Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-12 11:55:11.940 00:05:00.703 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 11:59:08.003 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41178 10 6452 1 2025-08-12 12:00:08.407 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59856 10 6452 1 2025-08-12 11:57:11.943 00:05:00.698 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 12:01:08.810 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42108 10 6452 1 2025-08-12 12:02:00.300 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 12:02:00.371 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 12:02:00.307 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 12:02:00.425 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 12:02:00.506 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 12:02:09.213 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59690 10 6452 1 2025-08-12 12:03:09.618 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44368 10 6452 1 2025-08-12 12:04:10.024 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60030 10 6452 1 2025-08-12 12:01:11.940 00:05:00.704 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 12:05:10.427 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:46580 10 6452 1 2025-08-12 12:06:10.799 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:43772 10 6452 1 2025-08-12 12:07:00.411 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 12:07:00.406 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 12:07:00.411 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 12:07:00.135 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 12:07:00.494 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 12:03:11.945 00:05:00.698 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 12:07:11.190 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:60808 10 6452 1 2025-08-12 12:08:11.592 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33766 10 6452 1 2025-08-12 12:09:11.994 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40714 10 6452 1 2025-08-12 12:10:12.399 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:38876 13 13939 1 2025-08-12 12:07:11.945 00:05:00.701 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 12:11:12.878 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39486 10 6452 1 2025-08-12 12:12:00.423 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 12:12:00.623 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 12:12:00.627 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 12:12:00.508 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 12:12:00.340 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 12:12:13.238 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34622 10 6452 1 2025-08-12 12:09:11.950 00:05:00.693 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 12:13:13.636 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34224 10 6452 1 2025-08-12 12:14:14.004 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37286 10 6452 1 2025-08-12 12:15:14.413 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47396 10 6452 1 2025-08-12 12:16:14.819 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38972 10 6452 1 2025-08-12 12:17:00.691 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 12:17:00.512 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 12:17:00.606 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 12:17:00.370 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 12:17:00.610 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 12:13:11.959 00:05:00.687 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 12:17:15.223 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58640 10 6452 1 2025-08-12 12:18:15.622 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33002 10 6452 1 2025-08-12 12:15:11.964 00:05:00.681 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 12:19:16.028 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:39168 10 6452 1 2025-08-12 12:20:16.392 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54134 10 6452 1 2025-08-12 12:21:16.792 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:51390 10 6452 1 2025-08-12 12:22:01.014 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 12:22:00.885 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 12:22:00.889 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 12:22:00.779 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 12:22:00.930 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 12:22:17.175 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43566 11 6492 1 2025-08-12 12:19:11.961 00:05:00.686 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 12:23:17.581 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43234 10 6452 1 2025-08-12 12:24:17.991 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:34202 10 6452 1 2025-08-12 12:21:11.965 00:05:00.681 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 12:25:18.413 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33590 10 6452 1 2025-08-12 12:26:18.817 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:45914 10 6452 1 2025-08-12 12:27:01.079 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 12:27:00.760 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 12:27:00.866 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 12:27:00.772 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 12:27:00.997 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 12:27:19.196 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59780 10 6452 1 2025-08-12 12:28:19.607 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:32918 10 6452 1 2025-08-12 12:25:11.961 00:05:00.686 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 12:29:19.976 00:00:13.076 TCP 1.101.0.1:3000 -> 23.104.0.1:40622 10 6452 1 2025-08-12 12:30:23.121 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47664 10 6452 1 2025-08-12 12:27:11.967 00:05:00.679 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 12:31:23.518 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33214 10 6452 1 2025-08-12 12:32:00.997 00:00:00.029 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 12:32:01.094 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 12:32:00.820 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 12:32:00.990 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 12:32:00.916 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 12:32:23.919 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57112 10 6452 1 2025-08-12 12:33:24.322 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42714 10 6452 1 2025-08-12 12:34:24.724 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:59288 10 6452 1 2025-08-12 12:31:11.968 00:05:00.681 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 12:35:25.143 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45026 10 6452 1 2025-08-12 12:36:25.546 00:00:10.899 TCP 1.101.0.1:3000 -> 23.104.0.1:44588 10 6452 1 2025-08-12 12:37:01.305 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 12:37:01.081 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 12:37:01.093 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 12:37:01.095 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 12:37:01.221 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 12:33:11.971 00:05:00.675 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 12:37:26.485 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55352 10 6452 1 2025-08-12 12:38:26.886 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:50114 12 6556 1 2025-08-12 12:39:27.303 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57200 10 6452 1 2025-08-12 12:40:27.714 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45666 10 6452 1 2025-08-12 12:37:11.969 00:05:00.681 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 12:41:28.118 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33238 10 6452 1 2025-08-12 12:42:01.228 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 12:42:01.135 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 12:42:01.190 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 12:42:01.259 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 12:42:01.144 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 12:42:28.474 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39860 10 6452 1 2025-08-12 12:39:11.973 00:05:00.675 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 12:43:28.878 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41570 10 6452 1 2025-08-12 12:44:29.281 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60752 10 6452 1 2025-08-12 12:45:29.685 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51390 10 6452 1 2025-08-12 12:46:30.114 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55574 10 6452 1 2025-08-12 12:47:01.519 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 12:47:01.343 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 12:47:01.200 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 12:47:01.390 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 12:47:01.437 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 12:43:11.971 00:05:00.680 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 12:47:30.516 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46672 10 6452 1 2025-08-12 12:48:30.920 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36050 10 6452 1 2025-08-12 12:45:11.975 00:05:00.674 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 12:49:31.287 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43140 10 6452 1 2025-08-12 12:50:31.692 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60752 10 6452 1 2025-08-12 12:51:32.123 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38504 10 6452 1 2025-08-12 12:52:01.461 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 12:52:01.458 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 12:52:01.302 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 12:52:01.383 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 12:52:01.465 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 12:52:32.528 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33522 10 6452 1 2025-08-12 12:49:11.975 00:05:00.677 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 12:53:32.934 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:46194 10 6452 1 2025-08-12 12:54:33.363 00:00:10.895 TCP 1.101.0.1:3000 -> 23.104.0.1:41930 10 6452 1 2025-08-12 12:51:11.979 00:05:00.671 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 12:55:34.292 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38974 10 6452 1 2025-08-12 12:56:34.693 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47488 10 6452 1 2025-08-12 12:57:01.619 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 12:57:01.484 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 12:57:01.437 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 12:57:01.663 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 12:57:01.745 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 12:57:35.108 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37358 10 6452 1 2025-08-12 12:58:35.511 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44140 10 6452 1 Summary: total flows: 140, total bytes: 424631, total packets: 1026, avg bps: 890, avg pps: 0, avg bpp: 413 Time window: 2025-08-12 11:55:11 - 2025-08-12 12:58:45 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0042s User: 0.0000s Wall: 0.0020s flows/second: 70636.7 Runtime: 0.0020s