Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-17 02:54:57.665 00:05:00.644 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 02:59:18.902 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 02:59:18.817 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 02:59:18.607 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 02:59:18.820 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 02:59:18.818 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 02:59:19.988 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:36906 10 6438 1 2025-07-17 03:00:20.404 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34490 10 6438 1 2025-07-17 02:56:57.665 00:05:00.650 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 03:01:20.805 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40998 10 6438 1 2025-07-17 03:02:21.224 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38558 10 6438 1 2025-07-17 03:03:21.627 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48532 10 6438 1 2025-07-17 03:04:18.792 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 03:04:18.548 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 03:04:18.770 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 03:04:18.679 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 03:04:18.710 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 03:04:22.040 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42162 10 6438 1 2025-07-17 03:00:57.668 00:05:00.644 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 03:05:22.439 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60658 10 6438 1 2025-07-17 03:06:22.841 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:32900 10 6438 1 2025-07-17 03:02:57.666 00:05:00.649 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 03:07:23.259 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33758 10 6438 1 2025-07-17 03:08:23.660 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41056 10 6438 1 2025-07-17 03:09:18.780 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 03:09:18.893 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 03:09:18.637 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 03:09:18.780 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 03:09:18.864 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 03:09:24.073 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38338 10 6438 1 2025-07-17 03:10:24.478 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54814 10 6438 1 2025-07-17 03:06:57.670 00:05:00.642 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 03:11:24.883 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:53316 10 6438 1 2025-07-17 03:12:25.245 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47314 10 6438 1 2025-07-17 03:08:57.668 00:05:00.648 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 03:13:25.654 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42956 10 6438 1 2025-07-17 03:14:19.082 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 03:14:19.000 00:00:00.032 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 03:14:19.193 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 03:14:19.189 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 03:14:18.993 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 03:14:26.060 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55298 10 6438 1 2025-07-17 03:15:26.469 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37016 10 6438 1 2025-07-17 03:16:26.874 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47640 10 6438 1 2025-07-17 03:12:57.670 00:05:00.644 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 03:17:27.279 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41946 10 6438 1 2025-07-17 03:18:27.683 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40254 10 6438 1 2025-07-17 03:14:57.669 00:05:00.648 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 03:19:18.893 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 03:19:18.890 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 03:19:18.989 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 03:19:18.964 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 03:19:19.046 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 03:19:28.054 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60240 10 6438 1 2025-07-17 03:20:28.459 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45404 10 6438 1 2025-07-17 03:21:28.863 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:34420 10 6438 1 2025-07-17 03:22:29.261 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:49928 10 6438 1 2025-07-17 03:18:57.673 00:05:00.657 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 03:23:29.627 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:47442 10 6438 1 2025-07-17 03:24:19.145 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 03:24:19.220 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 03:24:19.169 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 03:24:19.008 00:00:00.040 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 03:24:19.090 00:00:00.042 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 03:24:29.996 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49708 10 6438 1 2025-07-17 03:20:57.670 00:05:00.664 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 03:25:30.398 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49096 10 6438 1 2025-07-17 03:26:30.808 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46682 10 6438 1 2025-07-17 03:27:31.221 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47938 10 6438 1 2025-07-17 03:28:31.624 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40490 10 6438 1 2025-07-17 03:24:57.676 00:05:00.660 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 03:29:19.302 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 03:29:19.279 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 03:29:19.221 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 03:29:18.852 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 03:29:19.220 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 03:29:32.029 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:55116 10 6438 1 2025-07-17 03:30:32.391 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:35270 10 6438 1 2025-07-17 03:26:57.673 00:05:00.666 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 03:31:32.807 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:49190 10 6438 1 2025-07-17 03:32:33.186 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41566 10 6438 1 2025-07-17 03:33:33.587 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34722 10 6438 1 2025-07-17 03:34:19.153 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 03:34:19.382 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 03:34:19.207 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 03:34:19.503 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 03:34:19.584 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 03:34:33.991 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:40992 10 6438 1 2025-07-17 03:30:57.680 00:05:00.657 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 03:35:34.350 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38468 10 6438 1 2025-07-17 03:36:34.755 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:53784 10 6438 1 2025-07-17 03:32:57.677 00:05:00.662 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 03:37:35.165 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35206 10 6438 1 2025-07-17 03:38:35.572 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:44842 10 6438 1 2025-07-17 03:39:19.372 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 03:39:19.264 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 03:39:19.052 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 03:39:19.481 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 03:39:19.565 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 03:39:35.986 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42566 10 6438 1 2025-07-17 03:40:36.347 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44978 10 6438 1 2025-07-17 03:36:57.680 00:05:00.658 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 03:41:36.751 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38638 10 6438 1 2025-07-17 03:42:37.151 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35368 10 6438 1 2025-07-17 03:38:57.679 00:05:00.663 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 03:43:37.552 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37162 10 6438 1 2025-07-17 03:44:19.660 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 03:44:19.661 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 03:44:19.415 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 03:44:19.598 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 03:44:19.680 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 03:44:37.955 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52960 10 6438 1 2025-07-17 03:45:38.361 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46118 10 6438 1 2025-07-17 03:46:38.766 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:38706 10 6438 1 2025-07-17 03:42:57.684 00:05:00.659 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 03:47:39.174 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60672 10 6438 1 2025-07-17 03:48:39.541 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54712 10 6438 1 2025-07-17 03:44:57.680 00:05:00.666 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 03:49:19.857 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 03:49:19.810 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 03:49:19.668 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 03:49:19.791 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 03:49:19.774 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 03:49:39.948 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39548 10 6438 1 2025-07-17 03:50:40.359 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60562 10 6438 1 2025-07-17 03:51:40.727 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:33964 10 6438 1 2025-07-17 03:52:41.168 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:52410 10 6438 1 2025-07-17 03:48:57.683 00:05:00.661 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 03:53:41.557 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42772 10 6438 1 2025-07-17 03:54:19.857 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 03:54:19.611 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 03:54:19.422 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 03:54:19.620 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 03:54:19.702 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 03:54:41.960 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:45522 10 6438 1 2025-07-17 03:50:57.685 00:05:00.662 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 03:55:42.317 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47192 10 6438 1 2025-07-17 03:56:42.722 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:47558 10 6438 1 2025-07-17 03:57:43.122 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36810 10 6438 1 Summary: total flows: 139, total bytes: 409722, total packets: 1010, avg bps: 868, avg pps: 0, avg bpp: 405 Time window: 2025-07-17 02:54:57 - 2025-07-17 03:57:53 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0012s User: 0.0024s Wall: 0.0019s flows/second: 73537.9 Runtime: 0.0019s