Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-05 09:55:07.901 00:05:00.152 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-05 09:59:16.227 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39886 10 6452 1 2025-08-05 09:56:07.898 00:05:00.157 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-05 10:00:16.628 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52100 10 6452 1 2025-08-05 10:01:17.034 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58346 10 6452 1 2025-08-05 10:02:17.436 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56772 10 6452 1 2025-08-05 10:03:17.841 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:42406 10 6452 1 2025-08-05 10:03:36.039 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 10:03:35.796 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 10:03:35.975 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 10:03:35.635 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 10:03:35.956 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 10:04:18.269 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36792 10 6452 1 2025-08-05 10:01:07.902 00:05:00.156 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-05 10:05:18.676 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45260 10 6452 1 2025-08-05 10:02:07.899 00:05:00.161 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-05 10:06:19.110 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55956 10 6452 1 2025-08-05 10:07:19.512 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50382 10 6452 1 2025-08-05 10:08:36.061 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 10:08:19.923 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:60078 10 6452 1 2025-08-05 10:08:36.059 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 10:08:36.095 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 10:08:35.775 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 10:08:35.978 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 10:09:20.345 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42016 10 6452 1 2025-08-05 10:10:20.748 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52284 10 6452 1 2025-08-05 10:07:07.905 00:05:00.154 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-05 10:11:21.151 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:56916 10 6452 1 2025-08-05 10:08:07.904 00:05:00.158 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-05 10:12:21.533 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59592 10 6452 1 2025-08-05 10:13:21.933 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:38674 10 6452 1 2025-08-05 10:13:35.985 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 10:13:35.896 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 10:13:36.011 00:00:00.040 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 10:13:35.925 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 10:13:35.901 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 10:14:22.358 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:58954 12 10367 1 2025-08-05 10:15:22.833 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47950 10 6452 1 2025-08-05 10:16:23.237 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:40750 10 6452 1 2025-08-05 10:13:07.906 00:05:00.155 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-05 10:17:23.605 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:47050 10 6452 1 2025-08-05 10:14:07.906 00:05:00.158 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-05 10:18:23.970 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60032 10 6452 1 2025-08-05 10:18:36.295 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 10:18:36.223 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 10:18:35.939 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 10:18:36.150 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 10:18:36.233 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 10:19:24.378 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52832 10 6452 1 2025-08-05 10:20:24.737 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44204 10 6452 1 2025-08-05 10:21:25.142 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35438 10 6452 1 2025-08-05 10:22:25.543 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45478 10 6452 1 2025-08-05 10:19:07.911 00:05:00.153 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-05 10:23:36.652 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 10:23:36.610 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 10:23:25.944 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:42910 10 6452 1 2025-08-05 10:23:36.570 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 10:23:36.447 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 10:23:36.569 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 10:20:07.908 00:05:00.158 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-05 10:24:26.363 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50684 10 6452 1 2025-08-05 10:25:26.767 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48514 10 6452 1 2025-08-05 10:26:27.176 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41592 10 6452 1 2025-08-05 10:27:27.581 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46788 10 6452 1 2025-08-05 10:28:36.260 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 10:28:36.450 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 10:28:36.315 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 10:28:36.374 00:00:00.032 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 10:28:28.001 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:34542 10 6452 1 2025-08-05 10:28:36.458 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 10:25:07.918 00:05:00.146 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-05 10:29:28.362 00:00:10.406 TCP 1.101.0.1:3000 -> 23.104.0.1:59944 10 6452 1 2025-08-05 10:26:07.915 00:05:00.152 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-05 10:30:28.813 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46446 10 6452 1 2025-08-05 10:31:29.217 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:41856 10 6452 1 2025-08-05 10:32:29.577 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37814 10 6452 1 2025-08-05 10:33:36.842 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 10:33:36.963 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 10:33:36.693 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 10:33:36.903 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 10:33:36.986 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 10:33:29.980 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:36288 10 6452 1 2025-08-05 10:34:30.402 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42032 10 6452 1 2025-08-05 10:31:07.919 00:05:00.148 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-05 10:35:30.770 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36016 10 6452 1 2025-08-05 10:32:07.917 00:05:00.153 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-05 10:36:31.178 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60346 10 6452 1 2025-08-05 10:37:31.582 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55242 10 6452 1 2025-08-05 10:38:36.692 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 10:38:36.684 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 10:38:36.447 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 10:38:36.822 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 10:38:36.904 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 10:38:31.988 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60700 10 6452 1 2025-08-05 10:39:32.394 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36692 10 6452 1 2025-08-05 10:40:32.800 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:39750 10 6452 1 2025-08-05 10:37:07.922 00:05:00.149 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-05 10:41:33.197 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38784 10 6452 1 2025-08-05 10:38:07.919 00:05:00.154 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-05 10:42:33.598 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55500 10 6452 1 2025-08-05 10:43:37.006 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 10:43:36.978 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 10:43:36.926 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 10:43:36.977 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 10:43:36.921 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 10:43:34.016 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50824 10 6452 1 2025-08-05 10:44:34.421 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34270 10 6452 1 2025-08-05 10:45:34.819 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50060 10 6452 1 2025-08-05 10:46:35.222 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45478 10 6452 1 2025-08-05 10:43:07.921 00:05:00.151 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-05 10:47:35.624 00:00:10.415 TCP 1.101.0.1:3000 -> 23.104.0.1:36622 11 6504 1 2025-08-05 10:44:07.921 00:05:00.155 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-05 10:48:36.982 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 10:48:36.816 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 10:48:36.844 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 10:48:36.815 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 10:48:36.897 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 10:48:36.099 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54952 10 6452 1 2025-08-05 10:49:36.504 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34822 10 6452 1 2025-08-05 10:50:36.909 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41082 10 6452 1 2025-08-05 10:51:37.320 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52610 10 6452 1 2025-08-05 10:52:37.721 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:55396 10 6452 1 2025-08-05 10:49:07.944 00:05:00.130 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-05 10:53:37.271 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 10:53:37.088 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 10:53:36.827 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 10:53:37.125 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 10:53:37.189 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 10:53:38.142 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:38854 12 10367 1 2025-08-05 10:50:07.941 00:05:00.135 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-05 10:54:38.584 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:51330 10 6452 1 2025-08-05 10:55:38.957 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47686 10 6452 1 2025-08-05 10:56:39.359 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36882 10 6452 1 2025-08-05 10:57:39.760 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:38678 10 6452 1 2025-08-05 10:58:37.222 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-05 10:58:37.077 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-05 10:58:37.139 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-05 10:58:36.706 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-05 10:58:37.140 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 Summary: total flows: 139, total bytes: 418430, total packets: 1015, avg bps: 878, avg pps: 0, avg bpp: 412 Time window: 2025-08-05 09:55:07 - 2025-08-05 10:58:37 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0020s User: 0.0020s Wall: 0.0047s flows/second: 29517.9 Runtime: 0.0047s