Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-12 05:55:11.796 00:05:00.675 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 05:59:34.237 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:42002 10 6452 1 2025-08-12 06:00:34.602 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:52592 10 6452 1 2025-08-12 05:57:11.799 00:05:00.670 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 06:01:53.125 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 06:01:35.001 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52814 10 6452 1 2025-08-12 06:01:53.169 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 06:01:53.354 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 06:01:53.196 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 06:01:53.044 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 06:02:35.409 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58928 10 6452 1 2025-08-12 06:03:35.814 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:60438 10 6452 1 2025-08-12 06:04:36.187 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56556 10 6452 1 2025-08-12 06:01:11.799 00:05:00.679 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 06:05:36.587 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40768 10 6452 1 2025-08-12 06:06:37.002 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46300 10 6452 1 2025-08-12 06:06:53.226 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 06:06:53.223 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 06:06:53.183 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 06:06:53.302 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 06:06:53.388 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 06:03:11.802 00:05:00.674 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 06:07:37.400 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51294 10 6452 1 2025-08-12 06:08:37.800 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37086 10 6452 1 2025-08-12 06:09:38.207 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37354 10 6452 1 2025-08-12 06:10:38.611 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45812 10 6452 1 2025-08-12 06:07:11.800 00:05:00.679 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 06:11:38.976 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:32912 10 6452 1 2025-08-12 06:11:53.392 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 06:11:53.415 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 06:11:53.318 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 06:11:53.174 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 06:11:53.310 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 06:12:39.398 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:47140 10 6452 1 2025-08-12 06:09:11.804 00:05:00.674 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 06:13:39.765 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:43986 10 6452 1 2025-08-12 06:14:40.204 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40746 10 6452 1 2025-08-12 06:15:40.607 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:42512 10 6452 1 2025-08-12 06:16:53.320 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 06:16:53.490 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 06:16:53.455 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 06:16:41.032 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36468 10 6452 1 2025-08-12 06:16:53.398 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 06:16:53.481 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 06:13:11.802 00:05:00.678 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 06:17:41.440 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:45198 10 6452 1 2025-08-12 06:18:41.847 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:60592 10 6452 1 2025-08-12 06:15:11.806 00:05:00.673 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 06:19:42.279 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57970 10 6452 1 2025-08-12 06:20:42.689 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57842 10 6452 1 2025-08-12 06:21:53.606 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 06:21:53.775 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 06:21:53.728 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 06:21:53.615 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 06:21:43.104 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45688 10 6452 1 2025-08-12 06:21:53.698 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 06:22:43.462 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34006 10 6452 1 2025-08-12 06:19:11.804 00:05:00.691 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 06:23:43.865 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:53584 10 6452 1 2025-08-12 06:24:44.276 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60028 10 6452 1 2025-08-12 06:21:11.807 00:05:00.688 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 06:25:44.687 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40176 10 6452 1 2025-08-12 06:26:53.742 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 06:26:53.715 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 06:26:53.660 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 06:26:53.597 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 06:26:53.660 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 06:26:45.061 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55434 10 6452 1 2025-08-12 06:27:45.462 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:43216 10 6452 1 2025-08-12 06:28:45.816 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49260 10 6452 1 2025-08-12 06:25:11.806 00:05:00.694 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 06:29:46.224 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57710 10 6452 1 2025-08-12 06:30:46.624 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38762 10 6452 1 2025-08-12 06:27:11.808 00:05:00.688 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 06:31:54.033 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 06:31:53.945 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 06:31:53.956 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 06:31:53.923 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 06:31:53.950 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 06:31:47.031 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58770 10 6452 1 2025-08-12 06:32:47.431 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:60708 11 6504 1 2025-08-12 06:33:47.888 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60122 10 6452 1 2025-08-12 06:34:48.293 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55446 10 6452 1 2025-08-12 06:31:11.809 00:05:00.691 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 06:35:48.693 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55990 10 6452 1 2025-08-12 06:36:53.924 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 06:36:53.902 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 06:36:53.877 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 06:36:53.948 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 06:36:53.960 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 06:36:49.113 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41564 10 6452 1 2025-08-12 06:33:11.811 00:05:00.686 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 06:37:49.520 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54728 10 6452 1 2025-08-12 06:38:49.937 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:35998 10 6452 1 2025-08-12 06:39:50.369 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:55858 12 10367 1 2025-08-12 06:40:50.803 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34328 10 6452 1 2025-08-12 06:37:11.810 00:05:00.695 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 06:41:53.846 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 06:41:53.835 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 06:41:53.624 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 06:41:53.842 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 06:41:53.924 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 06:41:51.206 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57436 10 6452 1 2025-08-12 06:42:51.610 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:59682 11 6504 1 2025-08-12 06:39:11.816 00:05:00.686 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 06:43:52.101 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:52146 10 6452 1 2025-08-12 06:44:52.501 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34882 10 6452 1 2025-08-12 06:45:52.927 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:33978 10 6452 1 2025-08-12 06:46:54.104 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 06:46:54.177 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 06:46:53.923 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 06:46:54.107 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 06:46:54.190 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 06:46:53.363 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35608 10 6452 1 2025-08-12 06:43:11.816 00:05:00.690 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 06:47:53.764 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33620 10 6452 1 2025-08-12 06:48:54.170 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51770 10 6452 1 2025-08-12 06:45:11.819 00:05:00.684 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 06:49:54.574 00:00:11.681 TCP 1.101.0.1:3000 -> 23.104.0.1:58498 10 6452 1 2025-08-12 06:50:56.335 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39842 10 6452 1 2025-08-12 06:51:54.271 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 06:51:54.216 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 06:51:54.242 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 06:51:54.273 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 06:51:54.356 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 06:51:56.735 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45342 10 6452 1 2025-08-12 06:52:57.143 00:00:10.757 TCP 1.101.0.1:3000 -> 23.104.0.1:57532 10 6452 1 2025-08-12 06:49:11.816 00:05:00.691 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 06:53:57.941 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:39292 10 6452 1 2025-08-12 06:54:58.365 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:56608 10 6452 1 2025-08-12 06:51:11.819 00:05:00.686 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 06:55:58.724 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34570 10 6452 1 2025-08-12 06:56:54.365 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 06:56:54.360 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 06:56:54.281 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 06:56:54.363 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 06:56:54.446 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 06:56:59.109 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:41474 10 6452 1 2025-08-12 06:57:59.475 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:51282 10 6452 1 Summary: total flows: 139, total bytes: 414567, total packets: 1014, avg bps: 877, avg pps: 0, avg bpp: 408 Time window: 2025-08-12 05:55:11 - 2025-08-12 06:58:09 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0035s User: 0.0009s Wall: 0.0018s flows/second: 77393.9 Runtime: 0.0018s