Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-12 10:55:11.922 00:05:00.698 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 10:59:38.916 00:00:10.512 TCP 1.101.0.1:3000 -> 23.104.0.1:51232 10 6452 1 2025-08-12 11:00:39.470 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56274 10 6452 1 2025-08-12 10:57:11.923 00:05:00.693 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 11:01:39.871 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56420 10 6452 1 2025-08-12 11:01:59.280 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 11:01:59.280 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 11:01:59.209 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 11:01:59.196 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 11:01:59.197 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 11:02:40.283 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36946 10 6452 1 2025-08-12 11:03:40.680 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:34856 10 6452 1 2025-08-12 11:04:41.106 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49944 10 6452 1 2025-08-12 11:01:11.922 00:05:00.698 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 11:05:41.515 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35024 10 6452 1 2025-08-12 11:06:41.873 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56938 10 6452 1 2025-08-12 11:06:59.519 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 11:06:59.123 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 11:06:59.232 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 11:06:58.887 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 11:06:59.437 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 11:03:11.924 00:05:00.693 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 11:07:42.278 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48482 10 6452 1 2025-08-12 11:08:42.683 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43160 10 6452 1 2025-08-12 11:09:43.109 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49436 10 6452 1 2025-08-12 11:10:43.515 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:34428 10 6452 1 2025-08-12 11:07:11.922 00:05:00.698 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 11:11:43.880 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:33848 12 6556 1 2025-08-12 11:11:59.703 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 11:11:59.538 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 11:11:59.348 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 11:11:59.536 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 11:11:59.618 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 11:12:44.307 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54556 10 6452 1 2025-08-12 11:09:11.925 00:05:00.693 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 11:13:44.708 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39674 10 6452 1 2025-08-12 11:14:45.113 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:37192 12 10365 1 2025-08-12 11:15:45.596 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:55342 10 6452 1 2025-08-12 11:16:59.594 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 11:16:59.436 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 11:16:46.008 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51258 10 6452 1 2025-08-12 11:16:59.562 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 11:16:59.365 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 11:16:59.512 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 11:13:11.923 00:05:00.700 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 11:17:46.406 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:60196 10 6452 1 2025-08-12 11:18:46.771 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:36076 10 6452 1 2025-08-12 11:15:11.926 00:05:00.698 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 11:19:47.185 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51776 10 6452 1 2025-08-12 11:20:47.593 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43752 10 6452 1 2025-08-12 11:21:59.539 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 11:21:59.323 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 11:21:59.504 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 11:21:48.004 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52250 10 6452 1 2025-08-12 11:21:59.445 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 11:21:59.528 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 11:22:48.402 00:00:10.539 TCP 1.101.0.1:3000 -> 23.104.0.1:56420 10 6452 1 2025-08-12 11:19:11.924 00:05:00.704 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 11:23:48.979 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60274 10 6452 1 2025-08-12 11:24:49.348 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:53778 10 6452 1 2025-08-12 11:21:11.927 00:05:00.698 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 11:25:49.764 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:35284 10 6452 1 2025-08-12 11:26:59.792 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 11:26:59.767 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 11:26:59.659 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 11:26:59.742 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 11:26:59.710 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 11:26:50.138 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46500 10 6452 1 2025-08-12 11:27:50.540 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38902 10 6452 1 2025-08-12 11:28:50.944 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:40228 10 6452 1 2025-08-12 11:25:11.929 00:05:00.701 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 11:29:51.372 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:40130 12 10365 1 2025-08-12 11:30:51.856 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:52928 10 6452 1 2025-08-12 11:27:11.931 00:05:00.696 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 11:31:59.755 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 11:31:59.680 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 11:31:59.854 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 11:31:59.674 00:00:00.031 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 11:32:00.050 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 11:31:52.301 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50850 10 6452 1 2025-08-12 11:32:52.705 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37288 10 6452 1 2025-08-12 11:33:53.112 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:60936 10 6452 1 2025-08-12 11:34:53.477 00:00:14.350 TCP 1.101.0.1:3000 -> 23.104.0.1:40004 10 6452 1 2025-08-12 11:31:11.929 00:05:00.702 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 11:35:57.866 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36228 10 6452 1 2025-08-12 11:36:59.935 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 11:36:59.734 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 11:36:59.902 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 11:36:59.909 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 11:36:59.851 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 11:36:58.279 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48806 10 6452 1 2025-08-12 11:33:11.933 00:05:00.698 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 11:37:58.681 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:54746 10 6452 1 2025-08-12 11:38:59.054 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37198 10 6452 1 2025-08-12 11:39:59.420 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:60956 10 6452 1 2025-08-12 11:37:11.931 00:05:00.704 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 11:40:59.784 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45746 10 6452 1 2025-08-12 11:41:59.853 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 11:41:59.982 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 11:42:00.134 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 11:42:00.098 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 11:42:00.181 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 11:42:00.183 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48742 10 6452 1 2025-08-12 11:39:11.933 00:05:00.701 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 11:43:00.589 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41740 10 6452 1 2025-08-12 11:44:00.991 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57346 10 6452 1 2025-08-12 11:45:01.401 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51226 10 6452 1 2025-08-12 11:46:01.762 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:41218 10 6452 1 2025-08-12 11:46:59.907 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 11:46:59.725 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 11:47:00.223 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 11:47:00.142 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 11:47:00.006 00:00:00.039 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 11:43:11.933 00:05:00.705 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 11:47:02.190 00:00:10.667 TCP 1.101.0.1:3000 -> 23.104.0.1:57246 10 6452 1 2025-08-12 11:48:02.897 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:59172 10 6452 1 2025-08-12 11:45:11.937 00:05:00.699 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 11:49:03.270 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47264 10 6452 1 2025-08-12 11:50:03.673 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:44982 10 6452 1 2025-08-12 11:51:04.040 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58664 10 6452 1 2025-08-12 11:52:00.279 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 11:52:00.195 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 11:52:00.256 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 11:51:59.994 00:00:00.036 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 11:52:00.305 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 11:52:04.446 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57760 10 6452 1 2025-08-12 11:49:11.935 00:05:00.704 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 11:53:04.851 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:48090 10 6452 1 2025-08-12 11:54:05.272 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37676 10 6452 1 2025-08-12 11:51:11.939 00:05:00.698 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 11:55:05.680 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50988 10 6452 1 2025-08-12 11:56:06.107 00:00:10.428 TCP 1.101.0.1:3000 -> 23.104.0.1:43684 10 6452 1 2025-08-12 11:57:00.317 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 11:57:00.370 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 11:57:00.242 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 11:57:00.283 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 11:57:00.235 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 11:57:06.571 00:00:10.941 TCP 1.101.0.1:3000 -> 23.104.0.1:36142 10 6452 1 2025-08-12 11:58:07.606 00:00:10.356 TCP 1.101.0.1:3000 -> 23.104.0.1:41644 10 6452 1 Summary: total flows: 139, total bytes: 418478, total packets: 1016, avg bps: 884, avg pps: 0, avg bpp: 411 Time window: 2025-08-12 10:55:11 - 2025-08-12 11:58:17 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0047s User: 0.0000s Wall: 0.0019s flows/second: 73389.8 Runtime: 0.0019s