Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-18 13:54:58.460 00:05:00.681 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 13:59:24.383 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49258 10 6438 1 2025-07-18 14:00:01.142 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 14:00:01.020 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 14:00:00.830 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 14:00:00.466 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 14:00:01.060 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 14:00:24.799 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41070 10 6438 1 2025-07-18 14:01:25.200 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39582 10 6438 1 2025-07-18 14:02:25.598 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40592 10 6438 1 2025-07-18 14:03:26.012 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38632 10 6438 1 2025-07-18 13:59:58.464 00:05:00.675 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 14:04:26.415 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:35912 10 6438 1 2025-07-18 14:00:58.462 00:05:00.680 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 14:05:00.735 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 14:05:00.902 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 14:05:00.926 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 14:05:00.838 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 14:05:00.921 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 14:05:26.843 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:47928 10 6438 1 2025-07-18 14:06:27.274 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47696 10 6438 1 2025-07-18 14:07:27.679 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40258 10 6438 1 2025-07-18 14:08:28.038 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33966 10 6438 1 2025-07-18 14:09:28.447 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54504 10 6438 1 2025-07-18 14:10:00.937 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 14:10:01.096 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 14:10:00.799 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 14:10:01.184 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 14:05:58.465 00:05:00.675 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 14:10:01.266 00:00:00.035 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 14:10:28.859 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57138 10 6438 1 2025-07-18 14:06:58.462 00:05:00.681 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 14:11:29.267 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37482 10 6438 1 2025-07-18 14:12:29.666 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56630 10 6438 1 2025-07-18 14:13:30.104 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:59442 10 6438 1 2025-07-18 14:14:30.472 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43428 10 6438 1 2025-07-18 14:15:01.251 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 14:15:01.168 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 14:15:00.921 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 14:15:01.026 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 14:15:00.731 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 14:15:30.875 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40404 10 6438 1 2025-07-18 14:11:58.467 00:05:00.676 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 14:16:31.280 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56274 10 6438 1 2025-07-18 14:12:58.463 00:05:00.682 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 14:17:31.681 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34218 10 6438 1 2025-07-18 14:18:32.117 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58638 10 6438 1 2025-07-18 14:19:32.519 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:59064 10 6438 1 2025-07-18 14:20:01.240 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 14:20:01.211 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 14:20:01.074 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 14:20:01.157 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 14:20:01.255 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 14:20:32.894 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58378 10 6438 1 2025-07-18 14:21:33.302 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44432 10 6438 1 2025-07-18 14:17:58.469 00:05:00.675 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 14:22:33.709 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44000 10 6438 1 2025-07-18 14:18:58.466 00:05:00.680 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 14:23:34.110 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40442 10 6438 1 2025-07-18 14:24:34.512 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51668 10 6438 1 2025-07-18 14:25:01.243 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 14:25:01.448 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 14:25:01.417 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 14:25:01.329 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 14:25:01.411 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 14:25:34.920 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47624 11 6478 1 2025-07-18 14:26:35.333 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51346 10 6438 1 2025-07-18 14:27:35.737 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42064 10 6438 1 2025-07-18 14:23:58.470 00:05:00.675 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 14:28:36.147 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35330 10 6438 1 2025-07-18 14:24:58.468 00:05:00.679 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 14:29:36.560 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54514 10 6438 1 2025-07-18 14:30:01.175 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 14:30:01.413 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 14:30:01.205 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 14:30:01.527 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 14:30:01.609 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 14:30:36.963 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34562 10 6438 1 2025-07-18 14:31:37.368 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46832 10 6438 1 2025-07-18 14:32:37.777 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:39990 10 6438 1 2025-07-18 14:33:38.198 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41392 10 6438 1 2025-07-18 14:29:58.471 00:05:00.675 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 14:34:38.603 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38608 10 6438 1 2025-07-18 14:35:01.397 00:00:00.032 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 14:30:58.470 00:05:00.679 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 14:35:01.522 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 14:35:01.385 00:00:00.032 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 14:35:01.397 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 14:35:01.480 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 14:35:39.010 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53294 10 6438 1 2025-07-18 14:36:39.412 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:41446 10 6438 1 2025-07-18 14:37:39.774 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59542 10 6438 1 2025-07-18 14:38:40.143 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:36492 12 10352 1 2025-07-18 14:39:40.628 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48338 10 6438 1 2025-07-18 14:40:01.675 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 14:40:01.750 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 14:40:01.566 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 14:40:01.748 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 14:35:58.471 00:05:00.676 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 14:40:01.830 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 14:40:41.032 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48192 10 6438 1 2025-07-18 14:36:58.470 00:05:00.679 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 14:41:41.437 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55056 10 6438 1 2025-07-18 14:42:41.841 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:39510 10 6438 1 2025-07-18 14:43:42.267 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38806 10 6438 1 2025-07-18 14:44:42.673 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56158 10 6438 1 2025-07-18 14:45:01.602 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 14:45:01.974 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 14:45:01.666 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 14:45:01.675 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 14:45:01.758 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 14:45:43.107 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56666 10 6438 1 2025-07-18 14:41:58.474 00:05:00.674 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 14:46:43.521 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45992 10 6438 1 2025-07-18 14:42:58.471 00:05:00.686 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 14:47:43.925 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:57326 10 6438 1 2025-07-18 14:48:44.308 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:54636 10 6438 1 2025-07-18 14:49:44.706 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58226 10 6438 1 2025-07-18 14:50:01.657 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 14:50:01.787 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 14:50:01.797 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 14:50:01.748 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 14:50:01.832 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 14:50:45.113 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58116 10 6438 1 2025-07-18 14:51:45.521 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42314 10 6438 1 2025-07-18 14:47:58.480 00:05:00.676 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 14:48:58.477 00:05:00.681 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 14:52:45.928 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:44504 10 6438 1 2025-07-18 14:53:46.343 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54504 10 6438 1 2025-07-18 14:55:02.233 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 14:54:46.749 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:33784 10 6438 1 2025-07-18 14:55:01.994 00:00:00.043 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 14:55:02.105 00:00:00.030 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 14:55:02.054 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 14:55:02.152 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 14:55:47.116 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:47098 10 6438 1 2025-07-18 14:56:47.476 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48730 10 6438 1 2025-07-18 14:57:47.887 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:58156 10 6438 1 2025-07-18 14:53:58.481 00:05:00.676 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 Summary: total flows: 139, total bytes: 413676, total packets: 1013, avg bps: 861, avg pps: 0, avg bpp: 408 Time window: 2025-07-18 13:54:58 - 2025-07-18 14:58:59 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0010s User: 0.0030s Wall: 0.0014s flows/second: 98781.5 Runtime: 0.0014s