Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-19 19:55:15.948 00:05:00.325 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-19 19:55:15.945 00:05:00.330 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-19 19:59:10.153 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43824 10 6452 1 2025-08-19 20:00:10.554 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34092 10 6452 1 2025-08-19 20:00:32.203 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-19 20:00:31.882 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-19 20:00:32.190 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-19 20:00:31.932 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 20:00:32.122 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 20:01:10.957 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59154 10 6452 1 2025-08-19 20:02:11.363 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:50722 10 6452 1 2025-08-19 20:03:11.758 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:43198 10 6452 1 2025-08-19 20:04:12.175 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56688 10 6452 1 2025-08-19 20:01:15.948 00:05:00.320 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-19 20:01:15.946 00:05:00.326 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-19 20:05:12.579 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:40188 10 6452 1 2025-08-19 20:05:32.257 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-19 20:05:32.363 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-19 20:05:32.145 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 20:05:32.248 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 20:05:32.331 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-19 20:06:12.947 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:56654 10 6452 1 2025-08-19 20:07:13.320 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:35442 10 6452 1 2025-08-19 20:08:13.722 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:40656 10 6452 1 2025-08-19 20:09:14.140 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52772 10 6452 1 2025-08-19 20:10:14.551 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35372 10 6452 1 2025-08-19 20:10:32.413 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-19 20:10:32.414 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-19 20:10:32.268 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 20:10:32.346 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 20:10:32.429 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-19 20:07:15.952 00:05:00.319 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-19 20:07:15.949 00:05:00.324 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-19 20:11:14.959 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48462 10 6452 1 2025-08-19 20:12:15.366 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34864 10 6452 1 2025-08-19 20:13:15.765 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:56306 10 6452 1 2025-08-19 20:14:16.183 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47742 10 6452 1 2025-08-19 20:15:16.597 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:52660 10 6452 1 2025-08-19 20:15:32.538 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-19 20:15:32.404 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-19 20:15:32.551 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 20:15:32.398 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 20:15:32.481 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-19 20:16:16.998 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40656 10 6452 1 2025-08-19 20:13:15.952 00:05:00.320 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-19 20:13:15.950 00:05:00.325 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-19 20:17:17.401 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:56244 10 6452 1 2025-08-19 20:18:17.801 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:53824 10 6452 1 2025-08-19 20:19:18.207 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40912 10 6452 1 2025-08-19 20:20:32.951 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-19 20:20:18.611 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:52980 12 6556 1 2025-08-19 20:20:32.647 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-19 20:20:32.511 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-19 20:20:32.742 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 20:20:32.868 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 20:21:19.068 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:45250 10 6452 1 2025-08-19 20:22:19.430 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59334 10 6452 1 2025-08-19 20:19:15.956 00:05:00.317 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-19 20:19:15.952 00:05:00.323 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-19 20:23:19.835 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:35816 10 6452 1 2025-08-19 20:24:20.225 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49292 10 6452 1 2025-08-19 20:25:32.870 00:00:00.034 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-19 20:25:32.686 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-19 20:25:32.740 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-19 20:25:32.550 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 20:25:32.787 00:00:00.034 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 20:25:20.623 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59038 10 6452 1 2025-08-19 20:26:21.028 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40928 10 6452 1 2025-08-19 20:27:21.437 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:45152 10 6452 1 2025-08-19 20:28:21.831 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:38714 10 6452 1 2025-08-19 20:25:15.956 00:05:00.321 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-19 20:25:15.957 00:05:00.317 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-19 20:29:22.262 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36850 10 6452 1 2025-08-19 20:30:32.915 00:00:00.034 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-19 20:30:32.910 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-19 20:30:32.838 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-19 20:30:32.777 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 20:30:32.833 00:00:00.033 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 20:30:22.665 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:53160 10 6452 1 2025-08-19 20:31:23.098 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41486 10 6452 1 2025-08-19 20:32:23.504 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48706 10 6452 1 2025-08-19 20:33:23.865 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46674 10 6452 1 2025-08-19 20:34:24.274 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55920 10 6452 1 2025-08-19 20:31:15.960 00:05:00.315 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-19 20:31:15.958 00:05:00.320 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-19 20:35:32.912 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 20:35:32.737 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-19 20:35:32.740 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-19 20:35:32.760 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 20:35:32.995 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-19 20:35:24.676 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33760 10 6452 1 2025-08-19 20:36:25.105 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:32984 10 6452 1 2025-08-19 20:37:25.505 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:37970 11 6504 1 2025-08-19 20:38:25.922 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49314 10 6452 1 2025-08-19 20:39:26.322 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43446 10 6452 1 2025-08-19 20:40:33.119 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-19 20:40:33.294 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-19 20:40:33.067 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 20:40:32.868 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 20:40:32.951 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-19 20:40:26.731 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35920 10 6452 1 2025-08-19 20:37:15.963 00:05:00.314 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-19 20:37:15.960 00:05:00.319 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-19 20:41:27.140 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:42850 10 6452 1 2025-08-19 20:42:27.539 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:43728 10 6452 1 2025-08-19 20:43:27.947 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:51958 10 6452 1 2025-08-19 20:44:28.363 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:35192 10 6452 1 2025-08-19 20:45:33.134 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-19 20:45:33.175 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-19 20:45:32.949 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 20:45:33.051 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 20:45:33.042 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-19 20:45:28.739 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36420 10 6452 1 2025-08-19 20:46:29.147 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35696 10 6452 1 2025-08-19 20:43:15.968 00:05:00.311 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-19 20:43:15.965 00:05:00.316 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-19 20:47:29.554 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57162 10 6452 1 2025-08-19 20:48:29.915 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58928 10 6452 1 2025-08-19 20:49:30.326 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:37954 10 6452 1 2025-08-19 20:50:33.522 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-19 20:50:33.462 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-19 20:50:33.318 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 20:50:33.458 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 20:50:33.540 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-19 20:50:30.768 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38760 10 6452 1 2025-08-19 20:51:31.186 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:59728 10 6452 1 2025-08-19 20:52:31.549 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:32966 10 6452 1 2025-08-19 20:49:15.967 00:05:00.313 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-19 20:49:15.965 00:05:00.318 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-19 20:53:31.916 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42062 10 6452 1 2025-08-19 20:54:32.319 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47476 10 6452 1 2025-08-19 20:55:33.478 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-19 20:55:33.488 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-19 20:55:33.495 00:00:00.035 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-19 20:55:33.248 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 20:55:33.396 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-19 20:55:32.727 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:40274 12 10365 1 2025-08-19 20:56:33.172 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58828 10 6452 1 2025-08-19 20:57:33.579 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33094 10 6452 1 2025-08-19 20:58:33.980 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:42966 10 6452 1 Summary: total flows: 140, total bytes: 421069, total packets: 1025, avg bps: 884, avg pps: 0, avg bpp: 410 Time window: 2025-08-19 19:55:15 - 2025-08-19 20:58:44 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0015s User: 0.0031s Wall: 0.0029s flows/second: 47604.6 Runtime: 0.0030s