Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-17 07:54:57.775 00:05:00.667 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 07:59:24.563 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 07:59:24.687 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 07:59:24.567 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 07:59:24.562 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 07:59:24.644 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 07:59:20.327 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:36146 10 6438 1 2025-07-17 08:00:20.687 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35798 10 6438 1 2025-07-17 07:56:57.772 00:05:00.673 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 08:01:21.113 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51830 10 6438 1 2025-07-17 08:02:21.524 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:33456 10 6438 1 2025-07-17 08:03:21.934 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:49818 10 6438 1 2025-07-17 08:04:24.961 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 08:04:24.889 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 08:04:24.875 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 08:04:24.849 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 08:04:24.880 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 08:04:22.362 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:43774 10 6438 1 2025-07-17 08:00:57.777 00:05:00.667 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 08:05:22.722 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42530 10 6438 1 2025-07-17 08:06:23.134 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45202 10 6438 1 2025-07-17 08:02:57.774 00:05:00.672 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 08:07:23.513 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35366 10 6438 1 2025-07-17 08:08:23.920 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:32824 10 6438 1 2025-07-17 08:09:24.795 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 08:09:24.833 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 08:09:24.885 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 08:09:24.922 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 08:09:24.915 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 08:09:24.321 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36824 10 6438 1 2025-07-17 08:10:24.722 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50688 10 6438 1 2025-07-17 08:06:57.778 00:05:00.666 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 08:11:25.137 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46276 10 6438 1 2025-07-17 08:12:25.541 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:37624 10 6438 1 2025-07-17 08:08:57.777 00:05:00.671 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 08:13:25.951 00:00:10.450 TCP 1.101.0.1:3000 -> 23.104.0.1:58188 12 10350 1 2025-07-17 08:14:24.954 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 08:14:24.709 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 08:14:24.952 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 08:14:25.034 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 08:14:25.000 00:00:00.052 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 08:14:26.443 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:51462 10 6438 1 2025-07-17 08:15:26.868 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51504 10 6438 1 2025-07-17 08:16:27.274 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33976 10 6438 1 2025-07-17 08:12:57.780 00:05:00.667 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 08:17:27.684 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40986 10 6438 1 2025-07-17 08:18:28.112 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37406 10 6438 1 2025-07-17 08:14:57.778 00:05:00.671 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 08:19:24.975 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 08:19:24.913 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 08:19:24.973 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 08:19:25.050 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 08:19:24.996 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 08:19:28.520 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57386 10 6438 1 2025-07-17 08:20:28.886 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:38430 12 6542 1 2025-07-17 08:21:29.318 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47194 10 6438 1 2025-07-17 08:22:29.725 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56586 10 6438 1 2025-07-17 08:18:57.781 00:05:00.667 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 08:23:30.137 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45050 10 6438 1 2025-07-17 08:24:24.917 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 08:24:25.218 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 08:24:25.135 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 08:24:25.148 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 08:24:25.135 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 08:24:30.541 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:46074 10 6438 1 2025-07-17 08:20:57.778 00:05:00.672 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 08:25:30.899 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60696 12 6542 1 2025-07-17 08:26:31.313 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49374 10 6438 1 2025-07-17 08:27:31.732 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:57460 12 6542 1 2025-07-17 08:28:32.142 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:47536 12 10352 1 2025-07-17 08:24:57.786 00:05:00.664 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 08:29:25.415 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 08:29:25.365 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 08:29:25.367 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 08:29:25.423 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 08:29:25.506 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 08:29:32.618 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35360 10 6438 1 2025-07-17 08:30:33.017 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48102 10 6438 1 2025-07-17 08:26:57.783 00:05:00.669 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 08:31:33.423 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56194 10 6438 1 2025-07-17 08:32:33.824 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50836 10 6438 1 2025-07-17 08:33:34.226 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46632 10 6438 1 2025-07-17 08:34:25.499 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 08:34:25.501 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 08:34:25.246 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 08:34:25.401 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 08:34:25.484 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 08:34:34.629 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46902 10 6438 1 2025-07-17 08:30:57.787 00:05:00.665 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 08:35:35.032 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45596 10 6438 1 2025-07-17 08:36:35.436 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41658 10 6438 1 2025-07-17 08:32:57.784 00:05:00.670 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 08:37:35.835 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:54858 10 6438 1 2025-07-17 08:38:36.223 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:39252 12 10350 1 2025-07-17 08:39:25.709 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 08:39:25.516 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 08:39:25.519 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 08:39:25.440 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 08:39:25.627 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 08:39:36.661 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47260 10 6438 1 2025-07-17 08:40:37.102 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:46394 10 6438 1 2025-07-17 08:36:57.788 00:05:00.667 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 08:41:37.519 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:50930 10 6438 1 2025-07-17 08:42:37.944 00:00:10.429 TCP 1.101.0.1:3000 -> 23.104.0.1:45490 11 6490 1 2025-07-17 08:38:57.785 00:05:00.672 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 08:43:38.416 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:59766 10 6438 1 2025-07-17 08:44:25.675 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 08:44:25.707 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 08:44:25.648 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 08:44:25.622 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 08:44:25.594 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 08:44:38.838 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:49264 11 6478 1 2025-07-17 08:45:39.276 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:42374 10 6438 1 2025-07-17 08:46:39.678 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:44114 10 6438 1 2025-07-17 08:42:57.789 00:05:00.669 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 08:47:40.104 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49710 10 6438 1 2025-07-17 08:48:40.505 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60130 10 6438 1 2025-07-17 08:44:57.788 00:05:00.674 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 08:49:25.485 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 08:49:25.589 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 08:49:25.650 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 08:49:25.749 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 08:49:25.733 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 08:49:40.905 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53588 10 6438 1 2025-07-17 08:50:41.317 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42086 10 6438 1 2025-07-17 08:51:41.723 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36644 10 6438 1 2025-07-17 08:52:42.128 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38042 10 6438 1 2025-07-17 08:48:57.791 00:05:00.669 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-17 08:53:42.530 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58242 10 6438 1 2025-07-17 08:54:26.068 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 08:54:25.644 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 08:54:25.929 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 08:54:26.066 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 08:54:26.014 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 08:54:42.933 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:39460 10 6438 1 2025-07-17 08:50:57.789 00:05:00.675 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-17 08:55:43.359 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:36194 10 6438 1 2025-07-17 08:56:43.729 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49766 10 6438 1 2025-07-17 08:57:44.137 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57210 10 6438 1 Summary: total flows: 139, total bytes: 421864, total packets: 1024, avg bps: 893, avg pps: 0, avg bpp: 411 Time window: 2025-07-17 07:54:57 - 2025-07-17 08:57:54 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0036s User: 0.0000s Wall: 0.0026s flows/second: 52952.6 Runtime: 0.0026s