Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-18 15:54:58.526 00:05:00.650 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 15:59:12.500 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34500 10 6438 1 2025-07-18 16:00:03.253 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 16:00:03.164 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 16:00:03.122 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:00:03.209 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:00:03.291 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 16:00:12.903 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53594 10 6438 1 2025-07-18 16:01:13.308 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35152 10 6438 1 2025-07-18 16:02:13.713 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:55614 10 6438 1 2025-07-18 16:03:14.116 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36066 10 6438 1 2025-07-18 15:59:58.530 00:05:00.645 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 16:04:14.518 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:47152 10 6438 1 2025-07-18 16:00:58.526 00:05:00.650 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 16:05:03.380 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 16:05:03.284 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:05:03.543 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:05:03.428 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 16:05:03.624 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 16:05:14.885 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60800 10 6438 1 2025-07-18 16:06:15.287 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33484 10 6438 1 2025-07-18 16:07:15.688 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:40966 10 6438 1 2025-07-18 16:08:16.111 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54514 10 6438 1 2025-07-18 16:09:16.511 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37526 10 6438 1 2025-07-18 16:05:58.530 00:05:00.644 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 16:10:03.361 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 16:10:03.414 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 16:10:03.356 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 16:10:03.239 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:10:03.278 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:10:16.916 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41692 10 6438 1 2025-07-18 16:06:58.527 00:05:00.649 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 16:11:17.332 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48000 10 6438 1 2025-07-18 16:12:17.740 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47308 10 6438 1 2025-07-18 16:13:18.151 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59894 10 6438 1 2025-07-18 16:14:18.551 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52056 10 6438 1 2025-07-18 16:15:03.534 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 16:15:03.334 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 16:15:03.572 00:00:00.040 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 16:15:03.201 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:15:03.452 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:15:18.951 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40276 10 6438 1 2025-07-18 16:11:58.530 00:05:00.647 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 16:16:19.362 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53780 10 6438 1 2025-07-18 16:12:58.530 00:05:00.659 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 16:17:19.726 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:54218 10 6438 1 2025-07-18 16:18:20.146 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55756 10 6438 1 2025-07-18 16:19:20.547 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55566 10 6438 1 2025-07-18 16:20:03.643 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 16:20:03.630 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 16:20:03.394 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 16:20:03.531 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:20:03.561 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:20:20.953 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47756 10 6438 1 2025-07-18 16:21:21.358 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:34540 10 6438 1 2025-07-18 16:17:58.534 00:05:00.646 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 16:22:21.779 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54084 10 6438 1 2025-07-18 16:18:58.532 00:05:00.653 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 16:23:22.184 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58122 10 6438 1 2025-07-18 16:24:22.545 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60000 10 6438 1 2025-07-18 16:25:03.654 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 16:25:03.807 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 16:25:03.579 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:25:03.798 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:25:03.881 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 16:25:22.945 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48082 10 6438 1 2025-07-18 16:26:23.354 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:48850 10 6438 1 2025-07-18 16:27:23.752 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:38028 10 6438 1 2025-07-18 16:23:58.536 00:05:00.649 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 16:28:24.178 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56010 10 6438 1 2025-07-18 16:24:58.533 00:05:00.654 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 16:29:24.580 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58760 10 6438 1 2025-07-18 16:30:03.586 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 16:30:03.755 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 16:30:03.413 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:30:03.768 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:30:03.851 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 16:30:24.985 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36988 10 6438 1 2025-07-18 16:31:25.392 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41610 10 6438 1 2025-07-18 16:32:25.791 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36984 10 6438 1 2025-07-18 16:33:26.206 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59328 10 6438 1 2025-07-18 16:29:58.545 00:05:00.649 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 16:34:26.614 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57992 10 6438 1 2025-07-18 16:30:58.538 00:05:00.659 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 16:35:03.774 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 16:35:03.955 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 16:35:03.961 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:35:03.945 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:35:04.027 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 16:35:27.018 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42098 10 6438 1 2025-07-18 16:36:27.423 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:59122 10 6438 1 2025-07-18 16:37:27.836 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:37312 10 6438 1 2025-07-18 16:38:28.270 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36124 10 6438 1 2025-07-18 16:39:28.674 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55236 10 6438 1 2025-07-18 16:35:58.542 00:05:00.654 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 16:40:03.932 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 16:40:03.936 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 16:40:03.960 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:40:03.859 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:40:03.942 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 16:40:29.042 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40674 10 6438 1 2025-07-18 16:36:58.540 00:05:00.660 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 16:41:29.443 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36844 10 6438 1 2025-07-18 16:42:29.847 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:34454 10 6438 1 2025-07-18 16:43:30.269 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36740 10 6438 1 2025-07-18 16:44:30.676 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51310 10 6438 1 2025-07-18 16:45:04.370 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:45:04.269 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 16:45:04.475 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 16:45:04.282 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:45:04.453 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 16:45:31.107 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35188 10 6438 1 2025-07-18 16:41:58.544 00:05:00.655 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 16:46:31.511 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38818 10 6438 1 2025-07-18 16:42:58.541 00:05:00.661 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 16:47:31.916 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59024 10 6438 1 2025-07-18 16:48:32.323 00:00:10.457 TCP 1.101.0.1:3000 -> 23.104.0.1:37434 12 10352 1 2025-07-18 16:49:32.821 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57584 10 6438 1 2025-07-18 16:50:04.348 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 16:50:04.116 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 16:50:03.975 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 16:50:04.123 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:50:04.265 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:50:33.231 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41906 10 6438 1 2025-07-18 16:51:33.635 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39424 10 6438 1 2025-07-18 16:47:58.545 00:05:00.655 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 16:52:34.038 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49776 10 6438 1 2025-07-18 16:48:58.544 00:05:00.660 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-18 16:53:34.443 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48858 10 6438 1 2025-07-18 16:54:34.854 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:38486 10 6438 1 2025-07-18 16:55:04.248 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-18 16:55:04.250 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-18 16:55:04.317 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-18 16:55:04.107 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:55:04.166 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-18 16:55:35.279 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58746 10 6438 1 2025-07-18 16:56:35.682 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:35240 10 6438 1 2025-07-18 16:57:36.106 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59252 10 6438 1 2025-07-18 16:53:58.546 00:05:00.655 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-18 16:58:36.512 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39508 10 6438 1 Summary: total flows: 140, total bytes: 420074, total packets: 1022, avg bps: 875, avg pps: 0, avg bpp: 411 Time window: 2025-07-18 15:54:58 - 2025-07-18 16:58:59 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0031s User: 0.0010s Wall: 0.0023s flows/second: 60035.0 Runtime: 0.0023s