Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-17 21:53:58.118 00:06:00.634 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-17 21:58:58.277 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:33506 10 6438 1 2025-07-17 21:59:41.438 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 21:59:41.513 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 21:59:41.553 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 21:59:41.321 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 21:59:41.520 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 21:59:58.640 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33358 10 6438 1 2025-07-17 22:00:59.061 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:38292 10 6438 1 2025-07-17 21:56:58.116 00:06:00.639 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-17 22:01:59.489 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49124 10 6438 1 2025-07-17 22:02:59.892 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:41142 10 6438 1 2025-07-17 22:04:00.313 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:33590 11 6490 1 2025-07-17 22:04:41.843 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 22:04:41.914 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 22:04:41.796 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 22:04:41.882 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 22:04:41.965 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 22:05:00.768 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:36156 10 6438 1 2025-07-17 22:00:58.128 00:06:00.625 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-17 22:06:01.180 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39084 10 6438 1 2025-07-17 22:07:01.586 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33954 12 6542 1 2025-07-17 22:08:02.012 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:37642 10 6438 1 2025-07-17 22:03:58.127 00:06:00.631 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-17 22:09:02.382 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:48408 10 6438 1 2025-07-17 22:09:41.673 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 22:09:41.859 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 22:09:41.691 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 22:09:41.625 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 22:09:41.590 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 22:10:02.742 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:53976 10 6438 1 2025-07-17 22:11:03.150 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59802 10 6438 1 2025-07-17 22:12:03.563 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35794 10 6438 1 2025-07-17 22:07:58.129 00:06:00.626 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-17 22:13:03.962 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54006 10 6438 1 2025-07-17 22:14:04.372 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34684 10 6438 1 2025-07-17 22:14:42.023 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 22:14:41.955 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 22:14:41.950 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 22:14:41.604 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 22:14:41.939 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 22:15:04.735 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38682 10 6438 1 2025-07-17 22:10:58.129 00:06:00.631 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-17 22:16:05.155 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57076 10 6438 1 2025-07-17 22:17:05.552 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37000 10 6438 1 2025-07-17 22:18:05.956 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40000 10 6438 1 2025-07-17 22:19:06.362 00:00:10.314 TCP 1.101.0.1:3000 -> 23.104.0.1:40042 10 6438 1 2025-07-17 22:19:42.025 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 22:19:41.984 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 22:19:41.933 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 22:19:41.634 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 22:19:41.941 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 22:14:58.134 00:06:00.624 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-17 22:20:06.714 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56894 10 6438 1 2025-07-17 22:21:07.120 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37240 10 6438 1 2025-07-17 22:22:07.485 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:58868 10 6438 1 2025-07-17 22:17:58.132 00:06:00.634 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-17 22:23:07.887 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:38216 10 6438 1 2025-07-17 22:24:08.321 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48712 10 6438 1 2025-07-17 22:24:42.099 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 22:24:41.912 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 22:24:41.852 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 22:24:41.908 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 22:24:41.991 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 22:25:08.730 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:32804 10 6438 1 2025-07-17 22:26:09.111 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44910 10 6438 1 2025-07-17 22:21:58.136 00:06:00.627 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-17 22:27:09.519 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37000 10 6438 1 2025-07-17 22:28:09.923 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42810 10 6438 1 2025-07-17 22:29:10.345 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51222 10 6438 1 2025-07-17 22:29:41.899 00:00:00.032 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 22:29:41.892 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 22:29:41.978 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 22:29:41.951 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 22:29:41.980 00:00:00.033 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 22:24:58.134 00:06:00.633 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-17 22:30:10.748 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37748 10 6438 1 2025-07-17 22:31:11.148 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41152 10 6438 1 2025-07-17 22:32:11.552 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34080 10 6438 1 2025-07-17 22:33:11.958 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52730 10 6438 1 2025-07-17 22:28:58.139 00:06:00.627 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-17 22:34:12.365 00:00:10.415 TCP 1.101.0.1:3000 -> 23.104.0.1:45102 11 6490 1 2025-07-17 22:34:42.260 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 22:34:42.181 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 22:34:42.186 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 22:34:42.138 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 22:34:42.178 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 22:35:12.825 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:44166 10 6438 1 2025-07-17 22:36:13.195 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59220 10 6438 1 2025-07-17 22:31:58.136 00:06:00.631 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-17 22:37:13.594 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51362 10 6438 1 2025-07-17 22:38:13.998 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49864 10 6438 1 2025-07-17 22:39:14.363 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:36542 10 6438 1 2025-07-17 22:39:42.141 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 22:39:42.149 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 22:39:42.380 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 22:39:42.373 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 22:39:42.464 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 22:40:14.781 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42842 10 6438 1 2025-07-17 22:35:58.141 00:06:00.626 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-17 22:41:15.202 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45026 10 6438 1 2025-07-17 22:42:15.613 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35322 10 6438 1 2025-07-17 22:43:16.014 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46318 10 6438 1 2025-07-17 22:38:58.140 00:06:00.630 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-17 22:44:16.421 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52012 10 6438 1 2025-07-17 22:44:42.437 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 22:44:42.371 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 22:44:42.382 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 22:44:42.440 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 22:44:42.523 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 22:45:16.831 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52098 10 6438 1 2025-07-17 22:46:17.244 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:53118 10 6438 1 2025-07-17 22:47:17.617 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:39922 10 6438 1 2025-07-17 22:42:58.144 00:06:00.625 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-17 22:48:17.995 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:42436 10 6438 1 2025-07-17 22:49:18.363 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48986 10 6438 1 2025-07-17 22:49:42.802 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 22:49:42.751 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 22:49:42.441 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 22:49:42.685 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 22:49:42.767 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 22:50:18.765 00:00:10.432 TCP 1.101.0.1:3000 -> 23.104.0.1:49372 11 6490 1 2025-07-17 22:45:58.141 00:06:00.634 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-17 22:51:19.234 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47286 10 6438 1 2025-07-17 22:52:19.633 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:35650 10 6438 1 2025-07-17 22:53:19.994 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35028 10 6438 1 2025-07-17 22:54:20.400 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46560 10 6438 1 2025-07-17 22:54:42.477 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-17 22:54:42.556 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-17 22:54:42.412 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 22:54:42.475 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-17 22:54:42.557 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-17 22:49:58.145 00:06:00.630 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-07-17 22:55:20.800 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54698 10 6438 1 2025-07-17 22:56:21.208 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50744 10 6438 1 2025-07-17 22:57:21.631 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58394 10 6438 1 2025-07-17 22:52:58.142 00:06:00.635 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-07-17 22:58:22.037 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58952 10 6438 1 Summary: total flows: 138, total bytes: 417158, total packets: 1037, avg bps: 855, avg pps: 0, avg bpp: 402 Time window: 2025-07-17 21:53:58 - 2025-07-17 22:58:58 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0011s User: 0.0022s Wall: 0.0022s flows/second: 63480.4 Runtime: 0.0022s