.047 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-19 09:00:28.029 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45382 10 6452 1 2025-08-19 09:01:28.429 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:59568 10 6452 1 2025-08-19 09:02:28.793 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57440 10 6452 1 2025-08-19 09:03:29.196 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49006 10 6452 1 2025-08-19 09:04:29.602 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43986 10 6452 1 2025-08-19 09:05:19.115 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-19 09:01:15.695 00:05:00.353 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-19 09:05:19.049 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-19 09:05:18.940 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 09:05:19.129 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 09:05:19.212 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-19 09:01:15.698 00:05:00.348 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-19 09:05:30.006 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:35066 10 6452 1 2025-08-19 09:06:30.384 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47172 10 6452 1 2025-08-19 09:07:30.787 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:53358 10 6452 1 2025-08-19 09:08:31.156 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:60036 10 6452 1 2025-08-19 09:09:31.551 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40880 10 6452 1 2025-08-19 09:10:19.097 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-19 09:10:18.976 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-19 09:10:18.967 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 09:10:19.279 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 09:10:19.361 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-19 09:10:31.976 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42210 10 6452 1 2025-08-19 09:07:15.696 00:05:00.354 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-19 09:07:15.700 00:05:00.349 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-19 09:11:32.381 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48198 10 6452 1 2025-08-19 09:12:32.791 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43954 10 6452 1 2025-08-19 09:13:33.208 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47184 10 6452 1 2025-08-19 09:14:33.615 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48816 10 6452 1 2025-08-19 09:15:19.364 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-19 09:15:19.215 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-19 09:15:19.331 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 09:15:19.364 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 09:15:19.447 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-19 09:15:34.017 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58860 10 6452 1 2025-08-19 09:16:34.426 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35692 10 6452 1 2025-08-19 09:13:15.703 00:05:00.354 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-19 09:13:15.705 00:05:00.349 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-19 09:17:34.825 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60222 10 6452 1 2025-08-19 09:18:35.231 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47156 10 6452 1 2025-08-19 09:19:35.636 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37362 10 6452 1 2025-08-19 09:20:19.455 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-19 09:20:19.450 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-19 09:20:19.475 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 09:20:19.595 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 09:20:19.678 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-19 09:20:36.039 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:55288 12 10365 1 2025-08-19 09:21:36.524 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52446 10 6452 1 2025-08-19 09:22:36.927 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35866 10 6452 1 2025-08-19 09:19:15.705 00:05:00.362 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-19 09:19:15.708 00:05:00.357 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-19 09:23:37.325 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33784 10 6452 1 2025-08-19 09:24:37.722 00:00:12.656 TCP 1.101.0.1:3000 -> 23.104.0.1:35744 10 6452 1 2025-08-19 09:25:19.483 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-19 09:25:19.480 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-19 09:25:19.403 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 09:25:19.489 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 09:25:19.573 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-19 09:25:40.421 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34830 10 6452 1 2025-08-19 09:26:40.824 00:00:10.430 TCP 1.101.0.1:3000 -> 23.104.0.1:43970 10 6452 1 2025-08-19 09:27:41.301 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42800 10 6452 1 2025-08-19 09:28:41.708 00:00:10.754 TCP 1.101.0.1:3000 -> 23.104.0.1:40842 10 6452 1 2025-08-19 09:25:15.710 00:05:00.357 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-19 09:25:15.707 00:05:00.362 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-19 09:29:42.499 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51244 10 6452 1 2025-08-19 09:30:19.632 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-19 09:30:19.657 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-19 09:30:19.605 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-19 09:30:19.215 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 09:30:19.550 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 09:30:42.912 00:00:10.406 TCP 1.101.0.1:3000 -> 23.104.0.1:40544 10 6452 1 2025-08-19 09:31:43.356 00:00:10.905 TCP 1.101.0.1:3000 -> 23.104.0.1:37186 10 6452 1 2025-08-19 09:32:44.309 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52076 10 6452 1 2025-08-19 09:33:44.720 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:51550 10 6452 1 2025-08-19 09:34:45.117 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35988 10 6452 1 2025-08-19 09:35:19.565 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-19 09:31:15.713 00:05:00.354 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-19 09:35:19.688 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-19 09:31:15.710 00:05:00.359 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-19 09:35:19.566 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-19 09:35:19.480 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 09:35:19.482 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 09:35:45.478 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:53308 10 6452 1 2025-08-19 09:36:45.839 00:00:10.352 TCP 1.101.0.1:3000 -> 23.104.0.1:34004 10 6452 1 2025-08-19 09:37:46.229 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:43562 10 6452 1 2025-08-19 09:38:46.596 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:47808 10 6452 1 2025-08-19 09:39:46.960 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:54980 10 6452 1 2025-08-19 09:40:19.934 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-19 09:40:19.895 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-19 09:40:19.777 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-19 09:40:19.856 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 09:40:19.852 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 09:40:47.325 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48786 10 6452 1 2025-08-19 09:37:15.712 00:05:00.358 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-19 09:37:15.714 00:05:00.354 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-19 09:41:47.735 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38504 10 6452 1 2025-08-19 09:42:48.154 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41208 10 6452 1 2025-08-19 09:43:48.564 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:46330 10 6452 1 2025-08-19 09:44:48.927 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:51512 10 6452 1 2025-08-19 09:45:19.712 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 09:45:19.966 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 09:45:20.134 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-19 09:45:20.286 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-19 09:45:20.049 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-19 09:45:49.374 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:34102 10 6452 1 2025-08-19 09:46:49.745 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52732 10 6452 1 2025-08-19 09:43:15.716 00:05:00.352 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-19 09:43:15.715 00:05:00.357 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-19 09:47:50.152 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53442 10 6452 1 2025-08-19 09:48:50.557 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59268 10 6452 1 2025-08-19 09:49:50.958 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45022 10 6452 1 2025-08-19 09:50:19.929 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-19 09:50:19.915 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-19 09:50:19.785 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 09:50:19.847 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 09:50:20.057 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-19 09:50:51.364 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:37266 10 6452 1 2025-08-19 09:51:51.758 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:44688 10 6452 1 2025-08-19 09:52:52.179 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59062 10 6452 1 2025-08-19 09:49:15.716 00:05:00.355 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-19 09:49:15.720 00:05:00.350 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-19 09:53:52.579 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43834 10 6452 1 2025-08-19 09:54:52.981 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57376 10 6452 1 2025-08-19 09:55:19.873 00:00:00.031 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 09:55:20.126 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-19 09:55:20.121 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-19 09:55:20.121 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 09:55:20.203 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-19 09:55:53.381 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:52772 12 10365 1 2025-08-19 09:56:53.858 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44940 10 6452 1 2025-08-19 09:57:54.271 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:52290 10 6452 1 Summary: total flows: 139, total bytes: 418374, total packets: 1014, avg bps: 888, avg pps: 0, avg bpp: 412 Time window: 2025-08-19 08:55:15 - 2025-08-19 09:58:04 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0029s User: 0.0014s Wall: 0.0023s flows/second: 61150.4 Runtime: 0.0023s