Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-15 04:55:13.427 00:05:00.630 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 04:59:19.501 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:34696 10 6452 1 2025-08-15 04:56:13.432 00:05:00.625 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 05:00:19.905 00:00:10.405 TCP 1.101.0.1:3000 -> 23.104.0.1:39402 12 10367 1 2025-08-15 05:01:20.344 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59300 10 6452 1 2025-08-15 05:02:20.748 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52108 10 6452 1 2025-08-15 05:03:18.691 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 05:03:18.757 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 05:03:18.795 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 05:03:18.501 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 05:03:18.609 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 05:03:21.155 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44176 10 6452 1 2025-08-15 05:04:21.517 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45280 10 6452 1 2025-08-15 05:01:13.432 00:05:00.630 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 05:05:21.923 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45940 10 6452 1 2025-08-15 05:02:13.433 00:05:00.625 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 05:06:22.325 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58754 10 6452 1 2025-08-15 05:07:22.688 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48660 10 6452 1 2025-08-15 05:08:18.913 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 05:08:18.832 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 05:08:18.428 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 05:08:18.648 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 05:08:18.683 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 05:08:23.061 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:46182 10 6452 1 2025-08-15 05:09:23.428 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58392 10 6452 1 2025-08-15 05:10:23.828 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:42278 10 6452 1 2025-08-15 05:07:13.431 00:05:00.630 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 05:11:24.189 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56722 10 6452 1 2025-08-15 05:08:13.434 00:05:00.624 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 05:12:24.591 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:46508 10 6452 1 2025-08-15 05:13:19.060 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 05:13:18.983 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 05:13:19.065 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 05:13:18.789 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 05:13:18.978 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 05:13:24.955 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:58866 10 6452 1 2025-08-15 05:14:25.364 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42980 10 6452 1 2025-08-15 05:15:25.768 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:54138 12 10367 1 2025-08-15 05:16:26.242 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46754 10 6452 1 2025-08-15 05:13:13.432 00:05:00.631 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 05:17:26.649 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37042 10 6452 1 2025-08-15 05:14:13.435 00:05:00.626 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 05:18:19.005 00:00:00.043 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 05:18:19.103 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 05:18:18.789 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 05:18:18.998 00:00:00.033 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 05:18:19.080 00:00:00.033 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 05:18:27.052 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41316 10 6452 1 2025-08-15 05:19:27.468 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50494 10 6452 1 2025-08-15 05:20:27.869 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41412 10 6452 1 2025-08-15 05:21:28.275 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:42566 10 6452 1 2025-08-15 05:22:28.632 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58224 10 6452 1 2025-08-15 05:23:19.160 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 05:19:13.434 00:05:00.630 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 05:23:19.128 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 05:23:18.852 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 05:23:19.087 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 05:23:19.078 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 05:23:29.039 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38582 10 6452 1 2025-08-15 05:20:13.437 00:05:00.625 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 05:24:29.443 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59690 10 6452 1 2025-08-15 05:25:29.845 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:44986 10 6452 1 2025-08-15 05:26:30.254 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41832 10 6452 1 2025-08-15 05:27:30.658 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:53878 10 6452 1 2025-08-15 05:28:19.197 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 05:28:19.071 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 05:28:19.112 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 05:28:19.126 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 05:28:19.115 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 05:28:31.042 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:42498 11 6504 1 2025-08-15 05:25:13.434 00:05:00.635 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 05:29:31.498 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57512 10 6452 1 2025-08-15 05:26:13.439 00:05:00.628 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 05:30:31.864 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:60348 12 10365 1 2025-08-15 05:31:32.345 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39958 10 6452 1 2025-08-15 05:32:32.748 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45900 10 6452 1 2025-08-15 05:33:19.389 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 05:33:19.154 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 05:33:19.269 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 05:33:18.910 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 05:33:19.307 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 05:33:33.147 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46646 10 6452 1 2025-08-15 05:34:33.551 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45620 10 6452 1 2025-08-15 05:31:13.439 00:05:00.633 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 05:35:33.950 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:43192 10 6452 1 2025-08-15 05:32:13.443 00:05:00.628 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 05:36:34.371 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44702 10 6452 1 2025-08-15 05:37:34.734 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56872 10 6452 1 2025-08-15 05:38:19.364 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 05:38:19.279 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 05:38:19.279 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 05:38:19.434 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 05:38:19.281 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 05:38:35.139 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38910 10 6452 1 2025-08-15 05:39:35.536 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42340 10 6452 1 2025-08-15 05:40:35.938 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:46514 10 6452 1 2025-08-15 05:37:13.441 00:05:00.633 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 05:41:36.361 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43820 10 6452 1 2025-08-15 05:38:13.441 00:05:00.630 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 05:42:36.766 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:46894 10 6452 1 2025-08-15 05:43:19.452 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 05:43:19.427 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 05:43:19.437 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 05:43:19.307 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 05:43:19.369 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 05:43:37.184 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40972 10 6452 1 2025-08-15 05:44:37.588 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42790 10 6452 1 2025-08-15 05:45:37.954 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42866 10 6452 1 2025-08-15 05:46:38.327 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55208 10 6452 1 2025-08-15 05:43:13.440 00:05:00.635 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 05:47:38.733 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47598 10 6452 1 2025-08-15 05:44:13.442 00:05:00.630 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 05:48:19.418 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 05:48:19.420 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 05:48:19.234 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 05:48:19.477 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 05:48:19.559 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 05:48:39.140 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:35058 10 6452 1 2025-08-15 05:49:39.576 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51766 10 6452 1 2025-08-15 05:50:39.977 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:55072 10 6452 1 2025-08-15 05:51:40.346 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47280 10 6452 1 2025-08-15 05:52:40.760 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:59738 10 6452 1 2025-08-15 05:49:13.441 00:05:00.637 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-08-15 05:53:19.896 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 05:53:19.734 00:00:00.033 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 05:53:19.734 00:00:00.033 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 05:53:19.770 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 05:53:19.812 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 05:53:41.189 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44828 10 6452 1 2025-08-15 05:50:13.444 00:05:00.632 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-08-15 05:54:41.547 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:55464 10 6452 1 2025-08-15 05:55:41.910 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34818 10 6452 1 2025-08-15 05:56:42.318 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50286 10 6452 1 2025-08-15 05:57:42.685 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:37382 10 6452 1 2025-08-15 05:58:19.898 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 05:58:19.546 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 05:58:19.897 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-15 05:58:19.979 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-15 05:58:19.985 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 Summary: total flows: 139, total bytes: 422343, total packets: 1017, avg bps: 892, avg pps: 0, avg bpp: 415 Time window: 2025-08-15 04:55:13 - 2025-08-15 05:58:20 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0026s User: 0.0017s Wall: 0.0018s flows/second: 75382.5 Runtime: 0.0019s