Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-25 01:54:18.794 00:06:00.044 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-25 01:54:18.791 00:06:00.049 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-25 01:59:20.185 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40032 10 6452 1 2025-08-25 02:00:20.594 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52594 10 6452 1 2025-08-25 02:01:20.952 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:50540 12 10367 1 2025-08-25 02:02:21.431 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42902 10 6452 1 2025-08-25 02:03:04.046 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 02:03:04.107 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 02:03:04.058 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 02:03:03.873 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 02:03:04.129 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 02:03:21.839 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:34862 11 6504 1 2025-08-25 02:04:22.320 00:00:10.797 TCP 1.101.0.1:3000 -> 23.104.0.1:47380 10 6452 1 2025-08-25 02:05:23.156 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37630 10 6452 1 2025-08-25 02:01:18.793 00:06:00.050 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-25 02:01:18.797 00:06:00.045 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-25 02:06:23.559 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48436 10 6452 1 2025-08-25 02:07:23.964 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:56036 10 6452 1 2025-08-25 02:08:03.991 00:00:00.051 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 02:08:03.982 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 02:08:03.880 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 02:08:03.991 00:00:00.047 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 02:08:04.074 00:00:00.047 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 02:08:24.323 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45036 10 6452 1 2025-08-25 02:09:24.687 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53118 10 6452 1 2025-08-25 02:10:25.109 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57652 10 6452 1 2025-08-25 02:11:25.514 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34504 10 6452 1 2025-08-25 02:12:25.922 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:58422 10 6452 1 2025-08-25 02:13:04.133 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 02:13:04.060 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 02:13:03.979 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 02:13:03.979 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 02:13:04.062 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 02:08:18.797 00:06:00.046 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-25 02:08:18.794 00:06:00.051 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-25 02:13:26.313 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50982 10 6452 1 2025-08-25 02:14:26.715 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58826 10 6452 1 2025-08-25 02:15:27.118 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41126 10 6452 1 2025-08-25 02:16:27.524 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:32772 12 10367 1 2025-08-25 02:17:27.997 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:60480 10 6452 1 2025-08-25 02:18:04.183 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 02:18:04.112 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 02:18:04.193 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 02:18:04.224 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 02:18:04.309 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 02:18:28.427 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37582 10 6452 1 2025-08-25 02:19:28.835 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:57556 10 6452 1 2025-08-25 02:15:18.795 00:06:00.054 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-25 02:15:18.798 00:06:00.048 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-25 02:20:29.216 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50456 10 6452 1 2025-08-25 02:21:29.620 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50154 10 6452 1 2025-08-25 02:22:30.022 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60602 10 6452 1 2025-08-25 02:23:04.527 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 02:23:04.776 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 02:23:04.648 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 02:23:04.919 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 02:23:05.002 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 02:23:30.420 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59350 10 6452 1 2025-08-25 02:24:30.823 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57978 10 6452 1 2025-08-25 02:25:31.225 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54044 10 6452 1 2025-08-25 02:26:31.587 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52302 10 6452 1 2025-08-25 02:22:18.800 00:06:00.049 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-25 02:22:18.798 00:06:00.054 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-25 02:27:31.991 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33706 10 6452 1 2025-08-25 02:28:04.389 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 02:28:04.392 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 02:28:04.257 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 02:28:04.321 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 02:28:04.403 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 02:28:32.395 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53272 10 6452 1 2025-08-25 02:29:32.803 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:39424 10 6452 1 2025-08-25 02:30:33.177 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39216 10 6452 1 2025-08-25 02:31:33.583 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:48204 12 10574 1 2025-08-25 02:32:34.071 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53318 10 6661 1 2025-08-25 02:33:04.318 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 02:33:04.483 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 02:33:04.502 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 02:33:04.609 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 02:33:04.693 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 02:33:34.426 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36636 10 6661 1 2025-08-25 02:29:18.798 00:06:00.064 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-25 02:29:18.801 00:06:00.059 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-25 02:34:34.830 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57610 10 6661 1 2025-08-25 02:35:35.234 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59156 10 6661 1 2025-08-25 02:36:35.634 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51804 10 6661 1 2025-08-25 02:37:36.041 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46670 10 6661 1 2025-08-25 02:38:04.688 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 02:38:04.683 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 02:38:04.804 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 02:38:04.776 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 02:38:04.859 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 02:38:36.464 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:34684 11 6713 1 2025-08-25 02:39:36.966 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35210 10 6661 1 2025-08-25 02:40:37.373 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51272 10 6661 1 2025-08-25 02:36:18.798 00:06:00.064 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-25 02:36:18.801 00:06:00.059 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-25 02:41:37.778 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49970 10 6661 1 2025-08-25 02:42:38.185 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33958 10 6661 1 2025-08-25 02:43:04.611 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 02:43:04.526 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 02:43:04.615 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 02:43:04.587 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 02:43:04.528 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 02:43:38.594 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:38380 10 6661 1 2025-08-25 02:44:38.962 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52302 10 6661 1 2025-08-25 02:45:39.369 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38476 10 6661 1 2025-08-25 02:46:39.775 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:55646 10 6661 1 2025-08-25 02:47:40.204 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55158 10 6661 1 2025-08-25 02:48:04.766 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 02:48:04.850 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 02:48:04.772 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 02:48:04.764 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 02:48:04.845 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 02:43:18.805 00:06:00.059 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-25 02:43:18.802 00:06:00.064 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-25 02:48:40.606 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54372 10 6661 1 2025-08-25 02:49:40.973 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59198 10 6661 1 2025-08-25 02:50:41.380 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48358 10 6661 1 2025-08-25 02:51:41.789 00:00:10.719 TCP 1.101.0.1:3000 -> 23.104.0.1:58178 12 10785 1 2025-08-25 02:52:42.550 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51838 12 6974 1 2025-08-25 02:53:04.866 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 02:53:04.831 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 02:53:04.968 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 02:53:04.801 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 02:53:04.782 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 02:53:42.949 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:60128 10 6870 1 2025-08-25 02:54:43.363 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:32836 10 6870 1 2025-08-25 02:50:18.809 00:06:00.059 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-25 02:50:18.807 00:06:00.064 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-25 02:55:43.771 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36176 10 6870 1 2025-08-25 02:56:44.183 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39622 10 6870 1 2025-08-25 02:57:44.588 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57326 10 6870 1 2025-08-25 02:58:04.967 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 02:58:05.249 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 02:58:05.235 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-25 02:58:05.157 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-25 02:58:05.167 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 Summary: total flows: 137, total bytes: 434258, total packets: 1034, avg bps: 907, avg pps: 0, avg bpp: 419 Time window: 2025-08-25 01:54:18 - 2025-08-25 02:58:05 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0026s User: 0.0018s Wall: 0.0020s flows/second: 67921.9 Runtime: 0.0020s