Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-17 04:54:57.707 00:05:00.656 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 04:59:07.766 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:43642 10 6438 1 2025-07-17 04:59:21.082 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 04:59:21.077 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 04:59:20.864 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 04:59:20.858 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 04:59:20.941 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 05:00:08.185 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:32858 10 6438 1 2025-07-17 04:56:57.706 00:05:00.660 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 05:01:08.604 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55920 10 6438 1 2025-07-17 05:02:08.965 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56690 10 6438 1 2025-07-17 05:03:09.372 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57942 10 6438 1 2025-07-17 05:04:21.196 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 05:04:21.236 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 05:04:21.156 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 05:04:21.195 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 05:04:09.778 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59970 10 6438 1 2025-07-17 05:04:21.277 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 05:00:57.717 00:05:00.649 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 05:05:10.137 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41244 10 6438 1 2025-07-17 05:06:10.542 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33746 10 6438 1 2025-07-17 05:02:57.713 00:05:00.655 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 05:07:10.943 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43192 10 6438 1 2025-07-17 05:08:11.354 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54668 10 6438 1 2025-07-17 05:09:21.185 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 05:09:21.192 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 05:09:21.300 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 05:09:21.261 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 05:09:11.769 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36282 10 6438 1 2025-07-17 05:09:21.103 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 05:10:12.179 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35928 10 6438 1 2025-07-17 05:06:57.717 00:05:00.650 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 05:11:12.580 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57736 10 6438 1 2025-07-17 05:12:12.980 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43060 10 6438 1 2025-07-17 05:08:57.714 00:05:00.656 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 05:13:13.387 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48030 10 6438 1 2025-07-17 05:14:21.609 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 05:14:21.408 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 05:14:21.574 00:00:00.034 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 05:14:21.444 00:00:00.037 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 05:14:21.517 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 05:14:13.789 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33950 10 6438 1 2025-07-17 05:15:14.189 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36696 10 6438 1 2025-07-17 05:16:14.552 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58142 10 6438 1 2025-07-17 05:12:57.719 00:05:00.650 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 05:17:14.954 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52584 10 6438 1 2025-07-17 05:18:15.359 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:46672 10 6438 1 2025-07-17 05:14:57.716 00:05:00.656 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 05:19:21.441 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 05:19:21.441 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 05:19:21.523 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 05:19:21.513 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 05:19:21.595 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 05:19:15.773 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:32786 10 6438 1 2025-07-17 05:20:16.137 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34476 10 6438 1 2025-07-17 05:21:16.541 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55628 10 6438 1 2025-07-17 05:22:16.947 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:37648 10 6438 1 2025-07-17 05:18:57.720 00:05:00.652 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 05:23:17.362 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:60744 10 6438 1 2025-07-17 05:24:21.587 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 05:24:21.565 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 05:24:21.489 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 05:24:21.301 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 05:24:21.495 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 05:24:17.775 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47104 10 6438 1 2025-07-17 05:20:57.719 00:05:00.655 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 05:25:18.186 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51916 10 6438 1 2025-07-17 05:26:18.583 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60048 10 6438 1 2025-07-17 05:27:18.985 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:47184 10 6438 1 2025-07-17 05:28:19.420 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:47570 10 6438 1 2025-07-17 05:24:57.724 00:05:00.649 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 05:29:22.512 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 05:29:22.516 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 05:29:22.437 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 05:29:21.580 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 05:29:22.429 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 05:29:19.843 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:39082 10 6438 1 2025-07-17 05:30:20.267 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34302 10 6438 1 2025-07-17 05:26:57.721 00:05:00.657 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 05:31:20.670 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44162 10 6438 1 2025-07-17 05:32:21.111 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:52260 10 6438 1 2025-07-17 05:33:21.532 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49722 10 6438 1 2025-07-17 05:34:21.696 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 05:34:21.585 00:00:00.029 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 05:34:21.524 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 05:34:21.692 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 05:34:21.775 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 05:34:21.933 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:58376 10 6438 1 2025-07-17 05:30:57.728 00:05:00.652 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 05:35:22.356 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45638 10 6438 1 2025-07-17 05:36:22.757 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57640 10 6438 1 2025-07-17 05:32:57.726 00:05:00.660 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 05:37:23.123 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49010 10 6438 1 2025-07-17 05:38:23.525 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44984 10 6438 1 2025-07-17 05:39:22.023 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 05:39:21.940 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 05:39:21.779 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 05:39:21.942 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 05:39:22.064 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 05:39:23.928 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:37322 10 6438 1 2025-07-17 05:40:24.358 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48228 10 6438 1 2025-07-17 05:36:57.731 00:05:00.656 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 05:41:24.762 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:37662 10 6438 1 2025-07-17 05:42:25.145 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33674 10 6438 1 2025-07-17 05:38:57.727 00:05:00.663 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 05:43:25.506 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56402 10 6438 1 2025-07-17 05:44:21.950 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 05:44:21.662 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 05:44:21.743 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 05:44:21.887 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 05:44:21.970 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 05:44:25.913 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39354 10 6438 1 2025-07-17 05:45:26.314 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49150 10 6438 1 2025-07-17 05:46:26.723 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36864 10 6438 1 2025-07-17 05:42:57.733 00:05:00.654 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 05:47:27.134 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:57968 10 6438 1 2025-07-17 05:48:27.497 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60430 10 6438 1 2025-07-17 05:44:57.732 00:05:00.661 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 05:49:22.139 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 05:49:22.226 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 05:49:21.691 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 05:49:22.223 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 05:49:22.305 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 05:49:27.901 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:45738 12 6542 1 2025-07-17 05:50:28.318 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47076 10 6438 1 2025-07-17 05:51:28.722 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47314 10 6438 1 2025-07-17 05:52:29.108 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37120 10 6438 1 2025-07-17 05:48:57.735 00:05:00.656 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 05:53:29.510 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54298 10 6438 1 2025-07-17 05:54:22.529 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 05:54:21.974 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 05:54:22.446 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 05:54:21.992 00:00:00.040 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 05:54:22.101 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 05:54:29.918 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50942 10 6438 1 2025-07-17 05:50:57.734 00:05:00.663 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 05:55:30.332 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:43526 10 6438 1 2025-07-17 05:56:30.697 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38142 10 6438 1 2025-07-17 05:57:31.109 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:49820 10 6438 1 2025-07-17 05:58:31.479 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:45808 10 6438 1 Summary: total flows: 140, total bytes: 416264, total packets: 1022, avg bps: 870, avg pps: 0, avg bpp: 407 Time window: 2025-07-17 04:54:57 - 2025-07-17 05:58:41 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0028s User: 0.0014s Wall: 0.0023s flows/second: 60919.4 Runtime: 0.0023s