Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-12 07:55:11.851 00:05:00.702 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 07:59:24.186 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57084 10 6452 1 2025-08-12 08:00:24.594 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41282 10 6452 1 2025-08-12 07:57:11.854 00:05:00.696 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 08:01:24.995 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59730 10 6452 1 2025-08-12 08:01:55.664 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 08:01:55.664 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 08:01:55.706 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 08:01:55.671 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 08:01:55.581 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 08:02:25.397 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41180 10 6452 1 2025-08-12 08:03:25.800 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:33902 10 6452 1 2025-08-12 08:04:26.184 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47966 10 6452 1 2025-08-12 08:01:11.864 00:05:00.688 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 08:05:26.550 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55714 10 6452 1 2025-08-12 08:06:26.953 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55794 10 6452 1 2025-08-12 08:06:56.053 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 08:06:55.983 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 08:06:56.080 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 08:06:55.905 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 08:06:55.970 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 08:03:11.867 00:05:00.686 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 08:07:27.357 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47780 10 6452 1 2025-08-12 08:08:27.721 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:51988 10 6452 1 2025-08-12 08:09:28.122 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:54144 10 6452 1 2025-08-12 08:10:28.600 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47224 10 6452 1 2025-08-12 08:07:11.867 00:05:00.688 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 08:11:29.016 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:46142 10 6452 1 2025-08-12 08:11:55.948 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 08:11:55.998 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 08:11:55.871 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 08:11:55.811 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 08:11:55.866 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 08:12:29.413 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41338 10 6452 1 2025-08-12 08:09:11.871 00:05:00.683 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 08:13:29.776 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35790 10 6452 1 2025-08-12 08:14:30.182 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37262 10 6452 1 2025-08-12 08:15:30.586 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38146 10 6452 1 2025-08-12 08:16:30.990 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57604 10 6452 1 2025-08-12 08:16:55.988 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 08:16:55.900 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 08:16:55.910 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 08:16:55.859 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 08:16:55.904 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 08:13:11.869 00:05:00.689 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 08:17:31.398 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37830 10 6452 1 2025-08-12 08:18:31.796 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39968 10 6452 1 2025-08-12 08:15:11.873 00:05:00.683 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 08:19:32.161 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44346 10 6452 1 2025-08-12 08:20:32.565 00:00:10.455 TCP 1.101.0.1:3000 -> 23.104.0.1:37924 10 6452 1 2025-08-12 08:21:33.068 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:37464 10 6452 1 2025-08-12 08:21:56.083 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 08:21:55.950 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 08:21:56.001 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 08:21:55.843 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 08:21:56.002 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 08:22:33.508 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52072 10 6452 1 2025-08-12 08:19:11.872 00:05:00.687 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 08:23:33.868 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33764 10 6452 1 2025-08-12 08:24:34.277 00:00:10.427 TCP 1.101.0.1:3000 -> 23.104.0.1:38870 12 10365 1 2025-08-12 08:21:11.875 00:05:00.682 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 08:25:34.750 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:58602 10 6452 1 2025-08-12 08:26:35.149 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:50018 10 6452 1 2025-08-12 08:26:56.232 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 08:26:56.045 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 08:26:56.110 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 08:26:55.995 00:00:00.040 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 08:26:56.192 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 08:27:35.567 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38984 10 6452 1 2025-08-12 08:28:35.967 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60958 10 6452 1 2025-08-12 08:25:11.875 00:05:00.686 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 08:29:36.381 00:00:10.405 TCP 1.101.0.1:3000 -> 23.104.0.1:43330 10 6452 1 2025-08-12 08:30:36.903 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45196 10 6452 1 2025-08-12 08:27:11.878 00:05:00.681 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 08:31:37.270 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57918 10 6452 1 2025-08-12 08:31:56.283 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 08:31:56.246 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 08:31:56.201 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 08:31:56.201 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 08:31:56.284 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 08:32:37.676 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40734 10 6452 1 2025-08-12 08:33:38.107 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:59270 10 6452 1 2025-08-12 08:34:38.470 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:34834 10 6452 1 2025-08-12 08:31:11.878 00:05:00.686 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 08:35:38.840 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:48526 10 6452 1 2025-08-12 08:36:39.224 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52324 10 6452 1 2025-08-12 08:36:56.391 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 08:36:56.309 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 08:36:56.305 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 08:36:56.383 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 08:36:55.929 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 08:33:11.878 00:05:00.683 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 08:37:39.588 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59152 10 6452 1 2025-08-12 08:38:39.996 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35800 10 6452 1 2025-08-12 08:39:40.402 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44556 10 6452 1 2025-08-12 08:40:40.814 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52612 10 6452 1 2025-08-12 08:37:11.877 00:05:00.687 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 08:41:41.217 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37634 10 6452 1 2025-08-12 08:41:56.560 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 08:41:56.475 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 08:41:56.636 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 08:41:56.279 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 08:41:56.477 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 08:42:41.639 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41452 10 6452 1 2025-08-12 08:39:11.879 00:05:00.684 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 08:43:42.038 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:41252 10 6452 1 2025-08-12 08:44:42.407 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33554 10 6452 1 2025-08-12 08:45:42.811 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34084 10 6452 1 2025-08-12 08:46:43.220 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47868 10 6452 1 2025-08-12 08:46:56.396 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 08:46:56.601 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 08:46:56.318 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 08:46:56.365 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 08:46:56.310 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 08:43:11.877 00:05:00.688 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 08:47:43.628 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55124 10 6452 1 2025-08-12 08:48:43.991 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55056 10 6452 1 2025-08-12 08:45:11.882 00:05:00.682 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 08:49:44.395 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58806 10 6452 1 2025-08-12 08:50:44.804 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41712 10 6452 1 2025-08-12 08:51:56.428 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 08:51:45.207 00:00:10.871 TCP 1.101.0.1:3000 -> 23.104.0.1:52500 10 6452 1 2025-08-12 08:51:56.713 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 08:51:56.450 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 08:51:56.577 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 08:51:56.346 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 08:52:46.113 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51368 10 6452 1 2025-08-12 08:49:11.879 00:05:00.687 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 08:53:46.517 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54336 10 6452 1 2025-08-12 08:54:46.919 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49142 10 6452 1 2025-08-12 08:51:11.882 00:05:00.683 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 08:55:47.278 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:56532 10 6452 1 2025-08-12 08:56:56.759 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 08:56:56.652 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 08:56:47.636 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55340 10 6452 1 2025-08-12 08:56:56.664 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 08:56:56.702 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 08:56:56.672 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 08:57:48.075 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:44342 10 6452 1 Summary: total flows: 139, total bytes: 414461, total packets: 1012, avg bps: 880, avg pps: 0, avg bpp: 409 Time window: 2025-08-12 07:55:11 - 2025-08-12 08:57:58 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0030s User: 0.0010s Wall: 0.0022s flows/second: 64116.2 Runtime: 0.0022s