Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-24 04:54:18.366 00:06:00.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 13 809 1 2025-08-24 04:54:18.364 00:06:00.008 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-24 04:59:19.185 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:52528 10 6452 1 2025-08-24 05:00:19.611 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37604 10 6452 1 2025-08-24 05:01:20.016 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35542 10 6452 1 2025-08-24 05:02:38.747 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-24 05:02:20.417 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:34536 11 6504 1 2025-08-24 05:02:38.666 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-24 05:02:38.596 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-24 05:02:38.449 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-24 05:02:38.666 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-24 05:03:20.878 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37232 10 6452 1 2025-08-24 05:04:21.283 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50128 10 6452 1 2025-08-24 05:05:21.690 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56240 10 6452 1 2025-08-24 05:01:18.367 00:06:00.007 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-24 05:01:18.369 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-24 05:06:22.109 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53048 10 6452 1 2025-08-24 05:07:22.517 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60258 10 6452 1 2025-08-24 05:07:39.277 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-24 05:07:39.193 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-24 05:07:39.122 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-24 05:07:39.015 00:00:00.040 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-24 05:07:39.196 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-24 05:08:22.919 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36810 10 6452 1 2025-08-24 05:09:23.333 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41544 10 6452 1 2025-08-24 05:10:23.737 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41650 10 6452 1 2025-08-24 05:11:24.154 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:41992 10 6452 1 2025-08-24 05:12:39.174 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-24 05:12:24.517 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57864 10 6452 1 2025-08-24 05:12:39.092 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-24 05:12:39.196 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-24 05:12:38.583 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-24 05:12:39.093 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-24 05:08:18.370 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-24 05:08:18.368 00:06:00.006 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-24 05:13:24.916 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:56574 10 6452 1 2025-08-24 05:14:25.275 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34494 10 6452 1 2025-08-24 05:15:25.682 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41604 10 6452 1 2025-08-24 05:16:26.112 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:60194 10 6452 1 2025-08-24 05:17:39.050 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-24 05:17:38.965 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-24 05:17:39.148 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-24 05:17:38.615 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-24 05:17:26.467 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40664 10 6452 1 2025-08-24 05:17:38.966 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-24 05:18:26.887 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:35196 12 6556 1 2025-08-24 05:19:27.301 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:35180 10 6452 1 2025-08-24 05:15:18.373 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-08-24 05:15:18.369 00:06:00.008 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-24 05:20:27.731 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:52882 10 6452 1 2025-08-24 05:21:28.115 00:00:10.727 TCP 1.101.0.1:3000 -> 23.104.0.1:52456 10 6452 1 2025-08-24 05:22:39.076 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-24 05:22:28.882 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53346 10 6452 1 2025-08-24 05:22:39.140 00:00:00.035 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-24 05:22:38.991 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-24 05:22:39.132 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-24 05:22:39.215 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-24 05:23:29.283 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35934 10 6452 1 2025-08-24 05:24:29.648 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46228 10 6452 1 2025-08-24 05:25:30.051 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59638 10 6452 1 2025-08-24 05:26:30.451 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37870 10 6452 1 2025-08-24 05:22:18.375 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-08-24 05:22:18.370 00:06:00.008 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-24 05:27:39.532 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-24 05:27:39.402 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-24 05:27:39.320 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-24 05:27:39.328 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-24 05:27:39.449 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-24 05:27:30.857 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:32794 10 6452 1 2025-08-24 05:28:31.275 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49022 10 6452 1 2025-08-24 05:29:31.682 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49670 10 6452 1 2025-08-24 05:30:32.056 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51966 10 6452 1 2025-08-24 05:31:32.461 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36858 10 6452 1 2025-08-24 05:32:39.845 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-24 05:32:39.781 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-24 05:32:39.938 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-24 05:32:40.022 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-24 05:32:32.861 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:38996 10 6452 1 2025-08-24 05:32:40.075 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-24 05:33:33.284 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40780 10 6452 1 2025-08-24 05:29:18.375 00:06:00.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-08-24 05:29:18.373 00:06:00.008 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-24 05:34:33.687 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34424 10 6452 1 2025-08-24 05:35:34.056 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53066 10 6452 1 2025-08-24 05:36:34.468 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:40740 12 10365 1 2025-08-24 05:37:39.316 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-24 05:37:39.417 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-24 05:37:39.505 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-24 05:37:39.279 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-24 05:37:39.236 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-24 05:37:34.904 00:00:10.544 TCP 1.101.0.1:3000 -> 23.104.0.1:45478 12 6556 1 2025-08-24 05:38:35.485 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:55418 10 6452 1 2025-08-24 05:39:35.852 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:44088 10 6452 1 2025-08-24 05:40:36.272 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45738 10 6452 1 2025-08-24 05:36:18.378 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-08-24 05:36:18.374 00:06:00.008 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-24 05:41:36.676 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:37160 10 6452 1 2025-08-24 05:42:39.531 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-24 05:42:39.450 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-24 05:42:39.560 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-24 05:42:39.361 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-24 05:42:39.374 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-24 05:42:37.036 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:40178 10 6452 1 2025-08-24 05:43:37.404 00:00:10.660 TCP 1.101.0.1:3000 -> 23.104.0.1:54790 10 6452 1 2025-08-24 05:44:38.109 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:49224 10 6452 1 2025-08-24 05:45:38.493 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:47132 11 6504 1 2025-08-24 05:46:38.952 00:00:10.640 TCP 1.101.0.1:3000 -> 23.104.0.1:59176 10 6452 1 2025-08-24 05:47:39.362 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-24 05:47:39.473 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-24 05:47:39.641 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-24 05:47:39.481 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-24 05:47:39.280 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-24 05:47:39.634 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39334 10 6452 1 2025-08-24 05:43:18.378 00:06:00.007 TCP 179.21.23.23:179 -> 179.21.23.21:38570 9 601 1 2025-08-24 05:43:18.375 00:06:00.013 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-24 05:48:40.048 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40534 10 6452 1 2025-08-24 05:49:40.447 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55432 10 6452 1 2025-08-24 05:50:40.811 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40302 10 6452 1 2025-08-24 05:51:41.214 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57464 11 6504 1 2025-08-24 05:52:39.606 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-24 05:52:39.724 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-24 05:52:39.518 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-24 05:52:39.816 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-24 05:52:39.899 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-24 05:52:41.629 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:57290 10 6452 1 2025-08-24 05:53:42.029 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:38670 10 6452 1 2025-08-24 05:54:42.391 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:48258 10 6452 1 2025-08-24 05:50:18.387 00:06:00.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 7 497 1 2025-08-24 05:50:18.376 00:06:00.013 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-24 05:55:42.785 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:39184 10 6452 1 2025-08-24 05:56:43.152 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42956 10 6452 1 2025-08-24 05:57:39.942 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-24 05:57:39.865 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-24 05:57:39.861 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-24 05:57:39.760 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-24 05:57:39.929 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-24 05:57:43.556 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:46242 10 6452 1 Summary: total flows: 137, total bytes: 413431, total packets: 990, avg bps: 866, avg pps: 0, avg bpp: 417 Time window: 2025-08-24 04:54:18 - 2025-08-24 05:57:53 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0020s User: 0.0020s Wall: 0.0018s flows/second: 75113.7 Runtime: 0.0018s