Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-12 01:55:11.713 00:05:00.623 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 01:59:19.218 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44750 10 6452 1 2025-08-12 02:00:19.623 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:43474 10 6452 1 2025-08-12 01:57:11.715 00:05:00.618 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 02:01:20.021 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33378 10 6452 1 2025-08-12 02:01:48.530 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 02:01:48.191 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 02:01:48.392 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 02:01:48.463 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 02:01:48.447 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 02:02:20.425 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:59352 10 6452 1 2025-08-12 02:03:20.793 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:38264 10 6452 1 2025-08-12 02:04:21.156 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:38304 10 6452 1 2025-08-12 02:01:11.714 00:05:00.623 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 02:05:21.517 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:51338 13 13939 1 2025-08-12 02:06:21.956 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36470 10 6452 1 2025-08-12 02:06:48.447 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 02:06:48.626 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 02:06:48.282 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 02:06:48.494 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 02:06:48.577 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 02:03:11.718 00:05:00.620 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 02:07:22.365 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:50902 10 6452 1 2025-08-12 02:08:22.730 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:55528 10 6452 1 2025-08-12 02:09:23.109 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50324 10 6452 1 2025-08-12 02:10:23.518 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41882 10 6452 1 2025-08-12 02:07:11.715 00:05:00.624 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 02:11:23.920 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45102 10 6452 1 2025-08-12 02:11:48.495 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 02:11:48.487 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 02:11:48.545 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 02:11:48.487 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 02:11:48.569 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 02:12:24.279 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39694 10 6452 1 2025-08-12 02:09:11.717 00:05:00.619 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 02:13:24.642 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40002 10 6452 1 2025-08-12 02:14:25.039 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36008 10 6452 1 2025-08-12 02:15:25.440 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44068 10 6452 1 2025-08-12 02:16:25.844 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:55888 10 6452 1 2025-08-12 02:16:48.834 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 02:16:48.795 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 02:16:48.638 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 02:16:48.539 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 02:16:48.750 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 02:13:11.716 00:05:00.639 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 02:17:26.226 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:33136 10 6452 1 2025-08-12 02:18:26.596 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:52554 10 6452 1 2025-08-12 02:15:11.719 00:05:00.634 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 02:19:26.975 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:53628 10 6452 1 2025-08-12 02:20:27.408 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34360 10 6452 1 2025-08-12 02:21:27.820 00:00:10.412 TCP 1.101.0.1:3000 -> 23.104.0.1:42180 10 6452 1 2025-08-12 02:21:48.858 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 02:21:48.832 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 02:21:48.775 00:00:00.018 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 02:21:48.361 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 02:21:48.775 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 02:22:28.279 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53850 10 6452 1 2025-08-12 02:19:11.721 00:05:00.635 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 02:23:28.682 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52244 10 6452 1 2025-08-12 02:24:29.062 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:46312 12 10367 1 2025-08-12 02:21:11.724 00:05:00.630 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 02:25:29.536 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55412 10 6452 1 2025-08-12 02:26:49.054 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 02:26:29.936 00:00:10.652 TCP 1.101.0.1:3000 -> 23.104.0.1:45606 10 6452 1 2025-08-12 02:26:49.120 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 02:26:49.160 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 02:26:48.820 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 02:26:48.971 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 02:27:30.628 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49152 10 6452 1 2025-08-12 02:28:30.991 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34270 10 6452 1 2025-08-12 02:25:11.723 00:05:00.634 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 02:29:31.398 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37180 10 6452 1 2025-08-12 02:30:31.803 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:59598 10 6452 1 2025-08-12 02:27:11.726 00:05:00.629 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 02:31:32.182 00:00:10.413 TCP 1.101.0.1:3000 -> 23.104.0.1:40378 11 6504 1 2025-08-12 02:31:49.237 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 02:31:49.107 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 02:31:48.912 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 02:31:48.741 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 02:31:49.153 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 02:32:32.636 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:51416 10 6452 1 2025-08-12 02:33:33.031 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47376 10 6452 1 2025-08-12 02:34:33.438 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35982 10 6452 1 2025-08-12 02:31:11.725 00:05:00.645 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 02:35:33.796 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43990 10 6452 1 2025-08-12 02:36:49.217 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 02:36:34.201 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37244 10 6452 1 2025-08-12 02:36:49.079 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 02:36:49.083 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 02:36:48.845 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 02:36:49.135 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 02:33:11.729 00:05:00.641 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 02:37:34.609 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38586 10 6452 1 2025-08-12 02:38:35.013 00:00:24.826 TCP 1.101.0.1:3000 -> 23.104.0.1:51828 10 6452 1 2025-08-12 02:39:49.876 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45090 10 6452 1 2025-08-12 02:40:50.285 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49294 10 6452 1 2025-08-12 02:37:11.726 00:05:00.647 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 02:41:49.141 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 02:41:49.199 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 02:41:49.160 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 02:41:49.013 00:00:00.036 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 02:41:49.094 00:00:00.037 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 02:41:50.682 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33700 10 6452 1 2025-08-12 02:42:51.103 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:56124 10 6452 1 2025-08-12 02:39:11.728 00:05:00.642 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 02:43:51.507 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43466 10 6452 1 2025-08-12 02:44:51.914 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48970 10 6452 1 2025-08-12 02:45:52.277 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:33426 10 6452 1 2025-08-12 02:46:49.359 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 02:46:49.383 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 02:46:49.434 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 02:46:49.118 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 02:46:49.277 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 02:46:52.641 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49330 10 6452 1 2025-08-12 02:43:11.727 00:05:00.647 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 02:47:53.049 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48472 10 6452 1 2025-08-12 02:48:53.457 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35322 10 6452 1 2025-08-12 02:45:11.731 00:05:00.642 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 02:49:53.866 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:44808 10 6452 1 2025-08-12 02:50:54.233 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41820 10 6452 1 2025-08-12 02:51:49.570 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 02:51:49.427 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 02:51:49.537 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 02:51:49.430 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 02:51:49.487 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 02:51:54.640 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59534 10 6452 1 2025-08-12 02:52:55.050 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59926 10 6452 1 2025-08-12 02:49:11.731 00:05:00.665 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 02:53:55.453 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38088 10 6452 1 2025-08-12 02:54:55.854 00:00:10.506 TCP 1.101.0.1:3000 -> 23.104.0.1:60424 14 10469 1 2025-08-12 02:51:11.733 00:05:00.661 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 02:55:56.404 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42716 10 6452 1 2025-08-12 02:56:49.674 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 02:56:49.592 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 02:56:49.754 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 02:56:49.693 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 02:56:49.590 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 02:56:56.802 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:58040 10 6452 1 2025-08-12 02:57:57.223 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48478 10 6452 1 Summary: total flows: 139, total bytes: 426019, total packets: 1020, avg bps: 902, avg pps: 0, avg bpp: 417 Time window: 2025-08-12 01:55:11 - 2025-08-12 02:58:07 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0031s User: 0.0008s Wall: 0.0018s flows/second: 77963.1 Runtime: 0.0018s