Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-19 00:54:58.711 00:05:00.667 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-19 00:58:50.025 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60140 10 6438 1 2025-07-19 00:59:50.429 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47468 10 6438 1 2025-07-19 01:00:13.916 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 01:00:13.915 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 01:00:13.600 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 01:00:14.070 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 01:00:14.154 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 01:00:50.831 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:45480 10 6438 1 2025-07-19 01:01:51.266 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58576 10 6438 1 2025-07-19 01:02:51.676 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:44530 10 6438 1 2025-07-19 00:59:58.715 00:05:00.661 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-19 01:03:52.119 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53374 12 6542 1 2025-07-19 01:00:58.712 00:05:00.666 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-19 01:04:52.526 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53530 10 6438 1 2025-07-19 01:05:14.369 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 01:05:14.167 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 01:05:14.287 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 01:05:13.917 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 01:05:14.287 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 01:05:52.925 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:49522 10 6438 1 2025-07-19 01:06:53.342 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:49210 10 6438 1 2025-07-19 01:07:53.766 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49474 10 6438 1 2025-07-19 01:08:54.176 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40828 10 6438 1 2025-07-19 01:09:54.590 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53050 10 6438 1 2025-07-19 01:05:58.716 00:05:00.661 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-19 01:10:14.275 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 01:10:14.330 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 01:10:14.295 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 01:10:14.432 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 01:10:14.514 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 01:06:58.714 00:05:00.666 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-19 01:10:54.992 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36810 10 6438 1 2025-07-19 01:11:55.396 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36086 10 6438 1 2025-07-19 01:12:55.811 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:56732 12 10352 1 2025-07-19 01:13:56.287 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47986 10 6438 1 2025-07-19 01:14:56.690 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48670 10 6438 1 2025-07-19 01:15:14.334 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 01:15:14.266 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 01:15:14.345 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 01:15:14.388 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 01:15:14.471 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 01:11:58.718 00:05:00.661 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-19 01:15:57.108 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33150 10 6438 1 2025-07-19 01:12:58.715 00:05:00.667 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-19 01:16:57.518 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49330 10 6438 1 2025-07-19 01:17:57.935 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:56320 10 6438 1 2025-07-19 01:18:58.358 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33894 10 6438 1 2025-07-19 01:19:58.768 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:57692 10 6438 1 2025-07-19 01:20:14.555 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 01:20:14.406 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 01:20:14.532 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 01:20:14.223 00:00:00.041 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 01:20:14.472 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 01:20:59.183 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40562 10 6438 1 2025-07-19 01:17:58.720 00:05:00.661 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-19 01:21:59.548 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46328 10 6438 1 2025-07-19 01:18:58.718 00:05:00.666 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-19 01:22:59.954 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:53464 12 10350 1 2025-07-19 01:24:00.409 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55122 10 6438 1 2025-07-19 01:25:14.772 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 01:25:14.605 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 01:25:14.698 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 01:25:14.269 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 01:25:00.811 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:52698 10 6438 1 2025-07-19 01:25:14.689 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 01:26:01.230 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:39778 10 6438 1 2025-07-19 01:27:01.605 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:56578 10 6438 1 2025-07-19 01:23:58.721 00:05:00.662 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-19 01:28:01.961 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40954 10 6438 1 2025-07-19 01:24:58.719 00:05:00.666 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-19 01:29:02.365 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41060 10 6438 1 2025-07-19 01:30:14.510 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 01:30:14.583 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 01:30:14.513 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 01:30:14.584 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 01:30:02.765 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38070 10 6438 1 2025-07-19 01:30:14.667 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 01:31:03.170 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56514 10 6438 1 2025-07-19 01:32:03.580 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37096 10 6438 1 2025-07-19 01:33:03.987 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60966 10 6438 1 2025-07-19 01:29:58.723 00:05:00.662 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-19 01:34:04.390 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50854 10 6438 1 2025-07-19 01:30:58.719 00:05:00.667 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-19 01:35:14.954 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 01:35:14.798 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 01:35:14.800 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 01:35:14.819 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 01:35:14.872 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 01:35:04.795 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33622 10 6438 1 2025-07-19 01:36:05.190 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:60780 10 6438 1 2025-07-19 01:37:05.546 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38812 10 6438 1 2025-07-19 01:38:05.953 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51768 10 6438 1 2025-07-19 01:39:06.357 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56788 10 6438 1 2025-07-19 01:35:58.722 00:05:00.662 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-19 01:40:15.087 00:00:00.044 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 01:40:14.827 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 01:40:14.678 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 01:40:15.006 00:00:00.039 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 01:40:06.767 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40656 10 6438 1 2025-07-19 01:40:15.007 00:00:00.043 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 01:36:58.720 00:05:00.667 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-19 01:41:07.177 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36914 10 6438 1 2025-07-19 01:42:07.579 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50870 10 6438 1 2025-07-19 01:43:07.993 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43564 10 6438 1 2025-07-19 01:44:08.402 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59750 10 6438 1 2025-07-19 01:45:14.872 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 01:45:14.678 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 01:45:14.673 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 01:45:14.789 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 01:45:14.800 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 01:45:08.808 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:37160 10 6438 1 2025-07-19 01:41:58.724 00:05:00.662 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-19 01:46:09.174 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36194 10 6438 1 2025-07-19 01:42:58.721 00:05:00.667 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-19 01:47:09.578 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58530 10 6438 1 2025-07-19 01:48:09.978 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:35750 10 6438 1 2025-07-19 01:49:10.346 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39056 10 6438 1 2025-07-19 01:50:14.657 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 01:50:14.904 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 01:50:15.071 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 01:50:14.984 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 01:50:14.986 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 01:50:10.704 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48914 10 6438 1 2025-07-19 01:51:11.116 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46090 10 6438 1 2025-07-19 01:47:58.726 00:05:00.663 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-19 01:52:11.519 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:49140 10 6438 1 2025-07-19 01:48:58.723 00:05:00.669 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-19 01:53:11.919 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36000 10 6438 1 2025-07-19 01:54:12.324 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49478 10 6438 1 2025-07-19 01:55:15.151 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-19 01:55:15.295 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-19 01:55:15.151 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-19 01:55:15.096 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 01:55:15.068 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-19 01:55:12.732 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57642 10 6438 1 2025-07-19 01:56:13.139 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43216 10 6438 1 2025-07-19 01:57:13.536 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48514 10 6438 1 2025-07-19 01:53:58.727 00:05:00.666 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-19 01:58:13.943 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:52764 10 6438 1 Summary: total flows: 140, total bytes: 424090, total packets: 1026, avg bps: 883, avg pps: 0, avg bpp: 413 Time window: 2025-07-19 00:54:58 - 2025-07-19 01:58:59 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0028s User: 0.0014s Wall: 0.0026s flows/second: 54095.1 Runtime: 0.0026s