Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-02 17:54:23.627 00:06:00.216 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 17:54:23.624 00:06:00.221 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 17:59:24.143 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41820 10 6452 1 2025-09-02 18:00:24.550 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48354 10 6452 1 2025-09-02 18:01:24.948 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:34702 10 6452 1 2025-09-02 18:02:14.759 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 18:02:14.629 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 18:02:14.669 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 18:02:14.550 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:02:14.676 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:02:25.320 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50464 10 6452 1 2025-09-02 18:03:25.724 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:52856 10 6452 1 2025-09-02 18:04:26.140 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38242 10 6452 1 2025-09-02 18:05:26.544 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55584 10 6452 1 2025-09-02 18:01:23.629 00:06:00.216 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 18:01:23.626 00:06:00.221 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 18:06:26.949 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49360 10 6452 1 2025-09-02 18:07:14.561 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 18:07:14.674 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 18:07:14.635 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 18:07:14.573 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:07:14.478 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:07:27.354 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:39944 10 6452 1 2025-09-02 18:08:27.760 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52184 10 6452 1 2025-09-02 18:09:28.171 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52540 10 6452 1 2025-09-02 18:10:28.572 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35200 10 6452 1 2025-09-02 18:11:28.975 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:45344 10 6452 1 2025-09-02 18:12:14.590 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 18:12:14.578 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 18:12:14.509 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:12:14.809 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:12:14.892 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 18:12:29.401 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57548 10 6452 1 2025-09-02 18:08:23.627 00:06:00.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 18:08:23.630 00:06:00.216 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 18:13:29.799 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37562 10 6452 1 2025-09-02 18:14:30.210 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:45328 10 6452 1 2025-09-02 18:15:30.610 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42278 10 6452 1 2025-09-02 18:16:31.012 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37884 10 6452 1 2025-09-02 18:17:14.644 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 18:17:14.736 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 18:17:14.675 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:17:14.868 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:17:14.951 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 18:17:31.420 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53402 10 6452 1 2025-09-02 18:18:31.783 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33632 10 6452 1 2025-09-02 18:19:32.190 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45396 10 6452 1 2025-09-02 18:15:23.633 00:06:00.216 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 18:15:23.632 00:06:00.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 18:20:32.553 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:34992 10 6452 1 2025-09-02 18:21:32.913 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33288 10 6452 1 2025-09-02 18:22:14.902 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 18:22:14.902 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 18:22:14.747 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:22:14.772 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:22:14.856 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 18:22:33.319 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47514 10 6452 1 2025-09-02 18:23:33.717 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:53100 10 6452 1 2025-09-02 18:24:34.145 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56420 10 6452 1 2025-09-02 18:25:34.545 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56700 10 6452 1 2025-09-02 18:26:34.942 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57726 10 6452 1 2025-09-02 18:27:14.936 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 18:27:14.863 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 18:27:14.901 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:27:14.853 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:27:15.399 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 18:22:23.635 00:06:00.215 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 18:22:23.632 00:06:00.221 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 18:27:35.356 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35022 10 6452 1 2025-09-02 18:28:35.762 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:52970 10 6452 1 2025-09-02 18:29:36.138 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:59612 10 6452 1 2025-09-02 18:30:36.551 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36042 10 6452 1 2025-09-02 18:31:36.950 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40068 10 6452 1 2025-09-02 18:32:14.862 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:32:14.968 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:32:15.051 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 18:32:15.081 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 18:32:15.210 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 18:32:37.359 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60336 10 6452 1 2025-09-02 18:33:37.761 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38814 10 6452 1 2025-09-02 18:29:23.642 00:06:00.209 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 18:29:23.640 00:06:00.213 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 18:34:38.179 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43832 10 6452 1 2025-09-02 18:35:38.545 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:53284 10 6452 1 2025-09-02 18:36:38.922 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:39904 10 6452 1 2025-09-02 18:37:15.185 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 18:37:15.188 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 18:37:15.132 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:37:15.246 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:37:15.330 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 18:37:39.305 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45126 10 6452 1 2025-09-02 18:38:39.703 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43746 10 6452 1 2025-09-02 18:39:40.127 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54470 10 6452 1 2025-09-02 18:40:40.537 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58994 10 6452 1 2025-09-02 18:36:23.646 00:06:00.206 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 18:36:23.644 00:06:00.211 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 18:41:40.899 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:56620 10 6452 1 2025-09-02 18:42:15.166 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:42:15.134 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:42:15.216 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 18:42:15.217 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 18:42:15.216 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 18:42:41.310 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56038 10 6452 1 2025-09-02 18:43:41.712 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56582 10 6452 1 2025-09-02 18:44:42.117 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:39012 10 6452 1 2025-09-02 18:45:42.478 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40618 10 6452 1 2025-09-02 18:46:42.887 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:43012 10 6452 1 2025-09-02 18:47:15.682 00:00:00.017 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 18:47:15.582 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 18:47:15.581 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 18:47:15.410 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:47:15.600 00:00:00.017 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:47:43.336 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51812 10 6452 1 2025-09-02 18:43:23.648 00:06:00.209 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 18:43:23.651 00:06:00.204 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 18:48:43.744 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38394 10 6452 1 2025-09-02 18:49:44.153 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44926 10 6452 1 2025-09-02 18:50:44.563 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46126 10 6452 1 2025-09-02 18:51:44.923 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41842 10 6452 1 2025-09-02 18:52:15.640 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 18:52:15.645 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 18:52:15.478 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 18:52:15.515 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:52:15.556 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:52:45.329 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43210 10 6452 1 2025-09-02 18:53:45.730 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:55264 10 6452 1 2025-09-02 18:54:46.146 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52430 10 6452 1 2025-09-02 18:50:23.657 00:06:00.200 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-02 18:50:23.655 00:06:00.205 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-02 18:55:46.548 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:57238 10 6452 1 2025-09-02 18:56:46.944 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:40090 10 6452 1 2025-09-02 18:57:15.567 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-02 18:57:15.557 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-02 18:57:15.645 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-02 18:57:15.295 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:57:15.484 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-02 18:57:47.365 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56324 10 6452 1 Summary: total flows: 137, total bytes: 411286, total packets: 1022, avg bps: 862, avg pps: 0, avg bpp: 402 Time window: 2025-09-02 17:54:23 - 2025-09-02 18:57:57 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0048s User: 0.0019s Wall: 0.0040s flows/second: 34087.9 Runtime: 0.0040s