Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-12 13:55:11.996 00:05:00.683 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-12 13:59:00.943 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:58432 10 6452 1 2025-08-12 14:00:01.364 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45160 10 6452 1 2025-08-12 14:01:01.763 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:45538 10 6452 1 2025-08-12 14:02:02.792 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 14:02:02.699 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 14:02:02.548 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 14:02:02.901 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 14:02:02.984 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 14:02:02.141 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:44986 11 6504 1 2025-08-12 14:03:02.594 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60542 10 6452 1 2025-08-12 13:58:12.003 00:06:00.679 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-12 14:04:02.998 00:00:11.081 TCP 1.101.0.1:3000 -> 23.104.0.1:57206 12 6544 1 2025-08-12 14:05:04.118 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34158 10 6452 1 2025-08-12 14:01:12.002 00:06:00.683 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-12 14:06:04.515 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52596 10 6452 1 2025-08-12 14:07:02.904 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 14:07:02.818 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 14:07:02.833 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 14:07:02.830 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 14:07:02.913 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 14:07:04.915 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42314 10 6452 1 2025-08-12 14:08:05.318 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41396 10 6452 1 2025-08-12 14:09:05.722 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:50012 10 6452 1 2025-08-12 14:05:12.031 00:06:00.652 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-12 14:10:06.147 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40472 10 6452 1 2025-08-12 14:11:06.547 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54678 10 6452 1 2025-08-12 14:12:03.458 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 14:12:03.078 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 14:12:03.236 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 14:12:03.181 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 14:12:03.265 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 14:12:06.949 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55212 10 6452 1 2025-08-12 14:08:12.033 00:06:00.654 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-12 14:13:07.364 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33356 10 6452 1 2025-08-12 14:14:07.772 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:49358 10 6452 1 2025-08-12 14:15:08.182 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53704 10 6452 1 2025-08-12 14:16:08.586 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42070 10 6452 1 2025-08-12 14:17:03.053 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 14:17:03.181 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 14:17:03.054 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 14:17:03.108 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 14:17:03.135 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 14:12:12.039 00:06:00.646 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-12 14:17:08.989 00:00:18.635 TCP 1.101.0.1:3000 -> 23.104.0.1:33148 11 6504 1 2025-08-12 14:18:17.668 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:39126 10 6452 1 2025-08-12 14:19:18.112 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:40142 10 6452 1 2025-08-12 14:15:12.037 00:06:00.654 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-12 14:20:18.471 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60336 10 6452 1 2025-08-12 14:21:18.875 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33652 10 6452 1 2025-08-12 14:22:03.600 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 14:22:03.453 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 14:22:03.562 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 14:22:03.290 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 14:22:03.519 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 14:22:19.281 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52756 10 6452 1 2025-08-12 14:23:19.686 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49600 10 6452 1 2025-08-12 14:19:12.041 00:06:00.648 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-12 14:24:20.111 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56474 10 6452 1 2025-08-12 14:25:20.516 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60706 10 6452 1 2025-08-12 14:26:20.921 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47830 10 6452 1 2025-08-12 14:27:03.502 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 14:27:03.283 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 14:27:03.281 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 14:27:03.219 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 14:27:03.419 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 14:22:12.039 00:06:00.653 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-12 14:27:21.326 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:43286 10 6452 1 2025-08-12 14:28:21.743 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40584 10 6452 1 2025-08-12 14:29:22.144 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46400 10 6452 1 2025-08-12 14:30:22.543 00:00:10.462 TCP 1.101.0.1:3000 -> 23.104.0.1:38978 12 10365 1 2025-08-12 14:26:12.042 00:06:00.648 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-12 14:31:23.053 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34834 10 6452 1 2025-08-12 14:32:03.387 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 14:32:03.507 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 14:32:03.409 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 14:32:03.515 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 14:32:03.597 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 14:32:23.458 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:43858 10 6452 1 2025-08-12 14:33:23.857 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:49428 10 6452 1 2025-08-12 14:29:12.040 00:06:00.653 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-12 14:34:24.234 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45176 10 6452 1 2025-08-12 14:35:24.644 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:51450 10 6452 1 2025-08-12 14:36:25.009 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:51412 10 6452 1 2025-08-12 14:37:03.638 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 14:37:03.614 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 14:37:03.550 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 14:37:03.571 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 14:37:03.555 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 14:37:25.405 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50922 10 6452 1 2025-08-12 14:33:12.046 00:06:00.645 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-12 14:38:25.810 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:56212 10 6452 1 2025-08-12 14:39:26.229 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33842 10 6452 1 2025-08-12 14:40:26.631 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49452 10 6452 1 2025-08-12 14:36:12.041 00:06:00.655 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-12 14:41:27.031 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57850 10 6452 1 2025-08-12 14:42:03.447 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 14:42:03.693 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 14:42:03.637 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 14:42:03.443 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 14:42:03.365 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 14:42:27.435 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49120 10 6452 1 2025-08-12 14:43:27.841 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:39100 10 6452 1 2025-08-12 14:44:28.263 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:59536 10 6452 1 2025-08-12 14:40:12.045 00:06:00.650 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-12 14:45:28.641 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42032 10 6452 1 2025-08-12 14:46:29.050 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:46146 10 6452 1 2025-08-12 14:47:04.296 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 14:47:04.146 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 14:47:04.183 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 14:47:04.257 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 14:47:04.340 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 14:47:29.468 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51990 10 6452 1 2025-08-12 14:43:12.043 00:06:00.656 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-12 14:48:29.886 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:43658 10 6452 1 2025-08-12 14:49:30.301 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:44292 10 6452 1 2025-08-12 14:50:30.669 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:36474 10 6452 1 2025-08-12 14:51:31.059 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35628 10 6452 1 2025-08-12 14:52:04.157 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 14:52:04.000 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 14:52:04.084 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 14:52:04.198 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 14:52:04.280 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 14:47:12.047 00:06:00.651 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-08-12 14:52:31.420 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:51284 10 6452 1 2025-08-12 14:53:31.784 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40072 10 6452 1 2025-08-12 14:54:32.189 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44808 10 6452 1 2025-08-12 14:50:12.046 00:06:00.675 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-08-12 14:55:32.596 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58794 11 6492 1 2025-08-12 14:56:32.998 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:39488 10 6452 1 2025-08-12 14:57:03.876 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-12 14:57:03.950 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-12 14:57:03.836 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 14:57:04.002 00:00:00.038 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-12 14:57:04.084 00:00:00.039 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-12 14:57:33.396 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46336 10 6452 1 2025-08-12 14:58:33.804 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:37338 10 6452 1 Summary: total flows: 137, total bytes: 420903, total packets: 1023, avg bps: 883, avg pps: 0, avg bpp: 411 Time window: 2025-08-12 13:55:11 - 2025-08-12 14:58:44 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0029s User: 0.0007s Wall: 0.0018s flows/second: 75025.4 Runtime: 0.0018s