Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-12 12:55:11.976 00:05:00.679 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 12:59:35.913 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34864 10 6452 1 2025-08-12 13:00:36.318 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41346 10 6452 1 2025-08-12 12:57:11.980 00:05:00.673 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 13:01:36.677 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42428 10 6452 1 2025-08-12 13:02:01.580 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 13:02:01.762 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 13:02:01.519 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 13:02:01.665 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 13:02:01.748 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 13:02:37.110 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:43434 10 6452 1 2025-08-12 13:03:37.473 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34294 10 6452 1 2025-08-12 13:04:37.880 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39134 10 6452 1 2025-08-12 13:01:11.979 00:05:00.678 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 13:05:38.285 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54166 10 6452 1 2025-08-12 13:06:38.686 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42944 10 6452 1 2025-08-12 13:07:01.817 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 13:07:01.853 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 13:07:01.660 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 13:07:01.610 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 13:07:01.900 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 13:03:11.982 00:05:00.673 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 13:07:39.112 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52718 10 6452 1 2025-08-12 13:08:39.514 00:00:10.603 TCP 1.101.0.1:3000 -> 23.104.0.1:44972 10 6452 1 2025-08-12 13:09:40.153 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:48214 12 10367 1 2025-08-12 13:10:40.634 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55024 10 6452 1 2025-08-12 13:07:11.980 00:05:00.678 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 13:11:41.001 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:46868 10 6452 1 2025-08-12 13:12:01.966 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 13:12:01.965 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 13:12:01.895 00:00:00.032 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 13:12:01.821 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 13:12:01.903 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 13:12:41.363 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38598 10 6452 1 2025-08-12 13:09:11.983 00:05:00.673 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 13:13:41.775 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42798 10 6452 1 2025-08-12 13:14:42.187 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58736 10 6452 1 2025-08-12 13:15:42.591 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40468 10 6452 1 2025-08-12 13:16:42.994 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34486 10 6452 1 2025-08-12 13:17:02.060 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 13:17:01.719 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 13:17:01.871 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 13:17:01.893 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 13:17:01.976 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 13:13:11.980 00:05:00.682 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 13:17:43.399 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:55374 10 6452 1 2025-08-12 13:18:43.759 00:00:11.578 TCP 1.101.0.1:3000 -> 23.104.0.1:43196 10 6452 1 2025-08-12 13:15:11.984 00:05:00.677 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 13:19:45.380 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53502 10 6452 1 2025-08-12 13:20:45.784 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33176 10 6452 1 2025-08-12 13:21:46.189 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54598 10 6452 1 2025-08-12 13:22:02.011 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 13:22:01.997 00:00:00.036 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 13:22:02.093 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 13:22:01.927 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 13:22:01.928 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 13:22:46.587 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48802 10 6452 1 2025-08-12 13:19:11.982 00:05:00.682 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 13:23:46.986 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44546 10 6452 1 2025-08-12 13:24:47.393 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53304 10 6452 1 2025-08-12 13:21:11.985 00:05:00.676 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 13:25:47.806 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57632 10 6452 1 2025-08-12 13:26:48.205 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37184 10 6452 1 2025-08-12 13:27:02.676 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 13:27:02.586 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 13:27:02.592 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 13:27:02.403 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 13:27:02.593 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 13:27:48.609 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47522 10 6452 1 2025-08-12 13:28:49.011 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:37280 10 6452 1 2025-08-12 13:25:11.985 00:05:00.680 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 13:29:49.366 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34072 10 6452 1 2025-08-12 13:30:49.724 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34224 10 6452 1 2025-08-12 13:27:11.987 00:05:00.675 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 13:32:02.301 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 13:32:02.223 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 13:32:02.222 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 13:32:02.171 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 13:32:02.220 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 13:31:50.131 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35670 10 6452 1 2025-08-12 13:32:50.531 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44938 10 6452 1 2025-08-12 13:33:50.925 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:53504 10 6452 1 2025-08-12 13:34:51.358 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38628 10 6452 1 2025-08-12 13:31:11.987 00:05:00.680 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 13:35:51.762 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:39010 10 6452 1 2025-08-12 13:37:02.329 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 13:37:02.255 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 13:36:52.185 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60680 10 6452 1 2025-08-12 13:37:02.372 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 13:37:02.068 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 13:37:02.246 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 13:33:11.988 00:05:00.676 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 13:37:52.583 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:43370 10 6452 1 2025-08-12 13:38:52.966 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34972 10 6452 1 2025-08-12 13:39:53.372 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46370 10 6452 1 2025-08-12 13:40:53.775 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:33588 10 6452 1 2025-08-12 13:37:11.987 00:05:00.680 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 13:42:02.452 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 13:41:54.145 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47390 10 6452 1 2025-08-12 13:42:02.347 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 13:42:02.358 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 13:42:02.302 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 13:42:02.369 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 13:42:54.551 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:39338 10 6452 1 2025-08-12 13:39:11.996 00:05:00.668 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 13:43:54.968 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48016 10 6452 1 2025-08-12 13:44:55.387 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:34984 10 6452 1 2025-08-12 13:45:55.793 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:59670 10 6452 1 2025-08-12 13:47:02.576 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 13:47:02.487 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 13:47:02.540 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 13:47:02.455 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 13:47:02.493 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 13:46:56.201 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52772 10 6452 1 2025-08-12 13:43:11.994 00:05:00.681 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 13:47:56.608 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35338 10 6452 1 2025-08-12 13:48:57.016 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:45704 10 6452 1 2025-08-12 13:45:11.997 00:05:00.675 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-12 13:49:57.377 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:55234 10 6452 1 2025-08-12 13:50:57.773 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44076 10 6452 1 2025-08-12 13:52:03.041 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 13:52:02.839 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 13:52:02.941 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 13:52:02.560 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 13:52:02.946 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 13:51:58.183 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:40654 10 6452 1 2025-08-12 13:52:58.549 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41184 10 6452 1 2025-08-12 13:49:11.995 00:05:00.681 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 13:53:58.953 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:53628 10 6452 1 2025-08-12 13:54:59.324 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34378 10 6452 1 2025-08-12 13:55:59.725 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:58326 10 6452 1 2025-08-12 13:51:12.000 00:06:00.673 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-12 13:57:02.837 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 13:57:02.749 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 13:57:02.594 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 13:57:02.638 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 13:57:02.755 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 13:57:00.139 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:32872 10 6452 1 2025-08-12 13:58:00.539 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35470 10 6452 1 Summary: total flows: 139, total bytes: 414586, total packets: 1014, avg bps: 877, avg pps: 0, avg bpp: 408 Time window: 2025-08-12 12:55:11 - 2025-08-12 13:58:10 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0031s User: 0.0010s Wall: 0.0019s flows/second: 72100.9 Runtime: 0.0019s